CN101355585A - System and method for protecting information of distributed architecture data communication equipment - Google Patents

System and method for protecting information of distributed architecture data communication equipment Download PDF

Info

Publication number
CN101355585A
CN101355585A CNA2008102105854A CN200810210585A CN101355585A CN 101355585 A CN101355585 A CN 101355585A CN A2008102105854 A CNA2008102105854 A CN A2008102105854A CN 200810210585 A CN200810210585 A CN 200810210585A CN 101355585 A CN101355585 A CN 101355585A
Authority
CN
China
Prior art keywords
message
master unit
clear text
protocol
system master
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CNA2008102105854A
Other languages
Chinese (zh)
Other versions
CN101355585B (en
Inventor
刘宗颖
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
ZTE Corp
Original Assignee
ZTE Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by ZTE Corp filed Critical ZTE Corp
Priority to CN2008102105854A priority Critical patent/CN101355585B/en
Publication of CN101355585A publication Critical patent/CN101355585A/en
Application granted granted Critical
Publication of CN101355585B publication Critical patent/CN101355585B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a system and a method for protecting messages for distributed configuration data communication equipment so as to effectively protect CPU of the distributed configuration data communication equipment. The method comprises the following steps of: analyzing pending messages requiring to be processed by the CPU after the service processing unit receives the message; carrying out protocol analysis to the pending messages to obtain the protocol type of the pending messages; obtaining the utilization rate of the CPU of a system main control unit and a buffer memory; carrying out service quality speed-limiting processing to the message requiring to be processed by the CPU of the system main control unit in the pending messages, according to the utilization rate of the CPU of the system main control unit and the buffer memory; and processing the pending messages according to the protocol type of the pending messages. The system and the method control the speed for transmitting each service processing unit to the main control CPU, thereby avoiding the influence on other normal services because the processing for the messages causes the busyness of the CPU.

