CN102638469A - Route switching method, device, system and network equipment - Google Patents

Route switching method, device, system and network equipment Download PDF

Info

Publication number
CN102638469A
CN102638469A CN2012101072243A CN201210107224A CN102638469A CN 102638469 A CN102638469 A CN 102638469A CN 2012101072243 A CN2012101072243 A CN 2012101072243A CN 201210107224 A CN201210107224 A CN 201210107224A CN 102638469 A CN102638469 A CN 102638469A
Authority
CN
China
Prior art keywords
network equipment
ethernet frame
destination address
address
interface
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012101072243A
Other languages
Chinese (zh)
Other versions
CN102638469B (en
Inventor
姚中凯
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Star Net Ruijie Networks Co Ltd
Original Assignee
Beijing Star Net Ruijie Networks Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Star Net Ruijie Networks Co Ltd filed Critical Beijing Star Net Ruijie Networks Co Ltd
Priority to CN201210107224.3A priority Critical patent/CN102638469B/en
Publication of CN102638469A publication Critical patent/CN102638469A/en
Application granted granted Critical
Publication of CN102638469B publication Critical patent/CN102638469B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention provides a route switching method, a device, a system and network equipment. The route switching method comprises the steps that: first network equipment traverses two layers of interfaces of own after returning to normal work; the first network equipment generates a first Ethernet frame, a source address of the first Ethernet frame is of an MAC (Media Access Control) address in an MAC address table of the first network equipment, which corresponds to two layers of interfaces except for the current two layers of traversed interfaces, a destination address of the first Ethernet frame is of a broadcast address, and an Ethernet protocol number of the first Ethernet frame is of a retaining Ethernet number; and the first network equipment sends the first Ethernet frame by the current traversed two layers of interfaces so as to update the MAC address table of third network equipment connected with the first equipment. The invention can realize smooth switching of two-layer network flow, thus being capable of ensuring the normal communication of users, and improving the usability of the network equipment.

Description

Path switching method, device, system and the network equipment
Technical field
The present invention relates to firewall technology, relate in particular to a kind of path switching method, device, system and the network equipment, belong to technical field of the computer network.
Background technology
Present fire compartment wall (Fire Wall; Hereinafter to be referred as: FW) in order to obtain high availability (High Availability; Hereinafter to be referred as: HA), use the Hot Spare technology usually, the promptly general pair fire compartment walls that adopt, when operation, a fire compartment wall is synchronized to an other fire compartment wall with service data.In case master firewall breaks down, then slave firewall carries out role's switching, makes and oneself switches to master firewall, and take over and transmit and trouble free service.
The fire compartment wall of transparent mode is operated in two layers on network, just as a switch, and can in the two laminar flow amount processes of forwarding, carry out safety filtering.
With network configuration shown in Figure 1 is example, and Fig. 1 is the sketch map of prior art network configuration, virtual support local area network (LAN) (Virtual Local Area Network; Hereinafter to be referred as: switch VLAN) connects two groups of users of VLAN5 and VLAN10 respectively; Switch is connected respectively to fire compartment wall FW1 and FW2 through vlan trunking (VLAN Trunk) pattern; FW1 and FW2 are operated in transparent mode, transmit the flow of different VLAN through the bridge group.Among Fig. 1, FW1 allows the flow of VLAN5 to pass through, and FW2 allows the flow of VLAN10 to pass through.
Among the VLAN10, personal computer 1 (Personal Computer 1; Hereinafter to be referred as: PC1) directly communicate by letter the medium access control of PC1 (Media Access Control through double layer network with PC2; Hereinafter to be referred as: MAC) address is 00:44:55:66:77:99, and the MAC Address of PC2 is 00:44:55:66:77:88.
PC1 and PC2 are after work a period of time, and upstream and downstream switch and fire compartment wall that fire compartment wall connects are all learnt out the mac address table of oneself.Also can send out backup messages mutually between FW1 and the FW2 simultaneously, make FW1 and FW2 have identical mac address table.
When FW2 broke down, the link that FW2 connects can't operate as normal, and the MAC address entries of FW2 corresponding interface is cleared in the upstream and downstream switch that FW2 connects; Like this; When the ethernet frame that the user of VLAN10 sends sends to switch, can't find corresponding MAC address entries, at this moment exchange opportunity is sent above-mentioned ethernet frame through broadcasting; The ethernet frame of broadcasting out will be transmitted by FW1, and in FW1, set up MAC address entries.
After FW2 recovered operate as normal, the link that FW2 connects also recovered operate as normal again, and FW2 recovers the VLAN10 forwarding of flow; At this moment FW1 will block the flow of VLAN10; But the link that this moment, FW1 connected still can operate as normal, and the mac address table of upstream and downstream switch does not upgrade, therefore at present Already in the flow of the VLAN10 in the mac address table still all to pass through from FW1; But at this moment FW1 has blocked the flow of VLAN10; Be the flow that FW1 can not transmit VLAN10, will produce communication disruption like this, make the user of VLAN10 can't proper communication.
Summary of the invention
The present invention provides a kind of path switching method, device and the network equipment, to realize taking over seamlessly the double layer network flow, improves the availability of the network equipment.
One aspect of the present invention provides a kind of path switching method, comprising:
First network equipment recovers to travel through two layer interfaces of self after the operate as normal;
Said first network equipment generates first ethernet frame; The source address of said first ethernet frame be in the media access control MAC address table of said first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; The destination address of said first ethernet frame is a broadcast address, and the Ethernet protocol of said first ethernet frame number is for keeping Ethernet protocol number;
Said first network equipment sends said first ethernet frame through two layer interfaces of said current traversal; To upgrade the mac address table of the 3rd network equipment that said first network equipment connects, the flow with said first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during said first network equipment is broken down switches back said first network equipment; Said second network equipment is connected with said the 3rd network equipment with said first network equipment respectively.
The present invention provides a kind of path switching device on the other hand, and said path switching device is arranged in first network equipment, and said path switching device comprises:
Spider module is used for after said first network equipment recovers operate as normal, traveling through two layer interfaces of said first network equipment;
Generation module; Be used to generate first ethernet frame; The source address of said first ethernet frame be in the media access control MAC address table of said first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of said current traversal; The destination address of said first ethernet frame is a broadcast address, and the Ethernet protocol of said first ethernet frame number is for keeping Ethernet protocol number;
First sending module; Be used for sending first ethernet frame that said generation module generates through two layer interfaces of the current traversal of said spider module; To upgrade the mac address table of the 3rd network equipment that said first network equipment connects, the flow with said first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during said first network equipment is broken down switches back said first network equipment; Said second network equipment is connected with said the 3rd network equipment with said first network equipment respectively.
Further aspect of the present invention provides a kind of first network equipment, comprises aforesaid path switching device.
Further aspect of the present invention provides a kind of path switching device, and said path switching device is arranged in second network equipment, and said path switching device comprises:
Second sending module is used for sending backup messages to first network equipment, and said backup messages is that said second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to said first network equipment; Said backup messages is carried the destination address of the source address of said second ethernet frame, said second ethernet frame and first interface that said second network equipment receives said second ethernet frame; The destination address of the source address of said second ethernet frame and said second ethernet frame belongs to said first network equipment corresponding virtual local area network (LAN); Said the 3rd network equipment is connected with said second network equipment with said first network equipment respectively;
Create module, be used for inhibition table, create and the source address of said second ethernet frame and the corresponding list item of destination address of said second ethernet frame at said second network equipment;
Logging modle is used for writing down the moment that said second sending module sends said backup messages at the list item of said establishment module creation.
Further aspect of the present invention provides a kind of second network equipment, comprises aforesaid path switching device.
Further aspect of the present invention provides a kind of path switching system, it is characterized in that, comprises aforesaid first network equipment, aforesaid second network equipment and the 3rd network equipment; Said the 3rd network equipment is connected with said second network equipment with said first network equipment respectively, and said first network equipment is connected with said second network equipment.
The technique effect of one aspect of the present invention is: first network equipment recovers after the operate as normal; Travel through two layer interfaces of self; Generate first ethernet frame; The source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal, destination address is a broadcast address, Ethernet protocol number is for keeping Ethernet protocol number; Then; First network equipment sends above-mentioned first ethernet frame through two layer interfaces of current traversal; To upgrade the mac address table of the 3rd network equipment that first network equipment connects, the flow with first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during first network equipment is broken down switches back first network equipment; Thereby can realize taking over seamlessly the double layer network flow, and then can realize ensureing user's proper communication, improve the availability of the network equipment.
The present invention's technique effect on the other hand is: spider module is after first network equipment recovers operate as normal; Travel through two layer interfaces of this first network equipment; Generation module generates first ethernet frame; The source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal, destination address is a broadcast address, Ethernet protocol number is for keeping Ethernet protocol number; First sending module sends first ethernet frame that above-mentioned generation module generates through two layer interfaces of the current traversal of spider module then; To upgrade the mac address table of the 3rd network equipment, the flow with first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during first network equipment is broken down switches back first network equipment; Thereby can realize taking over seamlessly the double layer network flow, and then can realize ensureing user's proper communication, improve the availability of the network equipment.
Description of drawings
Fig. 1 is the sketch map of prior art network configuration;
Fig. 2 is the flow chart of an embodiment of path switching method of the present invention;
Fig. 3 is that the present invention is through initiatively sending the sketch map that ethernet frame switches an embodiment of two layers of forward-path;
Fig. 4 switches the sketch map of an embodiment of two layers of forward-path through the transmission backup messages for the present invention;
Fig. 5 is the structural representation of an embodiment of path switching device of the present invention;
Fig. 6 is the structural representation of another embodiment of path switching device of the present invention;
Fig. 7 is the structural representation of another embodiment of path switching device of the present invention;
Fig. 8 is the structural representation of another embodiment of path switching device of the present invention;
Fig. 9 is the structural representation of an embodiment of path switching system of the present invention.
Embodiment
Fig. 2 is the flow chart of an embodiment of path switching method of the present invention, and as shown in Figure 1, this path switching method can comprise:
Step 201, first network equipment are recovered to travel through two layer interfaces of self after the operate as normal.
Step 202; First network equipment generates first ethernet frame; The source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; The destination address of first ethernet frame is a broadcast address, and the Ethernet protocol of first ethernet frame number is for keeping Ethernet protocol number.
Wherein, the mac address table of above-mentioned first network equipment is that first network equipment recovers after the operate as normal, first network equipment generates before first ethernet frame, and second network equipment sends to above-mentioned first network equipment.In the present embodiment, second network equipment and first network equipment backup each other, and can send out mutually backup messages between first network equipment and second network equipment, and the mac address table of first network equipment is backuped on second network equipment.Therefore, after first network equipment recovered operate as normal, first network equipment generated before first ethernet frame, and the mac address table of backup sent to first network equipment before second network equipment can break down first network equipment.
In the present embodiment, broadcast address is that everybody value is the MAC Address of FF, for example FF:FF:FF:FF:FF:FF entirely; Keeping Ethernet protocol number is FFFF.
Step 203; First network equipment sends above-mentioned first ethernet frame through two layer interfaces of current traversal; To upgrade the mac address table of the 3rd network equipment that first network equipment connects, the flow that switches to the VLAN corresponding with first network equipment of second network equipment during first network equipment is broken down switches back first network equipment; Second network equipment is connected with the 3rd network equipment with first network equipment respectively.
Because first ethernet frame use to keep Ethernet protocol number; Receive after this first ethernet frame; The 3rd network equipment can upgrade the mac address table of self, and the main frame among the VLAN of first network equipment correspondence receives after above-mentioned first ethernet frame, because above-mentioned main frame is not supported above-mentioned reservation Ethernet protocol corresponding protocols; Therefore the main frame among the VLAN that first network equipment is corresponding will abandon first ethernet frame, therefore can not cause harmful effect to network service.
Further, after the step 203, first network equipment can also receive the backup messages that second network equipment sends, and this backup messages is that second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to first network equipment; Above-mentioned backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that second network equipment receives this second ethernet frame; The destination address of the source address of second ethernet frame and second ethernet frame belongs to the corresponding VLAN of first network equipment; That is to say; The flow that switches to the VLAN corresponding with first network equipment of second network equipment during first network equipment breaks down switches back after first network equipment; If second network equipment receives second ethernet frame among the corresponding VLAN of first network equipment again, then second network equipment sends above-mentioned backup messages to first network equipment.
In the present embodiment, first network equipment and second network equipment backup each other, and first network equipment can be preserved interface that first network equipment connects the 3rd network equipment is connected the interface of the 3rd network equipment with second network equipment corresponding relation; So; Receive after the above-mentioned backup messages; The interface that first network equipment that first network equipment can be preserved according to self connects the 3rd network equipment is connected the corresponding relation of the interface of the 3rd network equipment with second network equipment; Confirm second corresponding in first network equipment interface with first interface; In the mac address table of this first network equipment, create the list item corresponding with the source address of second ethernet frame, above-mentioned second interface of record in the corresponding list item of the source address of this second ethernet frame, and generate the three-ethernet frame; The source address of this three-ethernet frame is the source address of second ethernet frame, and the destination address of three-ethernet frame is the destination address of second ethernet frame; Then, first network equipment sends above-mentioned three-ethernet frame, upgrades the mac address table of self so that receive the 3rd network equipment of this three-ethernet frame.
Particularly, first network equipment send above-mentioned three-ethernet frame can for: first network equipment is searched the list item corresponding with the destination address of three-ethernet frame in the mac address table of this first network equipment; If in the mac address table of first network equipment, find the list item corresponding with the destination address of three-ethernet frame, then first network equipment sends above-mentioned three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of above-mentioned three-ethernet frame; If in the mac address table of first network equipment, do not find the list item corresponding with the destination address of above-mentioned three-ethernet frame, then first network equipment sends above-mentioned three-ethernet frame through two layer interfaces except that above-mentioned second interface in this first network equipment.
Further; First network equipment receives after the backup messages of second network equipment transmission; Second network equipment can also be in the inhibition table of this second network equipment; Create and the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame, and the moment of in the corresponding list item of the destination address of the source address of this second ethernet frame and this second ethernet frame, writing down the above-mentioned backup messages of transmission; Pick up counting from the moment of sending above-mentioned backup messages; If within scheduled duration; What second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with above-mentioned second ethernet frame, and then second network equipment does not send above-mentioned backup messages to first network equipment; And through after the above-mentioned scheduled duration; If what second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with second ethernet frame; Then second network equipment sends above-mentioned backup messages to first network equipment once more; And record sends moment of above-mentioned backup messages once more in the corresponding list item of the destination address of the source address of above-mentioned second ethernet frame and above-mentioned second ethernet frame; The moment of the above-mentioned backup messages of transmission that writes down in the list item that particularly, can the destination address of the source address of above-mentioned second ethernet frame and above-mentioned second ethernet frame is corresponding is updated to the moment of sending above-mentioned backup messages once more.
In the present embodiment; Above-mentioned first network equipment can be fire compartment wall, router, outlet gateway or switch etc.; Same above-mentioned second network equipment also can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of first network equipment and second network equipment, as long as first network equipment and second network equipment are with a kind of network equipment.And in the present embodiment, first network equipment and second network equipment backup each other.
In the present embodiment; The 3rd network equipment is connected with second network equipment with first network equipment respectively; The 3rd network equipment can comprise the equipment of realizing two layers of forwarding capability according to mac address table, and for example: switch or router etc., present embodiment does not limit the form of the 3rd network equipment.
Need to prove that in the present embodiment, " first ", " second ", " the 3rd " and " the 4th " are merely and describe conveniently, do not represent the quality of performance or the priority of priority, down together.
The 3rd network equipment is the network equipment that first network equipment connects, and expects easily, and more than one of the network equipment that first network equipment connects can be one or at least two.That is to say that the 3rd network equipment is merely to be described conveniently, does not refer in particular to a certain the network equipment.
In the foregoing description; First network equipment recovers after the operate as normal; Travel through two layer interfaces of self, generate first ethernet frame, the source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; Destination address is a broadcast address, and Ethernet protocol number is for keeping Ethernet protocol number; Then; First network equipment sends above-mentioned first ethernet frame through two layer interfaces of current traversal; To upgrade the mac address table of the 3rd network equipment, the flow with first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during first network equipment is broken down switches back first network equipment; Thereby can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improve the availability of the network equipment.
Through instantiation the present invention's method that provides embodiment illustrated in fig. 2 is introduced below.
Fig. 3 for the present invention through initiatively sending the sketch map of an embodiment of two layers of forward-path of ethernet frame switching, present embodiment is FW2 with first network equipment, second network equipment is that FW1 is that example describes.Among Fig. 3, FW1 is connected with FW2, first switch and second switch respectively, and FW2 is connected with FW1, first switch and second switch respectively.First switch among Fig. 3 and second switch are three network equipment of the present invention in embodiment illustrated in fig. 2; And; FW1 and FW2 backup each other; And the mode that FW1 connects first switch and second switch is connected first switch and second switch with FW2 mode is identical; For instance, if the interface of FW1 2 is connected with second switch, then FW2 is connected with second switch through the interface 2 of this FW2 equally.In the present embodiment, FW2 can preserve interface that FW1 connects first switch is connected the interface of first switch with FW2 corresponding relation, and the FW1 interface that connects second switch is connected the corresponding relation of the interface of second switch with FW2; Equally, FW1 also can preserve interface that FW1 connects first switch is connected the interface of first switch with FW2 corresponding relation, and the FW1 interface that connects second switch is connected the corresponding relation of the interface of second switch with FW2.
Among Fig. 3; First switch of supported vlans and second switch all are connected two groups of users of VLAN5 and VLAN10; First switch all is connected FW1 and FW2 through VLAN Trunk pattern with second switch, and FW1 and FW2 are operated in transparent mode, transmit the flow of different VLAN through the bridge group.Among Fig. 3, FW1 allows the flow of VLAN5 to pass through, and FW2 allows the flow of VLAN10 to pass through.
Among the VLAN10, PC1 directly communicates by letter through double layer network with PC2, and the MAC Address of PC1 is 00:44:55:66:77:99, and the MAC Address of PC2 is 00:44:55:66:77:88.
After FW2 breaks down; The flow of VLAN10 is transmitted through FW1, after FW2 recovers operate as normal, generates before first ethernet frame; FW2 receives the mac address table that FW1 sends; Travel through two layer interfaces of self, generate first ethernet frame then, the source address of this first ethernet frame be in the mac address table of FW2 with the corresponding MAC Address of two layer interfaces except that the interface of current traversal; The destination address of first ethernet frame is a broadcast address, and the Ethernet protocol of first ethernet frame number is for keeping Ethernet protocol number; At last, FW2 sends above-mentioned first ethernet frame through the interface of current traversal.
As shown in Figure 3, FW2 has interface 1 and interface 2 these 2 two layer interfaces, and wherein interface 1 is the interface between the FW2 and first switch, and interface 2 is the interface between the FW2 and second switch.When FW2 traversal interface 1, the source address of first ethernet frame of generation is the corresponding MAC Address of interface 2 in the mac address table of FW2, representes with MAC2 below; Destination address is a broadcast address, representes with MACX below; Ethernet protocol number is for keeping Ethernet protocol number; Then, FW2 sends this first ethernet frame through interface 1, receives FW2 like this and upgrades the mac address table of self through first exchange opportunity of first ethernet frame of interface 1 transmission.
In like manner, when FW2 traversal interface 2, the source address of first ethernet frame of generation is the corresponding MAC Address of interface 1 in the mac address table of FW2, representes with MAC1 below; Destination address is broadcast address MACX; Ethernet protocol number is for keeping Ethernet protocol number; Then, FW2 sends this first ethernet frame through interface 2, receives FW2 like this and upgrades the mac address table of self through second exchange opportunity of first ethernet frame of interface 2 transmissions.
Because first ethernet frame use to keep Ethernet protocol number, receive after first ethernet frame that FW2 sends, first switch and second exchange opportunity are upgraded the mac address table of self, thereby can make the flow of VLAN10 switch back FW2; And the main frame among the VLAN10 receives after above-mentioned first ethernet frame, because above-mentioned main frame do not support above-mentioned reservation Ethernet protocol corresponding protocols, so the main frame among the VLAN10 will abandon first ethernet frame, can not cause harmful effect to network service.
But possibly of aforesaid operations can't be with the mac address table update all of first switch and second switch; For example: the capacity of first switch and second switch mac address table separately is greater than the capacity of the mac address table of FW2; First ethernet frame that FW2 sends is not enough to the mac address table update all with first switch and second switch, also possibly occur ethernet frame in addition and make mistakes and cause first switch and second switch can't upgrade mac address table.Like this, after the flow of VLAN10 switched back FW2, FW1 still can receive second ethernet frame of VLAN10, and was as shown in Figure 4, and Fig. 4 switches the sketch map of an embodiment of two layers of forward-path through the transmission backup messages for the present invention.
Among Fig. 4; Owing to there is the MAC address entries that does not upgrade in the mac address table of second switch; Therefore second exchange opportunity sends to FW1 with second ethernet frame of VLAN10; FW1 receives after second ethernet frame, directly sends backup messages to FW2, and this backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that FW1 receives second ethernet frame; Wherein, the destination address of the source address of second ethernet frame and second ethernet frame belongs to VLAN10, and above-mentioned first interface is the interface that FW1 receives this second ethernet frame, is the interface 2 of FW1 among Fig. 4.
Because FW1 and FW2 backup each other; And the mode that FW1 connects first switch and second switch is connected first switch and second switch with FW2 mode is identical; For instance, if the interface of FW1 2 is connected with second switch, then FW2 is connected with second switch through the interface 2 of this FW2 equally; Therefore receive after the backup messages; The interface that the FW2 that FW2 can preserve according to self connects second switch is connected the corresponding relation of the interface of second switch with FW1, confirm among the FW2 with the corresponding interface of above-mentioned first interface (interface 2 of FW1) to be second interface (being the interface 2 of FW2 among Fig. 4), the establishment list item corresponding with the source address of second ethernet frame in the mac address table of FW2; Record interface 2 in the corresponding list item of the source address of this second ethernet frame; Be that FW2 can also just be equivalent to the source address of second ethernet frame and interface 2 corresponding record in the mac address table of self, the FW2 hypothesis receives above-mentioned second ethernet frame from the interface 2 of self.
Then, FW2 generates the three-ethernet frame, and the source address of this three-ethernet frame is the source address of second ethernet frame, and the destination address of three-ethernet frame is the destination address of second ethernet frame; Then, FW2 sends above-mentioned three-ethernet frame, so that receive the switch of this three-ethernet frame, is the mac address table that first switch upgrades self in the present embodiment.Principle is identical in the other direction, repeats no more at this.
Particularly, FW2 send above-mentioned three-ethernet frame can for: FW2 searches the list item corresponding with the destination address of three-ethernet frame in the mac address table of this FW2; If in the mac address table of FW2, find the list item corresponding with the destination address of three-ethernet frame, then FW2 sends above-mentioned three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of above-mentioned three-ethernet frame; If in the mac address table of FW2, do not find the list item corresponding with the destination address of above-mentioned three-ethernet frame; Then FW2 is that interface 1 sends above-mentioned three-ethernet frame in the present embodiment through two layer interfaces except that second interface (being the interface 2 of FW2 among Fig. 4) among this FW2.
In addition; Because the ethernet frame of lot of V LAN10 pours in FW1, and a large amount of backup messages appears in order to prevent, among the present invention; Be provided with the inhibition table among the FW1; For example: the Dumy table, after FW2 sent backup messages, FW1 can be in above-mentioned inhibition table at FW1; Create and the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame, and the moment of in the corresponding list item of the destination address of the source address of this second ethernet frame and this second ethernet frame, writing down the above-mentioned backup messages of transmission.For instance, above-mentioned inhibition tableau format can be as shown in table 1.
Table 1
The source address of second ethernet frame The destination address of second ethernet frame Send the moment of backup messages
Pick up counting from the moment of sending above-mentioned backup messages; If in scheduled duration; For example: in 3 seconds, what FW1 received again that second switch sends has the 4th ethernet frame of same source and destination address with second ethernet frame, and then FW1 can not send backup messages to FW2; And if through after the above-mentioned scheduled duration; What FW1 received that second switch sends has the 4th ethernet frame of same source and destination address with second ethernet frame; Then FW1 can send above-mentioned backup messages to FW2 once more, and record sends moment of above-mentioned backup messages once more in the corresponding list item of the destination address of the source address of above-mentioned second ethernet frame and above-mentioned second ethernet frame.
Path switching method provided by the invention can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improves the availability of the network equipment.
One of ordinary skill in the art will appreciate that: all or part of step that realizes above-mentioned each method embodiment can be accomplished through the relevant hardware of program command.Aforesaid program can be stored in the computer read/write memory medium.This program the step that comprises above-mentioned each method embodiment when carrying out; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CD.
Fig. 5 is the structural representation of an embodiment of path switching device of the present invention; Path switching device in the present embodiment can be arranged in first network equipment; Realize the present invention's flow process embodiment illustrated in fig. 2; As shown in Figure 5, this path switching device can comprise: spider module 51, generation module 52 and first sending module 53;
Wherein, spider module 51 is used for after first network equipment recovers operate as normal, traveling through two layer interfaces of first network equipment.
Generation module 52; Be used to generate first ethernet frame; The source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; The destination address of first ethernet frame is a broadcast address, and the Ethernet protocol of above-mentioned first ethernet frame number is for keeping Ethernet protocol number;
Wherein, the mac address table of above-mentioned first network equipment is that first network equipment recovers after the operate as normal, first network equipment generates before first ethernet frame, and second network equipment sends to above-mentioned first network equipment.In the present embodiment, second network equipment and first network equipment backup each other, and can send out mutually backup messages between first network equipment and second network equipment, and the mac address table of first network equipment is backuped on second network equipment.Therefore, after first network equipment recovered operate as normal, first network equipment generated before first ethernet frame, and the mac address table of backup sent to first network equipment before second network equipment can break down first network equipment.
In the present embodiment, broadcast address is that everybody value is the MAC Address of FF, for example FF:FF:FF:FF:FF:FF entirely; Keeping Ethernet protocol number is FFFF.
First sending module 53; Be used for sending first ethernet frame that generation module 52 generates through two layer interfaces of spider module 51 current traversals; To upgrade the mac address table of the 3rd network equipment that first network equipment connects, the flow that switches to the VLAN corresponding with first network equipment of second network equipment during first network equipment is broken down switches back first network equipment; Above-mentioned second network equipment is connected with the 3rd network equipment with first network equipment respectively.
In the present embodiment; Because first ethernet frame use to keep Ethernet protocol number; Receive after this first ethernet frame; The 3rd network equipment can upgrade the mac address table of self, and the main frame among the VLAN of first network equipment correspondence receives after above-mentioned first ethernet frame, because above-mentioned main frame is not supported above-mentioned reservation Ethernet protocol corresponding protocols; Therefore the main frame among the VLAN that first network equipment is corresponding will abandon first ethernet frame, therefore can not cause harmful effect to network service.
In the present embodiment; Above-mentioned first network equipment can be fire compartment wall, router, outlet gateway or switch etc.; Same above-mentioned second network equipment also can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of first network equipment and second network equipment, as long as first network equipment and second network equipment are with a kind of network equipment.And in the present embodiment, first network equipment and second network equipment backup each other.
In the present embodiment; The 3rd network equipment is connected with second network equipment with first network equipment respectively; The 3rd network equipment can comprise the equipment of realizing two layers of forwarding capability according to mac address table, and for example: switch or router etc., present embodiment does not limit the form of the 3rd network equipment.
In the foregoing description; First network equipment recovers after the operate as normal; Two layer interfaces of spider module 51 traversal first network equipment, generation module 52 generates first ethernet frame, the source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; Destination address is a broadcast address, and Ethernet protocol number is for keeping Ethernet protocol number; Then; First sending module 53 sends above-mentioned first ethernet frame through the interface of current traversal; To upgrade the mac address table of the 3rd network equipment, the flow with first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during first network equipment is broken down switches back first network equipment; Thereby can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improve the availability of the network equipment.
Fig. 6 is the structural representation of another embodiment of path switching device of the present invention; Compare with path switching device shown in Figure 5; Difference is that path switching device shown in Figure 6 can also comprise: receiver module 54, establishment module 55, logging modle 56 and determination module 57;
Wherein, receiver module 54 is used to receive the backup messages that second network equipment sends, and this backup messages is that second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to first network equipment; Above-mentioned backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that second network equipment receives second ethernet frame; The destination address of the source address of this second ethernet frame and this second ethernet frame belongs to the corresponding VLAN of first network equipment;
Determination module 57; Be used for being connected with second network equipment corresponding relation of the interface of the 3rd network equipment, confirm second corresponding in first network equipment interface with above-mentioned first interface according to the interface that this first network equipment that first network equipment is preserved connects the 3rd network equipment;
Create module 55, be used for creating the list item corresponding with the source address of second ethernet frame at the mac address table of first network equipment;
Logging modle 56 is used for creating above-mentioned second interface of list item record that module 55 is created.
In the present embodiment, generation module 52 also is used to generate the three-ethernet frame, and the source address of this three-ethernet frame is the source address of second ethernet frame, and the destination address of three-ethernet frame is the destination address of second ethernet frame;
First sending module 53 also is used to send the three-ethernet frame that generation module 52 generates.Particularly, first sending module 53 can be searched the list item corresponding with the destination address of three-ethernet frame in the mac address table of first network equipment; If in the mac address table of first network equipment, find the list item corresponding, then send above-mentioned three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of three-ethernet frame with the destination address of three-ethernet frame; If in the mac address table of first network equipment, do not find the list item corresponding, then send above-mentioned three-ethernet frame through two layer interfaces except that second interface in first network equipment with the destination address of three-ethernet frame.
Above-mentioned path switching device can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improves the availability of the network equipment.
Fig. 7 is the structural representation of another embodiment of path switching device of the present invention; Path switching device in the present embodiment can be arranged in second network equipment; As shown in Figure 7, this path switching device can comprise: second sending module 71, list item are created module 72 and time logging modle 73;
Second sending module 71 is used for sending backup messages to first network equipment, and this backup messages is that second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to first network equipment; This backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that second network equipment receives second ethernet frame; The destination address of the source address of second ethernet frame and second ethernet frame belongs to first network equipment corresponding virtual local area network (LAN); The 3rd network equipment is connected with second network equipment with first network equipment respectively;
List item is created module 72, is used for the inhibition table at second network equipment, creates and the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame;
Time logging modle 73, list item record second sending module 71 that is used for creating in list item establishment module 72 sends the moment of above-mentioned backup messages.
Further; Second sending module 71; Also be used for picking up counting, if in scheduled duration, for example: within 3 seconds from the moment of the above-mentioned backup messages of transmission of time logging modle 73 record; What second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with second ethernet frame, then to first network equipment transmission backup messages; In the above-mentioned scheduled duration of process; For example: after 3 seconds; If what second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with second ethernet frame, then send above-mentioned backup messages to first network equipment;
At this moment, time logging modle 73 also is used for writing down the moment of sending above-mentioned backup messages once more in the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame.
In the present embodiment; Above-mentioned first network equipment can be fire compartment wall, router, outlet gateway or switch etc.; Same above-mentioned second network equipment also can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of first network equipment and second network equipment, as long as first network equipment and second network equipment are with a kind of network equipment.And in the present embodiment, first network equipment and second network equipment backup each other.
In the present embodiment; The 3rd network equipment is connected with second network equipment with first network equipment respectively; The 3rd network equipment can comprise the equipment of realizing two layers of forwarding capability according to mac address table, and for example: switch or router etc., present embodiment does not limit the form of the 3rd network equipment.
Above-mentioned path switching device can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improves the availability of the network equipment.
The present invention also provides a kind of first network equipment; This first network equipment can be realized through Fig. 5 of the present invention or path switching device shown in Figure 6; Above-mentioned first network equipment can be fire compartment wall, router, outlet gateway or switch etc., and present embodiment does not limit the concrete form of first network equipment.
The present invention also provides a kind of second network equipment; This second network equipment can be realized through the present invention's path switching device shown in Figure 7; Above-mentioned second network equipment can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of second network equipment, if with above-mentioned first network equipment be with a kind of network equipment.
Fig. 8 is the structural representation of another embodiment of path switching device of the present invention, and the path switching device in the present embodiment both can be arranged in first network equipment, also can be arranged in second network equipment; As shown in Figure 8, this path switching device can comprise: spider module 81, generation module 82 and first sending module 83, receiver module 84, create module 85, logging modle 86, determination module 87, second sending module 88, list item is created module 89 and time logging modle 810;
Wherein, spider module 81 is used for after first network equipment recovers operate as normal, traveling through two layer interfaces of first network equipment.
Generation module 82; Be used to generate first ethernet frame; The source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; The destination address of first ethernet frame is a broadcast address, and the Ethernet protocol of above-mentioned first ethernet frame number is for keeping Ethernet protocol number;
Wherein, the mac address table of above-mentioned first network equipment is that first network equipment recovers after the operate as normal, first network equipment generates before first ethernet frame, and second network equipment sends to above-mentioned first network equipment.In the present embodiment, second network equipment and first network equipment backup each other, and can send out mutually backup messages between first network equipment and second network equipment, and the mac address table of first network equipment is backuped on second network equipment.Therefore, after first network equipment recovered operate as normal, first network equipment generated before first ethernet frame, and the mac address table of backup sent to first network equipment before second network equipment can break down first network equipment.
In the present embodiment, broadcast address is that everybody value is the MAC Address of FF, for example FF:FF:FF:FF:FF:FF entirely; Keeping Ethernet protocol number is FFFF.
First sending module 83; Be used for sending first ethernet frame that generation module 82 generates through two layer interfaces of spider module 81 current traversals; To upgrade the mac address table of the 3rd network equipment that first network equipment connects, the flow that switches to the VLAN corresponding with first network equipment of second network equipment during first network equipment is broken down switches back first network equipment; Above-mentioned second network equipment is connected with the 3rd network equipment with first network equipment respectively.
In the present embodiment; Because first ethernet frame use to keep Ethernet protocol number; Receive after this first ethernet frame; The 3rd network equipment can upgrade the mac address table of self, and the main frame among the VLAN of first network equipment correspondence receives after above-mentioned first ethernet frame, because above-mentioned main frame is not supported above-mentioned reservation Ethernet protocol corresponding protocols; Therefore the main frame among the VLAN that first network equipment is corresponding will abandon first ethernet frame, therefore can not cause harmful effect to network service.
Receiver module 84 is used to receive the backup messages that second network equipment sends, and this backup messages is that second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to first network equipment; Above-mentioned backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that second network equipment receives second ethernet frame; The destination address of the source address of this second ethernet frame and this second ethernet frame belongs to the corresponding VLAN of first network equipment;
Determination module 87; Be used for being connected with second network equipment corresponding relation of the interface of the 3rd network equipment, confirm second corresponding in first network equipment interface with above-mentioned first interface according to the interface that this first network equipment that first network equipment is preserved connects the 3rd network equipment;
Create module 85, be used for creating the list item corresponding with the source address of second ethernet frame at the mac address table of first network equipment;
Logging modle 86 is used for creating above-mentioned second interface of list item record that module 85 is created.
In the present embodiment, generation module 82 also is used to generate the three-ethernet frame, and the source address of this three-ethernet frame is the source address of second ethernet frame, and the destination address of three-ethernet frame is the destination address of second ethernet frame;
First sending module 83 also is used to send the three-ethernet frame that generation module 82 generates.Particularly, first sending module 83 can be searched the list item corresponding with the destination address of three-ethernet frame in the mac address table of first network equipment; If in the mac address table of first network equipment, find the list item corresponding, then send above-mentioned three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of three-ethernet frame with the destination address of three-ethernet frame; If in the mac address table of first network equipment, do not find the list item corresponding, then send above-mentioned three-ethernet frame through two layer interfaces except that second interface in first network equipment with the destination address of three-ethernet frame.
Second sending module 88 is used for sending backup messages to first network equipment, and this backup messages is that second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to first network equipment; This backup messages is carried the source address of second ethernet frame, the destination address of second ethernet frame and first interface that second network equipment receives second ethernet frame; The destination address of the source address of second ethernet frame and second ethernet frame belongs to first network equipment corresponding virtual local area network (LAN); The 3rd network equipment is connected with second network equipment with first network equipment respectively;
List item is created module 89, is used for the inhibition table at second network equipment, creates and the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame;
Time logging modle 810, list item record second sending module 88 that is used for creating in list item establishment module 89 sends the moment of above-mentioned backup messages.
Further; Second sending module 88; Also be used for picking up counting, if in scheduled duration, for example: within 3 seconds from the moment of the above-mentioned backup messages of transmission of time logging modle 810 record; What second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with second ethernet frame, then to first network equipment transmission backup messages; In the above-mentioned scheduled duration of process; For example: after 3 seconds; If what second network equipment received that the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with second ethernet frame, then send above-mentioned backup messages to first network equipment;
At this moment, time logging modle 810 also is used for writing down the moment of sending above-mentioned backup messages once more in the source address of second ethernet frame and the corresponding list item of destination address of second ethernet frame.
In the present embodiment; Above-mentioned first network equipment can be fire compartment wall, router, outlet gateway or switch etc.; Same above-mentioned second network equipment also can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of first network equipment and second network equipment, as long as first network equipment and second network equipment are with a kind of network equipment.And in the present embodiment, first network equipment and second network equipment backup each other.
In the present embodiment; The 3rd network equipment is connected with second network equipment with first network equipment respectively; The 3rd network equipment can comprise the equipment of realizing two layers of forwarding capability according to mac address table, and for example: switch or router etc., present embodiment does not limit the form of the 3rd network equipment.
Above-mentioned path switching device can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improves the availability of the network equipment.
It will be appreciated by those skilled in the art that accompanying drawing is the sketch map of a preferred embodiment, module in the accompanying drawing or flow process might not be that embodiment of the present invention is necessary.
It will be appreciated by those skilled in the art that the module in the device among the embodiment can be distributed in the device of embodiment according to the embodiment description, also can carry out respective change and be arranged in the one or more devices that are different from present embodiment.The module of the foregoing description can be merged into a module, also can further split into a plurality of submodules.
Fig. 9 is the structural representation of an embodiment of path switching system of the present invention, and is as shown in Figure 9, and this path switching system can comprise first network equipment 91, second network equipment 92 and the 3rd network equipment 93; Wherein, the 3rd network equipment 93 is connected with second network equipment 92 with first network equipment 91 respectively, and first network equipment 91 is connected with second network equipment 92.
Above-mentioned first network equipment 91 can realize that above-mentioned first network equipment 91 can be fire compartment wall, router, outlet gateway or switch etc. through Fig. 5 of the present invention or path switching device shown in Figure 6; Above-mentioned second network equipment 92 can be realized through the present invention's path switching device shown in Figure 7; Above-mentioned second network equipment 92 also can be fire compartment wall, router, outlet gateway or switch etc.; Present embodiment does not limit the concrete form of first network equipment 91 and second network equipment 92, as long as first network equipment 91 and second network equipment 92 are with a kind of network equipment.And in the present embodiment, first network equipment 91 and second network equipment 92 backup each other.
In the present embodiment; The 3rd network equipment 93 is connected with second network equipment 92 with first network equipment 91 respectively; The 3rd network equipment 93 can comprise the equipment of realizing two layers of forwarding capability according to mac address table; For example: switch or router etc., present embodiment does not limit the form of the 3rd network equipment 93.
In the present embodiment, first network equipment 91, second network equipment 92 and the 3rd network equipment 93 can carry out repeating no more at this alternately according to the method that the inventive method embodiment provides.
Among Fig. 9, connecting one the 3rd network equipment 93 with first network equipment 91 is that illustration goes out, and expects that easily the 3rd network equipment 93 can be more than one, can be one or at least two network equipments.That is to say that the 3rd network equipment 93 is merely to be described conveniently, does not refer in particular to a certain the network equipment.
For example: when the 3rd network equipment 93 comprised two switches, first network equipment 91, second network equipment 92 and the 3rd network equipment 93 can be formed Fig. 3 of the present invention or system shown in Figure 4.
In the above-mentioned path switching system; First network equipment 91 recovers after the operate as normal; Travel through two layer interfaces of self, generate first ethernet frame, the source address of this first ethernet frame be in the mac address table of first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; Destination address is a broadcast address, and Ethernet protocol number is for keeping Ethernet protocol number; Then; First network equipment 91 sends above-mentioned first ethernet frame through two layer interfaces of current traversal; To upgrade the mac address table of the 3rd network equipment 93, the flow with first network equipment, 91 corresponding virtual local area network (LAN)s that switches to second network equipment 92 during first network equipment 91 is broken down switches back first network equipment 91; Thereby can realize taking over seamlessly the double layer network flow, and then can ensure user's proper communication, improve the availability of the network equipment.
What should explain at last is: above each embodiment is only in order to explaining technical scheme of the present invention, but not to its restriction; Although the present invention has been carried out detailed explanation with reference to aforementioned each embodiment; Those of ordinary skill in the art is to be understood that: it still can be made amendment to the technical scheme that aforementioned each embodiment put down in writing, perhaps to wherein part or all technical characteristic are equal to replacement; And these are revised or replacement, do not make the scope of the essence disengaging various embodiments of the present invention technical scheme of relevant art scheme.

Claims (13)

1. a path switching method is characterized in that, comprising:
First network equipment recovers to travel through two layer interfaces of self after the operate as normal;
Said first network equipment generates first ethernet frame; The source address of said first ethernet frame be in the media access control MAC address table of said first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of current traversal; The destination address of said first ethernet frame is a broadcast address, and the Ethernet protocol of said first ethernet frame number is for keeping Ethernet protocol number;
Said first network equipment sends said first ethernet frame through two layer interfaces of said current traversal; To upgrade the mac address table of the 3rd network equipment that said first network equipment connects, the flow with said first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during said first network equipment is broken down switches back said first network equipment; Said second network equipment is connected with said the 3rd network equipment with said first network equipment respectively.
2. method according to claim 1; It is characterized in that; The mac address table of said first network equipment is that said first network equipment recovers after the operate as normal, said first network equipment generates before first ethernet frame, and said second network equipment sends to said first network equipment.
3. method according to claim 1 and 2 is characterized in that, two layer interfaces of said first network equipment through said current traversal send after said first ethernet frame, also comprise:
Said first network equipment receives the backup messages that said second network equipment sends, and said backup messages is that said second network equipment receives after second ethernet frame of said the 3rd network equipment transmission, sends to said first network equipment; Said backup messages is carried the destination address of the source address of said second ethernet frame, said second ethernet frame and first interface that said second network equipment receives said second ethernet frame; The destination address of the source address of said second ethernet frame and said second ethernet frame belongs to said first network equipment corresponding virtual local area network (LAN);
The interface that said first network equipment that said first network equipment is preserved according to self connects said the 3rd network equipment is connected the corresponding relation of the interface of said the 3rd network equipment with said second network equipment; Confirm second corresponding in said first network equipment interface with said first interface; In the mac address table of said first network equipment, create the list item corresponding with the source address of said second ethernet frame; Said second interface of record in the corresponding list item of the source address of said second ethernet frame; And generate the three-ethernet frame; The source address of said three-ethernet frame is the source address of said second ethernet frame, and the destination address of said three-ethernet frame is the destination address of said second ethernet frame;
Said first network equipment sends said three-ethernet frame.
4. method according to claim 3 is characterized in that, said first network equipment sends said three-ethernet frame and comprises:
Said first network equipment is searched the list item corresponding with the destination address of said three-ethernet frame in the mac address table of said first network equipment;
If in the mac address table of said first network equipment, find the list item corresponding with the destination address of said three-ethernet frame, then said first network equipment sends said three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of said three-ethernet frame;
If in the mac address table of said first network equipment, do not find the list item corresponding with the destination address of said three-ethernet frame, then said first network equipment sends said three-ethernet frame through two layer interfaces except that said second interface in said first network equipment.
5. method according to claim 3 is characterized in that, said first network equipment receives after the backup messages of said second network equipment transmission, also comprises:
Said second network equipment is in the inhibition table of said second network equipment; Create and the source address of said second ethernet frame and the corresponding list item of destination address of said second ethernet frame, and the moment of in the corresponding list item of the destination address of the source address of said second ethernet frame and said second ethernet frame, writing down the said backup messages of transmission;
Pick up counting from the moment of the said backup messages of said transmission; If within scheduled duration; What said second network equipment received that said the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with said second ethernet frame, and then said second network equipment does not send said backup messages to said first network equipment;
After the said scheduled duration of process; If what said second network equipment received that said the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with said second ethernet frame; Then said second network equipment sends said backup messages to said first network equipment, and record sends moment of said backup messages once more in the corresponding list item of the destination address of the source address of said second ethernet frame and said second ethernet frame.
6. a path switching device is characterized in that, said path switching device is arranged in first network equipment, and said path switching device comprises:
Spider module is used for after said first network equipment recovers operate as normal, traveling through two layer interfaces of said first network equipment;
Generation module; Be used to generate first ethernet frame; The source address of said first ethernet frame be in the media access control MAC address table of said first network equipment with the corresponding MAC Address of two layer interfaces except that two layer interfaces of said current traversal; The destination address of said first ethernet frame is a broadcast address, and the Ethernet protocol of said first ethernet frame number is for keeping Ethernet protocol number;
First sending module; Be used for sending first ethernet frame that said generation module generates through two layer interfaces of the current traversal of said spider module; To upgrade the mac address table of the 3rd network equipment that said first network equipment connects, the flow with said first network equipment corresponding virtual local area network (LAN) that switches to second network equipment during said first network equipment is broken down switches back said first network equipment; Said second network equipment is connected with said the 3rd network equipment with said first network equipment respectively.
7. device according to claim 6 is characterized in that, also comprises: receiver module, determination module, establishment module and logging modle;
Said receiver module is used to receive the backup messages that said second network equipment sends, and said backup messages is that said second network equipment receives after second ethernet frame of said the 3rd network equipment transmission, sends to said first network equipment; Said backup messages is carried the destination address of the source address of said second ethernet frame, said second ethernet frame and first interface that said second network equipment receives said second ethernet frame; The destination address of the source address of said second ethernet frame and said second ethernet frame belongs to said first network equipment corresponding virtual local area network (LAN);
Said determination module; Be used for being connected with said second network equipment corresponding relation of the interface of said the 3rd network equipment, confirm second corresponding in said first network equipment interface with said first interface according to the interface that said first network equipment that said first network equipment is preserved connects said the 3rd network equipment;
Said establishment module is used for creating the list item corresponding with the source address of said second ethernet frame at the mac address table of said first network equipment;
Said logging modle is used for said second interface of list item record at said establishment module creation;
Said generation module also is used to generate the three-ethernet frame, and the source address of said three-ethernet frame is the source address of said second ethernet frame, and the destination address of said three-ethernet frame is the destination address of said second ethernet frame;
Said first sending module also is used to send the three-ethernet frame that said generation module generates.
8. device according to claim 7 is characterized in that,
Said first sending module specifically is used for searching the list item corresponding with the destination address of said three-ethernet frame at the mac address table of said first network equipment; If in the mac address table of said first network equipment, find the list item corresponding, then send said three-ethernet frame through the interface that is write down in the corresponding list item of the destination address of said three-ethernet frame with the destination address of said three-ethernet frame; If in the mac address table of said first network equipment, do not find the list item corresponding, then send said three-ethernet frame through two layer interfaces except that said second interface in said first network equipment with the destination address of said three-ethernet frame.
9. a path switching device is characterized in that, said path switching device is arranged in second network equipment, and said path switching device comprises:
Second sending module is used for sending backup messages to first network equipment, and said backup messages is that said second network equipment receives after second ethernet frame of the 3rd network equipment transmission, sends to said first network equipment; Said backup messages is carried the destination address of the source address of said second ethernet frame, said second ethernet frame and first interface that said second network equipment receives said second ethernet frame; The destination address of the source address of said second ethernet frame and said second ethernet frame belongs to said first network equipment corresponding virtual local area network (LAN); Said the 3rd network equipment is connected with said second network equipment with said first network equipment respectively;
List item is created module, is used for the inhibition table at said second network equipment, creates and the source address of said second ethernet frame and the corresponding list item of destination address of said second ethernet frame;
The time logging modle is used for writing down the moment that said second sending module sends said backup messages at the list item of said list item establishment module creation.
10. device according to claim 9 is characterized in that,
Said second sending module; Also be used for picking up counting from the moment of the said backup messages of transmission of said time logging modle record; If within scheduled duration; What said second network equipment received that said the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with said second ethernet frame, does not then send said backup messages to said first network equipment; After the said scheduled duration of process; If what said second network equipment received that said the 3rd network equipment sends has the 4th ethernet frame of same source and destination address with said second ethernet frame, then send said backup messages to said first network equipment;
Said time logging modle also is used for writing down the moment of sending said backup messages once more in the source address of said second ethernet frame and the corresponding list item of destination address of said second ethernet frame.
11. a network equipment is characterized in that, comprises any described path switching device like claim 6-8.
12. a network equipment is characterized in that, comprises any described path switching device like claim 9-10.
13. a path switching system is characterized in that, comprises first network equipment as claimed in claim 11, second network equipment as claimed in claim 12 and the 3rd network equipment; Said the 3rd network equipment is connected with said second network equipment with said first network equipment respectively, and said first network equipment is connected with said second network equipment.
CN201210107224.3A 2012-04-12 2012-04-12 Route switching method, device, system and network equipment Active CN102638469B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210107224.3A CN102638469B (en) 2012-04-12 2012-04-12 Route switching method, device, system and network equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210107224.3A CN102638469B (en) 2012-04-12 2012-04-12 Route switching method, device, system and network equipment

Publications (2)

Publication Number Publication Date
CN102638469A true CN102638469A (en) 2012-08-15
CN102638469B CN102638469B (en) 2015-07-22

Family

ID=46622712

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210107224.3A Active CN102638469B (en) 2012-04-12 2012-04-12 Route switching method, device, system and network equipment

Country Status (1)

Country Link
CN (1) CN102638469B (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113497985A (en) * 2020-04-01 2021-10-12 上海诺基亚贝尔股份有限公司 Method and device for reporting MAC (media Access control) update of user

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101047601A (en) * 2006-04-10 2007-10-03 华为技术有限公司 Implementing method and system of double-attach network based on VPLS
CN101695043A (en) * 2009-10-15 2010-04-14 中兴通讯股份有限公司 Method for multiplexing hot backup port and network system
EP2190150A1 (en) * 2007-10-24 2010-05-26 Huawei Technologies Co., Ltd. A method, device and system of multi-protocol label exchange traffic engineering flow capacity switch
CN102148677A (en) * 2010-02-10 2011-08-10 杭州华三通信技术有限公司 Method for updating address resolution protocol table entries and core switch

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101047601A (en) * 2006-04-10 2007-10-03 华为技术有限公司 Implementing method and system of double-attach network based on VPLS
EP2190150A1 (en) * 2007-10-24 2010-05-26 Huawei Technologies Co., Ltd. A method, device and system of multi-protocol label exchange traffic engineering flow capacity switch
CN101695043A (en) * 2009-10-15 2010-04-14 中兴通讯股份有限公司 Method for multiplexing hot backup port and network system
CN102148677A (en) * 2010-02-10 2011-08-10 杭州华三通信技术有限公司 Method for updating address resolution protocol table entries and core switch

Non-Patent Citations (2)

* Cited by examiner, † Cited by third party
Title
蒋友 等: "二层交换机中MAC地址的学习、查找和老化方法", 《软件导刊》, no. 20, 31 December 2005 (2005-12-31) *
陈旭 等: "带负载均衡的防火墙的双机互备实现", 《计算机与数字工程》, vol. 36, no. 5, 31 May 2008 (2008-05-31) *

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113497985A (en) * 2020-04-01 2021-10-12 上海诺基亚贝尔股份有限公司 Method and device for reporting MAC (media Access control) update of user
CN113497985B (en) * 2020-04-01 2024-04-05 上海诺基亚贝尔股份有限公司 Method and device for reporting MAC update of user

Also Published As

Publication number Publication date
CN102638469B (en) 2015-07-22

Similar Documents

Publication Publication Date Title
CN107733793B (en) Forwarding table item maintenance method and device
US9106515B2 (en) System and apparatus of a software-service-defined-network (SSDN)
US9385949B2 (en) Routing controlled by subnet managers
US8531991B2 (en) Multi-chassis emulated switch
CN107846358B (en) Data transmission method, device and network system
CN102333028A (en) Method and communication equipment for sending messages by using layered bi-layer virtual private network
CN103259725A (en) Messaging method and network equipment
CN102244614B (en) Message forwarding method, system and routing switch
CN103501250A (en) Data flow processing method and device in distribution type link aggregation network
CN101820397A (en) Network convergence method and device in virtual private local area network
CN102217253A (en) Message forwarding method, equipment and network device
CN105790996A (en) Distributed gateway backup processing method and network equipment
CN101257447A (en) Method, system and routing apparatus of load sharing
WO2013035604A1 (en) Packet transfer device and wireless communication system
CN105162704A (en) Multicast replication method and device in Overlay network
CN102420762A (en) Message forwarding method, message forwarding system, network equipment and firewall wire card
CN103763135A (en) PE traffic scheduling method and device
CN101778035B (en) Virtual private LAN service communication method and device
WO2012173172A1 (en) Communication system, controller, switch, storage management device, and communication method
CN101562576B (en) Route distribution method and equipment thereof
CN102333027A (en) Traffic load sharing realization method based on virtual router redundancy protocol extend (VRRPE) backup group and realization apparatus thereof
US9614749B2 (en) Data processing system and method for changing a transmission table
CN102821099A (en) Message forwarding method, message forwarding equipment and message forwarding system
JP5387349B2 (en) Relay device
CN108540386A (en) One kind preventing Business Stream interrupt method and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant