CN101557541B - Data package transmission method, system and device thereof - Google Patents

Data package transmission method, system and device thereof Download PDF

Info

Publication number
CN101557541B
CN101557541B CN2009101437537A CN200910143753A CN101557541B CN 101557541 B CN101557541 B CN 101557541B CN 2009101437537 A CN2009101437537 A CN 2009101437537A CN 200910143753 A CN200910143753 A CN 200910143753A CN 101557541 B CN101557541 B CN 101557541B
Authority
CN
China
Prior art keywords
packet
port
address
switch
access control
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN2009101437537A
Other languages
Chinese (zh)
Other versions
CN101557541A (en
Inventor
况伟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CN2009101437537A priority Critical patent/CN101557541B/en
Publication of CN101557541A publication Critical patent/CN101557541A/en
Application granted granted Critical
Publication of CN101557541B publication Critical patent/CN101557541B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Small-Scale Networks (AREA)

Abstract

The invention discloses a data package transmission method which comprises the following steps: a data package forwarding mode and a data filtering strategy are configured by an exchange device; the exchange device receives a data package from source user equipment by a port, and the data package contains a service identification and a target media access control (MAC) address; the exchange devicejudges whether the target MAC address is bound with a port, if so, whether the data package is filtered or not is judged according to the service identification of the data package, and if not, the data package is sent to target user equipment by the port. The invention realizes selective two-layer mutual communication or two-layer separation to optical network units (ONUs) belonging to a same optical line terminal (OLT) according to the service identification in an Ethernet passive optical network (EPON) system. The name of the invention is the data package transmission method and the systemand the device thereof.

