CN102142997A - Method for managing remote branches and management server - Google Patents

Method for managing remote branches and management server Download PDF

Info

Publication number
CN102142997A
CN102142997A CN2011100676311A CN201110067631A CN102142997A CN 102142997 A CN102142997 A CN 102142997A CN 2011100676311 A CN2011100676311 A CN 2011100676311A CN 201110067631 A CN201110067631 A CN 201110067631A CN 102142997 A CN102142997 A CN 102142997A
Authority
CN
China
Prior art keywords
remote branch
address
management server
gateway device
branch
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2011100676311A
Other languages
Chinese (zh)
Other versions
CN102142997B (en
Inventor
遇惠君
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CN201110067631.1A priority Critical patent/CN102142997B/en
Publication of CN102142997A publication Critical patent/CN102142997A/en
Application granted granted Critical
Publication of CN102142997B publication Critical patent/CN102142997B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a method for managing remote branches. The method comprises the following steps: distributing an Internet protocol (IP) address for a downstream interface of the gateway equipment of each remote branch by a management server in a headquarters in an unified way; storing the distributed IP address of the downstream interface of the gateway equipment of each remote branch; identifying the corresponding remote branch by the management server according to the stored IP address corresponding to the downstream interface of the gateway equipment of the remote branch; and managing the identified corresponding remote branches through the same protocol of the equipment in the management headquarters by an established virtual private network (VPN) tunnel. The invention also discloses a management server; and by the method and the management server provided by the invention, the management on each remote branch in the network can be effectively realized.

Description

A kind of method and management server of managing remote branch
Technical field
The present invention relates to the network management technology field, particularly a kind of method and management server of managing remote branch.
Background technology
Along with network application constantly popularize with deeply, interconnecting has become the necessary condition of general headquarters and remote branch in the network, Fig. 1 is the typical networking schematic diagram of general headquarters and remote branch in the existing network.As shown in Figure 1, on the one hand, each remote branch inserts public network by both economical modes such as ADSL (Asymmetric Digital Subscriber Line) (ADSL) dialing, and then connects the vpn gateway of general headquarters by VPN (virtual private network) (VPN) tunnel, to realize and the communicating by letter of general headquarters; On the other hand, management server also need be set in the general headquarters manages concentratedly each remote branch in the network.
Yet, in existing network, general headquarters can only determine certain remote branch by unique Internet Protocol (IP) address, and existing each remote branch all inserts public network by modes such as ADSL dialing, thereby the IP address when at every turn inserting is fixing, and which remote branch what just make also that general headquarters can not judge current communication exactly is; In addition, consideration for network security, the up outgoing interface of existing remote branch may be do not allow accessed, therefore can make that general headquarters are difficult to realize all remote branch are managed, administrative unit need all be set in each remote branch for this reason come respectively each remote branch to be managed separately, also just increase the resource that administrative institute needs.Therefore, how to realize the management of all remote branch is become the problem that existing network is needed solution badly.
Summary of the invention
In view of this, the invention provides a kind of method of managing remote branch, can realize management effectively all remote branch in the network.
The present invention also provides a kind of management server, can realize the management to all remote branch in the network effectively.
In order to achieve the above object, the technical scheme of the present invention's proposition is:
A kind of method of managing remote branch, this method comprises:
Management server in the general headquarters is the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
This method further comprises: the management server in the general headquarters is the sub-interface unified distribution IP address of gateway device in the remote branch, and will store for the sub-interface IP address allocated.
Before remote branch inserted public network, this method further comprised: management server will be handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
Before remote branch inserted public network, this method also comprised: the vpn tunneling between general headquarters and each remote branch is configured, when remote branch inserts public network, sets up vpn tunneling between general headquarters and each remote branch according to the vpn tunneling that disposes.
A kind of management server is applied to equipment and remote branch in the network general headquarters are managed, and this management server comprises: memory cell and administrative unit, wherein,
Described memory cell is used to the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit, after being used for IP Address Recognition according to the downstream interface of the gateway device of each remote branch of cell stores and going out corresponding remote branch, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
Described memory cell also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
This management server also comprises and issues the unit, is used for memory cell is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
In sum, the method of management remote branch of the present invention, by in the management server of general headquarters in advance the IP address to the downstream interface of the gateway device of each remote branch distribute unitedly and store, thereby make when each remote branch inserts public network, management server can corresponding remote branch according to the IP Address Recognition of the remote branch of storing, and then can by with corresponding long-range branch between vpn tunneling remote branch is managed, also promptly can manage corresponding remote branch according to the agreement identical with the equipment of management in the general headquarters.Because the inventive method is to discern corresponding remote branch by the IP address of the gateway device of the remote branch of storage, thereby also with regard to solved each remote branch when inserting public network because what insert that IP do not fix that the general headquarters that cause can not accurately judge current communication is the problem of which remote branch, and, since can by with corresponding long-range branch between vpn tunneling remote branch is managed, also just can remote branch be managed by the agreement identical with equipment in the management general headquarters, need not to increase the resource of management remote branch, thereby not only can realize management effectively, and saved the resource that administrative institute needs to remote branch.
Description of drawings
Fig. 1 is the typical networking schematic diagram of general headquarters and remote branch in the existing network;
Fig. 2 is the workflow diagram of management remote branch method of the present invention;
Fig. 3 is the networking schematic diagram of general headquarters of the present invention management remote branch;
Fig. 4 is the structural representation of management server apparatus of the present invention.
Embodiment
In order to solve problems of the prior art, the present invention proposes a kind of method of new management remote branch, its specific implementation comprises:
Management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored; When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the vpn tunneling of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with the accompanying drawings and the specific embodiments.
Fig. 2 is the workflow diagram of management remote branch device, method of the present invention.As shown in Figure 2, this flow process comprises:
Step 201: the management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored.
Need to prove, in this step, for the downstream interface unified distribution IP address of the gateway device of each remote branch is that the downstream interface of the gateway device in the different remote branch uses identical IP address, thereby cause management server not distinguish different gateway devices by the IP address of gateway device.
Also it should be noted that, in this step, business in certain remote branch more for a long time, as comprise data service, speech business, video traffic etc., in order to distinguish these different business, can be the sub-interface unified distribution IP address of the gateway device of this remote branch, and by with general headquarters in management server the IP address of the sub-interface of having distributed the IP address unitedly is also stored.
Step 202: the gateway device in the corresponding remote branch is handed down in the IP address of the gateway device of each remote branch that the management server in the general headquarters will be stored.
Need to prove that when there was sub-interface in the gateway device of certain remote branch, management server also needed the IP address of the sub-interface of the gateway device of the corresponding remote branch of storage is handed down to the gateway device of corresponding remote branch.
Step 203: the vpn tunneling between general headquarters and each remote branch is configured.
In this step, described vpn tunneling can be Internet Protocol Security (IPsec) VPN, Generic Routing Encapsulation (GRE) VPN etc., specifically how vpn tunneling is configured to be prior art, repeats no more here.
Step 204: after management server goes out corresponding remote branch according to the IP Address Recognition of gateway device of each remote branch of storage, the vpn tunneling of utilize setting up manages each the corresponding remote branch that identifies by the agreement identical with equipment in the management general headquarters.
Behind the vpn tunneling that has disposed with general headquarters, at this moment, if certain remote branch and general headquarters communicate, be that remote branch is when inserting in the public network by modes such as ADSL dialing, vpn tunneling between general headquarters and the remote branch is established, and then can identify corresponding remote branch according to the IP address of gateway device in the remote branch of storage by the management server in the general headquarters, thereby can communicate with the remote branch equipment of corresponding IP address by the vpn tunneling of setting up, and when communication general headquarters be by with manage general headquarters in the identical agreement of equipment manage corresponding remote branch.
Need to prove, in this step, management server is by Simple Network Management Protocol (SNMP), Telnet modes such as (TELNET) is managed equipment in the general headquarters, thereby, general headquarters identify corresponding remote branch by stored IP address after, promptly can carry out unified management to each remote branch that identifies by the vpn tunneling of setting up, thereby management server also just can pass through SNMP, modes such as TELNET are managed each remote branch, also just realized adopting identical agreement to manage with remote branch to the equipment of general headquarters in the network, the problem of the remote branch that can not determine communication that causes the IP address and the problem of saving management resource have not only been solved, and need not in network, to dispose two cover management servers, realized management effectively to remote branch.
So far, promptly finished the whole workflow that the present invention manages the remote branch method.
Based on said method, Fig. 3 is the networking schematic diagram of general headquarters of the present invention management remote branch, as shown in Figure 3, management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch in advance, and then the IP address of having distributed downstream interface unitedly stored, further, in the present embodiment, when the business of certain remote branch more for a long time, as comprise data service, speech business, video traffic etc., in order to distinguish these different business, can also distribute the IP address unitedly for the sub-interface of the gateway device of these professional place remote branch, and it be stored by the management server in the general headquarters; When each remote branch and general headquarters communicate, management server in the general headquarters identifies corresponding remote branch according to stored IP address, thereby can communicate with the remote branch equipment of corresponding IP address by the vpn tunneling of setting up, and when communication general headquarters can by with manage general headquarters in the identical agreement of equipment manage corresponding remote branch.
Based on said method and networking, Fig. 4 has provided the structural representation of management server apparatus of the present invention.As shown in Figure 4, this management server is applied to the general headquarters of network, and the equipment in the general headquarters and each remote branch in the network are carried out unified management, comprising: memory cell 41 and administrative unit 42, wherein,
Described memory cell 41 is used to the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit 42, after being used for IP Address Recognition according to the gateway device of each remote branch of memory cell 41 storage and going out corresponding remote branch, utilize the vpn tunneling of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
Wherein, described memory cell 41 also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
Further, this management server also comprises and issues unit 43, is used for memory cell 41 is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
So far, promptly obtained management server of the present invention.
The concrete workflow of the management server that Fig. 4 adopted please refer to the respective description among the method embodiment shown in Figure 2, repeats no more herein.
In a word, the method of management remote branch equipment of the present invention, by in the management server of general headquarters in advance the IP address to the downstream interface of the gateway device of each remote branch distribute unitedly and store, thereby make when each remote branch inserts public network, management server can corresponding remote branch according to the IP Address Recognition of the remote branch of storing, and then can by with corresponding long-range branch between vpn tunneling remote branch is managed, also promptly can manage corresponding remote branch according to the agreement identical with the equipment of management in the general headquarters.Because the inventive method is to discern corresponding remote branch by the IP address of the gateway device of the remote branch of storage, thereby also with regard to solved each remote branch when inserting public network because what insert that IP do not fix that the general headquarters that cause can not accurately judge current communication is the problem of which remote branch, and, since can by with corresponding long-range branch between vpn tunneling remote branch is managed, also just can remote branch be managed by the agreement identical with equipment in the management general headquarters, need not to increase the resource of management remote branch, thereby not only can realize management effectively, and saved the resource that administrative institute needs to remote branch.
The above only is preferred embodiment of the present invention, and is in order to restriction the present invention, within the spirit and principles in the present invention not all, any modification of being made, is equal to replacement, improvement etc., all should be included within the scope of protection of the invention.

Claims (7)

1. a method of managing remote branch is characterized in that, this method comprises:
Management server in the general headquarters is the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
2. method according to claim 1 is characterized in that, this method further comprises: the management server in the general headquarters is the sub-interface unified distribution IP address of gateway device in the remote branch, and will store for the sub-interface IP address allocated.
3. method according to claim 1, it is characterized in that, before remote branch inserted public network, this method further comprised: management server will be handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
4. method according to claim 1, it is characterized in that, before remote branch inserts public network, this method also comprises: the vpn tunneling between general headquarters and each remote branch is configured, when remote branch inserts public network, set up vpn tunneling between general headquarters and each remote branch according to the vpn tunneling of configuration.
5. a management server is applied to equipment and remote branch in the network general headquarters are managed, and it is characterized in that this management server comprises: memory cell and administrative unit, wherein,
Described memory cell is used to the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit, after being used for IP Address Recognition according to the downstream interface of the gateway device of each remote branch of cell stores and going out corresponding remote branch, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
6. management server according to claim 5 is characterized in that, described memory cell also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
7. management server according to claim 5 is characterized in that, this management server also comprises and issues the unit, is used for memory cell is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
CN201110067631.1A 2011-03-21 2011-03-21 Method for managing remote branches and management server Active CN102142997B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110067631.1A CN102142997B (en) 2011-03-21 2011-03-21 Method for managing remote branches and management server

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110067631.1A CN102142997B (en) 2011-03-21 2011-03-21 Method for managing remote branches and management server

Publications (2)

Publication Number Publication Date
CN102142997A true CN102142997A (en) 2011-08-03
CN102142997B CN102142997B (en) 2014-08-20

Family

ID=44410238

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110067631.1A Active CN102142997B (en) 2011-03-21 2011-03-21 Method for managing remote branches and management server

Country Status (1)

Country Link
CN (1) CN102142997B (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103118443A (en) * 2013-01-15 2013-05-22 杭州华三通信技术有限公司 Configuration method and configuration device for long-distance branch device
CN104883287A (en) * 2014-02-28 2015-09-02 杭州迪普科技有限公司 Ipsec vpn system control method
CN112995008A (en) * 2021-02-26 2021-06-18 北京明略昭辉科技有限公司 Method for simultaneously accessing out-of-band management network of multiple internet data centers

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101719927A (en) * 2009-11-18 2010-06-02 中兴通讯股份有限公司 Method and system thereof for carrying out remote management on gateway down-hanging device

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101719927A (en) * 2009-11-18 2010-06-02 中兴通讯股份有限公司 Method and system thereof for carrying out remote management on gateway down-hanging device

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103118443A (en) * 2013-01-15 2013-05-22 杭州华三通信技术有限公司 Configuration method and configuration device for long-distance branch device
CN103118443B (en) * 2013-01-15 2016-12-28 杭州华三通信技术有限公司 A kind of remote branch equipment configuration method and device
CN104883287A (en) * 2014-02-28 2015-09-02 杭州迪普科技有限公司 Ipsec vpn system control method
CN104883287B (en) * 2014-02-28 2018-06-12 杭州迪普科技股份有限公司 IPSec vpn system control methods
CN112995008A (en) * 2021-02-26 2021-06-18 北京明略昭辉科技有限公司 Method for simultaneously accessing out-of-band management network of multiple internet data centers

Also Published As

Publication number Publication date
CN102142997B (en) 2014-08-20

Similar Documents

Publication Publication Date Title
US11804988B2 (en) Method and system of overlay flow control
US11411857B2 (en) Multicast performance routing and policy control in software defined wide area networks
EP2433401B1 (en) Dynamic management of network flows
US8681779B2 (en) Triple play subscriber and policy management system and method of providing same
EP2566115A1 (en) Method, network device and network system for data service processing
US20110196977A1 (en) Dynamic service groups based on session attributes
US20100027549A1 (en) Method and apparatus for providing virtual private network identifier
CN103716213B (en) The method run in fixed access network and in a user device
EP2439903B1 (en) Method for providing information, home gateway and home network system
US20130290561A1 (en) Method and device for providing user information to cgn device
US8416691B1 (en) Associating hosts with subscriber and service based requirements
CN102137011A (en) Message forwarding method, device and system for network
US20120303795A1 (en) Qos control in wireline subscriber management
CN1697408B (en) Method for managing routes in virtual private network based on IPv6
CN106452915A (en) MPLS (multi-protocol label switching) VPN (virtual private network) network topology discovery method and device
US9900804B2 (en) Method and device for processing to share network resources, and method, device and system for sharing network resources
CN102142997B (en) Method for managing remote branches and management server
EP2966899B1 (en) Hqos control method, rsg, and hqos control system
CN102684898A (en) Service quality management method and service quality management system based on home gateway
CN103095604A (en) System and method for identifying specific application of home network
EP3836487A1 (en) Internet access behavior management system, device and method
CN103297312A (en) MPLS VPN (Multi-Protocol Label Switching Virtual Private Network) access method and device
CN103095578A (en) Routing information control method and processing element (PE) device in multiple protocol label switching framework for layer 3 virtual private network (MPLS L3VPN)
JP2022542713A (en) Message transmission/reception method and device, and communication system
CN103166772A (en) Appliance provided with multiple interfaces and method for managing appliance

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: Xinhua three Technology Co., Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: Huasan Communication Technology Co., Ltd.