Description

A kind of message protection systems of distributed architecture data communication equipment and method
Technical field
The present invention relates to the data communications equipment of distributed structure/architecture, specifically, relate to a kind of message protection systems and method of distributed architecture data communication equipment.
Background technology
Along with Internet development and growth, various internet devices occur in succession.In the convergence-level and the core layer of network, in order to alleviate the requirement of huge traffic carrying capacity to equipment performance, the application of distributed structure/architecture equipment has obtained popularizing.
As shown in Figure 1, distributed structure/architecture mainly is made up of the data channel 130 that reaches between each Service Processing Unit 120 between system master unit 110, some Service Processing Units 120, system master unit 110 and the Service Processing Unit 120, each Service Processing Unit 120 can both independently be finished the processing of certain business, and the unified dispatching management of system resource are finished by system master unit 110, wherein:
System master unit 110, be in charge of and safeguard entire equipment, and to system resource unify the scheduling, last processing and response to the various message of Simple Network Management Protocol agreements such as (simple network management protocol are abbreviated as SNMP) are all here finished;
Service Processing Unit 120, be responsible for to receive data and according to data content carry out such as transmit, on give Service Processing Unit central processing unit (CPU) or processing such as abandon;
Data channel 130: the message between mainly responsible system master unit 110 and Service Processing Unit 120 and each Service Processing Unit 120, exchanges data etc., respectively have any different according to distributed system equipment difference, such as being divided into a plurality of processing units, can handle or the like by special crosspoint as the exchanges data between the Service Processing Unit 120 according to actual conditions.
For the various device in the supervising the network better, various procotols have been developed, as use the time of each equipment in NTP (Network Time Protocol) (network time protocol the is abbreviated as NTP) synchronizing network, use SNMP to realize remote centralized management of the network equipment or the like.
Yet along with continuing to bring out of the network equipment and procotol, utilize procotol also constantly to occur at the attack of the network equipment, as modal " denial of service " (Denial of Service, be abbreviated as DOS) attack (a kind of take by the cpu resource of the equipment of attack, the method that makes other regular traffic be affected even interrupt) or the like by sending a large amount of simulation protocol massages.At these attacks, network has been taked some safeguard measures, as bag speed limit function, and the speed that restriction variety of protocol bag transmitted to CPU is handled on Service Processing Unit, thus reach the purpose of protecting CPU.
At centralized equipment, the technology of present stage employing can realize the protection to CPU more effectively.But in distributed environment, although each Service Processing Unit has obtained protection, from Service Processing Unit CPU to system master unit CPU but without any safeguard measure, but send directly.There is some agreement (as SNMP, NTP etc.), after Service Processing Unit is handled, needs to give the system master unit and further handle, in this process, have following problem:
Because as long as each Service Processing Unit CPU judges whether to be protocol massages such as SNMP or NTP, be to give system master unit CPU on then further to handle, each Service Processing Unit cpu busy percentage may be also very low like this, but the CPU of system master unit may can't bear the heavy load.With the snmp protocol is example: what present snmp management device (manager) end was used always is a kind of by a lot of individual next batch request of reading (GetBulkRequest) message of asking (GetNextRequest) message combinations to form that read, when the management object of asking among the GetBulkRequest does not exist in agency's (agent) management information bank (MIB), after the system master unit still needs intactly to retrieve whole M IB storehouse, could determine that the mib file that need search does not exist.Owing to carry a plurality of request messages in a packet, this will cause the master cpu utilance high, even stop to respond other normal request such as telnet and console mouth etc.
Summary of the invention
Technical problem to be solved by this invention is message protection systems and the corresponding protection method that is to provide a kind of distributed architecture data communication equipment, with the CPU of effective protection distributed architecture data communication equipment.
In order to solve the problems of the technologies described above, the present invention at first provides a kind of message protection systems of distributed architecture data communication equipment, comprises forwarding module, protocol-analysis model, internal services quality module, administration module and protocol process module, wherein:
Described forwarding module is positioned on the Service Processing Unit of described distributed architecture data communication equipment, be used to receive and on send the clear text that needs CPU to handle;
Described protocol-analysis model links to each other with described forwarding module, is used for described clear text is carried out protocal analysis, obtains the protocol type of described clear text;
Described administration module is used to obtain the utilance of described system master unit CPU and buffer memory;
Described internal services quality module, link to each other with described protocol-analysis model and administration module, be used for transmitting described clear text to described protocol process module, and, the message that needs system master unit CPU to handle in the described clear text is carried out the service quality speed limit handle according to the utilance of described system master unit CPU and buffer memory; And
Described protocol process module links to each other with described internal services quality module, is used for the protocol type according to described clear text, and described clear text is handled.
In the aforesaid system, described forwarding module can further link to each other with described protocol process module, is used to feed back the response after described protocol process module is handled described clear text.