Description

Data package transmission method, system and device
Technical field
The present invention relates to communication technical field, relate in particular to a kind of data package transmission method, system and device.
Background technology
In EPON (Ethernet Passive Optical Network, Ethernet passive optical network) system, OLT (Optical Line Terminal; Optical line terminal) uply inserts key Ethernet through switch; Descendingly tell some optical fiber through optical splitter, every optical fiber inserts an ONU (Optical NetworkUnit, optical network unit); Each ONU is descending to be connected with subscriber equipmenies such as PC (Personal Computer, PC) or telephone plants.After user data got into ONU by subscriber equipment, ONU sent to OLT with it through uplink optical fiber, and OLT with the up switch that sends to of user data, sends to other OLT or key Ethernet by switch with user data more at last.Be illustrated in figure 1 as a typical EPON network scenarios sketch map; In this application scenarios; OLT1, OLT2, OLT3 are up to be connected with switch through P1, P2, P3 port respectively; OLT1 is descending to be connected with ONU2 with ONU1 respectively, and ONU1 is descending to be connected with Phone1 with PC1, and ONU2 is descending to be connected with Phone2 with PC2 respectively.
In the prior art; Switch inside comprises a register; Write down the packet forward mode that switch is followed when transmitting packet in the register, the default data forward mode that writes down in the register is: can not the packet that port is received be sent by same port.Therefore, after switch is received the packet from OLT, can only transmit to other ports.For example; In scene as shown in Figure 1; Switch receives through the P1 port after the packet from OLT1 that even the corresponding purpose subscriber equipment of packet also belongs to OLT1, switch can not send back to OLT1 through the P1 port with packet; So just make and can't carry out double layer intercommunication between ONU1 and the ONU2 under the OLT1, promptly subscriber equipment under the ONU1 and the subscriber equipment under the ONU2 can't directly carry out the mutual of business datum through OLT1.
In order to expand the EPON systemic-function; Make the ONU that belongs to same OLT can carry out double layer intercommunication; Can revise switch internal storage data recorded bag and transmit rule; Packet is transmitted rules modification send by same port for the packet that allows port is received, perhaps can (Passive Optical Network: passive optical-fiber network) chip be shared local area network (LAN) and is simulated by the PON of OLT.These schemes can finally realize belonging to the double layer intercommunication of the different ONU of an OLT.For example, in scene as shown in Figure 1, PC1 and PC2 use the broadband access network business to carry out network data exchange, and it is mutual that speech data is carried out in Phone1 and Phone2 use speech business.Existing technical scheme perhaps can realize ONU1 and ONU2 double layer intercommunication, and this moment, PC1 and PC2 can carry out network data exchange, and it is mutual that Phone1 and Phone2 also can carry out speech data; Perhaps can realize two layers of isolation of ONU1 and ONU2, this moment, PC1 and PC2 can't carry out network data exchange, and it is mutual that Phone1 and Phone2 also can't carry out speech data.
But, in a lot of actual application scenarioss, require optionally the ONU that belongs to same OLT to be carried out double layer intercommunication or two layers of isolation according to different business types.For example, be example also with scene shown in Figure 1, require PC1 and PC2 can not carry out network data exchange, but simultaneously Phone1 and Phone2 can to carry out speech data mutual.Promptly require when needing the transmitting network data bag between ONU1 and the ONU2, to realize two layers of isolation of ONU1 and ONU2; When needing the transmitting audio data bag between ONU1 and the ONU2, realize the double layer intercommunication of ONU1 and ONU2.In the prior art, also can't optionally carry out double layer intercommunication or two layers of isolation according to type of service to the ONU that belongs to same OLT.
Summary of the invention
The invention provides a kind of data package transmission method, system and device, realized in the EPON system, optionally the ONU that belongs to same OLT is carried out double layer intercommunication or two layers of isolation according to service identification.
The invention provides a kind of data pack transmission method; Be applied to comprise in the system of switch and at least two subscriber equipmenies; Said at least two subscriber equipmenies belong to same OLT, and said OLT is connected with said switch, said method comprising the steps of:
The packet forward mode of the part or all of port in the said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards;
Said port in switch receives and comprises service identification and target MAC (Media Access Control) address packet from source user equipment; Then judge said target MAC (Media Access Control) address whether with said port binding; If judged result is said target MAC (Media Access Control) address and said port binding; Then the service identification according to said packet judges whether said packet is filtered, if judged result for said packet not being filtered, then sends to the purpose subscriber equipment with said packet through said port.
Wherein, said switch is provided with said packet forward mode in register, the Packet Filtering strategy is set in the Policy Table of logic module.
Wherein, saidly judge whether said target MAC (Media Access Control) address comprises with said port binding:
Whether the said target MAC (Media Access Control) address of inquiry is corresponding with said port in the binding relationship record of the MAC Address of subscriber equipment and port; If said target MAC (Media Access Control) address is corresponding with said port; Then judge said target MAC (Media Access Control) address and said port binding; If said target MAC (Media Access Control) address is not corresponding with said port, then judge said target MAC (Media Access Control) address not with said port binding.
Wherein, said service identification according to said packet judges whether said packet filtered and comprises:
If the service identification of said packet is the intercommunication type identification, then judge and said packet is not filtered, if the service identification of said packet is the type of isolation sign, then judges said packet is filtered.
Wherein, the service identification of said packet is the VLAN numbering of said packet, and said intercommunication type identification is numbered corresponding to a series of VLAN, and said type of isolation sign is numbered corresponding to another serial VLAN,
Said service identification according to said packet judges whether said packet filtered and comprises:
The VLAN numbering of judging said packet is corresponding to intercommunication type identification or type of isolation sign; If the VLAN of said packet numbering is corresponding to the intercommunication type identification; Then judge and said packet is not filtered; If the VLAN of said packet numbering is then judged said packet is filtered corresponding to the type of isolation sign.
Wherein, also comprise:
If judged result be said target MAC (Media Access Control) address not with said port binding, said switch sends to said target MAC (Media Access Control) address corresponding OLT or key Ethernet with said packet.
Wherein, also comprise:
If judged result is for to filter said packet, said switch abandons said packet or said packet is sent to key Ethernet.
The invention provides a kind of switch, be applied to comprise that in the system of said switch and at least two subscriber equipmenies, said at least two subscriber equipmenies belong to same OLT, said OLT is connected with said switch, and said switch comprises:
The unit is set; Be used in advance that the packet forward mode of the part or all of port of said switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards;
Receiving element is used for receiving the packet from source user equipment through said port, comprises service identification and target MAC (Media Access Control) address in the said packet;
First judging unit is connected with said receiving element, the target MAC (Media Access Control) address that is used to judge the packet that said receiving element receives whether with said port binding;
Second judging unit is connected respectively with said first judging unit with the said unit that is provided with, and is used for if the judged result of said first judging unit is for being to judge whether said packet is filtered according to the said Packet Filtering strategy that the unit setting is set;
Transmitting element is connected with said second judging unit with said receiving element, is used for if the judged result of said second judging unit is not, and the packet that said receiving element is received sends to the purpose subscriber equipment through said port.
Wherein, The said unit that is provided with; Specifically be used for said packet forward mode being set, the Packet Filtering strategy be set for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module at register.
Wherein, Said first judging unit; Specifically be used at the MAC Address of subscriber equipment whether corresponding with the said target MAC (Media Access Control) address of binding relationship record inquiry of port with said port, corresponding as if said target MAC (Media Access Control) address with said port, then judge said target MAC (Media Access Control) address and said port binding; If said target MAC (Media Access Control) address is not corresponding with said port, then judge said target MAC (Media Access Control) address not with said port binding.
Wherein, Said second judging unit specifically is used for then judging and said packet not being filtered if the service identification of said packet is the intercommunication type identification; If the service identification of said packet is the type of isolation sign, then judges said packet is filtered.
Wherein, the service identification of said packet is the VLAN numbering of said packet, and said intercommunication type identification is numbered corresponding to a series of VLAN, and said type of isolation sign is numbered corresponding to another serial VLAN,
Said second judging unit; The VLAN numbering that specifically is used to judge said packet is corresponding to intercommunication type identification or type of isolation sign; If the VLAN of said packet numbering is corresponding to the intercommunication type identification; Then judge and said packet is not filtered, if the VLAN of said packet numbering is then judged said packet is filtered corresponding to the type of isolation sign.
Wherein, said transmitting element also is connected with said first judging unit, is used for if the judged result of said first judging unit for not, sends to said target MAC (Media Access Control) address corresponding OLT or key Ethernet with said packet.
Wherein, said transmitting element also is used for if the judged result of said second judging unit is for being to abandon said packet or said packet is sent to key Ethernet.
Among the present invention; Switch is being confirmed from after the target MAC (Media Access Control) address of the packet of source user equipment and the port binding that receives this packet; Service identification according to packet determines whether packet is filtered; The packet that will need not filter then sends to the purpose subscriber equipment through receiving port, thereby has realized in the EPON system, optionally the ONU that belongs to same OLT is carried out double layer intercommunication or two layers of isolation according to service identification.
Description of drawings
Fig. 1 is a kind of EPON scene sketch map;
Fig. 2 is a kind of data package transmission method flow chart among the present invention;
Fig. 3 is a kind of data package transmission method flow chart among the present invention;
Fig. 4 is a kind of data package transmission method flow chart among the present invention;
Fig. 5 is a kind of data package transmission method flow chart among the present invention;
Fig. 6 is a kind of data package transmission method flow chart among the present invention;
Fig. 7 is the structure chart of a kind of switch among the present invention.
Embodiment
The present invention mainly provides a kind of method; Main thought is: among the present invention; Switch is being confirmed from after the target MAC (Media Access Control) address of the packet of source user equipment and the port binding that receives this packet; Service identification according to packet determines whether packet is filtered; The packet that will need not filter then sends to the purpose subscriber equipment through receiving port, thereby has realized in the EPON system, optionally the ONU that belongs to same OLT is carried out double layer intercommunication or two layers of isolation according to service identification.
The present invention proposes a kind of data package transmission method is applied to comprise in the system of switch and at least two subscriber equipmenies; Said at least two subscriber equipmenies belong to same OLT; Said OLT is connected with said switch, and said method is as shown in Figure 2, may further comprise the steps:
Step 200; The packet forward mode of the part or all of port in the switch is set to allow packet to forward from its receiving port in advance, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
Concrete, switch can be provided with the packet forward mode in register.Generally can write down the data bit corresponding to different port in the register, be invalid bit as if the data bit corresponding to certain port, and the packet that expression receives through this port can not be sent by this port.Under default situations, all be set to invalid bit corresponding to the data bit of different port.In the technical scheme of the present invention, switch needs and will all be set to significance bit corresponding to the data bit of different port, promptly allows packet to send from receiving port.
In addition, switch can be provided with the Packet Filtering strategy for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module.Concrete, switch can write down the corresponding relation of different service sign and treatment type in the Policy Table, and it is the intercommunication type that some service identification corresponding processing type is set, and it is type of isolation that other service identification corresponding processing type is set.Switch can be handled packet according to recorded corresponding relation among the Policy Table, and promptly allowing service identification is that to return, do not allow service identification from receiving port be that the packet of type of isolation sign returns from receiving port for the packet of intercommunication type identification.
Step 201, switch receives the packet from source user equipment through port, comprises service identification and target MAC (Media Access Control) address in the packet.
Step 202; Switch judge target MAC (Media Access Control) address whether with this port binding; If judged result is target MAC (Media Access Control) address and this port binding; Service identification according to packet judges whether packet is filtered, if judged result for said packet not being filtered, sends to the purpose subscriber equipment with packet through this port.
Concrete; Switching equipment can be in the binding relationship record of the MAC Address of subscriber equipment and port the search purposes MAC Address whether corresponding with this port; If target MAC (Media Access Control) address is corresponding with this port; Then judge target MAC (Media Access Control) address and this port binding, if said target MAC (Media Access Control) address is not corresponding with this port, then judge target MAC (Media Access Control) address not with this port binding.
Concrete, the service identification of packet can be VLAN (Virtual Local Area Network, a VLAN) numbering.The intercommunication type identification is numbered corresponding to a series of VLAN, and the type of isolation sign is numbered corresponding to another serial VLAN,
Then judge whether packet filtered and comprise according to the service identification of packet:
The VLAN numbering of judgment data bag is corresponding to intercommunication type identification or type of isolation sign; If the VLAN of packet numbering is corresponding to the intercommunication type identification; Then judge and packet is not filtered, if the VLAN of packet numbering is then judged packet is filtered corresponding to the type of isolation sign.
Among the present invention; Switch is being confirmed from after the target MAC (Media Access Control) address of the packet of source user equipment and the port binding that receives this packet; Service identification according to packet determines whether packet is filtered; The packet that will need not filter then sends to the purpose subscriber equipment through receiving port, thereby has realized in the EPON system, optionally the ONU that belongs to same OLT is carried out double layer intercommunication or two layers of isolation according to service identification.
Concrete; The present invention proposes a kind of data package transmission method; Be applied to comprise that said at least two subscriber equipmenies belong to same OLT in the EPON system of switch and at least two subscriber equipmenies and at least one OLT, said OLT is connected through first port with said switch; As shown in Figure 3, said method comprising the steps of:
Step 300, switch are provided with packet forward mode and Packet Filtering strategy.
The packet forward mode of the part or all of port of switch in can said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
Concrete, switch can be provided with the packet forward mode in register.Generally can write down the data bit corresponding to different port in the register, be invalid bit as if the data bit corresponding to certain port, and the packet that expression receives through this port can not be sent by this port.Under default situations, all be set to invalid bit corresponding to the data bit of different port.In the technical scheme of the present invention, switch needs and will all be set to significance bit corresponding to the data bit of different port, promptly allows packet to send from receiving port.
In addition, switch can be provided with the Packet Filtering strategy for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module.
Step 301, source OLT receives the packet from source user equipment, comprises service identification and target MAC (Media Access Control) address in the packet.
Step 302, source OLT sends to switch through first port with packet.
Step 303, switch judge target MAC (Media Access Control) address whether with first port binding, if judged result is changeed step 304 for being, if judged result is not for, commentaries on classics step 307.
Concrete, when setting up in the EPON system, switch can write down the MAC Address of each subscriber equipment and the binding relationship of port.Switch can according to the binding relationship of MAC Address and the port of the subscriber equipment of record judge target MAC (Media Access Control) address whether with first port binding.
Step 304, switch judges whether packet is filtered according to the service identification of packet, for not, changes step 305 as if judged result, if judged result is for being commentaries on classics step 308.
Concrete, switch can judge whether packet is filtered according to data recorded packet filtering strategy among the Policy Table.
Step 305, switch sends to source OLT with packet through first port.
Step 306, source OLT sends to the purpose subscriber equipment with packet.Flow process finishes.
Concrete, OLT can write down the corresponding relation of MAC Address of MAC Address and the subscriber equipment under each ONU of each ONU that belongs to self.Source OLT is after receiving the packet of AMSU auto-manual switching unit; Can obtain the corresponding purpose ONU address of target MAC (Media Access Control) address according to the recorded address corresponding relation; And packet is sent to purpose ONU, and finally packet is sent to the purpose subscriber equipment by purpose ONU according to purpose ONU address.
Step 307, switch sends to target MAC (Media Access Control) address corresponding OLT or key Ethernet with packet.
Concrete, switch can judge target MAC (Media Access Control) address whether with self other port binding, if target MAC (Media Access Control) address and other port binding of self, switch can directly send to packet the destination device of target MAC (Media Access Control) address correspondence; If target MAC (Media Access Control) address not with self other port binding, then switch need send to the purpose subscriber equipment with packet through key Ethernet according to the rule of setting.
Step 308, switch is according to the routing rule handle packet of setting.
Concrete, switch can perhaps send to the relevant device in the key Ethernet with packet through key Ethernet with directly abandoning this packet according to the rule of setting, and handles this packet by relevant device.
Concrete, the present invention proposes a kind of data package transmission method, be applied in the EPON system as shown in Figure 1; In this system, the service identification that network packet is carried is VLAN1, and the MAC Address of PC1 and PC2 is respectively MAC1 and MAC2; Require PC1 and PC2 can not carry out network data exchange in this system, in certain actual scene, PC1 sends network packet to PC2; Said method is as shown in Figure 4, may further comprise the steps:
Step 400, switch are provided with packet forward mode and Packet Filtering strategy.
The packet forward mode of the part or all of port of switch in can said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
In addition, switch can be provided with the Packet Filtering strategy for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module.Further, switch need identify VLAN1 in the Policy Table corresponding to type of isolation.
Step 401, ONU1 receives the network packet from PC1, carries service identification VLAN1 in the network packet, the address MAC1 of PC1 and the address MAC2 of PC2.
Step 402, ONU1 sends to OLT1 with this network packet.
Step 403, OLT1 sends to switch through the P1 port with this network packet.
Step 404, switch is judged destination address MAC2 and P1 port binding, learns that according to service identification VLAN1 needs filter this network packet, promptly stops this network packet to be returned from the P1 port.
Step 405, switch is handled this network packet according to the routing rule of setting.
Concrete, switch can directly abandon this network packet according to the rule of setting, and perhaps this network packet is sent to the relevant device in the key Ethernet through key Ethernet, handles this network packet by relevant device.
Concrete, the present invention proposes a kind of data package transmission method, be applied in the EPON system as shown in Figure 1; In this system, the service identification that VoP carries is VLAN2, and the MAC Address of Phone1 and Phone2 is respectively MAC3 and MAC4; It is mutual to require Phone1 and Phone2 can carry out speech data in this system, and in certain actual scene, Phone1 sends VoP to Phone2; Said method is as shown in Figure 5, may further comprise the steps:
Step 500, switch are provided with packet forward mode and Packet Filtering strategy.
The packet forward mode of the part or all of port of switch in can said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
In addition, switch can be provided with the Packet Filtering strategy for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module.Further, switch need be in the Policy Table with VLAN2 corresponding to the intercommunication type identification.
Step 501, ONU1 receives the VoP from Phone1, carries type of service sign VLAN2, the address MAC3 of Phone1 and the address MAC4 of Phone2 in the VoP.
Step 502, ONU1 sends to OLT1 with this VoP.
Step 503, OLT1 sends to switch through the P1 port with this VoP.
Step 504, switch is judged destination address MAC4 and P1 port binding, learning according to service identification VLAN2 does not need this network packet is filtered, and promptly allows this VoP to return from the P1 port.
Step 505, switch sends to OLT1 with this VoP through the P1 port.
Step 506, OLT1 sends to ONU2 with this VoP.
Step 507, ONU2 sends to Phone2 with this VoP.
Concrete, the present invention proposes a kind of data package transmission method, be applied in the EPON system as shown in Figure 1; In this system, the service identification that network packet is carried is VLAN1, and the service identification that VoP carries is VLAN2; The MAC Address of PC1 and PC2 is respectively MAC1 and MAC2, and PC1 and PC2 network enabled business and speech business require PC1 and PC2 can not carry out network data exchange in this system; But it is mutual to carry out speech data, and in certain actual scene, PC1 sends packet to PC2; Said method is as shown in Figure 6, may further comprise the steps:
Step 600, switch are provided with packet forward mode and Packet Filtering strategy.
The packet forward mode of the part or all of port of switch in can said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
In addition, switch can be provided with the Packet Filtering strategy for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module.Further, switch need identify VLAN1 in the Policy Table corresponding to type of isolation, and in the Policy Table with VLAN2 corresponding to the intercommunication type identification.
Step 601, ONU1 receives the packet from PC1, carries service identification in the packet, the address MAC1 of PC1 and the address MAC2 of PC2.
Step 602, ONU1 sends to OLT1 with this packet.
Step 603, OLT1 sends to switch through the P1 port with this VoP.
Step 604; Switch judges whether packet is filtered according to the service identification of packet, if the service identification of packet is VLAN1, then judges packet is filtered; Change step 608; If the service identification of packet is VLAN2, then judge and packet is not filtered, change step 605.
Step 605, switch sends to OLT1 with packet through the P1 port.
Step 606, OLT1 sends to ONU2 with packet.
Step 607, ONU2 sends to PC2 with packet.Flow process finishes.
Step 608, switch is according to the routing rule handle packet of setting.
Concrete, switch can perhaps send to the relevant device in the key Ethernet with packet through key Ethernet with according to the regular directly packet discard of setting, and handles this packet by relevant device.
Invention also provides a kind of switch corresponding with the inventive method, is applied to comprise that in the system of said switch and at least two subscriber equipmenies, said at least two subscriber equipmenies belong to same OLT; Said OLT is connected with said switch, and is as shown in Figure 7, comprises unit 701 is set; Receiving element 702, the first judging units 703, the second judging units 704 and transmitting element 705; Wherein
Unit 701 is set; Be used in advance that the packet forward mode of the part or all of port of switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards.
Concrete; Unit 701 is set; Be used for the packet forward mode being set, the Packet Filtering strategy be set in the Policy Table of logic module for service identification is filtered, is not that the packet of intercommunication type identification filters to service identification for the packet to type of isolation sign at register.
Receiving element 702 is used for receiving the packet from source user equipment through port, comprises service identification and target MAC (Media Access Control) address in the packet.
First judging unit 703 is connected with receiving element 702, the target MAC (Media Access Control) address that is used to judge the packet that receiving element 702 receives whether with said port binding.
Concrete; First judging unit 703; Be used at the MAC Address of subscriber equipment whether corresponding with the binding relationship record search purposes MAC of port with said port, corresponding as if target MAC (Media Access Control) address with said port, then judge target MAC (Media Access Control) address and said port binding; If target MAC (Media Access Control) address is not corresponding with said port, then judge target MAC (Media Access Control) address not with said port binding.
Second judging unit 704 and is provided with unit 701 and is connected respectively with first judging unit 703, is used for if the judged result of first judging unit 703 is for being to judge whether packet is filtered according to the Packet Filtering strategy that unit 701 settings are set.
Concrete, second judging unit 704 is used for then judging and packet not being filtered if the service identification of packet is the intercommunication type identification, if the service identification of packet is the type of isolation sign, then judges packet is filtered.
Further; The service identification of packet can be the VLAN numbering of packet, and the intercommunication type identification is numbered corresponding to a series of VLAN, and the type of isolation sign is corresponding to another serial VLAN numbering; Second judging unit 704; The VLAN numbering that specifically is used to judge said packet is corresponding to intercommunication type identification or type of isolation sign, if the VLAN of packet numbering corresponding to the intercommunication type identification, is then judged and packet do not filtered; If the VLAN of packet numbering is then judged packet is filtered corresponding to the type of isolation sign.
Transmitting element 705; Be connected with second judging unit 704 with receiving element 702; Be used for if the judged result of second judging unit 704 is not; The packet that receiving element 702 is received sends to the purpose subscriber equipment through said port, if the judged result of second judging unit 704 is for being, and packet discard or packet sent to key Ethernet.Transmitting element 705 also is connected with first judging unit 703, is used for if the judged result of first judging unit 703 for not, sends to target MAC (Media Access Control) address corresponding OLT or key Ethernet with packet.
Among the present invention; Switch is being confirmed from after the target MAC (Media Access Control) address of the packet of source user equipment and the port binding that receives this packet; Service identification according to packet determines whether packet is filtered; The packet that will need not filter then sends to the purpose subscriber equipment through receiving port, thereby has realized in the EPON system, optionally the ONU that belongs to same OLT is carried out double layer intercommunication or two layers of isolation according to service identification.
Through the description of above execution mode, those skilled in the art can be well understood to the present invention and can realize by the mode that software adds essential general hardware platform, can certainly pass through hardware, but the former is better execution mode under a lot of situation.Based on such understanding; The part that technical scheme of the present invention contributes to prior art in essence in other words can be come out with the embodied of software product; This computer software product is stored in the storage medium; Comprise that some instructions are with so that a computer equipment (can be personal computer, server, perhaps network equipment etc.) is carried out method of the present invention.
It will be appreciated by those skilled in the art that accompanying drawing is the sketch map of a preferred embodiment, module in the accompanying drawing or flow process might not be that embodiment of the present invention is necessary.
It will be appreciated by those skilled in the art that the module in the device among the present invention can be distributed in the device of embodiment according to the embodiment description, also can carry out respective change and be arranged in the one or more devices that are different from present embodiment.The module of the foregoing description can be merged into a module, also can further split into a plurality of submodules.
More than disclosedly be merely several specific embodiment of the present invention, still, the present invention is not limited thereto, any those skilled in the art can think variation all should fall into protection scope of the present invention.

Claims (14)

1. data package transmission method; Be applied to comprise that in the system of switch and at least two subscriber equipmenies, said at least two subscriber equipmenies belong to same OLT, said OLT is connected with said switch; It is characterized in that, said method comprising the steps of:
The packet forward mode of the part or all of port in the said in advance switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards;
Said port in switch receives and comprises service identification and target MAC (Media Access Control) address packet from source user equipment; Then judge said target MAC (Media Access Control) address whether with said port binding; If judged result is said target MAC (Media Access Control) address and said port binding; Then the service identification according to said packet judges whether said packet is filtered, if judged result for said packet not being filtered, then sends to the purpose subscriber equipment with said packet through said port.
2. the method for claim 1 is characterized in that,
Said switch is provided with said packet forward mode in register, the Packet Filtering strategy is set in the Policy Table of logic module.
3. the method for claim 1 is characterized in that, saidly judges whether said target MAC (Media Access Control) address comprises with said port binding:
Whether the said target MAC (Media Access Control) address of inquiry is corresponding with said port in the binding relationship record of the MAC Address of subscriber equipment and port; If said target MAC (Media Access Control) address is corresponding with said port; Then judge said target MAC (Media Access Control) address and said port binding; If said target MAC (Media Access Control) address is not corresponding with said port, then judge said target MAC (Media Access Control) address not with said port binding.
4. the method for claim 1 is characterized in that, said service identification according to said packet judges whether said packet filtered and comprises:
If the service identification of said packet is the intercommunication type identification, then judge and said packet is not filtered, if the service identification of said packet is the type of isolation sign, then judges said packet is filtered.
5. the method described in claim 4 is characterized in that, the service identification of said packet is the VLAN numbering of said packet, and said intercommunication type identification is numbered corresponding to a series of VLAN, and said type of isolation sign is numbered corresponding to another serial VLAN,
Said service identification according to said packet judges whether said packet filtered and comprises:
The VLAN numbering of judging said packet is corresponding to intercommunication type identification or type of isolation sign; If the VLAN of said packet numbering is corresponding to the intercommunication type identification; Then judge and said packet is not filtered; If the VLAN of said packet numbering is then judged said packet is filtered corresponding to the type of isolation sign.
6. the method for claim 1 is characterized in that, also comprises:
If judged result be said target MAC (Media Access Control) address not with said port binding, said switch sends to said target MAC (Media Access Control) address corresponding OLT or key Ethernet with said packet.
7. the method for claim 1 is characterized in that, also comprises:
If judged result is for to filter said packet, said switch abandons said packet or said packet is sent to key Ethernet.
8. a switch is applied to comprise that in the system of said switch and at least two subscriber equipmenies, said at least two subscriber equipmenies belong to same OLT, and said OLT is connected with said switch, it is characterized in that, said switch comprises:
The unit is set; Be used in advance that the packet forward mode of the part or all of port of said switch is set to allow packet to forward from its receiving port, and for the filtering policy that filters according to the data packet traffic sign need be set from the packet that receiving port forwards;
Receiving element is used for receiving the packet from source user equipment through said port, comprises service identification and target MAC (Media Access Control) address in the said packet;
First judging unit is connected with said receiving element, the target MAC (Media Access Control) address that is used to judge the packet that said receiving element receives whether with said port binding;
Second judging unit is connected respectively with said first judging unit with the said unit that is provided with, and is used for if the judged result of said first judging unit is for being to judge whether said packet is filtered according to the said Packet Filtering strategy that the unit setting is set;
Transmitting element is connected with said second judging unit with said receiving element, is used for if the judged result of said second judging unit is not, and the packet that said receiving element is received sends to the purpose subscriber equipment through said port.
9. switch as claimed in claim 8 is characterized in that,
The said unit that is provided with; Specifically be used for said packet forward mode being set, the Packet Filtering strategy be set for being that the packet of type of isolation sign filters, is not that the packet of intercommunication type identification filters to service identification to service identification in the Policy Table of logic module at register.
10. switch as claimed in claim 8 is characterized in that,
Said first judging unit; Specifically be used at the MAC Address of subscriber equipment whether corresponding with said port with the said target MAC (Media Access Control) address of binding relationship record inquiry of port; If said target MAC (Media Access Control) address is corresponding with said port; Then judge said target MAC (Media Access Control) address and said port binding, if said target MAC (Media Access Control) address is not corresponding with said port, then judge said target MAC (Media Access Control) address not with said port binding.
11. switch as claimed in claim 8 is characterized in that,
Said second judging unit specifically is used for then judging and said packet not being filtered if the service identification of said packet is the intercommunication type identification, if the service identification of said packet is the type of isolation sign, then judges said packet is filtered.
12. switch as claimed in claim 11; It is characterized in that the service identification of said packet is the VLAN numbering of said packet, said intercommunication type identification is numbered corresponding to a series of VLAN; Said type of isolation sign is corresponding to another serial VLAN numbering
Said second judging unit; The VLAN numbering that specifically is used to judge said packet is corresponding to intercommunication type identification or type of isolation sign; If the VLAN of said packet numbering is corresponding to the intercommunication type identification; Then judge and said packet is not filtered, if the VLAN of said packet numbering is then judged said packet is filtered corresponding to the type of isolation sign.
13. switch as claimed in claim 8 is characterized in that,
Said transmitting element also is connected with said first judging unit, is used for if the judged result of said first judging unit for not, sends to said target MAC (Media Access Control) address corresponding OLT or key Ethernet with said packet.
14. switch as claimed in claim 8 is characterized in that,
Said transmitting element also is used for if the judged result of said second judging unit is for being to abandon said packet or said packet is sent to key Ethernet.
CN2009101437537A 2009-05-26 2009-05-26 Data package transmission method, system and device thereof Expired - Fee Related CN101557541B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2009101437537A CN101557541B (en) 2009-05-26 2009-05-26 Data package transmission method, system and device thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2009101437537A CN101557541B (en) 2009-05-26 2009-05-26 Data package transmission method, system and device thereof

Publications (2)

Publication Number Publication Date
CN101557541A CN101557541A (en) 2009-10-14
CN101557541B true CN101557541B (en) 2012-04-18

Family

ID=41175439

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2009101437537A Expired - Fee Related CN101557541B (en) 2009-05-26 2009-05-26 Data package transmission method, system and device thereof

Country Status (1)

Country Link
CN (1) CN101557541B (en)

Families Citing this family (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102905201B (en) * 2012-10-12 2015-08-19 中国联合网络通信集团有限公司 The session service control method of EPON and optical line terminal
CN105743761A (en) * 2014-12-12 2016-07-06 中兴通讯股份有限公司 Method and network equipment for realizing two-layer isolation and three-layer intercommunication of routing interface
CN104506436A (en) * 2014-12-22 2015-04-08 上海斐讯数据通信技术有限公司 Data message sending method for Ethernet passive optical network
CN104734953B (en) * 2015-03-24 2019-07-23 福建星网锐捷网络有限公司 The method, apparatus and interchanger of two layers of message isolation are realized based on VLAN
CN109257266B (en) * 2018-09-13 2021-04-27 武汉长光科技有限公司 Method for expanding PON local area network group based on VXLAN technology

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1521662A (en) * 2003-01-30 2004-08-18 烽火通信科技股份有限公司 Method and apparatus for realizing Ethernet passive optical network system dynamic filtration data base
EP1499155A1 (en) * 2003-07-14 2005-01-19 Samsung Electronics Co., Ltd. Multicast GPON transmission and GEM frame processing method
CN101051923A (en) * 2007-04-05 2007-10-10 中兴通讯股份有限公司 Multicast control method in ether passive optical network
CN201004649Y (en) * 2006-11-14 2008-01-09 上海未来宽带技术及应用工程研究中心有限公司 Device for realizing multicast VLAN merging in GEPON

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1521662A (en) * 2003-01-30 2004-08-18 烽火通信科技股份有限公司 Method and apparatus for realizing Ethernet passive optical network system dynamic filtration data base
EP1499155A1 (en) * 2003-07-14 2005-01-19 Samsung Electronics Co., Ltd. Multicast GPON transmission and GEM frame processing method
CN201004649Y (en) * 2006-11-14 2008-01-09 上海未来宽带技术及应用工程研究中心有限公司 Device for realizing multicast VLAN merging in GEPON
CN101051923A (en) * 2007-04-05 2007-10-10 中兴通讯股份有限公司 Multicast control method in ether passive optical network

Also Published As

Publication number Publication date
CN101557541A (en) 2009-10-14

Similar Documents

Publication Publication Date Title
EP2355374B1 (en) Method, system and optical line terminal for message transmission in an optical communication system
KR100563657B1 (en) Vlan aware shared lan emulation method and device with manageable llid in epon
CN104253735B (en) Optical network unit, communication system and method
CN102307136B (en) Method for processing message and device thereof
CN103119897B (en) Control device, communication system, communication means and on it, record the recording medium of signal procedure
CN101557541B (en) Data package transmission method, system and device thereof
CN101141304B (en) Management method and equipment of ACL regulation
CN101510845B (en) Method and apparatus for forwarding label
KR20070025856A (en) Epon bridge apparatus and method for forwarding thereof
EP3534577B1 (en) Forwarding multicast packets through an extended bridge
CN101877671A (en) Sending method of mirror image message, switch chip and Ethernet router
CN101616094B (en) Method and equipment for acquiring message forwarding path
CN103701679B (en) A kind of method for realizing VLAN conversions
CN101014043B (en) Method for realizing interworking of VoIP service in a same OLT of EPON
CN101227752B (en) Peer to peer communicating method of gigabit passive optical network
CN101635702A (en) Method for forwarding data packet using security strategy
CN1677982B (en) Device and method used for transmitting input frame in network switch
WO2020135705A1 (en) Olt device virtualization method, olt device, and computer-readable medium
CN101453401B (en) Ethernet bridge equipment, MAC address learning method and data packet transmission method
JP2004159019A (en) Extended vlan tag swap system
CN110958502B (en) Method and system for realizing intercommunication between different ONUs in same PON
US9979561B2 (en) Systems and methods for stacking fibre channel switches with fibre channel over ethernet stacking links
CN104253751A (en) Multi-role host-based message transmission method and multi-role host-based message transmission equipment
CN101447927B (en) Method and routing device for three-layer isolation of user terminals
CN101119288B (en) Anti-attack processing method of three-layer ethernet switchboard

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: Xinhua three Technology Co., Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: Huasan Communication Technology Co., Ltd.

CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20120418

Termination date: 20200526