CN101262504A - A method, device and system for source and destination IP address translation - Google Patents

A method, device and system for source and destination IP address translation Download PDF

Info

Publication number
CN101262504A
CN101262504A CNA2008100973621A CN200810097362A CN101262504A CN 101262504 A CN101262504 A CN 101262504A CN A2008100973621 A CNA2008100973621 A CN A2008100973621A CN 200810097362 A CN200810097362 A CN 200810097362A CN 101262504 A CN101262504 A CN 101262504A
Authority
CN
China
Prior art keywords
address
message
application server
translating device
terminal network
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2008100973621A
Other languages
Chinese (zh)
Inventor
董辉
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CNA2008100973621A priority Critical patent/CN101262504A/en
Publication of CN101262504A publication Critical patent/CN101262504A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention discloses a method for converting a source IP address and a destination IP address, which comprises the steps that: terminal network equipment configures the source IP address of sending a message into the IP address of the terminal network equipment, configures the destination IP address of sending a message into the IP address of IP address conversion equipment and sends the message to the IP address conversion equipment; the IP address conversion equipment configures the source IP address of the obtained message as the IP address of the IP address conversion equipment, configures the destination IP address of the message as the IP address of an application server and sends the message to the application server; the IP address conversion equipment stores corresponding relationship between the IP address of the terminal network equipment and the IP address of the application server and transmits the message from the application server to the corresponding terminal network equipment according to the corresponding relationship.

Description

A kind of method of source and destination IP address transition, equipment and system
Technical field
The present invention relates to communication technical field, relate in particular to a kind of method, equipment and system of source and destination IP address transition.
Background technology
The financial field along with termination set in the quickening of managing process, increasing terminal traffic is concentrated on many application servers in centre management district carries out, (with two terminal network appliances is the example explanation to specific implementation as shown in Figure 1, actual can be for one or more), terminal network appliance A has a plurality of terminals under its command, terminal network appliance B also has a plurality of terminals under its command, terminal network appliance A and terminal network appliance B are connected to the centre management district by IP network, comprise a plurality of application servers in the centre management district.On terminal network appliance A, terminal network appliance B, need to dispose the IP address of corresponding application server as the purpose IP address that sends message, and on application server, also need to dispose respectively the route of each bar, thereby message is transmitted between terminal network appliance and application server to corresponding terminal network appliance.
Yet terminal network appliance is directly to link to each other with application server, and the source IP address that sends message on the terminal network appliance is the IP address of this terminal network appliance, and purpose IP address is the IP address of application server; The source IP address that sends message on the application server is the IP address of present application server, and purpose IP address is the IP address of terminal network appliance.Therefore, terminal network appliance and application server are known the other side IP address mutually, if there is malicious user to attack terminal network appliance or application server by the mode of counterfeit IP address, can threaten to network security so.
Because the centre management district has a plurality of application servers usually, each terminal network appliance all needs to link to each other with these application servers, so just need on each terminal network appliance, dispose the IP address of many application servers, and in the transmission message, select the IP address of corresponding application server according to actual needs as purpose IP address; In addition, on each application server, all be configured to the Routing Protocol of all terminal network appliances, before carrying out transfer of data, also need each terminal network appliance IP address is authenticated; Like this, the terminal network appliance in the whole system and configuration, selection and the verification process more complicated of application server will be made.In addition,, can not carry out data distribution, select to send to the little application server of load according to the load condition of practical application server because each terminal network appliance and corresponding application server have been set up direct route.
Summary of the invention
In order to overcome the problems referred to above, the invention provides a kind of method, equipment and system of source and destination IP address transition, realizing reaching secure communication by mutual shielding IP address between terminal network appliance and application server, and the IP address assignment process of minimizing terminal network appliance and application server and server carried out load balancing.
The invention provides a kind of method of source and destination IP address transition, be applied to comprise in the system of at least one terminal network appliance, IP address-translating device, at least one application server, may further comprise the steps:
The source IP address that step 1, terminal network appliance will send message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device;
The source IP address that step 2, described IP address-translating device will receive message is configured to the IP address of described IP address-translating device, is the IP address of application server with the purpose IP address configuration of described message, and described message is sent to described application server;
The IP address of step 3, the described IP address-translating device storage terminal network equipment and the corresponding relation of application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
Wherein, the port of the terminal network appliance that described message carried according to terminal network appliance or application server demand of described IP address-translating device changes to IP address-translating device port or the port of IP address-translating device self that message is carried changes to the destination interface that sends to described application server.
Wherein, when described system comprises a plurality of application server, also comprise:
Described IP address-translating device carries out load sharing to the message from terminal network appliance, according to the load of application server described message is sent to corresponding application server.
Wherein, when described system comprises a plurality of IP address-translating device, also comprise:
To pressing load sharing from the message of terminal network appliance to different IP address-translating devices.
Wherein, the load of described application server comprises:
Bar number according to message is distributed, is distributed, distributes in order or specify and distribute according to service quality.
Wherein, also comprise:
Described IP address-translating device regularly or detect application server in real time and whether break down if find fault, then stops forwarding message.
The present invention also provides a kind of IP address-translating device that is applied to said method, and described IP address-translating device specifically comprises:
Address conversioning unit, the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, is the IP address of application server with the purpose IP address configuration of described message;
Correspondence relation storage is used for the corresponding relation of the IP address and the application server IP address of the storage terminal network equipment;
Packet sending and receiving unit, the message that is used for receiving send to described application server or are forwarded to the terminal network appliance of correspondence according to the message of described corresponding relation self-application server in future.
Wherein, described IP address-translating device also comprises:
The port translation unit is used for according to the change of terminal network appliance or application server demand from the message of terminal network appliance or send to the destination interface of the message of described application server.
Wherein, described IP address-translating device also comprises:
The load sharing unit is used for the message from terminal network appliance is carried out load sharing, according to the load of application server described message is sent to corresponding application server.
Wherein, described IP address-translating device also comprises:
Whether fault detection unit is used for regularly or detects application server in real time breaking down, if find fault, then stops forwarding message.
The present invention also provides a kind of system of source and destination IP address transition, comprises in the system of at least one terminal network appliance, at least one IP address-translating device, at least one application server,
Described terminal network appliance, the source IP address that is used for sending message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device;
Described IP address-translating device, the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, with the purpose IP address configuration of described message is the IP address of application server, described message is sent described application server, and the corresponding relation of the IP address of the storage terminal network equipment and application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
Among the present invention, the message source IP address of the self terminal network equipment all is converted to the unique ip address of IP address-translating device in the future, purpose IP address transition is corresponding application server IP address, send to corresponding application server by the IP address-translating device, and the purpose IP address transition of the message that application server is sent is corresponding terminal network appliance IP address, the IP address that source IP address is converted to the IP address-translating device, sends to corresponding terminal network appliance.Therefore, for terminal network appliance, shielded the IP address of application server, for application server, shielded the IP address of terminal network appliance, avoided numerous and diverse route assignment process, realized the shielding of IP address between application server and the terminal network appliance, can increase the fail safe of network, avoid being subjected to rogue attacks.
In addition, when central tube reason district has a plurality of application server, the IP address-translating device can carry out load sharing according to the loading condition of each application server, and the data of the self terminal network equipment are distributed to the suitable applications server in the future, have guaranteed the reasonable utilization of data.
Description of drawings
Fig. 1 is terminal network appliance and an application server communication schematic diagram in the prior art;
Fig. 2 is a kind of IP address-translating device structure chart among the present invention;
Fig. 3 is the system construction drawing that has the source and destination IP address transition of a terminal network appliance among the present invention;
Fig. 4 is the corresponding relation schematic diagram of IP address transition and port address conversion among Fig. 3 of the present invention;
Fig. 5 is the system construction drawing of a plurality of terminal network appliance source and destination IP address process IP address-translating device among the present invention;
Fig. 6 is the corresponding relation schematic diagram of a plurality of terminal network appliance IP address transition and port translation among Fig. 5 of the present invention;
Fig. 7 is the system construction drawing that has a plurality of application server source and destination IP address transition among the present invention.
Embodiment
Core concept of the present invention is: increase the IP address-translating device in the centre management district, carry out the IP address transition of terminal network appliance and application server, realization is to the IP address of terminal network appliance shielding application server, the IP address of the application server shield terminal network equipment; Realize the data distribution of application server simultaneously, guaranteed the reasonable utilization of application server.
Particularly, the invention provides a kind of system of source and destination IP address transition, comprise at least one terminal network appliance, at least one IP address-translating device, centre management district.Wherein, each terminal network appliance has at least one terminal under its command, the centre management district comprises at least one application server, and terminal network appliance is connected to the IP address-translating device by IP network, and the IP address-translating device is connected with application server in the centre management district.
Wherein, terminal network appliance, the source IP address that is used for sending message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device; The IP address-translating device, the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, with the purpose IP address configuration of described message is the IP address of application server, described message is sent described application server, and the corresponding relation of the IP address of the storage terminal network equipment and application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
Wherein, the IP address-translating device comprises specifically as shown in Figure 2: address conversioning unit 10, and the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, is the IP address of application server with the purpose IP address configuration of described message; Correspondence relation storage 20 is used for the corresponding relation of the IP address and the application server IP address of the storage terminal network equipment; Packet sending and receiving unit 30, be used for message send to described application server or according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
Described IP address-translating device also comprises: port translation unit 40 is used for according to the change of application server or terminal network appliance demand from the message of terminal network appliance or send to the destination interface of the message of described application server.
Described IP address-translating device also comprises: load sharing unit 50, be used for the message from terminal network appliance is carried out load sharing, and according to the load of application server described message is sent to corresponding application server.
In addition, when described system comprises a plurality of IP address-translating device, can be forwarded to corresponding application server through the IP address-translating device to pressing load sharing from the message of terminal network appliance to different IP address-translating devices.
Described IP address-translating device also comprises: fault detection unit 60, be used for regularly or detect application server in real time whether breaking down, and if find fault, then stop forwarding message.
The present invention also provides a kind of method of source and destination IP address transition, is applied to comprise in the system of at least one terminal network appliance, IP address-translating device, at least one application server, may further comprise the steps:
The source IP address that step 101, terminal network appliance will send message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device;
Step 102, the source IP address that described IP address-translating device will receive message is configured to the IP address of described IP address-translating device, with the purpose IP address configuration of described message is the IP address of application server, and described message is sent to described application server;
Step 103, the IP address of the described IP address-translating device storage terminal network equipment and the corresponding relation of application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.For example, the tabulation of memory address transformational relation on the IP address-translating device, this tabulation comprise the corresponding relation of the IP address of the application server that terminal network appliance source IP address and message send to; The IP address-translating device receives the message from application server, according to this corresponding relation, this message is forwarded to corresponding terminal network appliance.
Described IP address-translating device is configured to the IP address of described IP address-translating device with the source IP address of described message, with the purpose IP address configuration of described message is also to comprise after the IP address of application server: described IP address-translating device according to application server or the change of terminal network appliance demand from the message of terminal network appliance or send to the destination interface of the message of described application server.
When comprising a plurality of application server, also comprise: described IP address-translating device carries out load sharing to the message from terminal network appliance, according to the load of application server described message is sent to corresponding application server.The load of application server comprises: the bar number according to message is distributed, is distributed, distributes in order or specify and distribute according to service quality.
In addition, also comprise before the step 102: described IP address-translating device regularly or detect application server in real time and whether break down if find fault, then stops forwarding message.The IP address of configure application server on the IP address-translating device for example, dispose detection simultaneously to this several application server, timed sending PING request message for example, so that (in Preset Time, do not receive the PING response message) when the application server fault occurring, do not send message to this application server.
Below be the scene of practical application of the present invention, it understands the process of source and destination IP address transition of the present invention specifically, and is specific as follows:
For simplicity, be that example describes there to be a terminal network appliance in the system below, as shown in Figure 3, comprise terminal network appliance A, IP address-translating device C and have the centre management district of an application server.Under this practical application scene, terminal network appliance A has three terminals under its command, the IP address of terminal network appliance A is 1.1.1.2, the IP address of IP address-translating device C and terminal network appliance A connectivity port is 1.1.1.1, the IP address of IP address-translating device C and application server connectivity port is 2.2.2.1, and the IP address of application server is 2.2.2.2.Be initiated to the IP address 1.1.1.1 of IP address-translating device C, the connection of mask 24 from IP address 1.1.1.2, the mask 24 of terminal network appliance A, for terminal network appliance A, purpose IP address (1.1.1.1) is exactly the IP address of application server, after IP address-translating device C receives this message, can become 2.2.2.2 to the purpose IP address transition of message, source IP address is converted to 2.2.2.1, like this after message arrives application server, for application server just as the message that receives only from IP address-translating device C.
If application server or terminal network appliance need have certain requirement (for example some message need pass through some particular port) to the port that message receives, can on IP address-translating device C, change the port of message, and write down the corresponding relation of these IP address transition and port address conversion, as shown in Figure 4, be initiated to the IP address 1.1.1.1 of IP address-translating device C, the connection of port 3000 from IP address 1.1.1.2, the port one 024 of terminal network appliance A; The IP address 2.2.2.2 that the IP address 2.2.2.1 of secondary IP address conversion equipment C, port 2008 are initiated to application server, the connection of port 5000; Be initiated to the IP address 2.2.2.1 of location, IP location conversion equipment C, the connection of port 2008 from IP address 2.2.2.2, the port 5000 of application server; IP address-translating device C is according to the IP address 1.1.1.1 of above-mentioned corresponding relation secondary IP address conversion equipment C, the IP address 1.1.1.2 that port 3000 is initiated to terminal network appliance A, the connection of port one 024.
When a plurality of terminal network appliances occurring (for example two), as shown in Figure 5, comprising: terminal network appliance A, terminal network appliance B, IP address-translating device C and application server through the IP address-translating device; The IP address of terminal network appliance A is 1.1.1.2, the IP address of terminal network appliance B is 1.1.1.3, the IP address of IP address-translating device C and terminal network appliance A connectivity port is 1.1.1.1, the IP address of IP address-translating device C and application server connectivity port is 2.2.2.1, and the IP address of application server is 2.2.2.2.Be initiated to the connection of the IP address 1.1.1.1 of IP address-translating device C from the IP address 1.1.1.2 of terminal network appliance A, for terminal network appliance A, purpose IP address (1.1.1.1) is exactly the IP address of application server, after IP address-translating device C receives this message, can become 2.2.2.2 to the purpose IP address transition of message, source IP address is converted to 2.2.2.1, after message arrives application server, for application server just as the message that receives only from IP address-translating device C.Be initiated to the connection of the IP address 1.1.1.1 of IP address-translating device C from the IP address 1.1.1.3 of terminal network appliance B, for terminal network appliance B, 1.1.1.1 the address is exactly the IP address of application server, after IP address-translating device C receives this message, can become 2.2.2.2 to the purpose IP address transition of message, source IP address is converted to 2.2.2.1, like this after message arrives application server, for application server just as the message that receives only from IP address-translating device C.
If application server or terminal network appliance need have ask for something to the port of TCP, can on IP address-translating device C, carry out some special conversions by the port to these messages so equally, and write down the corresponding relation of these IP address transition and port address conversion.Flow process is as shown in Figure 6: be connected if all be configured to the TCP of 8000 ports of IP address-translating device C on terminal network appliance A and the terminal network appliance B, terminal network appliance A can be connected to the 8000 ports initiation message of IP address-translating device C with terminal network appliance B so, IP address-translating device C receives after the connection, distinguish according to the source IP address of IP message and the mode of port numbers, and then according to the conversion that will carry out, purpose IP address is converted into 2.2.2.2 from 1.1.1.1, destination interface 8000 is converted into the message port that will be connected on the application server, here be assumed to 7000 ports, and on IP address-translating device C, set up a corresponding relation simultaneously, be exactly the source IP address of message and source IP address and the source port after the source port corresponding conversion, send the message of returning from application server like this and again the message transmission is gone back according to this corresponding relation.
As shown in Figure 7, when comprising a plurality of application server in the central tube reason district (for example comprising 3 application servers 1,2,3), can be on IP address-translating device C the load sharing strategy of configure application server, can guarantee the load of application server to a great extent.For example: the bar number according to message is distributed, and for example, has 3 application servers, and has received 6 messages, and then 2 messages are distributed to an application server; According to QoS (Quality of Service, service quality) distribution, for example, the application server that QoS is high is born more message; Distribution in order; Specify distribution.If certainly application server has the difference of some performances, also can carry out some adjustment on the coefficient sharing, reasonably use to reach application server.
Through the above description of the embodiments, those skilled in the art can be well understood to the present invention and can realize by the mode that software adds essential general hardware platform, can certainly pass through hardware, but the former is better execution mode under a lot of situation.Based on such understanding, the part that technical scheme of the present invention contributes to prior art in essence in other words can embody with the form of software product, this computer software product is stored in the storage medium, comprise that some instructions are with so that a computer equipment (can be a personal computer, server, the perhaps network equipment etc.) carry out the described method of each embodiment of the present invention.
More than disclosed only be several specific embodiment of the present invention, still, the present invention is not limited thereto, any those skilled in the art can think variation all should fall into protection scope of the present invention.

Claims (11)

1, a kind of method of source and destination IP address transition is applied to comprise in the system of at least one terminal network appliance, IP address-translating device, at least one application server, it is characterized in that, may further comprise the steps:
The source IP address that step 1, terminal network appliance will send message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device;
The source IP address that step 2, described IP address-translating device will receive message is configured to the IP address of described IP address-translating device, is the IP address of application server with the purpose IP address configuration of described message, and described message is sent to described application server;
The IP address of step 3, the described IP address-translating device storage terminal network equipment and the corresponding relation of application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
2, the method for source and destination IP address transition according to claim 1 is characterized in that,
The port of the terminal network appliance that described IP address-translating device carries described message according to terminal network appliance or application server demand changes to IP address-translating device port or the port of IP address-translating device self that message is carried changes to the destination interface that sends to described application server.
3, the method for source and destination IP address transition as claimed in claim 1 or 2 is characterized in that, when described system comprises a plurality of application server, also comprises:
Described IP address-translating device carries out load sharing to the message from terminal network appliance, according to the load of application server described message is sent to corresponding application server.
4, the method for source and destination IP address transition as claimed in claim 1 or 2 is characterized in that, when described system comprises a plurality of IP address-translating device, also comprises:
To pressing load sharing from the message of terminal network appliance to different IP address-translating devices.
5, as the method for source and destination IP address transition as described in the claim 3, it is characterized in that the load of described application server comprises:
Bar number according to message is distributed, is distributed, distributes in order or specify and distribute according to service quality.
6, as the method for source and destination IP address transition as described in the claim 3, it is characterized in that, also comprise:
Described IP address-translating device regularly or detect application server in real time and whether break down if find fault, then stops forwarding message.
7, a kind of IP address-translating device that is applied to said method is characterized in that, described IP address-translating device specifically comprises:
Address conversioning unit, the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, is the IP address of application server with the purpose IP address configuration of described message;
Correspondence relation storage is used for the corresponding relation of the IP address and the application server IP address of the storage terminal network equipment;
Packet sending and receiving unit, the message that is used for receiving send to described application server or are forwarded to the terminal network appliance of correspondence according to the message of described corresponding relation self-application server in future.
8, as source and destination IP address-translating device as described in the claim 7, it is characterized in that described IP address-translating device also comprises:
The port translation unit is used for according to the change of terminal network appliance or application server demand from the message of terminal network appliance or send to the destination interface of the message of described application server.
9, as source and destination IP address-translating device as described in the claim 7, it is characterized in that described IP address-translating device also comprises:
The load sharing unit is used for the message from terminal network appliance is carried out load sharing, according to the load of application server described message is sent to corresponding application server.
10, as source and destination IP address-translating device as described in the claim 7, it is characterized in that described IP address-translating device also comprises:
Whether fault detection unit is used for regularly or detects application server in real time breaking down, if find fault, then stops forwarding message.
11, a kind of system of source and destination IP address transition is characterized in that, comprise in the system of at least one terminal network appliance, at least one IP address-translating device, at least one application server,
Described terminal network appliance, the source IP address that is used for sending message is configured to the IP address of described terminal network appliance, and the purpose IP address configuration that sends message is the IP address of IP address-translating device, and described message is sent to described IP address-translating device;
Described IP address-translating device, the source IP address that is used for receiving message is configured to the IP address of described IP address-translating device, with the purpose IP address configuration of described message is the IP address of application server, described message is sent described application server, and the corresponding relation of the IP address of the storage terminal network equipment and application server IP address, and according to described corresponding relation in the future the message of self-application server be forwarded to corresponding terminal network appliance.
CNA2008100973621A 2008-05-13 2008-05-13 A method, device and system for source and destination IP address translation Pending CN101262504A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNA2008100973621A CN101262504A (en) 2008-05-13 2008-05-13 A method, device and system for source and destination IP address translation

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA2008100973621A CN101262504A (en) 2008-05-13 2008-05-13 A method, device and system for source and destination IP address translation

Publications (1)

Publication Number Publication Date
CN101262504A true CN101262504A (en) 2008-09-10

Family

ID=39962704

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2008100973621A Pending CN101262504A (en) 2008-05-13 2008-05-13 A method, device and system for source and destination IP address translation

Country Status (1)

Country Link
CN (1) CN101262504A (en)

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102158512A (en) * 2010-02-11 2011-08-17 联想(北京)有限公司 Load balance dispatching method, device and system
CN102780602A (en) * 2012-07-31 2012-11-14 深圳市共进电子股份有限公司 Method and device for data transmission
CN103118147A (en) * 2013-01-24 2013-05-22 中国联合网络通信集团有限公司 Method, equipment and system for accessing intranet server
CN103532757A (en) * 2013-10-17 2014-01-22 华为技术有限公司 Network communication method, access point equipment and system
CN104618520A (en) * 2013-11-04 2015-05-13 华为技术有限公司 IP (Internet Protocol) address configuration method, equipment and system
CN105915662A (en) * 2016-04-13 2016-08-31 浙江宇视科技有限公司 Data transmission method and apparatus
CN107743098A (en) * 2017-11-23 2018-02-27 新华三技术有限公司 The method, apparatus and realization device of load balancing between CGN plates
CN107995324A (en) * 2017-12-04 2018-05-04 北京奇安信科技有限公司 A kind of cloud means of defence and device based on tunnel mode

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102158512A (en) * 2010-02-11 2011-08-17 联想(北京)有限公司 Load balance dispatching method, device and system
CN102780602A (en) * 2012-07-31 2012-11-14 深圳市共进电子股份有限公司 Method and device for data transmission
CN102780602B (en) * 2012-07-31 2015-07-08 深圳市共进电子股份有限公司 Method and device for data transmission
CN103118147A (en) * 2013-01-24 2013-05-22 中国联合网络通信集团有限公司 Method, equipment and system for accessing intranet server
CN103532757A (en) * 2013-10-17 2014-01-22 华为技术有限公司 Network communication method, access point equipment and system
CN103532757B (en) * 2013-10-17 2017-04-26 华为技术有限公司 Network communication method, access point equipment and system
CN104618520B (en) * 2013-11-04 2018-06-15 华为技术有限公司 IP address configuration method, equipment and system
CN104618520A (en) * 2013-11-04 2015-05-13 华为技术有限公司 IP (Internet Protocol) address configuration method, equipment and system
CN105915662A (en) * 2016-04-13 2016-08-31 浙江宇视科技有限公司 Data transmission method and apparatus
CN105915662B (en) * 2016-04-13 2019-10-18 浙江宇视科技有限公司 A kind of data transmission method and device
CN107743098A (en) * 2017-11-23 2018-02-27 新华三技术有限公司 The method, apparatus and realization device of load balancing between CGN plates
CN107995324A (en) * 2017-12-04 2018-05-04 北京奇安信科技有限公司 A kind of cloud means of defence and device based on tunnel mode
CN107995324B (en) * 2017-12-04 2021-01-01 奇安信科技集团股份有限公司 Tunnel mode-based cloud protection method and device

Similar Documents

Publication Publication Date Title
CN101262504A (en) A method, device and system for source and destination IP address translation
CN106685992B (en) Cross-network security switching and interactive application system and method based on unidirectional transmission technology
CN101404621B (en) Method and routing device for implementing VRRP load balance
CN101488918B (en) Multi-network card server access method and system
EP3352431B1 (en) Network load balance processing system, method, and apparatus
CN103166874A (en) Message forwarding method and device
CN103650424A (en) Implementation method and server of home gateway service function
CN103200094A (en) Method for achieving gateway dynamic load distribution
CN102916897A (en) Method and equipment for realizing VRRP load sharing
CN102946434A (en) Communication method of wireless local area network (WLAN)
CN103916253A (en) Information transmission method and system on basis of information center network
CN114205815A (en) Method and system for authentication control of 5G private network
CN102413052B (en) A kind of method of access network, Apparatus and system
CN102916898A (en) Application keeping method and device of multilink egress
CN112968965B (en) Metadata service method, server and storage medium for NFV network node
CN101141396B (en) Packet processing method and network appliance
CN101909011A (en) Message transmission method and system, client and proxy gateway
CN102263808B (en) Session control service method, device and system
CN105491065A (en) Resource access method of message-oriented middleware, server, and resource access system
CN101697542B (en) Authentication method, soft switch and terminal
CN106330547B (en) Method and device for forwarding redundant link data packet
CN105991629B (en) TCP connection method for building up and device
CN101860544A (en) Transmitting system and method of session initiation protocol message
EP2173067A1 (en) A message processing apparatus and the method thereof
CN105337757A (en) Line card management method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Open date: 20080910