In the aforesaid system, described internal services quality module, can utilize the agreement access rate principle of service quality according to the utilance of described system master unit CPU and buffer memory, the described message that needs system master unit CPU to handle be carried out the service quality speed limit handle.
Further, described internal services quality module, after can taking comprehensive balance to described system master unit CPU according to the burst service stream that performance and the described data communications equipment of described system master unit CPU may be faced, committed access rate and the value of being obedient to the burst amount are set, according to described committed access rate and the value of being obedient to the burst amount, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
In order to solve the problems of the technologies described above, the present invention also provides a kind of message protection method of distributed architecture data communication equipment, comprises step:
The Service Processing Unit of distributed architecture data communication equipment is received after the message, analyzes the clear text that needs CPU to handle;
Described clear text is carried out protocal analysis, obtain the protocol type of described clear text;
Obtain the system master unit CPU of described distributed architecture data communication equipment and the utilance of buffer memory;
According to the utilance of described system master unit CPU and buffer memory, the message that needs system master unit CPU to handle in the described clear text is carried out the service quality speed limit handle; And
According to the protocol type of described clear text, described clear text is handled.
In the aforesaid method, described clear text can comprise that broadcast packet, protocol package, destination address are equipment itself or have identified the message that send on the needs.
Further, described clear text can comprise Simple Network Management Protocol message or NTP (Network Time Protocol) message.
In the aforesaid method, can utilize the agreement access rate principle of service quality, the described message that needs system master unit CPU to handle be carried out the service quality speed limit handle according to the utilance of described system master unit CPU and buffer memory.
Further, after can taking comprehensive balance to described system master unit CPU according to the burst service stream that performance and the described data communications equipment of described system master unit CPU may be faced, committed access rate and the value of being obedient to the burst amount are set, according to described committed access rate and the value of being obedient to the burst amount, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
In the aforesaid method, when described clear text is handled, can further carry out correctness inspection and version match to described clear text.
Compared with prior art; the invention provides a kind of in the equipment of distributed structure/architecture the message protection mechanism based on service quality (QOS); in conjunction with on each Service Processing Unit at the speed limit of variety of protocol message, thereby control the speed of sending master cpu on each Service Processing Unit message.After Service Processing Unit CPU and master cpu protected, avoided because the processing of message causes the busy influence to other regular traffic of CPU.
Description of drawings
Fig. 1 is the framework schematic diagram of distributed structure/architecture.
Fig. 2 is the composition schematic diagram of system embodiment of the present invention.
Fig. 3 is the schematic flow sheet of the inventive method embodiment.
Embodiment
Describe embodiments of the present invention in detail below with reference to drawings and Examples, how the application technology means solve technical problem to the present invention whereby, and the implementation procedure of reaching technique effect can fully understand and implements according to this.
Fig. 2 shows the composition intention of message protection systems one embodiment that the present invention is based on internal services quality (QOS) Flow Control; this system embodiment comprises: forwarding module 210, protocol-analysis model 220, administration module 230, inner QOS module 240 and protocol process module 250, wherein:
Forwarding module 210 is positioned on each Service Processing Unit, is used to receive and handle the message that this Service Processing Unit receives.If be the correct message that can normally transmit, then search and transmit, transmit according to Query Result after the routing table, abandon wrong message; If message is broadcast packet, protocol package, perhaps the destination address of message is an equipment itself, and perhaps other business has identified the clear text that needs transmitted to CPU to handle, and then gives Service Processing Unit CPU in the elder generation and handles; Give system master unit CPU if Service Processing Unit CPU can not handle on further and handle (as SNMP);
Protocol-analysis model 220 links to each other with forwarding module 210, is used for the clear text that send on the forwarding module 210 is analyzed and preliminary treatment, analyzes the protocol type of this clear text; As User Datagram Protoco (UDP) (UDP) port numbers is 161 or 162 message, sends to protocol process module 250 and carries out the processing of snmp protocol; Protocol-analysis model 220 operates mainly on each Service Processing Unit;
Administration module 230, link to each other with inner QOS module 240, be mainly used in and deposit into capable monitoring management system master unit CPU is gentle, so that system grasps the utilance of system master unit CPU and buffer memory in real time, according to the utilance of system terminal unit CPU and buffer memory, auxiliary internal QOS module 240 is finished the QOS speed limit of message is handled;
Inner QOS module 240, be operated in each Service Processing Unit CPU between the system master unit CPU, link to each other with protocol-analysis model 220 and administration module 230, be mainly used in the system master unit CPU that obtains according to administration module 230 and the utilance of buffer memory, the message of giving system master unit CPU on the needs carried out the QOS speed limit handle; In distributed structure/architecture, after protocol-analysis model 220 is finished analysis to message, if the protocol massages that Service Processing Unit can not be handled, send system master unit CPU to handle on then needing further, speed limit effect by this QOS module 230 has limited the speed of delivering to system master unit CPU message from Service Processing Unit CPU;
