Summary of the invention
In view of this, main purpose of the present invention is to provide a kind of deep packet inspection equipment linkage strategy generation system and method, can realize DPI equipment and information centralized management and analysis to disperseing.
For achieving the above object, technical scheme of the present invention is achieved in that
The invention provides a kind of deep packet inspection equipment linkage strategy generation system, comprising: deep message detects DPI actuator, DPI interlock information control center and policy decision module; Wherein,
DPI actuator, for identifying service traffics and controlling, also for the information of each DPI equipment is provided to DPI interlock information control center;
The DPI information control center that links, for collecting the information of each DPI equipment, and offers policy decision module by the information classification of collecting;
Policy decision module, for the information of collecting DPI equipment from DPI interlock information control center, and according to the executable application strategy of Information generation of collecting, then generated application strategy is handed down to DPI actuator.
In such scheme, described policy decision module comprises that DPI equipment linkage tactical management submodule, strategy generate submodule; Wherein, described DPI equipment linkage tactical management submodule, generates for receiving strategy the application strategy that submodule reports, and generates executable application strategy and issues DPI actuator according to the application strategy reporting; Described strategy generates submodule, and the various DPI facility informations that report for receiving DPI interlock information control center, generate various strategies according to the DPI facility information of receiving, and the strategy of generation is offered to DPI equipment linkage tactical management submodule.
In such scheme, the information of described DPI equipment includes but not limited to the routing iinformation of DPI equipment, the state information of DPI equipment, the recognition result information of DPI equipment, the flow information of DPI equipment, the related information of DPI equipment;
Described strategy generates submodule and comprises any one or more in associated identification control strategy decision-making submodule, traffic sharing linkage strategy decision-making submodule, troubleshooting linkage strategy decision-making submodule.
In such scheme, described strategy generates submodule and comprises associated identification control strategy decision-making submodule, traffic sharing linkage strategy decision-making submodule and troubleshooting linkage strategy decision-making submodule;
Described associated identification control strategy decision-making submodule, for obtain the related information of DPI equipment from DPI interlock information control center, carry out corresponding control decision according to the related information obtaining, and the control strategy that self is generated reports DPI equipment linkage tactical management submodule;
Described traffic sharing linkage strategy decision-making submodule, for obtain the flow information of DPI equipment from DPI interlock information control center, carry out traffic sharing strategic decision-making according to the flow information obtaining, and the traffic sharing strategy that self is produced reports DPI equipment linkage tactical management submodule;
Described troubleshooting linkage strategy decision-making submodule, for obtain the state information of DPI equipment from DPI interlock information control center, carry out troubleshooting strategic decision-making according to the state information of obtaining, and the troubleshooting strategy that self is produced reports DPI equipment linkage tactical management submodule.
This system further comprises centralized policy administration module, for coordinating and managing the above linkage strategy generation system, generates and issue corresponding management strategy to the policy decision module in its compass of competency; Accordingly, the strategy that DPI equipment linkage tactical management submodule also issues for receiving centralized policy administration module; Generate executable application strategy in conjunction with the analysis of strategies of receiving afterwards.
This system further comprises external management and decision system, for generating the strategy that DPI equipment is managed, and generated strategy is offered to policy decision module; Accordingly, DPI equipment linkage tactical management submodule is also for receiving the strategy from external management and decision system editor and importing/derivation; Generate executable application strategy in conjunction with the various policy information analyses of receiving afterwards.
The present invention also provides a kind of deep packet inspection equipment linkage strategy-generating method, comprising:
Obtain the information of each DPI equipment, determine different application strategies according to obtained information, generate executable application strategy and issue according to more than one application strategy of determining again afterwards.
In such scheme, described in obtain each DPI equipment information be: by the each strategic decision-making submodule in the information classification reporting policy decision-making module of the each DPI equipment obtaining;
Accordingly, describedly determine that according to obtained information different application strategies is: each strategic decision-making submodule is according to the application strategy of the Information generation self of receiving, and by the DPI equipment linkage tactical management submodule in the application strategy reporting policy decision-making module generating;
The executable application strategy of described generation also issues as: DPI equipment linkage tactical management submodule generates according to the application strategy reporting the application strategy of carrying out and also issues DPI actuator.
The present invention also provides a kind of deep packet inspection equipment linkage strategy-generating method, comprising:
Obtain the information of each DPI equipment, determine different application strategies according to obtained information, afterwards according to more than one application strategy of determining, and generate executable application strategy and issue in conjunction with the policy information that centralized policy administration module and/or external management and decision system provide.
In such scheme, described in obtain each DPI equipment information be: by the each strategic decision-making submodule in the information classification reporting policy decision-making module of the each DPI equipment obtaining;
Accordingly, describedly determine that according to obtained information different application strategies is: each strategic decision-making submodule is according to the application strategy of the Information generation self of receiving, and by the DPI equipment linkage tactical management submodule in the application strategy reporting policy decision-making module generating;
The executable application strategy of described generation also issues the strategy generating according to the application strategy reporting, policy information that centralized policy administration module issues and/or external management and decision system for: DPI equipment linkage tactical management submodule, analyze and generate executable application strategy, and issue DPI actuator.
Deep packet inspection equipment linkage strategy generation system provided by the present invention and method, obtain the various information of each DPI equipment, tentatively determine different application strategies according to obtained various information, afterwards multiple application strategies of tentatively determining are comprehensively analyzed, generated final executable application strategy and issue.So, whole system can, according to the state variation of all DPI equipment, be adjusted application strategy in time, such as: traffic sharing, troubleshooting etc., information according to each DPI equipment is formulated linkage strategy, reaches through part is deployed on to the object that the each DPI equipment in network is managed concentratedly.
The present invention adopts two stage application strategy to determine mechanism in the time formulating application strategy, the application strategy of the first each self-generating of module self by processing for certain category information specially, by policy decision module, all application strategies of receiving are comprehensively analyzed again, generated final executable application strategy.The DPI equipment that can effectively realize being deployed in network by application of the present invention carries out transfer of flow optimization and fault situation amount etc., and then realizes coordination between each DPI equipment, reliable cooperating.
Further, policy decision module of the present invention, be specially the application strategy that the DPI equipment linkage tactical management submodule in policy decision module can also report each strategic decision-making submodule, the application strategy issuing in conjunction with centralized policy administration module and/or external management and decision system are carried out comprehensive analysis and judgement for its application strategy providing, generate the more applicable application strategy carried out, so, can be optimized the traffic management of each DPI equipment in network better, can coordinate better the work between each DPI equipment.
Embodiment
Basic thought of the present invention is: obtain the various information of each DPI equipment, tentatively determine different application strategies according to obtained various information, generate final executable application strategy and issue afterwards according to preliminary multiple application strategies of determining.
Further, the present invention can also be by multiple application strategies of tentatively determining, the application strategy issuing with centralized policy administration module and/or external management and decision system are analyzed judgement for its application strategy providing combines, and generate the more applicable application strategy carried out.
As shown in Figure 1, deep packet inspection equipment linkage strategy generation system of the present invention mainly comprises: DPI actuator 11, DPI interlock information control center 12 and policy decision module 13; Wherein,
DPI actuator 11, is a DPI interlocking equipment group, and the identification for specific implementation to service traffics and control, also for providing the information of each DPI equipment to DPI interlock information control center 12; And the application strategy that can issue according to policy decision module is to the executive control operation of DPI equipment.
Here, described information can comprise the routing iinformation of DPI equipment, the state information of DPI equipment, the recognition result information of DPI equipment, the flow information of DPI equipment, related information of DPI equipment etc.; It is described that to DPI equipment, executive control operation can be the transfer of data traffic, such as: the data of faulty equipment transmission are turned by normal work and the little one or more device transmission of load; A part of data on equipment large load are turned to the one or more device transmission little by load.
The DPI information control center 12 that links, for managing the registration of DPI equipment group equipment, collection and the maintenance of facility information, and the strategy that the DPI facility information of collecting is offered in policy decision module generates submodule.
In system shown in Figure 1, completing the decision-making of DPI linkage strategy is policy decision module 13 with the module that issues most critical, the various information of policy decision module 13 for collecting DPI equipment from DPI interlock information control center 12, and according to the executable application strategy of Information generation of collecting, then generated application strategy is handed down to DPI actuator 11.
In actual applications, described policy decision module 13 can be used as functional module and is integrated in Network Management Equipment, also can be used as the independent network equipment, such as: separately as strategic decision-making server.Concrete, this policy decision module 13 generates submodule 130 by DPI equipment linkage tactical management submodule 131 and strategy and forms.Wherein,
DPI equipment linkage tactical management submodule 131, it is the center of executable application strategy final decision and issue, this submodule is specifically for completing following functions: receive from strategy and generate the various strategies that submodule 130 generates according to all kinds of DPI facility informations of collecting, the comprehensive various strategies that receive of analyzing, produce executable application strategy again; DPI actuator 11 is issued to identification masterplate and the final application strategy producing.
Here, described comprehensive analysis can be that the different application strategy to receiving judges, relatively, according to the degree of association between each application strategy, whether overlapping, whether have conflict etc. condition, determine that optimum application strategy is final executable application strategy.
This submodule also can be used for application strategy to carry out the adjustment of priority, selects the high application strategy of priority as final executable application strategy; Accordingly, the application strategy that is final generation and adjusts through priority of DPI actuator 11 being issued.
Strategy generates submodule 130, and the various DPI facility informations that report for receiving DPI interlock information control center 12, generate various strategies according to the DPI facility information of receiving, and the strategy of generation is offered to DPI equipment linkage tactical management submodule 131;
Described strategy generates submodule 130 can comprise any one or more in associated identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133, troubleshooting linkage strategy decision-making submodule 134.That is to say, it can be any one submodule or the combination of any two submodules or the combination of three submodules in associated identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133, troubleshooting linkage strategy decision-making submodule 134 threes that strategy generates submodule 130.
Accordingly, the information classification of collecting is offered corresponding strategic decision-making submodule in policy decision module by DPI interlock information control center 12.Here, described classification refers to all information of receiving by different classes of differentiation, such as: be divided into the recognition result information of DPI equipment, the routing iinformation of DPI equipment, the state information of DPI equipment, the flow information of DPI equipment, related information of DPI equipment etc., so, can be by strategic decision-making submodules different different classes of information reporting.
In practical application, a certain category information only can be reported to a corresponding strategic decision-making submodule, such as: by state information report troubleshooting strategic decision-making submodule etc.; Also can, according to the correlation of information and strategic decision-making submodule, a few category informations be reported to same strategic decision-making submodule, such as: by all reporting fault processing policy decision-making submodules of routing iinformation, state information; Can also, according to the correlation of information and strategic decision-making submodule, a certain category information be reported to multiple strategic decision-making submodules, such as: routing iinformation is reported to traffic sharing linkage strategy decision-making submodule, troubleshooting strategic decision-making submodule.
In this case, DPI equipment linkage tactical management submodule 131 receives the various generation strategies of auto correlation identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133, troubleshooting linkage strategy decision-making submodule 134.
Concrete, associated identification control strategy decision-making submodule 132, for obtaining the related information that need to obtain because of traffic identification at different DPI equipment rooms from DPI interlock information control center 12, carry out corresponding control decision according to the related information obtaining, and by self generate control strategy report DPI equipment linkage tactical management submodule 131, do final application strategy decision-making by DPI equipment linkage tactical management submodule 131.Such as: same business datum during by different DPI device transmission, can be by the identification of different DPI facility informations is defined as to same business datum, and then formulate corresponding processing policy.
Traffic sharing linkage strategy decision-making submodule 133, for obtain the flow information of DPI equipment from DPI interlock information control center 12, carry out traffic sharing strategic decision-making according to the flow information obtaining, and by self produce traffic sharing strategy report DPI equipment linkage tactical management submodule 131, do final application strategy decision-making by DPI equipment linkage tactical management submodule 131.The principle of carrying out traffic sharing strategic decision-making here, is to make the flow equilibrium optimization in application layer between each DPI equipment.
Troubleshooting linkage strategy decision-making submodule 134, for obtain the state information of DPI equipment from DPI interlock information control center 12, carry out troubleshooting strategic decision-making according to the state information of obtaining, and by self produce troubleshooting strategy report DPI equipment linkage tactical management submodule 131, do final application strategy decision-making by DPI equipment linkage tactical management submodule 131.
The object of this submodule is evaded equipment Risk exactly, treatment facility fault is brought in time service disconnection and relevant issues.In practical application, this submodule also can receive the DPI facility informations such as routing iinformation, generates the troubleshooting strategy of self in the time carrying out strategic decision-making in conjunction with the various information of receiving.Such as: can determine which DPI device fails according to state information, can know the traffic load situation of each DPI equipment according to routing iinformation, just can determine that according to this load condition that the data flow of transmitting on fault DPI equipment is transferred to which or which DPI comparison in equipment is suitable so, data flow normal transmission can be ensured, flow equalization optimization can be reached again.
In actual applications, if there are multiple linkage strategy generation systems that formed by DPI actuator 11, DPI interlock information control center 12 and policy decision module 13 in network simultaneously, so, in order to coordinate and manage multiple such linkage strategy generation systems, in Fig. 1, can further comprise centralized policy administration module 15, connection strategy decision-making module 13, be used for coordinating and managing the above linkage strategy generation system, generate and issue corresponding management strategy to the policy decision module 13 in its compass of competency.
In actual applications, system shown in Figure 1 can also comprise external management and decision system 14, is outside decision management system, for generating the strategy that DPI equipment is managed, and generated strategy is offered to policy decision module 13.
For the situation that increases centralized policy administration module 15 and/or external management and decision system 14, accordingly, DPI equipment linkage tactical management submodule 131, also for receiving the various strategies that issue from centralized policy administration module 15, and/or for the treatment of editing and import from external management and decision system 14/strategy of deriving; Comprehensively analyze in conjunction with the various strategies of receiving afterwards, generate final executable application strategy.Here carrying out the comprehensive various policy informations of analyzing, comprises from the strategy of policy decision module 13, from the strategy of centralized policy administration module 15 and/or from the strategy of external management and decision system 14.
Here the various strategies that, described combination is received carry out comprehensive analysis and can be specifically: the information that policy decision module 13 is obtained according to DPI interlock information control center 12 is formulated corresponding strategy; Policy decision module 13 receives the corresponding strategy that centralized policy administration module 15 is issued simultaneously; Afterwards, the strategy that policy decision module 13 can be formulated self compares analysis with the strategy receiving, and determines final executable application strategy.If: the strategy that policy decision module 13 is formulated is: should be controlled at 10Mbps to certain application traffic of certain DPI equipment as VOIP flow; And the strategy that centralized policy administration module 15 is formulated is to limit the VOIP flow of its lower all DPI equipment at 5Mbps, and the tactful priority of centralized policy administration module 15 is high, because the strategy that centralized policy administration module is formulated may relate to overall multiple linkage strategy generation system; , after the comprehensive analysis of policy decision module 13,5Mbps centralized policy administration module 15 being formulated according to the priority of decision-making is applied to corresponding DPI equipment.
In the present invention, strategic decision-making is mainly for linkage strategy, therefore, and the information and executing that can provide according to external management and decision system 14 for the identification of business and control strategy; Also can formulate the strategy of corresponding identification and control by external management and decision system 14, according to the strategy of the strategy of priority Select Tactics decision-making module 13 or external management and decision system 14.
Fig. 2 is specific embodiments of the invention, and in the present embodiment, strategy generates submodule 130 and comprises associated identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133,134 3 submodules of troubleshooting linkage strategy decision-making submodule.In Fig. 2, representing different classes of information with different filling modes, is three category informations here, represents respectively with black filling, oblique line filling and blank filling; Accordingly, DPI interlock information control center 12 represents to transmit to the solid line of associated identification control strategy decision-making submodule 132 data flow that black is filled; DPI interlock information control center 12 represents to transmit to the dotted line of traffic sharing linkage strategy decision-making submodule 133 data flow that oblique line is filled; DPI interlock information control center 12 represents to transmit blank data flow of filling to the chain-dotted line of troubleshooting linkage strategy decision-making submodule 134.
As shown in Figure 2, DPI interlock information control center 12 obtains the information of DPI equipment from DPI actuator 11, and corresponding strategy decision-making submodule in reporting policy decision-making module 13 will be distinguished after obtain information classification: associated identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133, troubleshooting linkage strategy decision-making submodule 134, each strategic decision-making submodule generates the application strategy of self according to the corresponding information of receiving, and the application strategy that self is generated reports DPI equipment linkage tactical management submodule 131, DPI equipment linkage policy management module 131 is comprehensively analyzed the strategic decision-making information receiving from each strategic decision-making submodule, and final decision produces executable application strategy and is issued to DPI actuator 11, DPI actuator 11 receives after executable application strategy, according to the application strategy issuing, DPI equipment is carried out to control operation, such as transferring data flow, share data traffic etc.
Here, described comprehensive analysis refers to that DPI equipment linkage policy management module 131 will be in conjunction with the policy information from each tactful submodule, and analysis draws executable application strategy.Such as: DPI equipment linkage policy management module 131 is received from traffic sharing linkage strategy decision-making submodule 133, the strategy of troubleshooting linkage strategy decision-making submodule 134, wherein, the strategy of traffic sharing linkage strategy decision-making submodule 133 provides the network topology structure of each node device of current normal work, the strategy of troubleshooting linkage strategy decision-making submodule 134 provides the current node device breaking down and points out to walk circuitous path, so, DPI equipment linkage policy management module 131 is received after these two strategies, first determine that according to the strategy of troubleshooting linkage strategy decision-making submodule 134 which node device breaks down, determine and the each node device of upstream and downstream of this malfunctioning node equipment connection according to the strategy of traffic sharing linkage strategy decision-making submodule 133 again, and all node devices that connect between the each node device of this upstream and downstream, therefrom select afterwards the node device of suitable replacement malfunctioning node equipment according to routing algorithm.Visible, comprehensive analysis is in conjunction with just drawing final application strategy from the policy information of each side; Or, from several similar strategies, select priority high or preferably or the strategy of applicable current running environment as final executable application strategy.
Give an example in conjunction with concrete application, supposing has DPI1, DPI2, DPI3, tetra-DPI equipment of DPI4 in network, wherein, four DPI equipment are all supported P2P agreement, and DPI1 is connected with DPI2, DPI3 respectively, DPI2, DPI3 all connect DPI4, and the data flow that transfers to DPI4 from DPI1 is transmitted via DPI2.
In the time that DPI2 breaks down, first, DPI interlock information control center 12 obtains the information of DPI equipment from DPI actuator 11: DPI1~DPI4 all supports P2P agreement; DPI1 is connected with DPI2, DPI3, and DPI2, DPI3 are connected with DPI4, and DPI1 transmits data by DPI2 to DPI4; DPI4 breaks down.
Then, DPI interlock information control center 12 obtains after above-mentioned information, these information is divided three classes: DPI1~DPI4 all supports P2P agreement to belong to recognition result information; The annexation of DPI1, DPI2, DPI3, DPI4, and the path that DPI1 walks to DPI4 transmission data belongs to routing iinformation; DPI4 breaks down and belongs to state information.
Afterwards, DPI interlock information control center 12 is by the associated identification of recognition result information reporting control strategy decision-making submodule 132; Routing iinformation is reported to traffic sharing linkage strategy decision-making submodule 133 and troubleshooting linkage strategy decision-making submodule 134; By state information report troubleshooting linkage strategy decision-making submodule 134.
Associated identification control strategy decision-making submodule 132, traffic sharing linkage strategy decision-making submodule 133 and troubleshooting linkage strategy decision-making submodule 134 are separately according to the application strategy of the Information generation self of receiving; Wherein, troubleshooting linkage strategy decision-making submodule 134 is received after routing iinformation and state information, the strategic decision-making according to state information and routing iinformation generation self: the data that DPI1 is transmitted to DPI4 via DPI2, are transferred to via DPI3 and transmit to DPI4.
Finally, the strategic decision-making that troubleshooting linkage strategy decision-making submodule 134 generates self reports DPI equipment linkage policy management module 131, DPI equipment linkage policy management module 131 is analyzed through comprehensive, for troubleshooting, DPI1 is transferred data to DPI4 as final executable application strategy via DPI3, and issue this application strategy to DPI actuator 11, DPI actuator 11 controls processing according to the application strategy of receiving to DPI1~DPI4, and the data that DPI1 sent to DPI4 are transmitted via DPI3.
Based on said apparatus, the present invention also provides a kind of deep packet inspection equipment linkage strategy-generating method, and the concrete processing procedure of the method as shown in Figure 3, comprises the following steps:
Step 301:DPI interlock information control center obtains the information of each DPI equipment from DPI actuator, the strategy of reporting policy decision-making module generates submodule;
Here, if generating submodule, strategy comprises multiple strategic decision-making submodules, for example: comprise associated identification control strategy decision-making submodule, traffic sharing linkage strategy decision-making submodule, troubleshooting linkage strategy decision-making submodule, DPI interlock information control center can be by after the classification of DPI facility information, and reporting policy generates each strategic decision-making submodule in submodule.Wherein, the information of described DPI equipment can be the related information of the routing iinformation of DPI equipment and/or the recognition result information of the state information of DPI equipment and/or DPI equipment and/or the flow information of DPI equipment and/or DPI equipment.
Step 302: strategy generates submodule and generates various application strategies according to the corresponding information of receiving, and by the DPI equipment linkage tactical management submodule in the application strategy reporting policy decision-making module generating;
Here, be made up of multiple strategic decision-making submodules if strategy generates submodule, each strategic decision-making submodule generates the application strategy of self separately according to the corresponding information of receiving, reports DPI equipment linkage tactical management submodule.
Step 303:DPI equipment linkage tactical management submodule is comprehensive analyzes the various application strategies of receiving, and finally forms executable application strategy, is issued to DPI actuator;
Here, if DPI equipment linkage tactical management submodule also connects centralized policy administration module and/or external management and decision system; So, the executable application strategy of described final formation is: according to more than one application strategy of determining, and the policy information that the policy information issuing in conjunction with centralized policy administration module and/or external management and decision system provide generates final executable application strategy.
The final executable application strategy that step 304:DPI actuator issues according to policy decision module, carries out corresponding control operation to each DPI equipment.
This step is optional for DPI equipment linkage strategy-generating method.
Can be found out by above-mentioned processing procedure: adopt method provided by the present invention, DPI facility information and the service condition etc. effectively in integrated network, disposed, carry out the formulation of corresponding strategy decision-making, and then effectively realize the optimization equilibrium of DPI recognition of devices service traffics, and the function such as transfer of data traffic in single DPI equipment fault situation.
The above, be only preferred embodiment of the present invention, is not intended to limit protection scope of the present invention, all any amendments of doing within the spirit and principles in the present invention, is equal to and replaces and improvement etc., within all should being included in protection scope of the present invention.