CN101599899A - The access method of employing network address translation (NAT) device for supporting multi-networking and equipment - Google Patents

The access method of employing network address translation (NAT) device for supporting multi-networking and equipment Download PDF

Info

Publication number
CN101599899A
CN101599899A CNA2009100886878A CN200910088687A CN101599899A CN 101599899 A CN101599899 A CN 101599899A CN A2009100886878 A CNA2009100886878 A CN A2009100886878A CN 200910088687 A CN200910088687 A CN 200910088687A CN 101599899 A CN101599899 A CN 101599899A
Authority
CN
China
Prior art keywords
message
outgoing interface
networking
nat
stream table
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CNA2009100886878A
Other languages
Chinese (zh)
Other versions
CN101599899B (en
Inventor
罗琳
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CN2009100886878A priority Critical patent/CN101599899B/en
Publication of CN101599899A publication Critical patent/CN101599899A/en
Application granted granted Critical
Publication of CN101599899B publication Critical patent/CN101599899B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Small-Scale Networks (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses the access method and the equipment of employing network address translation (NAT) device for supporting multi-networking.Method comprises: the networking topological classification and the NAT rule of each public network side outgoing interface of NAT device minute book equipment, NAT device receives the message that the private network main frame is issued public network server, determine the outgoing interface of this message,, message is transmitted according to the networking topological classification and the NAT rule of this outgoing interface.When the present invention has realized that NAT device is supported multiple networking, the visit between private network and public network.

Description

The access method of employing network address translation (NAT) device for supporting multi-networking and equipment
Technical field
The present invention relates to the NAT technology field, be specifically related to the access method and the network address translation apparatus of employing network address translation (NAT) device for supporting multi-networking.
Background technology
Along with the high speed development of the Internet, the IPV4 address resource is exhausted day by day, and in order to make full use of the IPV4 address, network address translation (NAT, Network Address Translation) technology is arisen at the historic moment.When allowing user networking in the private network, the NAT technology uses the private net address of oneself, this private net address is directly used in the visit of private network inside, convert the public network address access the Internet to by the NAT technology during visit public network, one or more public network address can satisfy the demand of a large amount of inter access such as enterprise or school and small number of external visit fully.
Usually in order to guarantee the unimpeded of network, the backup of the circuit assurance network of two different operators all can be rented by general enterprise; Can there be the outlet of the education network operator outlet different with two usually in school's node in the education network.The corresponding public network address space difference of different outlets does not allow to use the link-access internet of the public network address of the A of operator from the B of operator, and this networking is called asymmetric NAT backup networking.In the networking of above-mentioned public network multiple exit, during private network host access public network, the nat address pool of using different operators to distribute when requiring the private network main frame to export access the Internet by the different operator of NAT device; When private network provides internal server to visit to public network, the reference address difference that same private network server provides to different operators, during public network side visit private network internal server, the back message using that requires private network to return to public network must return from the public network side of initiating, can proper communication.
Two of the network backup existence in the part large-enterprise network or the link of many equities, this networking are called symmetrical NAT backup networking.This networking requirement is when wherein a link breaks, and flow can switch to other unimpeded link rapidly and normally visit, and does not need NAT device to redistribute public network address.
Whether on same equipment, the networking topological classification can be subdivided into symmetrical multiple exit networking, asymmetric multiple exit networking, symmetrical multi-host hot swap networking, asymmetric multi-host hot swap networking according to the backup networking again.
Fig. 1-1 is existing symmetrical multiple exit networking schematic diagram, as Figure 1-1, under this networking mode, has the individual public network side interface of n (n 〉=2) on the same NAT device, and this n interface backups each other, and the address of each interface belongs to same nat address pool.
Fig. 1-2 is existing asymmetric multiple exit networking schematic diagram, shown in Fig. 1-2, under this networking mode, has the individual public network side interface of n (n 〉=2) on the same NAT device, and this n interface backups each other, and the address of each interface belongs to different nat address pools respectively.
Fig. 1-3 is existing symmetrical multi-host hot swap networking schematic diagram, and as Figure 1-3, under this networking mode, the individual NAT device of n (n 〉=2) backups each other, and the public network side address of n NAT device belongs to same nat address pool.
Fig. 1-4 is existing asymmetric multi-host hot swap networking schematic diagram, and shown in Fig. 1-4, under this networking mode, the individual NAT device of n (n 〉=2) backups each other, and the public network side address of n NAT device belongs to different nat address pools respectively.
When private network need externally provide service, the load balancing of the visit inevitable requirement private network internal server of big flow.According to the type service difference that internal server provides, load balancing is divided into: load balancing and share two kinds by current load packet-by-packet.Fig. 2 carries out the networking diagram of load balancing for existing private network internal server, as shown in Figure 2, if private network internal server 1~n is load balancing packet-by-packet, then the same user of public network can obtain resource from server 1~n in an access process, visit as domain name system (DNS, Domain Name System); If private network internal server 1~n is for sharing by current load, one that then the same user of public network can only be from server 1~n in access process is obtained resource, as based on file transfer protocol (FTP) (FTP, the File Transfer Protocol) visit that connects.
Existing NAT device is generally only supported a kind of networking mode, therefore only disposes on this NAT device and this networking mode corresponding strategy route.When NAT device is received access request from private network, according to the matching way of configured strategy route as: outgoing interface and next jumping of message determined in source IP address, purpose IP address, NAT address after determining to change according to the rule of the NAT on this outgoing interface again is sent to message corresponding carrier network then.
Along with the requirement that networking is used is more and more higher, need same NAT device to support multiple networking, still, prior art does not provide the solution how NAT device specifically supports multiple networking.
Summary of the invention
The invention provides NAT device and support the access method and the NAT device of multiple networking, the visit when supporting multiple networking between public network and private network with the realization NAT device.
Technical scheme of the present invention is achieved in that
A kind of NAT device is supported the access method of multiple networking, the networking topological classification and the NAT rule of each public network side outgoing interface of NAT device minute book equipment, and this method comprises:
NAT device receives the message that the private network main frame is issued public network server, determines the outgoing interface of this message, according to the networking topological classification and the NAT rule of this outgoing interface, message is transmitted.
Described message is the message that starts,
The outgoing interface of described definite this message is:
Search the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface;
Described networking topological classification and NAT rule according to this outgoing interface, message transmitted comprise:
NAT rule according to selected outgoing interface is carried out the NAT conversion to message, sets up the stream table of message, message is forwarded from selected outgoing interface,
Described stream table comprises: the networking topological classification of the public network source IP address after the private network source IP address of message, private network source port number, the NAT conversion, the public network source port number after the NAT conversion, purpose IP address, destination slogan, outgoing interface sign, outgoing interface.
Described message is the non-message that starts, and the outgoing interface of described definite message is:
Search the stream table of message, judge whether the place link of the outgoing interface of the outgoing interface sign correspondence in this stream table can reach, if, with the outgoing interface of described outgoing interface as message; Otherwise, according to the networking topological classification of described outgoing interface, for message is selected new outgoing interface.
Described networking topological classification according to described outgoing interface is that message is selected new outgoing interface, according to the networking topological classification of this outgoing interface and NAT rule message is transmitted to comprise:
The networking topological classification of finding described outgoing interface is symmetrical networking, then search the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface, the outgoing interface that selected outgoing interface is different from the stream table identifies corresponding outgoing interface, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, public network source IP address, source port number according to after the NAT conversion in the stream table carry out the NAT conversion to message, and message is forwarded from selected outgoing interface;
Perhaps, the networking topological classification of finding described outgoing interface is asymmetric multiple exit networking, the stream table that deletion finds, search the equal-cost route of this message, select an outgoing interface in the outgoing interface of equal-cost route, the outgoing interface that selected outgoing interface is different from the stream table identifies corresponding outgoing interface, according to the NAT rule of selected outgoing interface message is carried out the NAT conversion, set up the new stream table of message, message is forwarded from selected outgoing interface;
Perhaps, the networking mode of finding described outgoing interface is asymmetric multi-host hot swap networking, then delete the stream table that finds, this message is sent to the backup NAT device of this equipment, and this backup NAT device receives this message, searches the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface, NAT rule according to selected outgoing interface is carried out the NAT conversion to message, sets up the new stream table of message, and message is forwarded from selected outgoing interface.
Described method further comprises:
NAT device regularly detects the accessibility of each public network side outgoing interface place link, and the record testing result;
Described NAT device is selected further to comprise after the outgoing interface in the outgoing interface of equal-cost route:
NAT device judges whether selected outgoing interface place link can reach, if then select this outgoing interface according to the testing result that is write down; Otherwise, in the outgoing interface of equal-cost route, reselect an outgoing interface.
Described method further comprises:
NAT device regularly detects the accessibility of each public network side outgoing interface place link, and the record testing result;
NAT device checks according to testing result whether the outgoing interface place link in the stream table of having set up can reach, and if not, then deletes this stream table.
Described method further comprises: NAT device is preserved the corresponding relation of public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of preservation private network server, the private network IP address of private network server;
NAT device receives the message that the public network main frame mails to the private network server, if find that the incoming interface of message identifies corresponding load balancing mode and is load balancing packet-by-packet, then according to public network purpose IP address, the port numbers of message, find two above private network purpose IP addresses, port numbers, select a private network purpose IP address, port numbers that message is carried out the NAT conversion, message is sent; If find that the incoming interface of message identifies corresponding load balancing mode and shares for current load packet-by-packet, then according to public network purpose IP address, the port numbers of message, find a private network purpose IP address, port numbers, according to the private network purpose IP address that finds, port numbers message is carried out the NAT conversion, message is sent.
Described NAT device further comprises after message is sent:
NAT device receives the private network server to the back message using that the public network main frame returns, and searches the stream table of this message, and the public network side incoming interface sign respective links in the stream table of discovery message can reach, and then from this incoming interface sign corresponding interface this back message using is forwarded;
Perhaps, NAT device receives the back message using that the private network server returns to the public network main frame, search the stream table of this message, public network side incoming interface sign respective links in the stream table of discovery message is unreachable, whether the networking topological classification of judging the public network side incoming interface in the stream table is symmetrical networking, if search the equal-cost route of message, in the outgoing interface of equal-cost route, reselect an outgoing interface, message is forwarded; Otherwise, abandon this back message using.
A kind of NAT device, this NAT device comprises:
Networking topological classification logging modle, the networking topological classification and the NAT rule of each public network side outgoing interface of minute book equipment;
The access process module receives the message that the private network main frame is issued public network server, determines the outgoing interface of this message, according to the networking topological classification and the NAT rule of this outgoing interface of networking topological classification logging modle record, message is transmitted.
Described access process module comprises:
The strategy routing module, receive the private network main frame and issue the message of public network server, search the stream table of this message,, determine that then this message is the message that starts if do not find, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in the outgoing interface of equal-cost route, select an outgoing interface, message is carried out the NAT conversion according to the NAT rule of the selected outgoing interface of networking topological classification logging modle record, set up the stream table of message, message is forwarded from selected outgoing interface; If find and find that the outgoing interface respective links in the stream table is unreachable, then according to the networking topological classification of this outgoing interface of networking topological classification logging modle record, for message is selected new outgoing interface, according to the NAT rule of this outgoing interface of networking topological classification logging modle record, message is carried out forwarding after the NAT conversion;
Forwarding module receives message, searches the equal-cost route of message, and equal-cost route is sent to tactful routing module.
Described access process module comprises:
Networking topological classification parsing module, receive the private network main frame and issue the message of public network server, search the stream table of this message, if find that the outgoing interface respective links in the stream table is unreachable, the networking topological classification of this outgoing interface in the resolution flow table then, if symmetrical networking processing module is then issued message in symmetrical networking; If asymmetric multiple exit networking then sends to message asymmetric multiple exit networking processing module; If asymmetric multi-host hot swap networking then sends to message asymmetric multi-host hot swap networking processing module;
Symmetry networking processing module, receive message, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign in the stream table that is different from message, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, and according to the stream table message is carried out the NAT conversion, and message is forwarded from selected outgoing interface;
Asymmetric multiple exit networking processing module, receive message, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign that is different from the stream table, message is carried out the NAT conversion, the current stream table of deletion message according to the NAT rule of the selected outgoing interface of networking topological classification logging modle record, set up the new stream table of message, message is forwarded from selected outgoing interface;
Asymmetric multi-host hot swap networking processing module receives message, and message is sent to the backup NAT device of this equipment, and deletes the stream table of message;
Forwarding module receives the message that symmetrical networking processing module or asymmetric multiple exit networking processing module are sent, and searches the equal-cost route of message, and equal-cost route is returned to symmetrical networking processing module or asymmetric multiple exit networking processing module.
This equipment further comprises:
The link detection module, regularly survey each public network server IP address, port numbers, outgoing interface, next jumps the accessibility of respective links, and record result of detection;
Described access process module is further used for, and after determining the outgoing interface of message, inquires about the accessibility of this outgoing interface respective links to the link detection module, if unreachable, then selects interface for message again.
This equipment further comprises:
The link detection module, regularly survey each public network server IP address, port numbers, outgoing interface, next jumps the accessibility of respective links, and record result of detection, when detecting link when unreachable, IP address, port numbers, outgoing interface, next jumping of this link correspondence sent to the access process module;
And described access process module is further used for, and the IP address of the unreachable link that reception link detection module is sent, port numbers, outgoing interface, next jumping are with this IP address, port numbers, outgoing interface, the corresponding stream list deletion of next jumping.
Described NAT device further comprises:
Load balancing mode logging modle, the corresponding relation of record public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of record private network server, the private network IP address of private network server;
The load balancing processing module, receive the message that the public network main frame mails to the private network server, if find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and is load balancing packet-by-packet, then according to public network purpose IP address, the port numbers of message, find two above private network purpose IP addresses, port numbers, select a private network purpose IP address, port numbers that message is carried out the NAT conversion, message is sent; If find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and shares for current load packet-by-packet, then according to public network purpose IP address, the port numbers of message, find a private network purpose IP address, port numbers, according to the private network purpose IP address that finds, port numbers message is carried out the NAT conversion, message is sent.
Described NAT device further comprises:
The back message using processing module, receive the back message using that the private network server returns to the public network main frame, search the stream table of this message, the public network side incoming interface sign respective links in the stream table of discovery message can reach, and then from this incoming interface sign corresponding interface this back message using is forwarded; Perhaps,
Public network side incoming interface sign respective links in the stream table of discovery message is unreachable, whether the networking topological classification of judging the public network side incoming interface in the stream table is symmetrical networking, if, search the equal-cost route of message, in the outgoing interface of equal-cost route, reselect an outgoing interface, message is forwarded; Otherwise, abandon this back message using.
Compared with prior art, among the present invention, the networking topological classification and the NAT rule of each public network side outgoing interface of NAT device minute book equipment, NAT device receives the message that the private network main frame is issued public network server, determine the outgoing interface of this message, according to the networking topological classification and the NAT rule of this outgoing interface, message is transmitted.Among the present invention, NAT device can be supported dissimilar complicated networking demands, and, extensibility is strong, and the new network topology type of configuration can be expanded new networking support on NAT device, and do not need the NAT module is made amendment, avoid expanding the upgrading of the caused business module of networking type.
Description of drawings
Fig. 1-1 is existing symmetrical multiple exit networking schematic diagram;
Fig. 1-2 is existing asymmetric multiple exit networking schematic diagram;
Fig. 1-3 is existing symmetrical multi-host hot swap networking schematic diagram;
Fig. 1-4 is existing asymmetric multi-host hot swap networking schematic diagram;
Fig. 2 carries out the networking diagram of load balancing for existing private network internal server;
When the NAT device that Fig. 3 provides for the embodiment of the invention is supported multiple networking, the method flow diagram of private network host access public network server;
When the NAT device that Fig. 4 provides for the embodiment of the invention is supported multiple networking, the method flow diagram of public network host access private network server;
The composition diagram of the NAT device that Fig. 5 provides for the embodiment of the invention;
The composition diagram one of the access process module that Fig. 6 provides for the embodiment of the invention;
The composition diagram two of the access process module that Fig. 7 provides for the embodiment of the invention.
Embodiment
The present invention is further described in more detail below in conjunction with drawings and the specific embodiments.
When the NAT device that Fig. 3 provides for the embodiment of the invention is supported multiple networking, the method flow diagram of private network host access public network server, as shown in Figure 3, its concrete steps are as follows:
Step 301: the networking topological classification sign that the interface identifier of each public network side interface of this equipment of configuration, this interface are supported on NAT device and the corresponding relation of the NAT rule of this interface.
Among the present invention, for a NAT device, this NAT device can be supported different networking topological classifications constantly in difference, that is: sometime, this NAT device can be supported networking topological classification A, and at another constantly, this NAT device can be supported networking topological classification B.Simultaneously, the total interface of NAT device can be supported a kind of networking topological classification promptly simultaneously: this networking topological classification is applied to total interface, perhaps, the distinct interface of NAT device can be supported different networking topological classifications, for example: a part of interface of NAT device is supported networking topological classification A, and another part interface is supported networking topological classification B.
Step 302: the private network main frame sends message to public network server, and NAT device receives this message.
Step 303:NAT equipment is according to the five-tuple of this message: private network source IP address, private network source port number, protocol type, purpose IP address, destination slogan, search the stream table of this message, and judge whether to find, if, execution in step 306; Otherwise, execution in step 304.
Step 304:NAT equipment is searched the equal-cost route of this message correspondence, selects an outgoing interface in the outgoing interface of equal-cost route, finds the networking topological classification sign that this outgoing interface is supported according to selected outgoing interface sign.
NAT device does not find the stream table, illustrates that then this message mails to the message that starts of public network server for the private network main frame.
Step 305:NAT equipment carries out the NAT conversion according to the NAT rule of selected outgoing interface to message, sets up the stream table of this message, and message is forwarded from selected outgoing interface, and this flow process finishes.
The stream table of message comprises: the public network source IP address after the private network source IP address of message, private network source port number, the NAT conversion, the public network source port number after the NAT conversion, protocol type sign, purpose IP address, destination slogan, outgoing interface sign, next jumping, outgoing interface networking topological classification sign.
Step 306:NAT equipment judges whether the outgoing interface sign respective links in the stream table can reach, if, execution in step 307; Otherwise, execution in step 308.
NAT device finds the stream table, illustrates that then this message mails to the subsequent packet of public network server for the private network main frame.
Step 307:NAT equipment carries out the NAT conversion according to the stream table to message, and the outgoing interface sign according in the stream table forwards message, and this flow process finishes.
Comprised public network source IP address, public network source port number after NAT changes in the stream table, NAT device is directly changed with the NAT that the public network source IP address in the stream table, private network source IP address, the private network source port number of public network source port number replacement message have promptly been finished message.
Step 308:NAT equipment judges whether the outgoing interface networking topological classification sign in the stream table is symmetrical networking, if, execution in step 309; Otherwise, execution in step 310.
The symmetrical networking here refers to symmetrical multiple exit networking or symmetrical multi-host hot swap networking.
Step 309:NAT equipment is searched the equal-cost route of this message correspondence, in the outgoing interface of equal-cost route, reselect an outgoing interface, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, according to the stream table message is carried out the NAT conversion, message is sent from the outgoing interface of reselecting, and this flow process finishes.
Because outgoing interface networking topological classification is symmetrical networking, therefore, the NAT rule of all outgoing interfaces of the equal-cost route of message is identical, in this step, directly according to the public network source IP address after the conversion of the NAT in the stream table, public network source port number message is carried out the NAT conversion and gets final product.
Step 310:NAT equipment judges that the outgoing interface networking topological classification sign in the stream table is asymmetric multiple exit networking or asymmetric multi-host hot swap networking, if the former, execution in step 311; If the latter, execution in step 312.
The stream table of the message that step 311:NAT unit deletion finds, search the equal-cost route of this message correspondence, in the outgoing interface of equal-cost route, reselect an outgoing interface, and according to the NAT rule of this outgoing interface message is carried out NAT and change, message is forwarded from selected outgoing interface, find the networking topological classification sign that this outgoing interface is supported according to selected outgoing interface sign, set up the new stream table of message, this flow process finishes.
The stream table of this message of step 312:NAT unit deletion sends to the standby N AT equipment of this equipment with message, and this standby N AT equipment receives this message, returns step 303.
Because in actual applications, link might break down at any time, in order to guarantee the reliability of the selected message outgoing interface of NAT device place link, in the embodiment shown in fig. 3, NAT device can regularly be surveyed the accessibility of each purpose IP address, destination slogan, outgoing interface, next jumping institute respective links, and the record result of that probe.In step 304,311, when NAT device is selected interface in equal-cost route, judge whether selected outgoing interface, purpose IP address, destination slogan, next jumping respective links can reach according to the result of detection that is write down, if determine that then selected outgoing interface is correct; Otherwise, in the outgoing interface of equal-cost route, reselect an outgoing interface.
In addition, NAT device detect purpose IP address, destination slogan, outgoing interface, next jumps link corresponding when unreachable, also can delete this purpose IP address, destination slogan, outgoing interface, the corresponding stream table of next jumping, like this, NAT device is when receiving subsequent packet, just can not find the stream table, thereby can rebulid the stream table, avoid message dropping.
When the NAT device that Fig. 4 provides for the embodiment of the invention is supported multiple networking, the method flow diagram of public network host access private network server, as shown in Figure 4, its concrete steps are as follows:
Step 401:NAT equipment is preserved the corresponding relation of public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of preservation private network server, the private network IP address of private network server.
If the load balancing mode of private network server is load balancing packet-by-packet, then the public network IP address of a private network server can two above private network IP addresses of correspondence.
Step 402: the public network main frame sends message to the private network server, and NAT device receives this message.
Step 403:NAT equipment is searched the stream table of this message, judges whether to find, if, execution in step 408; Otherwise, execution in step 404.
Step 404:NAT equipment is searched corresponding load balancing mode according to the incoming interface sign of this message.
NAT device can not find out the stream table, illustrates that then this message issues the message that starts of private network server for the public network main frame.
Step 405:NAT equipment judges that the load balancing mode find shares for load balancing packet-by-packet still pursues current load, if the former, execution in step 406; If the latter, execution in step 407.
Step 406:NAT equipment is searched corresponding private network purpose IP address, private network destination slogan according to public network purpose IP address, the public network destination slogan of message, select a private network purpose IP address, private network destination slogan that message is carried out the NAT conversion, E-Packet according to selected private network purpose IP address, private network destination slogan, set up the stream table of message, go to step 409.
Message flow table in this step comprises: each private network purpose IP address of the source IP address of message, source port number, public network purpose IP address, public network destination slogan, protocol type sign, public network purpose IP address and public network destination slogan correspondence, each private network destination slogan, public network side incoming interface sign, incoming interface networking topological classification sign.
Because the load balancing mode is load balancing packet-by-packet, therefore, NAT device can find two above private network purpose IP addresses and private network destination slogan according to public network purpose IP address, the public network destination slogan of message, to comprise private network purpose IP address, private network destination slogan that all find in the stream table of message, so that when subsequent packet arrives, according to stream table order or select private network purpose IP address, a private network destination slogan to carry out the NAT conversion at random, reach the purpose of load balancing packet-by-packet.
Step 407:NAT equipment is searched corresponding private network purpose IP address, private network destination slogan according to public network purpose IP address, the public network destination slogan of message, according to this private network purpose IP address, private network destination slogan message is carried out the NAT conversion, message is sent, and set up the stream table of message, go to step 409.
Message flow table in this step comprises: the private network purpose IP address of the source IP address of message, source port number, public network purpose IP address, public network destination slogan, protocol type sign, public network purpose IP address and public network destination slogan correspondence, private network destination slogan, public network side incoming interface sign, incoming interface networking topological classification sign.
Step 408:NAT equipment carries out the NAT conversion according to private network purpose IP address, private network destination slogan in the stream table to message, and message is forwarded.
If two above private network purpose IP addresses, private network destination slogan are arranged in the stream table, the load balancing mode that message then is described is load balancing packet-by-packet, and then NAT device can be selected private network purpose IP address, a private network destination slogan to carry out NAT arbitrarily to change.
Step 409:NAT equipment receives the private network server to the back message using that the public network main frame returns, and searches the stream table of this message.
Step 410:NAT equipment judges whether the incoming interface sign respective links in the stream table can reach, if, execution in step 411; Otherwise, execution in step 412.
The incoming interface of step 411:NAT equipment from the stream table identifies corresponding incoming interface message sent, and this flow process finishes.
Step 412:NAT equipment judges according to the incoming interface networking topological classification sign in the stream table whether the networking topological classification of incoming interface correspondence is symmetrical networking, if, execution in step 413; Otherwise, execution in step 414.
Step 413:NAT equipment is searched the equal-cost route of message, reselects an outgoing interface in the outgoing interface of equal-cost route, and message is forwarded, and this flow process finishes.
Selected outgoing interface is different from the incoming interface sign corresponding interface in the stream table.
The stream table that step 414:NAT unit deletion finds abandons this back message using.
The composition diagram of the NAT device that Fig. 5 provides for the embodiment of the invention, as shown in Figure 5, it mainly comprises: networking topological classification logging modle 51 and access process module 52, wherein:
Networking topological classification logging modle 51: the networking topological classification and the NAT rule of each public network side outgoing interface of minute book equipment.
Access process module 52: receive the message that the private network main frame is issued public network server, determine the outgoing interface of this message,, message is transmitted according to the networking topological classification and the NAT rule of this outgoing interface of networking topological classification logging modle 51 records.
As shown in Figure 6, access process module 52 can comprise: tactful routing module 521 and forwarding module 522, wherein:
Strategy routing module 521: receive the message that the private network main frame is issued public network server, search the stream table of this message, if do not find, determine that then this message is the message that starts, message is sent to forwarding module 522, receive the equal-cost route that forwarding module 522 returns, in the outgoing interface of equal-cost route, select an outgoing interface, NAT rule according to the selected outgoing interface of networking topological classification logging modle 51 record is carried out the NAT conversion to message, set up the stream table of message, message is forwarded from selected outgoing interface; Can reach if find and find the outgoing interface sign respective links in the stream table,, message be carried out the NAT conversion, the outgoing interface of message from the stream table be identified corresponding outgoing interface forward then according to the stream table; If find and find that the outgoing interface sign respective links in the stream table is unreachable, then according to the networking topological classification of this outgoing interface of networking topological classification logging modle 51 record, for message is selected new outgoing interface, according to the NAT rule of this outgoing interface of networking topological classification logging modle 51 record, message is carried out forwarding after the NAT conversion.
Forwarding module 522: receive the message that tactful routing module 521 is sent, search the equal-cost route of message, equal-cost route is sent to tactful routing module 521.
Perhaps, as shown in Figure 7, access process module 52 can comprise: networking topological classification parsing module 531, symmetrical networking processing module 532, asymmetric multiple exit networking processing module 533, asymmetric multi-host hot swap networking processing module 534 and forwarding module 535, wherein:
Networking topological classification parsing module 531: receive the message that the private network main frame is issued public network server, search the stream table of this message, if do not find, determine that then this message is the message that starts, message is sent to forwarding module 522, receive the equal-cost route that forwarding module 522 returns, in the outgoing interface of equal-cost route, select an outgoing interface, NAT rule according to the selected outgoing interface of networking topological classification logging modle 51 record is carried out the NAT conversion to message, set up the stream table of message, message is forwarded from selected outgoing interface; Can reach if find and find the outgoing interface sign respective links in the stream table,, message be carried out the NAT conversion, the outgoing interface of message from the stream table be identified corresponding outgoing interface forward then according to the stream table; If it is unreachable to find and find that outgoing interface in the stream table identifies corresponding outgoing interface place link, the networking topological classification of this outgoing interface in resolution flow table sign then is if symmetrical networking processing module 532 is then issued message in symmetrical networking; If asymmetric multiple exit networking then sends to message asymmetric multiple exit networking processing module 533; If asymmetric multi-host hot swap networking then sends to message asymmetric multi-host hot swap networking processing module 534; If the outgoing interface in the discovery stream table identifies corresponding outgoing interface place link and can reach, then message is carried out the NAT conversion according to the stream table, according to the sign of the outgoing interface in the stream table message is forwarded.
Symmetry networking processing module 532: receive the message that networking topological classification parsing module 531 is sent, message is sent to forwarding module 535, receive the equal-cost route that forwarding module 535 returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign in the stream table that is different from message, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, according to the stream table message is carried out the NAT conversion, message is forwarded from selected outgoing interface.
Asymmetric multiple exit networking processing module 533: receive the message that networking topological classification parsing module 531 is sent, message is sent to forwarding module 535, receive the equal-cost route that forwarding module 535 returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign that is different from the stream table, NAT rule according to the selected outgoing interface of networking topological classification logging modle 51 record is carried out the NAT conversion to message, the current stream table of deletion message, set up the new stream table of message, message is forwarded from selected outgoing interface.
Asymmetric multi-host hot swap networking processing module 534: receive the message that networking topological classification parsing module 531 is sent, message is sent to the backup NAT device of this equipment, and delete the stream table of message.
Forwarding module 535: receive the message that symmetrical networking processing module 532 or asymmetric multiple exit networking processing module 533 are sent, search the equal-cost route of message, equal-cost route is returned to symmetrical networking processing module 532 or asymmetric multiple exit networking processing module 533.
In actual applications, NAT device also can comprise: the link detection module, be used for the accessibility that the IP address of each public network server, port numbers, outgoing interface, next jumping respective links are surveyed in timing, and the record result of detection; When detecting link when unreachable, IP address, port numbers, outgoing interface, next jumping of this link correspondence sent to access process module 52.
And access process module 52 is further used for, and after determining the outgoing interface of message, inquires about the accessibility of this outgoing interface respective links to the link detection module, if unreachable, then selects interface for message again; When the IP address that receives the unreachable link that the link detection module sends, port numbers, outgoing interface, when next is jumped, with this IP address, port numbers, outgoing interface, next jumps corresponding stream list deletion.
In actual applications, NAT device also can comprise: load balancing mode logging modle and load balancing processing module, wherein:
Load balancing mode logging modle: the corresponding relation of record public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of record private network server, the private network IP address of private network server.
Load balancing processing module: receive the message that the public network main frame mails to the private network server, if find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and is load balancing packet-by-packet, then according to public network purpose IP address, the port numbers of message, find two above private network purpose IP addresses, port numbers, select a private network purpose IP address, port numbers that message is carried out the NAT conversion, message is sent, and set up the stream table of message; If find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and shares for current load packet-by-packet, then according to public network purpose IP address, the port numbers of message, find a private network purpose IP address, port numbers, according to the private network purpose IP address that finds, port numbers message is carried out the NAT conversion, message is sent, and set up the stream table of message.
NAT device also can comprise: the back message using processing module, receive the back message using that the private network server returns to the public network main frame, search the stream table of this message,, then message is forwarded from this incoming interface sign corresponding interface if the public network side incoming interface sign respective links in the stream table of discovery message can reach; If the public network side incoming interface sign respective links in the stream table of discovery message is unreachable, whether the networking topological classification of judging the public network side incoming interface in the stream table is symmetrical networking, if, search the equal-cost route of message, in the outgoing interface of equal-cost route, reselect an outgoing interface, message is forwarded; Otherwise the stream table of deletion message also abandons this back message using.
The above only is process of the present invention and method embodiment, in order to restriction the present invention, all any modifications of being made within the spirit and principles in the present invention, is not equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (15)

1, a kind of network address translation device is supported the access method of multiple networking, it is characterized in that, and the networking topological classification and the NAT rule of each public network side outgoing interface of NAT device minute book equipment, this method comprises:
NAT device receives the message that the private network main frame is issued public network server, determines the outgoing interface of this message, according to the networking topological classification and the NAT rule of this outgoing interface, message is transmitted.
2, the method for claim 1 is characterized in that, described message is the message that starts,
The outgoing interface of described definite this message is:
Search the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface;
Described networking topological classification and NAT rule according to this outgoing interface, message transmitted comprise:
NAT rule according to selected outgoing interface is carried out the NAT conversion to message, sets up the stream table of message, message is forwarded from selected outgoing interface,
Described stream table comprises: the networking topological classification of the public network source IP address after the private network source IP address of message, private network source port number, the NAT conversion, the public network source port number after the NAT conversion, purpose IP address, destination slogan, outgoing interface sign, outgoing interface.
3, method as claimed in claim 2 is characterized in that, described message is the non-message that starts, and the outgoing interface of described definite message is:
Search the stream table of message, judge whether the place link of the outgoing interface of the outgoing interface sign correspondence in this stream table can reach, if, with the outgoing interface of described outgoing interface as message; Otherwise, according to the networking topological classification of described outgoing interface, for message is selected new outgoing interface.
4, method as claimed in claim 3 is characterized in that, described networking topological classification according to described outgoing interface is that message is selected new outgoing interface, according to the networking topological classification of this outgoing interface and NAT rule message is transmitted to comprise:
The networking topological classification of finding described outgoing interface is symmetrical networking, then search the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface, the outgoing interface that selected outgoing interface is different from the stream table identifies corresponding outgoing interface, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, public network source IP address, source port number according to after the NAT conversion in the stream table carry out the NAT conversion to message, and message is forwarded from selected outgoing interface;
Perhaps, the networking topological classification of finding described outgoing interface is asymmetric multiple exit networking, the stream table that deletion finds, search the equal-cost route of this message, select an outgoing interface in the outgoing interface of equal-cost route, the outgoing interface that selected outgoing interface is different from the stream table identifies corresponding outgoing interface, according to the NAT rule of selected outgoing interface message is carried out the NAT conversion, set up the new stream table of message, message is forwarded from selected outgoing interface;
Perhaps, the networking mode of finding described outgoing interface is asymmetric multi-host hot swap networking, then delete the stream table that finds, this message is sent to the backup NAT device of this equipment, and this backup NAT device receives this message, searches the equal-cost route of this message, in the outgoing interface of equal-cost route, select an outgoing interface, NAT rule according to selected outgoing interface is carried out the NAT conversion to message, sets up the new stream table of message, and message is forwarded from selected outgoing interface.
5, as claim 2 or 4 described methods, it is characterized in that described method further comprises:
NAT device regularly detects the accessibility of each public network side outgoing interface place link, and the record testing result;
Described NAT device is selected further to comprise after the outgoing interface in the outgoing interface of equal-cost route:
NAT device judges whether selected outgoing interface place link can reach, if then select this outgoing interface according to the testing result that is write down; Otherwise, in the outgoing interface of equal-cost route, reselect an outgoing interface.
6, as the arbitrary described method of claim 2 to 4, it is characterized in that described method further comprises:
NAT device regularly detects the accessibility of each public network side outgoing interface place link, and the record testing result;
NAT device checks according to testing result whether the outgoing interface place link in the stream table of having set up can reach, and if not, then deletes this stream table.
7, as the arbitrary described method of claim 1 to 4, it is characterized in that, described method further comprises: NAT device is preserved the corresponding relation of public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of preservation private network server, the private network IP address of private network server;
NAT device receives the message that the public network main frame mails to the private network server, if find that the incoming interface of message identifies corresponding load balancing mode and is load balancing packet-by-packet, then according to public network purpose IP address, the port numbers of message, find two above private network purpose IP addresses, port numbers, select a private network purpose IP address, port numbers that message is carried out the NAT conversion, message is sent; If find that the incoming interface of message identifies corresponding load balancing mode and shares for current load packet-by-packet, then according to public network purpose IP address, the port numbers of message, find a private network purpose IP address, port numbers, according to the private network purpose IP address that finds, port numbers message is carried out the NAT conversion, message is sent.
8, method as claimed in claim 7 is characterized in that, described NAT device further comprises after message is sent:
NAT device receives the private network server to the back message using that the public network main frame returns, and searches the stream table of this message, and the public network side incoming interface sign respective links in the stream table of discovery message can reach, and then from this incoming interface sign corresponding interface this back message using is forwarded;
Perhaps, NAT device receives the back message using that the private network server returns to the public network main frame, search the stream table of this message, public network side incoming interface sign respective links in the stream table of discovery message is unreachable, whether the networking topological classification of judging the public network side incoming interface in the stream table is symmetrical networking, if search the equal-cost route of message, in the outgoing interface of equal-cost route, reselect an outgoing interface, message is forwarded; Otherwise, abandon this back message using.
9, a kind of NAT device is characterized in that, this NAT device comprises:
Networking topological classification logging modle, the networking topological classification and the NAT rule of each public network side outgoing interface of minute book equipment;
The access process module receives the message that the private network main frame is issued public network server, determines the outgoing interface of this message, according to the networking topological classification and the NAT rule of this outgoing interface of networking topological classification logging modle record, message is transmitted.
10, NAT device as claimed in claim 9 is characterized in that, described access process module comprises:
The strategy routing module, receive the private network main frame and issue the message of public network server, search the stream table of this message,, determine that then this message is the message that starts if do not find, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in the outgoing interface of equal-cost route, select an outgoing interface, message is carried out the NAT conversion according to the NAT rule of the selected outgoing interface of networking topological classification logging modle record, set up the stream table of message, message is forwarded from selected outgoing interface; If find and find that the outgoing interface respective links in the stream table is unreachable, then according to the networking topological classification of this outgoing interface of networking topological classification logging modle record, for message is selected new outgoing interface, according to the NAT rule of this outgoing interface of networking topological classification logging modle record, message is carried out forwarding after the NAT conversion;
Forwarding module receives message, searches the equal-cost route of message, and equal-cost route is sent to tactful routing module.
11, NAT device as claimed in claim 9 is characterized in that, described access process module comprises:
Networking topological classification parsing module, receive the private network main frame and issue the message of public network server, search the stream table of this message, if find that the outgoing interface respective links in the stream table is unreachable, the networking topological classification of this outgoing interface in the resolution flow table then, if symmetrical networking processing module is then issued message in symmetrical networking; If asymmetric multiple exit networking then sends to message asymmetric multiple exit networking processing module; If asymmetric multi-host hot swap networking then sends to message asymmetric multi-host hot swap networking processing module;
Symmetry networking processing module, receive message, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign in the stream table that is different from message, the outgoing interface of replacing in the stream table with selected outgoing interface sign identifies, and according to the stream table message is carried out the NAT conversion, and message is forwarded from selected outgoing interface;
Asymmetric multiple exit networking processing module, receive message, message is sent to forwarding module, receive the equal-cost route that forwarding module returns, in equal-cost route, select a corresponding outgoing interface of outgoing interface sign that is different from the stream table, message is carried out the NAT conversion, the current stream table of deletion message according to the NAT rule of the selected outgoing interface of networking topological classification logging modle record, set up the new stream table of message, message is forwarded from selected outgoing interface;
Asymmetric multi-host hot swap networking processing module receives message, and message is sent to the backup NAT device of this equipment, and deletes the stream table of message;
Forwarding module receives the message that symmetrical networking processing module or asymmetric multiple exit networking processing module are sent, and searches the equal-cost route of message, and equal-cost route is returned to symmetrical networking processing module or asymmetric multiple exit networking processing module.
12, as the arbitrary described NAT device of claim 9 to 11, it is characterized in that this equipment further comprises:
The link detection module, regularly survey each public network server IP address, port numbers, outgoing interface, next jumps the accessibility of respective links, and record result of detection;
Described access process module is further used for, and after determining the outgoing interface of message, inquires about the accessibility of this outgoing interface respective links to the link detection module, if unreachable, then selects interface for message again.
13, as the arbitrary described NAT device of claim 9 to 11, it is characterized in that this equipment further comprises:
The link detection module, regularly survey each public network server IP address, port numbers, outgoing interface, next jumps the accessibility of respective links, and record result of detection, when detecting link when unreachable, IP address, port numbers, outgoing interface, next jumping of this link correspondence sent to the access process module;
And described access process module is further used for, and the IP address of the unreachable link that reception link detection module is sent, port numbers, outgoing interface, next jumping are with this IP address, port numbers, outgoing interface, the corresponding stream list deletion of next jumping.
14, as the arbitrary described NAT device of claim 9 to 11, it is characterized in that described NAT device further comprises:
Load balancing mode logging modle, the corresponding relation of record public network side interface sign and load balancing mode, the corresponding relation of the public network IP address of record private network server, the private network IP address of private network server;
The load balancing processing module, receive the message that the public network main frame mails to the private network server, if find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and is load balancing packet-by-packet, then according to public network purpose IP address, the port numbers of message, find two above private network purpose IP addresses, port numbers, select a private network purpose IP address, port numbers that message is carried out the NAT conversion, message is sent; If find that the incoming interface of this message of load balancing mode logging modle record identifies corresponding load balancing mode and shares for current load packet-by-packet, then according to public network purpose IP address, the port numbers of message, find a private network purpose IP address, port numbers, according to the private network purpose IP address that finds, port numbers message is carried out the NAT conversion, message is sent.
15, NAT device as claimed in claim 14 is characterized in that, described NAT device further comprises:
The back message using processing module, receive the back message using that the private network server returns to the public network main frame, search the stream table of this message, the public network side incoming interface sign respective links in the stream table of discovery message can reach, and then from this incoming interface sign corresponding interface this back message using is forwarded; Perhaps,
Public network side incoming interface sign respective links in the stream table of discovery message is unreachable, whether the networking topological classification of judging the public network side incoming interface in the stream table is symmetrical networking, if, search the equal-cost route of message, in the outgoing interface of equal-cost route, reselect an outgoing interface, message is forwarded; Otherwise, abandon this back message using.
CN2009100886878A 2009-07-06 2009-07-06 Access method employing network address translation (NAT) device for supporting multi-networking and device thereof Expired - Fee Related CN101599899B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2009100886878A CN101599899B (en) 2009-07-06 2009-07-06 Access method employing network address translation (NAT) device for supporting multi-networking and device thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2009100886878A CN101599899B (en) 2009-07-06 2009-07-06 Access method employing network address translation (NAT) device for supporting multi-networking and device thereof

Publications (2)

Publication Number Publication Date
CN101599899A true CN101599899A (en) 2009-12-09
CN101599899B CN101599899B (en) 2011-09-28

Family

ID=41421157

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2009100886878A Expired - Fee Related CN101599899B (en) 2009-07-06 2009-07-06 Access method employing network address translation (NAT) device for supporting multi-networking and device thereof

Country Status (1)

Country Link
CN (1) CN101599899B (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102821036A (en) * 2012-04-20 2012-12-12 杭州华三通信技术有限公司 Method and device for achieving packet forwarding
CN102970389A (en) * 2012-11-19 2013-03-13 北京奇虎科技有限公司 Outer net access method and system
CN103036801A (en) * 2012-12-18 2013-04-10 网神信息技术(北京)股份有限公司 Data package processing method and data package processing device
CN104065759A (en) * 2013-03-22 2014-09-24 杭州迪普科技有限公司 Method for improving utilization efficiency of NAT address pool resource and device thereof
CN104168338A (en) * 2013-05-16 2014-11-26 杭州迪普科技有限公司 Network address conversion device and network address conversion method
CN107547689A (en) * 2017-09-20 2018-01-05 新华三技术有限公司 A kind of network address translation CGN method and apparatus of carrier-class
CN107592376A (en) * 2017-09-19 2018-01-16 京东方科技集团股份有限公司 The access method of application and the access system of application
CN107896196A (en) * 2017-12-28 2018-04-10 杭州迪普科技股份有限公司 A kind of method and apparatus of assignment message
CN107979656A (en) * 2017-11-22 2018-05-01 安徽皖通邮电股份有限公司 A kind of static NAT business support Dynamic Recognition enters the method to flow
CN108259645A (en) * 2018-02-05 2018-07-06 深圳市三旺通信技术有限公司 The method for network address translation of vehicle-mounted utilization is handed over based on rail
CN110048953A (en) * 2019-04-30 2019-07-23 新华三技术有限公司 A kind of load sharing method, device and router
CN115442328A (en) * 2022-08-03 2022-12-06 天翼云科技有限公司 Network address conversion method, device, gateway, medium and equipment

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103188154B (en) * 2013-04-19 2016-03-02 杭州华三通信技术有限公司 A kind of method of network address translation and board

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101123582B (en) * 2007-09-21 2011-08-24 中兴通讯股份有限公司 A communication method between private network terminals

Cited By (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102821036A (en) * 2012-04-20 2012-12-12 杭州华三通信技术有限公司 Method and device for achieving packet forwarding
CN102970389A (en) * 2012-11-19 2013-03-13 北京奇虎科技有限公司 Outer net access method and system
CN102970389B (en) * 2012-11-19 2015-12-02 北京奇虎科技有限公司 Extranet access method and system
CN103036801B (en) * 2012-12-18 2019-06-14 网神信息技术(北京)股份有限公司 The processing method and processing device of data packet
CN103036801A (en) * 2012-12-18 2013-04-10 网神信息技术(北京)股份有限公司 Data package processing method and data package processing device
CN104065759A (en) * 2013-03-22 2014-09-24 杭州迪普科技有限公司 Method for improving utilization efficiency of NAT address pool resource and device thereof
CN104168338A (en) * 2013-05-16 2014-11-26 杭州迪普科技有限公司 Network address conversion device and network address conversion method
CN107592376A (en) * 2017-09-19 2018-01-16 京东方科技集团股份有限公司 The access method of application and the access system of application
CN107547689A (en) * 2017-09-20 2018-01-05 新华三技术有限公司 A kind of network address translation CGN method and apparatus of carrier-class
CN107979656A (en) * 2017-11-22 2018-05-01 安徽皖通邮电股份有限公司 A kind of static NAT business support Dynamic Recognition enters the method to flow
CN107896196A (en) * 2017-12-28 2018-04-10 杭州迪普科技股份有限公司 A kind of method and apparatus of assignment message
CN108259645A (en) * 2018-02-05 2018-07-06 深圳市三旺通信技术有限公司 The method for network address translation of vehicle-mounted utilization is handed over based on rail
CN110048953A (en) * 2019-04-30 2019-07-23 新华三技术有限公司 A kind of load sharing method, device and router
CN110048953B (en) * 2019-04-30 2021-11-23 新华三技术有限公司 Load sharing method, device and router
CN115442328A (en) * 2022-08-03 2022-12-06 天翼云科技有限公司 Network address conversion method, device, gateway, medium and equipment
CN115442328B (en) * 2022-08-03 2023-06-02 天翼云科技有限公司 Network address conversion method, device, gateway, medium and equipment

Also Published As

Publication number Publication date
CN101599899B (en) 2011-09-28

Similar Documents

Publication Publication Date Title
CN101599899B (en) Access method employing network address translation (NAT) device for supporting multi-networking and device thereof
CN104272708B (en) It is distributed with the stateless first order grouping to server farm and is distributed to the secondary data packets of the stateful second level grouping distribution of some server in group
US9197721B2 (en) Learning a MAC address
CN106878048B (en) Fault processing method and device
US10027623B2 (en) Internet protocol address resolution
CN101656765B (en) Address mapping system and data transmission method of identifier/locator separation network
US8432791B1 (en) Network route injections
EP2323346B1 (en) Adaptive multi-interface use for content networking
CN102447639B (en) A kind of policy routing method and device
CN101052022B (en) System and method for virtual special net user to access public net
US9973422B2 (en) Traffic interconnection between virtual devices
CN103139071B (en) Message forwarding method, device and system
CN104618243B (en) Method for routing, apparatus and system, Scheduling of Gateway method and device
CN101883160B (en) Multi-interface network equipment and message transmitting method of multi-interface network equipment
CN101026589A (en) Route selecting method and router
US8149840B2 (en) Method, system and processor for processing network address translation service
CN113300954A (en) Method for generating forwarding table item, method for sending message, network equipment and system
CN109728962A (en) A kind of method and apparatus sending message
CN105721321A (en) Equal-cost multi-path outbound interface updating method and equal-cost multi-path outbound interface updating device
CN107872368A (en) Detection method, device and the terminal of gateway accessibility in a kind of network node cluster
CN102325079B (en) Message transmission method and egress router
CN104486224A (en) Routing learning method and equipment
CN107070790A (en) A kind of route learning method and routing device
CN103188153B (en) BFD file transmitting method and equipment on a kind of broadcasting network link
CN102664811B (en) Message forwarding method and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: Xinhua three Technology Co., Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: Huasan Communication Technology Co., Ltd.

CP03 Change of name, title or address
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20110928

Termination date: 20200706

CF01 Termination of patent right due to non-payment of annual fee