Protocol process module 250, link to each other with inner QOS module 240, at first message is carried out correctness inspection and version match, then carry out respective handling for correct clear text, respond if desired, then produce the equipment that respective response sends to the request of transmission, such as for the SNMP message, finish the task of SNMP agent, after correctness inspection and version match are passed through, handle according to SNMP request (request) message that SNMP manager sends, and according to the SNMP response (response) of result feedback, feed back to the SNMPmanager that sends SNMP request message by forwarding module 210, perhaps initiatively send snmp trap (trap) message to SNMP manager.
Though foregoing is that example describes technical scheme of the present invention with the snmp protocol message, the present invention is not limited to the clear text of snmp protocol, and it should comprise protocol massages that all need carry out similar processing such as Network Time Protocol message or the like.
In conjunction with Fig. 1 and Fig. 2, Fig. 3 shows the flow chart of the inventive method one embodiment, and this embodiment comprises the steps:
Step 310, forwarding module 210 on the Service Processing Unit 120 is after port receives message, message is analyzed, if for needing the normal message of transmitting would search transmit, routing table, and transmit or abandon according to forwarding result who searches and route results, if be the message that needs further to handle, as broadcast packet, protocol package, perhaps the destination address of message is an equipment itself, perhaps other business has identified the clear text that needs transmitted to CPU to handle, and then handles via giving Service Processing Unit CPU on the protocol-analysis model 220;
Step 320, after protocol-analysis model 220 receives the clear text of forwarding module 210 forwardings, analyze the protocol type of clear text, and data are handled (as can different messages being issued different processing units according to purpose MAC, IP address, source, destination slogan in the Ethernet) according to the processing mode that pre-defines; Be the UDP message such as what protocol-analysis model 220 analyzed that forwarding module 210 transmits, and port numbers is 161 and 162 o'clock, what then forwarding module 210 was transmitted is the snmp protocol message, need give protocol process module 250 on inner QOS module 240 and handle accordingly; For the message that Service Processing Unit CPU can not handle, need system master unit CPU to handle, this part message is transmitted to inner QOS module 240 via protocol-analysis model 220;
Step 330, inner QOS module 240 is utilized agreement access rate (the CommittedAccess Rate of QOS, be abbreviated as CAR) principle on send the message of system master unit CPU to carry out speed limit to handle, available a kind of speed limit mode is provided with committed access rate (Committed Information Rate after such as the burst service stream that may face according to performance and the equipment of CPU CPU being taken comprehensive balance, be abbreviated as CIR) and be obedient to burst amount (or claiming token bucket size) (Conformed burst size, be abbreviated as CBS) value, with the snmp protocol message is example, and its mode of operation is:
Step 3a sets a CIR and CBS bucket, and puts into token by CIR in the CBS bucket; If snmp protocol message process, the then corresponding minimizing of token in the CBS bucket are arranged simultaneously; Corresponding how many tokens of concrete each message can be provided with according to actual conditions;
Step 3b, when also having token in the CBS bucket, inner QOS module 240 is given system master unit CPU with the snmp protocol message on directly;
Step 3c, when not having token in the CBS bucket, inner QOS module 240 is called the utilance that administration module 230 is checked current system master unit CPU, when the utilance of system master unit CPU less (less than certain default threshold values M), inner QOS module 240 can be by the token of disposable injection some (T) in the CBS bucket, send on snmp protocol bag normal guaranteeing, if the utilance of current system master unit CPU higher (more than or equal to threshold value M), then call administration module 230 and check the buffer memory of current system master unit, if also have enough buffer memorys, then inner QOS module 240 is got up snmp protocol bag buffer memory, giving system master unit CPU on waiting for when in the CBS bucket token being arranged again handles, if system master unit caches deficiency, then inner QOS module 240 abandons protocol massages;
Step 340, after protocol process module 250 receives the clear text of inner QOS module 240 forwardings, this message is carried out validity checking, if check failure then direct dropping packets, if validity checking is passed through, then clear text is handled, then produced a corresponding response (response) if desired, by calling the server that forwarding module 210 sends to respective request (request) according to result according to the protocol type of clear text.
The present invention is directed to the distributed structure/architecture system, the QOS speed limit is set between each Service Processing Unit and master control, give master control simultaneously and busy some other important service that influence of master cpu occur thereby alleviated a plurality of Service Processing Units.The present invention is an example with SNMP, but is not limited to snmp protocol message, needs in all distributed systems to send the speed limit of other protocol message of master control to handle from Service Processing Unit, all in aforementioned thought range of the present invention.
Though the disclosed execution mode of the present invention as above, the execution mode that described content just adopts for the ease of understanding the present invention is not in order to limit the present invention.Technical staff in any the technical field of the invention; under the prerequisite that does not break away from the disclosed spirit and scope of the present invention; can do any modification and variation what implement in form and on the details; but scope of patent protection of the present invention still must be as the criterion with the scope that appending claims was defined.

Claims (10)

1, a kind of message protection systems of distributed architecture data communication equipment is characterized in that, comprises forwarding module, protocol-analysis model, internal services quality module, administration module and protocol process module, wherein:
Described forwarding module is positioned on the Service Processing Unit of described distributed architecture data communication equipment, be used to receive and on send the clear text that needs CPU to handle;
Described protocol-analysis model links to each other with described forwarding module, is used for described clear text is carried out protocal analysis, obtains the protocol type of described clear text;
Described administration module is used to obtain the utilance of described system master unit CPU and buffer memory;
Described internal services quality module, link to each other with described protocol-analysis model and administration module, be used for transmitting described clear text to described protocol process module, and, the message that needs system master unit CPU to handle in the described clear text is carried out the service quality speed limit handle according to the utilance of described system master unit CPU and buffer memory; And
Described protocol process module links to each other with described internal services quality module, is used for the protocol type according to described clear text, and described clear text is handled.
2, the system as claimed in claim 1 is characterized in that:
Described forwarding module further links to each other with described protocol process module, is used to feed back the response after described protocol process module is handled described clear text.
3, the system as claimed in claim 1 is characterized in that:
Described internal services quality module according to the utilance of described system master unit CPU and buffer memory, utilizes the agreement access rate principle of service quality, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
4, system as claimed in claim 2 is characterized in that:
Described internal services quality module, after the burst service stream that may face according to performance and the described data communications equipment of described system master unit CPU takies comprehensive balance to described system master unit CPU, committed access rate and the value of being obedient to the burst amount are set, according to described committed access rate and the value of being obedient to the burst amount, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
5, a kind of message protection method of distributed architecture data communication equipment is characterized in that, comprises step:
The Service Processing Unit of distributed architecture data communication equipment is received after the message, analyzes the clear text that needs CPU to handle;
Described clear text is carried out protocal analysis, obtain the protocol type of described clear text;
Obtain the system master unit CPU of described distributed architecture data communication equipment and the utilance of buffer memory;
According to the utilance of described system master unit CPU and buffer memory, the message that needs system master unit CPU to handle in the described clear text is carried out the service quality speed limit handle; And
According to the protocol type of described clear text, described clear text is handled.
6, method as claimed in claim 5 is characterized in that:
Described clear text comprises that broadcast packet, protocol package, destination address are equipment itself or have identified the message that send on the needs.
7, method as claimed in claim 6 is characterized in that:
Described clear text comprises Simple Network Management Protocol message or NTP (Network Time Protocol) message.
8, method as claimed in claim 5 is characterized in that:
According to the utilance of described system master unit CPU and buffer memory, utilize the agreement access rate principle of service quality, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
9, method as claimed in claim 8 is characterized in that:
After the burst service stream that may face according to performance and the described data communications equipment of described system master unit CPU takies comprehensive balance to described system master unit CPU, committed access rate and the value of being obedient to the burst amount are set, according to described committed access rate and the value of being obedient to the burst amount, the described message that needs system master unit CPU to handle is carried out the service quality speed limit handle.
10, method as claimed in claim 5 is characterized in that, when described clear text is handled, further described clear text is carried out correctness inspection and version match.
CN2008102105854A 2008-09-02 2008-09-02 System and method for protecting information of distributed architecture data communication equipment Active CN101355585B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008102105854A CN101355585B (en) 2008-09-02 2008-09-02 System and method for protecting information of distributed architecture data communication equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008102105854A CN101355585B (en) 2008-09-02 2008-09-02 System and method for protecting information of distributed architecture data communication equipment

Publications (2)

Publication Number Publication Date
CN101355585A true CN101355585A (en) 2009-01-28
CN101355585B CN101355585B (en) 2011-05-11

Family

ID=40308173

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008102105854A Active CN101355585B (en) 2008-09-02 2008-09-02 System and method for protecting information of distributed architecture data communication equipment

Country Status (1)

Country Link
CN (1) CN101355585B (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102164083A (en) * 2011-04-18 2011-08-24 中兴通讯股份有限公司 Method and device for refreshing token bucket
CN102821423A (en) * 2011-06-09 2012-12-12 中兴通讯股份有限公司 Method and device for receiving messages
CN103812687A (en) * 2012-11-15 2014-05-21 华为技术有限公司 Protective method and device of processor
CN105978774A (en) * 2016-07-14 2016-09-28 杭州迪普科技有限公司 Access authentication method and device
CN106254266A (en) * 2016-08-17 2016-12-21 中国联合网络通信集团有限公司 A kind of message processing method and the network equipment
CN106911557A (en) * 2017-01-17 2017-06-30 腾讯科技(深圳)有限公司 Method for message transmission and device

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100344171C (en) * 2004-09-23 2007-10-17 华为技术有限公司 Radio network frame and method of implementing data transmission using said radio network frame
CN101110972B (en) * 2006-07-18 2010-05-12 华为技术有限公司 SIP message dispensing and processing method and system in distributed structure

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102164083A (en) * 2011-04-18 2011-08-24 中兴通讯股份有限公司 Method and device for refreshing token bucket
CN102164083B (en) * 2011-04-18 2016-02-10 中兴通讯股份有限公司 The method for refreshing of token bucket and device
CN102821423A (en) * 2011-06-09 2012-12-12 中兴通讯股份有限公司 Method and device for receiving messages
CN102821423B (en) * 2011-06-09 2018-03-16 青岛裕华电子科技有限公司 Message method of reseptance and device
CN103812687A (en) * 2012-11-15 2014-05-21 华为技术有限公司 Protective method and device of processor
CN103812687B (en) * 2012-11-15 2017-12-15 华为技术有限公司 The means of defence and equipment of processor
CN105978774A (en) * 2016-07-14 2016-09-28 杭州迪普科技有限公司 Access authentication method and device
CN105978774B (en) * 2016-07-14 2019-06-07 杭州迪普科技股份有限公司 A kind of method and apparatus of access authentication
CN106254266A (en) * 2016-08-17 2016-12-21 中国联合网络通信集团有限公司 A kind of message processing method and the network equipment
CN106254266B (en) * 2016-08-17 2020-02-04 中国联合网络通信集团有限公司 Message processing method and network equipment
CN106911557A (en) * 2017-01-17 2017-06-30 腾讯科技(深圳)有限公司 Method for message transmission and device

Also Published As

Publication number Publication date
CN101355585B (en) 2011-05-11

Similar Documents

Publication Publication Date Title
US8773999B2 (en) Distributed chassis architecture having integrated service appliances
CN101355585B (en) System and method for protecting information of distributed architecture data communication equipment
CN101815032B (en) Method for classifying and isolating information based on integrated network security service architecture
CN105471907B (en) A kind of virtual firewall transfer control method and system based on Openflow
EP3720075B1 (en) Data transmission method and virtual switch
Xu et al. Minimizing flow statistics collection cost using wildcard-based requests in SDNs
CN108566342A (en) Multi-service flow separate system based on SDN frameworks and streamed data processing method
Hyun et al. Real‐time and fine‐grained network monitoring using in‐band network telemetry
NO20065991L (en) Group communication system and method for group call processing based on CDMA 2000 high speed packet data network
CN101719850B (en) Device and method for carrying out statistics on Ethernet packet loss rate as well as message switching device
CN101237332A (en) Billing method, billing system and traffic statistical device
CN101001249A (en) Method and device for preventing IGMP message attack
CN111294291A (en) Protocol message processing method and device
WO2015184586A1 (en) Openflow communication method, system, controller, and service gateway
CN101390361A (en) Dynamic flow control method and system
US20230300051A1 (en) In-band Edge-to-Edge Round-Trip Time Measurement
CN102984031A (en) Method and device for allowing encoding equipment to be safely accessed to monitoring and control network
JP4678652B2 (en) P2P traffic monitoring control apparatus and method
CN102546364A (en) Network data distribution method and device
CN114598413A (en) Safe distributed control system supporting time sensitive network function
Mogul Network locality at the scale of processes
US8717925B2 (en) Testing TCP connection rate
CN101127690A (en) Identification method for next generation of network service traffic
CN102480471B (en) Method for realizing QoS (quality of service) processing in monitoring RRPP (rapid ring protection protocol) ring and network node
US20120243543A1 (en) Network System and Communication Device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant