CN101753366A - Method, equipment and system for realizing stream statistics of virtual private network - Google Patents

Method, equipment and system for realizing stream statistics of virtual private network Download PDF

Info

Publication number
CN101753366A
CN101753366A CN200810217770A CN200810217770A CN101753366A CN 101753366 A CN101753366 A CN 101753366A CN 200810217770 A CN200810217770 A CN 200810217770A CN 200810217770 A CN200810217770 A CN 200810217770A CN 101753366 A CN101753366 A CN 101753366A
Authority
CN
China
Prior art keywords
vpn
statistics
message
equipment
label
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN200810217770A
Other languages
Chinese (zh)
Other versions
CN101753366B (en
Inventor
张恒
徐春鹏
熊怡
马朋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN2008102177706A priority Critical patent/CN101753366B/en
Publication of CN101753366A publication Critical patent/CN101753366A/en
Application granted granted Critical
Publication of CN101753366B publication Critical patent/CN101753366B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention relates to the field of communications, and provides a method for realizing the stream statistics of a virtual private network, which comprises: receiving a statistical message from the P equipment of an operator, wherein the statistical message comprises statistical data of a multi-protocol label switching MPLS message and target operator edge equipment PE identification of the MPLS message; receiving label information from the target PE; and carrying out the stream statistics of the VPN according to the statistical message and the label information. The embodiment of the invention provides a solution that NetStream is deployed on the P equipment so as to save user cost compared with the prior art that the NetStream is deployed on a plurality of PEs connected to the VPN; and in addition, the transmission paths of VPN stream in an operator network can be mastered, and the network planning can be supported. The invention also relates to equipment and a system for realizing the stream statistics of a virtual private network.

Description

A kind of method, apparatus and system that realize stream statistics of virtual private network
Technical field
The present invention relates to the communications field, relate in particular to a kind of method, apparatus and system that realize stream statistics of virtual private network.
Background technology
VPN (Virtual Private Network, Virtual Private Network) is the private dedicated network that utilizes public network to make up.By VPN, enterprise can connect its far administrative body with significantly lower cost, go on business staff and industry partners.At present VPN uses quite extensively, and no matter enterprise or operator all know about the flow distribution of VPN and the demand of business model.
NetStream (traffic statistics engineering) technology is a kind of statistics and distribution technology of stream information Network Based.Adopt NetSt ream technology, can classify and add up the traffic in the network and resource operating position, manage with different QoS (Quality of Service, service quality) and charge based on miscellaneous service, and provide the data support the network planning.
Fig. 1 is a VPN network reduction schematic diagram.As shown in Figure 1, a CE (Customer Edge, customer edge devices) the 122 and the 2nd CE124 is positioned at a VPN120, and the 3rd CE142 and the 4th CE144 are positioned at the 2nd VPN140.CE among the one VPN120 communicates by carrier network 110.CE among the 2nd VPN140 also communicates by carrier network 110.Comprise P equipment (Provider, operator) 114, the one PE (Provider Edge, provider edge equipment) 112, the two PE116 and the 3rd PE118 in the carrier network 110.In networking shown in Figure 1,, need on a PE112 and the 3rd PE118, all dispose NetStream so if the flow of a VPN120 is added up.In like manner, if the 2nd VPN140 is carried out traffic statistics, then need on a PE112 and the 2nd PE116, all dispose NetStream.This shows that the flow of a VPN of statistics need be at all access PE deploy NetStream of this VPN.
For VPN, from CE to PE, forwarding be IP (Internet Protocol, Internet Protocol) message; And from PE to P, arrive another PE again, forwarding then be MPLS (Multi-ProtocolLabel Switching, multiprotocol label switching) message.Therefore, just comprise aspect two when at PE deploy NetStream that a kind of is user side at PE, just near the side of CE, the IP message of VPN is added up; Another kind of then be network side at PE, just, the MPLS message is added up near a side of P equipment.No matter adopt which kind of statistics, statistics all will send to NSC (NetStream Collector, stream collector) from PE, and NSC is responsible for statistical information is collected and stored, and is one of network management device.At last, the data that NSC collects are analyzed, finished the statistics of VPN flow by network management device.
In realizing process of the present invention, the present inventor finds in the above-mentioned prior art that at many PE deploy NetStream, not only cost height, and data disperses.In addition, VPN user increases, and reduces, perhaps during address transfer (being that the interface that PE inserts VPN changes).May need to redeploy and dispose NetStream.In addition, owing on PE, add up, can only analyze the data on flows that VPN flows into, flows out carrier network simply, can't be from the whole track of net angle analysis outflow carrier network, and the institute of the individual device in carrier network loaded service pattern, thereby can't provide enough support data to the planning of VPN.
Summary of the invention
Based on above-mentioned analysis, need in the prior art at many PE deploy NetStream for solving, the cost height, the problem that data are disperseed, the embodiment of the invention provides a kind of method that realizes Virtual Private Network VPN traffic statistics, comprising:
Reception comprises the statistics of multiprotocol label switching MPLS message and the purpose provider edge equipment PE sign of described MPLS message from the accounting message of the P of operator equipment in the described accounting message;
Reception is from the label information of described purpose PE;
Carry out the VPN traffic statistics according to described accounting message and described label information.
On the other hand, the embodiment of the invention provides a kind of network management device, comprising:
First receiving element is used to receive the accounting message from the P of operator equipment, comprises the statistics of multiprotocol label switching MPLS message and the purpose provider edge equipment PE sign of described MPLS message in the described accounting message;
Second receiving element is used to receive the label information from described purpose PE;
The traffic statistics unit is used for realizing Virtual Private Network VPN traffic statistics according to described accounting message and described label information.
Another aspect, the embodiment of the invention provide a kind of operator equipment, comprising:
Multiprotocol label switching MPLS counting messages unit is used to dispose traffic statistics engineering NetStream, obtains the statistics of MPLS message;
Purpose provider edge equipment PE identifies acquiring unit, is used to obtain the purpose PE sign of described MPLS message;
The accounting message transmitting element is used for sending accounting message to network management device, and described accounting message comprises the statistics and the described purpose PE sign of described MPLS message.
Fourth aspect, the embodiment of the invention provide a kind of system of the VPN of realization traffic statistics, comprise network management device, the P of operator equipment, the first provider edge equipment PE, Virtual Private Network VPN flow through described P equipment, arrives a described PE from the second provider edge equipment PE;
Described P equipment is used to dispose traffic statistics engineering NetStream, carries out multiprotocol label switching MPLS counting messages, sends accounting message to described network management device, and described accounting message comprises the purpose PE sign of statistics and described MPLS message;
A described PE is used to dispose the label issuing function of NetStream, and label information is published to described network management device;
Described network management device is used for carrying out the VPN traffic statistics according to described accounting message and described label information.
The solution that the invention described above embodiment provides, at the NetStream of P its upper side administration, compared to a lot of PE deploy NetStreams of prior art at access VPN, can save user cost, in addition, by on P equipment, carrying out the statistics of MPLS message, can also grasp the transmission path of VPN flow in carrier network, can network enabled planning.
Description of drawings
Fig. 1 is a VPN network reduction schematic diagram;
The rough schematic view of Fig. 2 for carrying out the VPN traffic statistics in the one embodiment of the invention;
The schematic diagram that Fig. 3 carries out the VPN traffic statistics for network management device in the one embodiment of the invention;
Fig. 4 is the rough schematic view of VPN traffic statistics among another embodiment of the present invention;
The schematic diagram that Fig. 5 carries out the VPN traffic statistics for network management device in the one embodiment of the invention;
The method flow diagram of Fig. 6 for carrying out the VPN traffic statistics in the one embodiment of the invention;
Fig. 7 is a rough schematic view of realizing the network management device of VPN traffic statistics in the one embodiment of the invention;
Fig. 8 is the rough schematic view of P equipment in the one embodiment of the invention;
Fig. 9 is the rough schematic view of P equipment in the another embodiment of the present invention;
Figure 10 is the rough schematic view of VPN traffic statistics system in the embodiment of the invention.
Embodiment
Launch to describe in detail below in conjunction with the drawings and specific embodiments.But it is noted that these following embodiment, only for help to understand technical scheme for example, and be not used in qualification the present invention.
Fig. 2 is the rough schematic view that carries out the VPN traffic statistics in the one embodiment of the invention.As shown in Figure 2, the VPN traffic statistics comprise:
202, at the NetStream of P its upper side administration, carry out the MPLS counting messages, and to network management device transmission accounting message, this accounting message comprises the statistics of MPLS message and the purpose PE sign of this MPLS message, for instance, the statistics of MPLS message and the purpose PE sign of this MPLS message are packaged into above-mentioned accounting message.
For instance, can also can affix one's name to NetStream at the crucial P its upper side NetStream of administration of VPN flow process in a plurality of P its upper side of VPN flow process.Operator can according to oneself demand and/strategy disposes.
For instance, purpose PE sign can be the IP address of purpose PE.For example, P equipment carries out local search according to the outer layer label of MPLS message, gets access to the IP address of purpose PE.As the example among Fig. 2, in the accounting message that P equipment sends, Out-label (outer layer label) is 400, and In-label (vpn label) is 1024, and PE-Address (the IP address of purpose PE) is 10.1.1.1.
204, in the label information issuing function of purpose PE deploy NetStream, purpose PE is to the label information of network management device transmission purpose PE, and label information comprises TAL (Time ApplicationLabel, time applying label) information.For instance, TAL information can comprise the mapping relations of the label value of the Router-id of mapping relations, purpose PE of the Router-id of the IP address of purpose PE and purpose PE and purpose PE.Again for instance, TAL information can comprise this machine IP address, Router-id and label value three's mapping relations.As the example among Fig. 2, PE1 is in the TAL information that network management device sends, and Router-id (routing device sign) is 1.1.1.1, and PE-Address (the IP address of purpose PE) is 10.1.1.1; Router-id is 1.1.1.1, and Label (label) is 1024, and Type (type) is vpls (Virtual Private LAN Service, a VPLS), and Index (VPN index) is 100.
There is not the restriction of sequencing between above-mentioned 204 and 202.Also can carry out 204 earlier, carry out 202 again, or carry out simultaneously.
206, network management device carries out the VPN traffic statistics according to above-mentioned accounting message and label information.
For instance, the process of VPN traffic statistics comprises: network management device is from the accounting message that P equipment is sent, extract the IP address of purpose PE, inquiry obtains the Router-id of this IP address correspondence, then with the vpn label that carries in the accounting message and the Router-id that inquires as Key (key) value, inquiry obtains corresponding VPN type and VPN index from the label information of purpose PE, realizes that the correspondence of statistics and TAL information merges.As the example among Fig. 3, extract the IP address (being 10.1.1.1) of purpose PE from the accounting message of P equipment transmission; The corresponding Router-id of IP address address (being 10.1.1.1) that inquires purpose PE from the label information that purpose PE sends is 1.1.1.1; Then, the vpn label (1024) that the accounting message that sends with P equipment carries, the Router-id (1.1.1.1) that inquires are as the Key value, and inquiry tag information obtains corresponding VPN type and VPN index.As another example among Fig. 3, the accounting message that sends from P equipment extracts purpose PE address (being 30.3.3.3); Inquiring the corresponding Router-id in PE address (being 30.3.3.3) from the label information that purpose PE sends is 1.1.1.1; Then, the vpn label (2000) that the accounting message that sends with P equipment carries, the Router-id (1.1.1.1) that inquires are as the Key value, and inquiry tag information obtains corresponding VPN type and VPN index.
If desired data are further analyzed, data are presented to the user with open arms, then above-mentioned VPN traffic statistics process can also comprise:
208, network management device merges in the correspondence that realizes statistics and TAL information, after just discerning the VPN data on flows, can be as required, to purpose PE inquiry supplementary, for instance, supplementary comprises the VPN name, and for example, supplementary comprises VPN name, MAC (Medium AccessControl, medium access control) or VRF (Virtual Routing and Forwarding, virtual routing forwarding) route etc.When network management device carries out the supplementary inquiry, can adopt SNMP (Simple Network Management Protocol, Simple Network Management Protocol), be that the Key value realizes inquiry with VPN type and VPN index.For instance, the MAC of inquiry L2VPN (Layer 2 virtualprivate network, Layer 2 virtual private network), perhaps, the VRF route of inquiry L3VPN (Layer 3virtual private network, Layer3 Virtual Private Network).
Certainly, supplementary, VPN name for example, MAC or VRF route etc. also can be carried at purpose PE in the label information that network management device sends.
In the another embodiment of the present invention, above-mentioned steps 202 can adopt another kind of implementation, and purpose PE sign can be Router-id (a routing device sign), and promptly P equipment obtains Router-id, Router-id together with statistics, is mail to network management device in the lump.Accordingly, in the above-mentioned steps 204, the label information that purpose PE is published to network management device comprises TAL information, and TAL information comprises the mapping relations of Router-id to label value; Step according to the IP address lookup Router-id of purpose PE in the step 206 then can be omitted.In this embodiment, Router-id only is an example, also can adopt can unique identification purpose PE other signs, for example character string, additional character and concrete numeral etc.
Fig. 4 is the rough schematic view of VPN traffic statistics among another embodiment of the present invention.As shown in Figure 4, the VPN traffic statistics comprise:
402, at the NetStream of P its upper side administration, and carry out policy configurations, the I P address that inserts the PE of VPN is configured to this P equipment.Again for instance, can the IP address of the PE of VPN will be inserted, and the IP address is configured to this P equipment with the mapping relations of corresponding Router-id.P equipment carries out the selectivity statistics according to configured strategy to the MPLS message, sends accounting message to network management device, and this accounting message comprises the statistics and the purpose PE sign of MPLS message.For instance, the statistics of MPLS message and the purpose PE sign of this MPLS message are packaged into above-mentioned accounting message.
For instance, P equipment, is added up this MPLS message when the IP address of purpose PE belongs to the IP address range of configuration according to configured strategy.
During for policy configurations, the IP address of the PE of VPN will be inserted, and the mapping relations of IP address and Router-id are configured to the situation of this P equipment, and the purpose PE sign that comprises in the accounting message can be Router-id, the purpose IP address of the corresponding MPLS message of this Router-id.As the example among Fig. 4, in the accounting message that P equipment sends, Out-label is 400, and In-label is 1024, and Router-id is 1.1.1.1.Certainly, purpose PE sign is not limited in Router-id, also can be can unique identification purpose PE other signs, for example character string, additional character and concrete numeral etc.
During for policy configurations, to the situation of this P equipment, the purpose PE that comprises in accounting message sign can be the purpose IP address of MPLS message with the IP address configuration of PE that inserts VPN.
404, in the label information issuing function of purpose PE deploy NetStream, purpose PE sends label information to network management device, and label information comprises TAL (Time Application Label, time applying label) information.
For instance, during for policy configurations, will insert the IP address of the PE of VPN, and the mapping relations of IP address and Router-id are configured to the situation of this P equipment, the TAL information that purpose PE issues can comprise the mapping relations of Router-id to label value.As the example among Fig. 4, PE1 sends in the label information of network management device, and Router-id is 1.1.1.1, and Label is 1024, and Type (type) is vpls, and Index (VPN index) is 100.
Again for instance, during for policy configurations, to the situation of this P equipment, the TAL information of purpose PE issue can comprise the mapping relations of mapping relations, Router-id and the label value of this machine IP address and Router-id with the IP address configuration of PE that inserts VPN.In the another kind of implementation, TAL information can comprise this machine IP address, Router-id and label value three's mapping relations.
406, network management device carries out the VPN traffic statistics according to above-mentioned accounting message and label information.
For instance, in the accounting message for the transmission of P equipment, purpose PE sign is the situation of Router-id, the process of VPN traffic statistics comprises: network management device is from the accounting message that P equipment sends, extract vpn label and Router-id, as the Key value, inquiry is from the label information of PE, obtain corresponding VPN type and VPN index, realize that the correspondence of statistics and TAL information merges.As the example among Fig. 5, from the accounting message that P equipment sends, extract Router-id (being 1.1.1.1) and vpn label (promptly 1024); As Key value inquiry tag information, obtaining corresponding VPN type is vpls with above-mentioned Router-id and vpn label, and the VPN index etc.As another example among Fig. 5, from the accounting message that P equipment sends, extract Router-id (being 2.2.2.2) and vpn label (promptly 1024); As Key value inquiry tag information, obtaining corresponding VPN type is 13vpn with above-mentioned Router-id and vpn label, and the VPN index etc.As the example again among Fig. 5, from the accounting message that P equipment sends, extract Router-id (being 1.1.1.1) and vpn label (promptly 2000); As Key value inquiry tag information, obtaining corresponding VPN type is vpws (virtual private wire service, centrex service) with above-mentioned Router-id and vpn label, and the VPN index etc.
If desired data are further analyzed, data are presented to the user with open arms, so above-mentioned VPN traffic statistics process can also comprise:
408, network management device merges in the correspondence that realizes statistics and TAL information, just discern the VPN data on flows after, can be as required, to purpose PE inquiry supplementary, VPN name for example, MAC or VRF route etc.When network management device carries out the supplementary inquiry, can adopt SNMP (Simple Network Management Protocol, Simple Network Management Protocol) to realize.
Certainly, supplementary, VPN name for example, VRF route etc. also can be carried at purpose PE in the label information that network management device sends.
Fig. 6 is the method flow diagram that carries out the VPN traffic statistics in the one embodiment of the invention, and as shown in Figure 6, the method for carrying out the VPN traffic statistics comprises:
602, reception comprises the statistics of MPLS message and the purpose PE sign of this MPLS message from the accounting message of P equipment in this accounting message.For instance, this purpose PE sign can be the IP address of purpose PE, also can be Router-id, other signs that perhaps can unique identification purpose PE, for example character string, additional character and concrete numeral etc.
604, reception is from the label information of purpose PE, and this label information comprises TAL information.For instance, this TAL information can comprise the mapping relations of mapping relations, Router-id and the label value of this machine IP address and Router-id.This TAL information also can include only the mapping relations of Router-id and label value
606, carry out the VPN traffic statistics according to above-mentioned accounting message and label information.
For instance, from above-mentioned accounting message, extract the IP address of purpose PE, inquiry obtains the Router-id of this IP address correspondence, then with the vpn label that carries in the accounting message and the Router-id that inquires as the Key value, inquiry tag information obtains corresponding VPN type and VPN index, realizes that the correspondence of statistics and TAL information merges.
Again for instance, from the accounting message that P equipment sends, extract vpn label and Router-id, as the Key value, inquiry tag information obtains corresponding VPN type and VPN index, realizes that the correspondence of statistics and TAL information merges.
The method of counting messages in the foregoing description can also comprise:
608, network management device can be inquired about supplementary to purpose PE as required after realizing the correspondence merging of statistics and TAL information, just discerning the VPN data on flows, for instance, and VPN name, MAC or VRF route etc.When network management device carries out the supplementary inquiry, can adopt SNMP (Simple Network Management Protocol, Simple Network Management Protocol), be that the Key value realizes inquiry with VPN type and VPN index.Like this, can further analyze, data are presented to the user with open arms data.
Fig. 7 is a rough schematic view of realizing the network management device of VPN traffic statistics in the one embodiment of the invention.As shown in Figure 7, the network management device of realization VPN traffic statistics comprises:
First receiving element 702 is used to receive the accounting message from P equipment, comprises the statistics of MPLS message and the purpose PE sign of this MPLS message in this accounting message.For instance, this purpose PE sign can be the IP address of purpose PE, also can be the Router-id of purpose PE, can also be can unique identification purpose PE other signs, for example character string, additional character and concrete numeral etc.
Second receiving element 704 is used to receive the label information from purpose PE, and this label information comprises TAL information.For instance, this TAL information can comprise the mapping relations of mapping relations, Router-id and the label value of IP address and Router-id.This TAL information also can only comprise the mapping relations of Router-id to label value
Traffic statistics unit 706 is used for carrying out the VPN traffic statistics according to above-mentioned accounting message and label information.
Supplementary query unit 708 is used for to purpose PE inquiry supplementary, for instance, and VPN name, MAC or VRF route etc.Like this, can further analyze, data are presented to the user with open arms data.
First receiving element 702 and second receiving element 704 in the foregoing description also can be integrated into a receiving element.In another embodiment of the present invention, network management device can not comprise supplementary query unit 708.For instance, supplementary, VPN name for example, MAC or VRF route etc. also can be carried at purpose PE in the label information that network management device sends.
Fig. 8 is the rough schematic view of P equipment in the one embodiment of the invention, and as shown in Figure 8, P equipment comprises:
MPLS counting messages unit 802 is used to dispose NetStream, obtains the statistics of MPLS message;
Purpose PE identifies acquiring unit 804, is used for obtaining by the outer layer label of above-mentioned MPLS message the purpose PE sign of this MPLS message.For instance, this purpose PE sign can be the IP address of purpose PE, also can be Router-id, can also be can this purpose of unique identification PE other signs, for example character string, additional character and concrete numeral etc.
Accounting message transmitting element 806 is used for sending accounting message to network management device, and this accounting message comprises the statistics and the purpose PE sign of MPLS message.
Fig. 9 is the rough schematic view of P equipment in the another embodiment of the present invention, and as shown in Figure 9, P equipment comprises:
Policy configurations unit 902 is used to carry out policy configurations, and the IP address configuration that VPN is inserted PE is to local, and another implementation be the IP address of VPN being inserted PE, and the mapping relations of IP address and Router-id is configured to this locality;
MPLS counting messages unit 904 is used to dispose NetStream, and the MPLS message that meets collocation strategy is added up, and obtains statistics; For instance, P equipment, is added up this MPLS message when the IP address of purpose PE belongs to the IP address range of configuration according to configured strategy.
Purpose PE identifies acquiring unit 906, is used to obtain the purpose PE sign of this MPLS message.For instance, this purpose PE sign can be the IP address, perhaps Router-id, also can be can this purpose of unique identification PE other signs, for example character string, additional character and concrete numeral etc.Again for instance, this purpose PE sign can be obtained from the outer layer label of MPLS message; Also can obtain,, obtain the corresponding Router-id in purpose IP address with the MPLS message for example according to configured strategy by configured strategy.
Accounting message transmitting element 908 is used for sending accounting message to network management device, and this accounting message comprises the statistics and the purpose PE sign of MPLS message.
Figure 10 is the rough schematic view of VPN traffic statistics system in the embodiment of the invention.As shown in figure 10, VPN traffic statistics system comprises network management device 1002, P equipment 1006 and a PE1008; The VPN flow through P equipment 1006, arrives purpose PE, just a PE1008 from the 2nd PE1004.
Above-mentioned P equipment is used to dispose NetStream, carries out the MPLS counting messages, sends accounting message to network management device 1002, and this accounting message comprises the statistics of MPLS message and the purpose PE sign of this MPLS message;
For instance, purpose PE sign can be the IP address of purpose PE, also can be Router-id, can also be can unique identification purpose PE other signs, for example character string, additional character and concrete numeral etc.
The label information issuing function that is used to dispose NetStream on the above-mentioned PE1008 equipment is published to network management device 1002 with label information.
The label information of PE issue comprises TAL information.For instance, TAL information can comprise the mapping relations of mapping relations, Router-id and the label value of this machine IP address and Router-id.The TAL information of PE issue also can include only the mapping relations of Router-id and label value.
Above-mentioned network management device 1002 is used for carrying out the VPN traffic statistics according to above-mentioned accounting message and label information.
For instance, network management device is from the accounting message that P equipment sends, extract the IP address of purpose PE, inquire about the Router-id of the IP address correspondence of this purpose PE, then with the vpn label that carries in the accounting message and the Router-id that inquires as the Key value, inquiry tag information obtains corresponding VPN type and VPN index, realizes that the correspondence of statistics and TAL merges.
In another embodiment of the present invention, an above-mentioned PE1008 can also be used for the supplementary query requests of response to network management equipment 1002, sends supplementary to network management device 1002, for instance, can be VPN name, MAC or VRF route etc.
The embodiment of the invention also provides a kind of PE, comprising:
The label information release unit, the label information issuing function that is used to dispose NetStream sends label information to network management device, and for instance, this label information comprises TAL information.
In another embodiment of the present invention, PE can also comprise:
The query requests response unit is used for the supplementary query requests of response to network management equipment 1002, sends supplementary to network management device, for instance, can be VPN name, MAC or VRF route etc.
Part steps in the embodiment of the invention can utilize software to realize that corresponding software programs can be stored in the storage medium that can read, as CD or hard disk etc.
The solution that the embodiment of the invention provides, at the NetStream of P its upper side administration, compared to a lot of PE deploy NetStreams of prior art at access VPN, can save user cost, in addition, by on P equipment, carrying out the statistics of MPLS message, can also grasp the transmission path of VPN flow in carrier network, can network enabled planning.In the some embodiments of the invention, the data that PE issues network management device are Key values, but not whole VPN data, conserve network bandwidth effectively.If desired, network management device can be inquired about more detailed data to purpose PE according to these Key values.In the some embodiments of the invention,, P equipment is optionally added up to the MPLS message, both can have been saved the resource of P equipment effectively, can alleviate the pressure that network management device receives data and deal with data again by on P equipment, carrying out policy configurations.
The above; only for the preferable embodiment of the present invention, but protection scope of the present invention is not limited thereto, and anyly is familiar with the people of this technology in the disclosed technical scope of the present invention; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.

Claims (14)

1. a method that realizes Virtual Private Network VPN traffic statistics is characterized in that, comprising:
Reception comprises the statistics of multiprotocol label switching MPLS message and the purpose provider edge equipment PE sign of described MPLS message from the accounting message of the P of operator equipment in the described accounting message;
Reception is from the label information of described purpose PE;
Carry out the VPN traffic statistics according to described accounting message and described label information.
2. method according to claim 1 is characterized in that, described label information comprises time applying label TAL information.
3. method according to claim 2 is characterized in that, described purpose PE sign comprises the Internet Protocol IP address of described purpose PE; Described TAL information comprises the mapping relations of routing device sign and the label value of purpose PE of mapping relations, the purpose PE of the routing device sign of the IP address of purpose PE and purpose PE;
Describedly carry out the VPN traffic statistics, comprising according to described accounting message and described label information:
Extract the IP address of described purpose PE, inquire about described TAL information, obtain the routing device sign of the IP address correspondence of described purpose PE;
According to the vpn label that carries in described routing device sign and the described accounting message, inquire about described TAL information;
Obtain corresponding VPN type and VPN index, realize that the correspondence of described statistics and described TAL information merges.
4. method according to claim 2 is characterized in that, described purpose PE sign comprises the routing device sign of described purpose PE; Described TAL information comprises the mapping relations of routing device sign and label value;
Describedly carry out the VPN traffic statistics, comprising according to described accounting message and described label information:
Extract the vpn label that carries in described routing device sign and the described accounting message;
Inquire about described TAL information according to described routing device sign and described vpn label;
Obtain corresponding VPN type and VPN index, realize that the correspondence of described statistics and described TAL information merges.
5. method according to claim 4 is characterized in that, described statistics is drawn based on the configured strategy statistics by described P equipment.
6. according to each described method of claim 1-4, it is characterized in that, also comprise:
To described purpose PE inquiry supplementary.
7. a network management device is characterized in that, comprising:
First receiving element is used to receive the accounting message from the P of operator equipment, comprises the statistics of multiprotocol label switching MPLS message and the purpose provider edge equipment PE sign of described MPLS message in the described accounting message;
Second receiving element is used to receive the label information from described purpose PE;
The traffic statistics unit is used for realizing Virtual Private Network VPN traffic statistics according to described accounting message and described label information.
8. network management device according to claim 7 is characterized in that, also comprises:
The supplementary query unit is used for to described purpose PE inquiry supplementary.
9. according to claim 7 or 8 described network management devices, it is characterized in that described statistics is drawn based on the configured strategy statistics by described P equipment.
10. according to claim 7 or 8 described network management devices, it is characterized in that described first receiving element and described second receiving element can be integrated into a receiving element.
11. operator's equipment is characterized in that, comprising:
Multiprotocol label switching MPLS counting messages unit is used to dispose traffic statistics engineering NetStream, obtains the statistics of MPLS message;
Purpose provider edge equipment PE identifies acquiring unit, is used to obtain the purpose PE sign of described MPLS message;
The accounting message transmitting element is used for sending accounting message to network management device, and described accounting message comprises the statistics and the described purpose PE sign of described MPLS message.
12. operator according to claim 11 equipment is characterized in that, described operator equipment also comprises:
The policy configurations unit is used to carry out policy configurations, with the IP address configuration of the PE of the privately owned net VPN of access of virtual to local;
The statistics that described MPLS counting messages unit obtains the MPLS message comprises: the MPLS message that meets collocation strategy is added up, obtained described statistics.
13. a system that realizes the VPN traffic statistics is characterized in that, comprises network management device, the P of operator equipment, the first provider edge equipment PE, Virtual Private Network VPN flow through described P equipment, arrives a described PE from the second provider edge equipment PE;
Described P equipment is used to dispose traffic statistics engineering NetStream, carries out multiprotocol label switching MPLS counting messages, sends accounting message to described network management device, and described accounting message comprises the purpose PE sign of statistics and described MPLS message;
A described PE is used to dispose the label issuing function of NetStream, and label information is published to described network management device;
Described network management device is used for carrying out the VPN traffic statistics according to described accounting message and described label information.
14. system according to claim 13, a described PE also are used for sending supplementary to described network management device.
CN2008102177706A 2008-12-01 2008-12-01 Method, equipment and system for realizing stream statistics of virtual private network Active CN101753366B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2008102177706A CN101753366B (en) 2008-12-01 2008-12-01 Method, equipment and system for realizing stream statistics of virtual private network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2008102177706A CN101753366B (en) 2008-12-01 2008-12-01 Method, equipment and system for realizing stream statistics of virtual private network

Publications (2)

Publication Number Publication Date
CN101753366A true CN101753366A (en) 2010-06-23
CN101753366B CN101753366B (en) 2013-04-17

Family

ID=42479805

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2008102177706A Active CN101753366B (en) 2008-12-01 2008-12-01 Method, equipment and system for realizing stream statistics of virtual private network

Country Status (1)

Country Link
CN (1) CN101753366B (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103036710A (en) * 2012-12-03 2013-04-10 杭州华三通信技术有限公司 Method and edge device for acquiring geographical location information of web site
CN104348747A (en) * 2014-05-22 2015-02-11 国网山西省电力公司信息通信分公司 Method and system for monitoring flow in MPLS-VPN (Multiple Protocol Label Switching-Virtual Private Network)
CN104660459A (en) * 2015-01-15 2015-05-27 北京奥普维尔科技有限公司 FPGA-based system and FPGA-based method for realizing online business scanning of 10 gigabit Ethernet
CN105052088A (en) * 2013-03-22 2015-11-11 日本电气株式会社 Network statistical information providing system, network statistical information providing method, and program
CN108574607A (en) * 2017-03-08 2018-09-25 中兴通讯股份有限公司 Shared verification detection method and device based on Virtual Private Network
CN110703817A (en) * 2016-03-29 2020-01-17 华为技术有限公司 Control method, device and system for statistical flow

Family Cites Families (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1866868B (en) * 2006-01-18 2010-10-06 华为技术有限公司 Multi protocol label switched network flow managing system, method and device
CN101207541A (en) * 2006-11-09 2008-06-25 美国博通公司 Access point circuit for supporting multi-terminal devices and method thereof
CN101102228B (en) * 2007-08-08 2010-06-02 华为技术有限公司 A method and device for flow statistics

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103036710A (en) * 2012-12-03 2013-04-10 杭州华三通信技术有限公司 Method and edge device for acquiring geographical location information of web site
CN103036710B (en) * 2012-12-03 2016-03-30 杭州华三通信技术有限公司 A kind of method and edge device obtaining the geographical location information of website
CN105052088A (en) * 2013-03-22 2015-11-11 日本电气株式会社 Network statistical information providing system, network statistical information providing method, and program
CN104348747A (en) * 2014-05-22 2015-02-11 国网山西省电力公司信息通信分公司 Method and system for monitoring flow in MPLS-VPN (Multiple Protocol Label Switching-Virtual Private Network)
CN104660459A (en) * 2015-01-15 2015-05-27 北京奥普维尔科技有限公司 FPGA-based system and FPGA-based method for realizing online business scanning of 10 gigabit Ethernet
CN110703817A (en) * 2016-03-29 2020-01-17 华为技术有限公司 Control method, device and system for statistical flow
CN110703817B (en) * 2016-03-29 2022-04-05 华为技术有限公司 Control method, device and system for statistical flow
US11381480B2 (en) 2016-03-29 2022-07-05 Huawei Technologies Co., Ltd. Control method, apparatus, and system for collecting traffic statistics
US11716262B2 (en) 2016-03-29 2023-08-01 Huawei Technologies Co., Ltd. Control method, apparatus, and system for collecting traffic statistics
CN108574607A (en) * 2017-03-08 2018-09-25 中兴通讯股份有限公司 Shared verification detection method and device based on Virtual Private Network

Also Published As

Publication number Publication date
CN101753366B (en) 2013-04-17

Similar Documents

Publication Publication Date Title
CN101099352B (en) Techniques for oversubscribing edge nodes for virtual private networks
US8416787B2 (en) Method, system and apparatus for implementing L2VPN between autonomous systems
CN101753366B (en) Method, equipment and system for realizing stream statistics of virtual private network
CN101442467B (en) Method for providing multipoint to multipoint connection in network based on operator backbone network transmission
CN1866868B (en) Multi protocol label switched network flow managing system, method and device
CN104823405A (en) IP multicast service leave process for MPLS-based virtual private cloud networking
CN102025591A (en) Method and system for implementing virtual private network
CN101159656B (en) Packet sampling method, system and equipment
CN104243362B (en) A kind of message forwarding method and device
CN100421419C (en) Conmection identifier and label exchange path mapping method in broadband wireless MAN
CN110391997A (en) A kind of message forwarding method and device
CN107070789A (en) The flow black hole of active active PBB EVPN redundancies is avoided and rapid fusion
CN103259724A (en) Method, system and client edge device for implementing MPLS VPN
WO2011147342A1 (en) Method, equipment and system for exchanging routing information
CN103684959A (en) VPN realization method and PE device
CN101247267B (en) Method and device for three-layer virtual special network topological automatic discovering in network management system
CN108259298A (en) A kind of message forwarding method and device
CN101729422B (en) Method and device for realizing QoS (Quality of Service) by utilizing BGP (Border Gateway Protocol)
CN101483638A (en) Method, system and apparatus for applying label
CN108667729B (en) SDN service isolation and routing method and device based on MPLS
CN103248548B (en) The method and node of the E-tree business based on VPLS of realization
CN107689920A (en) A kind of multi-service end to end route cognitive method automatically
CN102624601B (en) Data message transmission method, network device and network system
CN102984066B (en) Route issuing method and equipment
CN101834804A (en) Method and device for realizing speed limit for traffic of virtual private networks (VPN)

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant