CN102142997A - Method for managing remote branches and management server - Google Patents
Method for managing remote branches and management server Download PDFInfo
- Publication number
- CN102142997A CN102142997A CN2011100676311A CN201110067631A CN102142997A CN 102142997 A CN102142997 A CN 102142997A CN 2011100676311 A CN2011100676311 A CN 2011100676311A CN 201110067631 A CN201110067631 A CN 201110067631A CN 102142997 A CN102142997 A CN 102142997A
- Authority
- CN
- China
- Prior art keywords
- remote branch
- address
- management server
- gateway device
- branch
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Images
Landscapes
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
The invention discloses a method for managing remote branches. The method comprises the following steps: distributing an Internet protocol (IP) address for a downstream interface of the gateway equipment of each remote branch by a management server in a headquarters in an unified way; storing the distributed IP address of the downstream interface of the gateway equipment of each remote branch; identifying the corresponding remote branch by the management server according to the stored IP address corresponding to the downstream interface of the gateway equipment of the remote branch; and managing the identified corresponding remote branches through the same protocol of the equipment in the management headquarters by an established virtual private network (VPN) tunnel. The invention also discloses a management server; and by the method and the management server provided by the invention, the management on each remote branch in the network can be effectively realized.
Description
Technical field
The present invention relates to the network management technology field, particularly a kind of method and management server of managing remote branch.
Background technology
Along with network application constantly popularize with deeply, interconnecting has become the necessary condition of general headquarters and remote branch in the network, Fig. 1 is the typical networking schematic diagram of general headquarters and remote branch in the existing network.As shown in Figure 1, on the one hand, each remote branch inserts public network by both economical modes such as ADSL (Asymmetric Digital Subscriber Line) (ADSL) dialing, and then connects the vpn gateway of general headquarters by VPN (virtual private network) (VPN) tunnel, to realize and the communicating by letter of general headquarters; On the other hand, management server also need be set in the general headquarters manages concentratedly each remote branch in the network.
Yet, in existing network, general headquarters can only determine certain remote branch by unique Internet Protocol (IP) address, and existing each remote branch all inserts public network by modes such as ADSL dialing, thereby the IP address when at every turn inserting is fixing, and which remote branch what just make also that general headquarters can not judge current communication exactly is; In addition, consideration for network security, the up outgoing interface of existing remote branch may be do not allow accessed, therefore can make that general headquarters are difficult to realize all remote branch are managed, administrative unit need all be set in each remote branch for this reason come respectively each remote branch to be managed separately, also just increase the resource that administrative institute needs.Therefore, how to realize the management of all remote branch is become the problem that existing network is needed solution badly.
Summary of the invention
In view of this, the invention provides a kind of method of managing remote branch, can realize management effectively all remote branch in the network.
The present invention also provides a kind of management server, can realize the management to all remote branch in the network effectively.
In order to achieve the above object, the technical scheme of the present invention's proposition is:
A kind of method of managing remote branch, this method comprises:
Management server in the general headquarters is the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
This method further comprises: the management server in the general headquarters is the sub-interface unified distribution IP address of gateway device in the remote branch, and will store for the sub-interface IP address allocated.
Before remote branch inserted public network, this method further comprised: management server will be handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
Before remote branch inserted public network, this method also comprised: the vpn tunneling between general headquarters and each remote branch is configured, when remote branch inserts public network, sets up vpn tunneling between general headquarters and each remote branch according to the vpn tunneling that disposes.
A kind of management server is applied to equipment and remote branch in the network general headquarters are managed, and this management server comprises: memory cell and administrative unit, wherein,
Described memory cell is used to the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit, after being used for IP Address Recognition according to the downstream interface of the gateway device of each remote branch of cell stores and going out corresponding remote branch, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
Described memory cell also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
This management server also comprises and issues the unit, is used for memory cell is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
In sum, the method of management remote branch of the present invention, by in the management server of general headquarters in advance the IP address to the downstream interface of the gateway device of each remote branch distribute unitedly and store, thereby make when each remote branch inserts public network, management server can corresponding remote branch according to the IP Address Recognition of the remote branch of storing, and then can by with corresponding long-range branch between vpn tunneling remote branch is managed, also promptly can manage corresponding remote branch according to the agreement identical with the equipment of management in the general headquarters.Because the inventive method is to discern corresponding remote branch by the IP address of the gateway device of the remote branch of storage, thereby also with regard to solved each remote branch when inserting public network because what insert that IP do not fix that the general headquarters that cause can not accurately judge current communication is the problem of which remote branch, and, since can by with corresponding long-range branch between vpn tunneling remote branch is managed, also just can remote branch be managed by the agreement identical with equipment in the management general headquarters, need not to increase the resource of management remote branch, thereby not only can realize management effectively, and saved the resource that administrative institute needs to remote branch.
Description of drawings
Fig. 1 is the typical networking schematic diagram of general headquarters and remote branch in the existing network;
Fig. 2 is the workflow diagram of management remote branch method of the present invention;
Fig. 3 is the networking schematic diagram of general headquarters of the present invention management remote branch;
Fig. 4 is the structural representation of management server apparatus of the present invention.
Embodiment
In order to solve problems of the prior art, the present invention proposes a kind of method of new management remote branch, its specific implementation comprises:
Management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored; When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the vpn tunneling of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with the accompanying drawings and the specific embodiments.
Fig. 2 is the workflow diagram of management remote branch device, method of the present invention.As shown in Figure 2, this flow process comprises:
Step 201: the management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored.
Need to prove, in this step, for the downstream interface unified distribution IP address of the gateway device of each remote branch is that the downstream interface of the gateway device in the different remote branch uses identical IP address, thereby cause management server not distinguish different gateway devices by the IP address of gateway device.
Also it should be noted that, in this step, business in certain remote branch more for a long time, as comprise data service, speech business, video traffic etc., in order to distinguish these different business, can be the sub-interface unified distribution IP address of the gateway device of this remote branch, and by with general headquarters in management server the IP address of the sub-interface of having distributed the IP address unitedly is also stored.
Step 202: the gateway device in the corresponding remote branch is handed down in the IP address of the gateway device of each remote branch that the management server in the general headquarters will be stored.
Need to prove that when there was sub-interface in the gateway device of certain remote branch, management server also needed the IP address of the sub-interface of the gateway device of the corresponding remote branch of storage is handed down to the gateway device of corresponding remote branch.
Step 203: the vpn tunneling between general headquarters and each remote branch is configured.
In this step, described vpn tunneling can be Internet Protocol Security (IPsec) VPN, Generic Routing Encapsulation (GRE) VPN etc., specifically how vpn tunneling is configured to be prior art, repeats no more here.
Step 204: after management server goes out corresponding remote branch according to the IP Address Recognition of gateway device of each remote branch of storage, the vpn tunneling of utilize setting up manages each the corresponding remote branch that identifies by the agreement identical with equipment in the management general headquarters.
Behind the vpn tunneling that has disposed with general headquarters, at this moment, if certain remote branch and general headquarters communicate, be that remote branch is when inserting in the public network by modes such as ADSL dialing, vpn tunneling between general headquarters and the remote branch is established, and then can identify corresponding remote branch according to the IP address of gateway device in the remote branch of storage by the management server in the general headquarters, thereby can communicate with the remote branch equipment of corresponding IP address by the vpn tunneling of setting up, and when communication general headquarters be by with manage general headquarters in the identical agreement of equipment manage corresponding remote branch.
Need to prove, in this step, management server is by Simple Network Management Protocol (SNMP), Telnet modes such as (TELNET) is managed equipment in the general headquarters, thereby, general headquarters identify corresponding remote branch by stored IP address after, promptly can carry out unified management to each remote branch that identifies by the vpn tunneling of setting up, thereby management server also just can pass through SNMP, modes such as TELNET are managed each remote branch, also just realized adopting identical agreement to manage with remote branch to the equipment of general headquarters in the network, the problem of the remote branch that can not determine communication that causes the IP address and the problem of saving management resource have not only been solved, and need not in network, to dispose two cover management servers, realized management effectively to remote branch.
So far, promptly finished the whole workflow that the present invention manages the remote branch method.
Based on said method, Fig. 3 is the networking schematic diagram of general headquarters of the present invention management remote branch, as shown in Figure 3, management server in the general headquarters is the downstream interface unified distribution IP address of the gateway device of each remote branch in advance, and then the IP address of having distributed downstream interface unitedly stored, further, in the present embodiment, when the business of certain remote branch more for a long time, as comprise data service, speech business, video traffic etc., in order to distinguish these different business, can also distribute the IP address unitedly for the sub-interface of the gateway device of these professional place remote branch, and it be stored by the management server in the general headquarters; When each remote branch and general headquarters communicate, management server in the general headquarters identifies corresponding remote branch according to stored IP address, thereby can communicate with the remote branch equipment of corresponding IP address by the vpn tunneling of setting up, and when communication general headquarters can by with manage general headquarters in the identical agreement of equipment manage corresponding remote branch.
Based on said method and networking, Fig. 4 has provided the structural representation of management server apparatus of the present invention.As shown in Figure 4, this management server is applied to the general headquarters of network, and the equipment in the general headquarters and each remote branch in the network are carried out unified management, comprising: memory cell 41 and administrative unit 42, wherein,
Described memory cell 41 is used to the downstream interface unified distribution IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit 42, after being used for IP Address Recognition according to the gateway device of each remote branch of memory cell 41 storage and going out corresponding remote branch, utilize the vpn tunneling of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
Wherein, described memory cell 41 also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
Further, this management server also comprises and issues unit 43, is used for memory cell 41 is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
So far, promptly obtained management server of the present invention.
The concrete workflow of the management server that Fig. 4 adopted please refer to the respective description among the method embodiment shown in Figure 2, repeats no more herein.
In a word, the method of management remote branch equipment of the present invention, by in the management server of general headquarters in advance the IP address to the downstream interface of the gateway device of each remote branch distribute unitedly and store, thereby make when each remote branch inserts public network, management server can corresponding remote branch according to the IP Address Recognition of the remote branch of storing, and then can by with corresponding long-range branch between vpn tunneling remote branch is managed, also promptly can manage corresponding remote branch according to the agreement identical with the equipment of management in the general headquarters.Because the inventive method is to discern corresponding remote branch by the IP address of the gateway device of the remote branch of storage, thereby also with regard to solved each remote branch when inserting public network because what insert that IP do not fix that the general headquarters that cause can not accurately judge current communication is the problem of which remote branch, and, since can by with corresponding long-range branch between vpn tunneling remote branch is managed, also just can remote branch be managed by the agreement identical with equipment in the management general headquarters, need not to increase the resource of management remote branch, thereby not only can realize management effectively, and saved the resource that administrative institute needs to remote branch.
The above only is preferred embodiment of the present invention, and is in order to restriction the present invention, within the spirit and principles in the present invention not all, any modification of being made, is equal to replacement, improvement etc., all should be included within the scope of protection of the invention.
Claims (7)
1. a method of managing remote branch is characterized in that, this method comprises:
Management server in the general headquarters is the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
When remote branch inserts public network, after management server goes out corresponding remote branch according to the IP Address Recognition of downstream interface of the gateway device of the corresponding remote branch of storage, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
2. method according to claim 1 is characterized in that, this method further comprises: the management server in the general headquarters is the sub-interface unified distribution IP address of gateway device in the remote branch, and will store for the sub-interface IP address allocated.
3. method according to claim 1, it is characterized in that, before remote branch inserted public network, this method further comprised: management server will be handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
4. method according to claim 1, it is characterized in that, before remote branch inserts public network, this method also comprises: the vpn tunneling between general headquarters and each remote branch is configured, when remote branch inserts public network, set up vpn tunneling between general headquarters and each remote branch according to the vpn tunneling of configuration.
5. a management server is applied to equipment and remote branch in the network general headquarters are managed, and it is characterized in that this management server comprises: memory cell and administrative unit, wherein,
Described memory cell is used to the downstream interface unified distribution Internet Protocol IP address of the gateway device of each remote branch, and the IP address of the downstream interface of the gateway device of each remote branch of distributing is stored;
Described administrative unit, after being used for IP Address Recognition according to the downstream interface of the gateway device of each remote branch of cell stores and going out corresponding remote branch, utilize the virtual private network VPN tunnel of setting up, each the corresponding remote branch that identifies is managed by the agreement identical with equipment in the management general headquarters.
6. management server according to claim 5 is characterized in that, described memory cell also is used to the sub-interface unified distribution IP address of gateway device in the remote branch, and will stores for the sub-interface IP address allocated.
7. management server according to claim 5 is characterized in that, this management server also comprises and issues the unit, is used for memory cell is handed down to corresponding remote branch for the IP address of the downstream interface unified distribution of the gateway device of each remote branch.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201110067631.1A CN102142997B (en) | 2011-03-21 | 2011-03-21 | Method for managing remote branches and management server |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201110067631.1A CN102142997B (en) | 2011-03-21 | 2011-03-21 | Method for managing remote branches and management server |
Publications (2)
Publication Number | Publication Date |
---|---|
CN102142997A true CN102142997A (en) | 2011-08-03 |
CN102142997B CN102142997B (en) | 2014-08-20 |
Family
ID=44410238
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201110067631.1A Active CN102142997B (en) | 2011-03-21 | 2011-03-21 | Method for managing remote branches and management server |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN102142997B (en) |
Cited By (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103118443A (en) * | 2013-01-15 | 2013-05-22 | 杭州华三通信技术有限公司 | Configuration method and configuration device for long-distance branch device |
CN104883287A (en) * | 2014-02-28 | 2015-09-02 | 杭州迪普科技有限公司 | Ipsec vpn system control method |
CN112995008A (en) * | 2021-02-26 | 2021-06-18 | 北京明略昭辉科技有限公司 | Method for simultaneously accessing out-of-band management network of multiple internet data centers |
Citations (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101719927A (en) * | 2009-11-18 | 2010-06-02 | 中兴通讯股份有限公司 | Method and system thereof for carrying out remote management on gateway down-hanging device |
-
2011
- 2011-03-21 CN CN201110067631.1A patent/CN102142997B/en active Active
Patent Citations (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101719927A (en) * | 2009-11-18 | 2010-06-02 | 中兴通讯股份有限公司 | Method and system thereof for carrying out remote management on gateway down-hanging device |
Cited By (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103118443A (en) * | 2013-01-15 | 2013-05-22 | 杭州华三通信技术有限公司 | Configuration method and configuration device for long-distance branch device |
CN103118443B (en) * | 2013-01-15 | 2016-12-28 | 杭州华三通信技术有限公司 | A kind of remote branch equipment configuration method and device |
CN104883287A (en) * | 2014-02-28 | 2015-09-02 | 杭州迪普科技有限公司 | Ipsec vpn system control method |
CN104883287B (en) * | 2014-02-28 | 2018-06-12 | 杭州迪普科技股份有限公司 | IPSec vpn system control methods |
CN112995008A (en) * | 2021-02-26 | 2021-06-18 | 北京明略昭辉科技有限公司 | Method for simultaneously accessing out-of-band management network of multiple internet data centers |
Also Published As
Publication number | Publication date |
---|---|
CN102142997B (en) | 2014-08-20 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US11804988B2 (en) | Method and system of overlay flow control | |
US11411857B2 (en) | Multicast performance routing and policy control in software defined wide area networks | |
EP2433401B1 (en) | Dynamic management of network flows | |
US8681779B2 (en) | Triple play subscriber and policy management system and method of providing same | |
EP2566115A1 (en) | Method, network device and network system for data service processing | |
US20110196977A1 (en) | Dynamic service groups based on session attributes | |
US20100027549A1 (en) | Method and apparatus for providing virtual private network identifier | |
CN103716213B (en) | The method run in fixed access network and in a user device | |
EP2439903B1 (en) | Method for providing information, home gateway and home network system | |
US20130290561A1 (en) | Method and device for providing user information to cgn device | |
US8416691B1 (en) | Associating hosts with subscriber and service based requirements | |
CN102137011A (en) | Message forwarding method, device and system for network | |
US20120303795A1 (en) | Qos control in wireline subscriber management | |
CN1697408B (en) | Method for managing routes in virtual private network based on IPv6 | |
CN106452915A (en) | MPLS (multi-protocol label switching) VPN (virtual private network) network topology discovery method and device | |
US9900804B2 (en) | Method and device for processing to share network resources, and method, device and system for sharing network resources | |
CN102142997B (en) | Method for managing remote branches and management server | |
EP2966899B1 (en) | Hqos control method, rsg, and hqos control system | |
CN102684898A (en) | Service quality management method and service quality management system based on home gateway | |
CN103095604A (en) | System and method for identifying specific application of home network | |
EP3836487A1 (en) | Internet access behavior management system, device and method | |
CN103297312A (en) | MPLS VPN (Multi-Protocol Label Switching Virtual Private Network) access method and device | |
CN103095578A (en) | Routing information control method and processing element (PE) device in multiple protocol label switching framework for layer 3 virtual private network (MPLS L3VPN) | |
JP2022542713A (en) | Message transmission/reception method and device, and communication system | |
CN103166772A (en) | Appliance provided with multiple interfaces and method for managing appliance |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
C14 | Grant of patent or utility model | ||
GR01 | Patent grant | ||
CP03 | Change of name, title or address | ||
CP03 | Change of name, title or address |
Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No. Patentee after: Xinhua three Technology Co., Ltd. Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base Patentee before: Huasan Communication Technology Co., Ltd. |