CN102891789B - VPN (virtual private network) exemplary configuration method and device, router and network system - Google Patents

VPN (virtual private network) exemplary configuration method and device, router and network system Download PDF

Info

Publication number
CN102891789B
CN102891789B CN201110204114.4A CN201110204114A CN102891789B CN 102891789 B CN102891789 B CN 102891789B CN 201110204114 A CN201110204114 A CN 201110204114A CN 102891789 B CN102891789 B CN 102891789B
Authority
CN
China
Prior art keywords
vpn
configuration order
configuration
vpn instance
template
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201110204114.4A
Other languages
Chinese (zh)
Other versions
CN102891789A (en
Inventor
刘江涛
刘莉
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Huawei Digital Technologies Co Ltd
Original Assignee
Beijing Huawei Digital Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Huawei Digital Technologies Co Ltd filed Critical Beijing Huawei Digital Technologies Co Ltd
Priority to CN201110204114.4A priority Critical patent/CN102891789B/en
Publication of CN102891789A publication Critical patent/CN102891789A/en
Application granted granted Critical
Publication of CN102891789B publication Critical patent/CN102891789B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The embodiment of the present invention provides a kind of VPN (virtual private network) exemplary configuration method and device, router and network system, the method comprises the privately owned configuration order row in the configuration order configured for each VPN instance according to the application identities of at least one VPN (virtual private network) VPN instance template and needing, generate VPN configuration file, to be configured described each VPN instance.The VPN (virtual private network) exemplary configuration method that the embodiment of the present invention provides and device, router and network system, introduce VPN instance template, decrease the setup time of VPN instance, improve the allocative efficiency of VPN instance in the generative process of VPN configuration file.

Description

VPN (virtual private network) exemplary configuration method and device, router and network system
Technical field
The embodiment of the present invention relates to computer networking technology, particularly relates to a kind of VPN (virtual private network) exemplary configuration method and device, router and network system.
Background technology
BGP/MPLS (Border Gateway Protocol, Border Gateway Protocol/ multiprotocol label switching, Multi-Protocol Label Switching) IP virtual private network network (Virtual Private Network, be called for short VPN), be to provide in business's VPN (virtual private network) solution a kind of based on service provider edge router (Provider Edge, be called for short PE) layer three VPN (L3VPN) technology, it uses BGP on service provider backbone, issue VPN route, uses MPLS on service provider backbone, forward VPN message.
BGP/MPLS IP VPN is made up of three parts: the P (Provider is called for short P) in user network boundary device (CustomerEdge is called for short CE), PE and service provider network.CE has interface directly connected with service provider's (Service Provider is called for short SP) network.PE and CE is directly connected.In an mpls network, all process of VPN are all occurred on PE.P is not directly connected with CE.P equipment only needs to possess basic MPLS transfer capability, does not safeguard VPN information.The corresponding VPN instance (VPN-instance) of connection of every bar CE and PE.Along with the continuous increase of the network user, the quantity of VPN instance also increases thereupon, and current most router device all supports 4000 VPN instance.When PE there being 4000 VPN instance, during access 4000 VPN, need to be configured each VPN instance on PE, namely corresponding according to each VPN instance configuration order generating configuration file also stores in order to using.Due to the increase of VPN instance, the configuration of PE upper formation configuration file is day by day loaded down with trivial details, cause start-up time long, and configuration modification gets up more difficult.
Summary of the invention
The embodiment of the present invention provides a kind of VPN (virtual private network) exemplary configuration method and device, router and network system, to reduce the setup time of VPN instance, improves the allocative efficiency of VPN instance.
The embodiment of the present invention provides a kind of VPN (virtual private network) exemplary configuration method, comprising:
According to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order.
The embodiment of the present invention provides a kind of VPN (virtual private network) exemplary configuration device, comprising:
Configuration file generation unit, for the privately owned configuration order row in the configuration order that configures for each VPN instance according to the application identities of at least one VPN (virtual private network) VPN instance template and needing, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order.
The embodiment of the present invention provides a kind of edge router, comprises the VPN (virtual private network) exemplary configuration device that the embodiment of the present invention provides.
The embodiment of the present invention provides a kind of Virtual Networking System, comprises user network boundary device, service provider edge router and P, and the edge router that the employing embodiment of the present invention provides is as described service provider edge router.
As shown from the above technical solution, the VPN (virtual private network) exemplary configuration method that the embodiment of the present invention provides and device, router and network system, VPN instance template is introduced in the generative process of VPN configuration file, the attribute identical to each VPN instance by VPN instance template is configured, to reduce the setup time of VPN instance.When needing to modify to the shared configuration order row of each VPN instance, amendment is only needed to comprise the VPN instance template of this shared configuration order, and modify without the need to the configuration order corresponding to each VPN instance, decrease the modification time of the configuration of VPN instance, improve the allocative efficiency of VPN instance.
Accompanying drawing explanation
The VPN (virtual private network) exemplary configuration method flow diagram that Fig. 1 provides for the embodiment of the present invention one;
The BGP/MPLS IP VPN structural representation that Fig. 2 provides for the embodiment of the present invention one;
The VPN (virtual private network) exemplary configuration method flow diagram that Fig. 3 provides for the embodiment of the present invention two;
The VPN (virtual private network) exemplary configuration apparatus structure schematic diagram that Fig. 4 provides for the embodiment of the present invention four.
Embodiment
For making the object of the embodiment of the present invention, technical scheme and advantage clearly, below in conjunction with the embodiment of the present invention, the technical scheme in the embodiment of the present invention is clearly and completely described.It should be noted that, in accompanying drawing or specification, similar or identical element all uses identical Reference numeral.
Embodiment one
The VPN (virtual private network) exemplary configuration method flow diagram that Fig. 1 provides for the embodiment of the present invention one.As shown in Figure 1, the VPN (virtual private network) exemplary configuration method that the present embodiment provides specifically can be applied to the VPN instance configuration of PE in BGP/MPLS IP VPN, the structural representation of BGP/MPLS IP VPN is concrete with reference to Fig. 2, and VPN instance configuration is specifically performed by PE, specifically comprises:
Step 10, according to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order.
In the VPN instance layoutprocedure of reality, VPN configuration file can be performed realize configuration to each VPN instance by PE.Include the configuration order of each VPN instance in described VPN configuration file, in the configuration order of each VPN instance, include many configuration order row, to realize the configuration of different attribute.Such as comprise the configuration order, the configuration order of distribution VPN instance Route Distinguisher and/or the configuration order of tunnel strategy that create VPN instance.After VPN instance configuration, just can set up the communication in network between CE.Described shared configuration order row to be specially in the configuration order needing to configure for each VPN instance at least one group of identical configuration order row, can realize the attribute identical to each VPN be configured by performing described shared configuration order row.Described privately owned configuration order row is specially configuration order row different in the configuration order needing to configure for each VPN instance, can realize being configured the distinctive attribute of each VPN by performing described privately owned configuration order row.Contain at least one group in described VPN instance template and share configuration order row, described VPN instance template can generate in advance, also can need to generate according to VPN instance configuration.Described VPN configuration file comprises multiple template type configuration order, and each template type configuration order is corresponding with a VPN instance.Each template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order.According to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, then be configured by the VPN of this VPN configuration file to access PE.
The VPN (virtual private network) exemplary configuration method that the present embodiment provides, according to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, VPN instance template is introduced in the generative process of VPN configuration file, the attribute identical to each VPN instance by VPN instance template is configured, to reduce the setup time of VPN instance.When needing to modify to the shared configuration order row of each VPN instance, amendment is only needed to comprise the VPN instance template of this shared configuration order, and modify without the need to the configuration order corresponding to each VPN instance, decrease the modification time of the configuration of VPN instance, improve the allocative efficiency of VPN instance.
Embodiment two
The VPN (virtual private network) exemplary configuration method flow diagram that Fig. 3 provides for the embodiment of the present invention two.As shown in Figure 3, the VPN (virtual private network) exemplary configuration method that the present embodiment provides and the difference of embodiment one are, except the described step 10 of execution, before the described step 10 of execution, specifically can also comprise the steps:
Step 20, according to the described configuration order needed for each VPN instance configures, generate described VPN instance template.
Described VPN instance template generates according to the configuration order of each VPN instance, ensure that the accuracy of VPN instance template.
In the present embodiment, step 20, according to the described configuration order needed for each VPN instance configures, generates described VPN instance template, specifically can comprise the steps:
Step 201, extracting describedly to need in the configuration order configured for each VPN instance at least one group of identical configuration order row as described shared configuration order row;
Step 202, generation comprise the described VPN instance template of described shared configuration order row;
Step 203, distribute described application identities for described VPN instance template.
In actual BGP/MPLS IP VPN application process, such as use MPL S TE (Multi-Protocol Label Switching Traffic Engineering between PE1 and PE2, being called for short MPLS traffic engineering) Tunnel (tunnel) is TE1, and be configured with tunnel strategy tp1, to realize the intercommunication with PE2 side CE.PE1 there are 4000 VPN instance, access 4000 and between VPN, PE1 and PE2, use MPLS TE Tunnel.Then need, to 4000 VPN instance all configured tunneling technique strategies, to use identical traffic engineering tunnel.And, PE1 from after CE receives route, PE2 needs applying label before issuing VPN route, this label is used for when receiving PE2 message, determine the VPN instance on corresponding PE1, namely which VPN instance message will send to, in general the number of labels giving tacit consent to application is the number of routes that PE1 sends to PE2, route amount as each CE that PE1 receives is excessive, exceed the label application upper limit, then needing configuration apply-label per-instance (the every example of applying label), is only namely each VPN instance application label.
For above-mentioned application scenarios, in the VPN (virtual private network) exemplary configuration method provide the present embodiment, the generative process of VPN template explains.
The configuration order corresponding to 4000 VPN instance on PE1 is as follows respectively, has 4000 × 4 configuration order row:
In mentioned order is capable, the Chinese of ip vpn-instance is Internet protocol virtual private network (VPN) examples; The Chinese of apply-label per-instance is: be each example application label; Tnl-policy Chinese is tunnel strategy, and tp is the abbreviation of tunnel strategy; The Chinese of route-distinguisher is Route Distinguisher.
Configuration order behavior identical in the above-mentioned configuration order to 4000 VPN instance:
tnl-policy tp1
apply-label per-instance
Then extract described " tnl-policy tp1 " and " apply-label per-instance " as described shared configuration order row, to generate described VPN instance template.Be again described VPN instance template dispensing applications mark " vpn-instance-template template1 (VPN instance casting formwork 1) ", that is:
vpn-instance-template template1
tnl-policy tp1
apply-label per-instance
Also can be respectively configuration order row " tnl-policy tp1 " and configuration order row " apply-labelper-instance " dispensing applications mark, with the VPN instance template that correspondence is different, the flexibility that template uses can be improved.Under other application scenarioss, corresponding to the identical configuration order row of other many groups may be there is in the configuration order of VPN instance, this identical configuration order row can be generated a VPN instance template, and distribute corresponding application identities.The quantity of VPN instance template can need to arrange according to actual disposition, is not limited with the present embodiment.
In the present embodiment, step 10, according to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generates VPN configuration file, specifically can comprise the steps:
Step 101, when according to the described shared configuration order row in described VPN instance template, described need to recognize the whole described shared configuration order row existed in described VPN instance template in the configuration order configured for each VPN instance time, then replace corresponding configuration order row, to form described template type configuration order by described application identities;
Still for the configuration order of above-mentioned VPN instance and VPN instance template, when there is shared configuration order row " tnl-policy tp1 " and " apply-labelper-instance " in the configuration order recognizing corresponding VPN instance 1, application identities " vpn-instance-template template1 " is then used to replace this two configuration order row, to form the template type configuration order corresponding to VPN instance 1, be:
ip vpn-instance VPN1
route-distinguisher 1:1
apply vpn-instance-template template1
Step 102, by application described application identities after each described template type configuration order be integrated into described VPN configuration file.
Inheriting the respective attributes parameter of the upper configuration of VPN instance template corresponding to application identities by applying described application identities, being easy to realize.
In the present embodiment, each VPN instance is configured, specifically can comprises the steps:
According to the configuration-direct received, perform the configuration order row in described VPN configuration file, wherein, if when recognizing described application identities, perform the corresponding configuration order row in VPN instance template corresponding to described application identities.
Due in configuration file to the shared configuration order row in the configuration order of each VPN instance by applying described application identities to replace, when recognizing described application identities, perform the configuration order row in VPN instance template corresponding to described application identities, avoid the problem because a large amount of repeated configuration causes start-up time long, improve configuration speed.
Preferably, in the present embodiment, perform the corresponding configuration order row in VPN instance template corresponding to described application identities, specifically can comprise the steps:
If recognize the type of a configuration order row in VPN instance template corresponding to described application identities, identical with the type of a privately owned configuration order row in the described privately owned configuration order row in the template type configuration order at described application identities place, then perform other configuration order row except the identical configuration order row of described type in described VPN instance template.
Such as, privately owned configuration order row " tnl-policy tp2 " is there is in a certain template type configuration order in configuration file, and there is configuration order row " tnl-policy tp1 " in VPN instance template corresponding to application identities in this template type configuration order, type due to these two configuration order row is all the configuration order of tunnel strategy, then now, the execution priority of privately owned configuration order row is higher than the execution priority of the configuration order row in VPN instance template, perform configuration order row " tnl-policy tp2 ", and do not perform configuration order row " tnl-policy tp1 ".When different from the configuration order row in VPN instance template to the configuration of some VPN instance in configuration file, namely realizing by this programme without the need to changing VPN instance template, further increasing the flexibility of VPN instance configuration.
Embodiment three
The VPN (virtual private network) exemplary configuration device that the present embodiment provides can realize with the form of hardware and/or software, can be integrated in PE, also can arrange separately, the VPN (virtual private network) exemplary configuration method that any embodiment of the present invention provides can be realized, but not as limit.This VPN (virtual private network) exemplary configuration device specifically comprises configuration file generation unit, for the privately owned configuration order row in the configuration order that configures for each VPN instance according to the application identities of at least one VPN (virtual private network) VPN instance template and needing, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order.
The VPN (virtual private network) exemplary configuration device that the present embodiment provides, according to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, VPN instance template is introduced in the generative process of VPN configuration file, the attribute identical to each VPN instance by VPN instance template is configured, to reduce the setup time of VPN instance.When needing to modify to the shared configuration order row of each VPN instance, amendment is only needed to comprise the VPN instance template of this shared configuration order, and modify without the need to the configuration order corresponding to each VPN instance, decrease the modification time of the configuration of VPN instance, improve the allocative efficiency of VPN instance.
Embodiment four
The VPN (virtual private network) exemplary configuration apparatus structure schematic diagram that Fig. 4 provides for the embodiment of the present invention four.As shown in Figure 4, the VPN (virtual private network) exemplary configuration device that the present embodiment provides and the difference of embodiment three are, VPN (virtual private network) exemplary configuration device is except comprising described configuration file generation unit 11, template generation unit 12 can also be comprised, template generation unit 12, for according to the described configuration order needed for each VPN instance configures, generates described VPN instance template.
In the present embodiment, template generation unit 12 specifically can comprise extraction subelement 121, template generation subelement 122 and application identities and distribute subelement 123.Extracting subelement 121 describedly to need in the configuration order configured for each VPN instance at least one group of identical configuration order row as described shared configuration order row for extracting.Template generation unit 122 comprises the described VPN instance template of described shared configuration order row for generating.Application identities distributes subelement 123 for distributing described application identities for described VPN instance template.
Preferably, in the present embodiment, configuration file generation unit 11 specifically can comprise application identities replacement subelement 111 and configuration file generation subelement 112.Application identities replaces subelement 111 for working as according to the described shared configuration order row in described VPN instance template, described need to recognize the whole described shared configuration order row existed in described VPN instance template in the configuration order configured for each VPN instance time, then replace corresponding configuration order row, to form described template type configuration order by described application identities.Configuration file generates subelement 112 for each described template type configuration order after the described application identities of application is integrated into described VPN configuration file.
Inherit the respective attributes parameter of the upper configuration of VPN instance template corresponding to application identities by applying described application identities, configuration is convenient, and is easy to realize.
In the present embodiment, this VPN (virtual private network) exemplary configuration device can also comprise dispensing unit 13, the configuration-direct that dispensing unit 13 receives for basis, perform the configuration order row in described VPN configuration file, wherein, if when recognizing described application identities, perform the corresponding configuration order row in VPN instance template corresponding to described application identities.
In the present embodiment, dispensing unit 13 can also be used in the type recognizing a configuration order row in VPN instance template corresponding to described application identities, time identical with the type of a privately owned configuration order row in the described privately owned configuration order row in the template type configuration order at described application identities place, perform other configuration order row except the identical configuration order row of described type in described VPN instance template.
Preferably, the unit in the present embodiment is hardware cell, or the part in the unit in the present embodiment is hardware cell.
Embodiment five
The present embodiment provides a kind of router, is specially service provider edge router, comprises the VPN (virtual private network) exemplary configuration device that any embodiment of the present invention provides.
Embodiment six
The present embodiment provides a kind of network system, comprises user network boundary device, service provider edge router and P, and wherein, the router that the employing embodiment of the present invention provides is as service provider edge router.
The VPN (virtual private network) exemplary configuration method that the embodiment of the present invention provides and device, router and network system, VPN instance template is introduced in the generative process of VPN configuration file, the attribute identical to each VPN instance by VPN instance template is configured, to reduce the setup time of VPN instance.When needing to modify to the shared configuration order row of each VPN instance, amendment is only needed to comprise the VPN instance template of this shared configuration order, and modify without the need to the configuration order corresponding to each VPN instance, decrease the modification time of the configuration of VPN instance, improve the allocative effect of VPN instance.
The VPN (virtual private network) exemplary configuration method that the present embodiment provides and device, router and network system, for the attribute configuration of the repetition in the configuration order that each VPN instance is corresponding, by introducing VPN instance template, being only configured with once, reducing the complexity of configuration.The configuration under each VPN instance can be revised easily by VPN instance template.And VPN configuration file can capable from 4000 original × 4=16000 to become 4000 × 3+3=12003 capable, decrease 3997 row, greatly accelerate start-up time, VPN instance quantity is more, repeated configuration under VPN instance is more, the effect that start-up time accelerates is more obvious, improves the allocative efficiency of VPN instance.
One of ordinary skill in the art will appreciate that: all or part of step realizing said method embodiment can have been come by the hardware that program command is relevant, aforesaid program can be stored in a computer read/write memory medium, this program, when performing, performs the step comprising said method embodiment; And aforesaid storage medium comprises: ROM, RAM, magnetic disc or CD etc. various can be program code stored medium.
Last it is noted that above embodiment is only in order to illustrate technical scheme of the present invention, be not intended to limit; Although with reference to previous embodiment to invention has been detailed description, those of ordinary skill in the art is to be understood that: it still can be modified to the technical scheme described in previous embodiment, or carries out equivalent replacement to wherein portion of techniques feature; And these amendments or replacement, do not make the essence of appropriate technical solution depart from the spirit and scope of various embodiments of the present invention technical scheme.

Claims (12)

1. a VPN (virtual private network) exemplary configuration method, is characterized in that, comprising:
According to the privately owned configuration order row in the configuration order that the application identities of at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order,
Wherein, the privately owned configuration order row in the configuration order that the described application identities according at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, generates VPN configuration file, comprising:
When according to the described shared configuration order row in described VPN instance template, described need to recognize the whole described shared configuration order row existed in described VPN instance template in the configuration order configured for each VPN instance time, then replace corresponding configuration order row, to form described template type configuration order by described application identities;
Each described template type configuration order after the described application identities of application is integrated into described VPN configuration file.
2. VPN (virtual private network) exemplary configuration method according to claim 1, it is characterized in that, privately owned configuration order row in the configuration order that the described application identities according at least one VPN (virtual private network) VPN instance template and needing configures for each VPN instance, before generating VPN configuration file, also comprise:
According to the described configuration order needed for each VPN instance configures, generate described VPN instance template.
3. VPN (virtual private network) exemplary configuration method according to claim 2, is characterized in that, described according to the described configuration order needed for each VPN instance configures, and generates described VPN instance template, comprising:
Extracting describedly to need in the configuration order configured for each VPN instance at least one group of identical configuration order row as described shared configuration order row;
Generate the described VPN instance template comprising described shared configuration order row;
For described VPN instance template distributes described application identities.
4. the VPN (virtual private network) exemplary configuration method according to claim 1 or 3, is characterized in that, described being configured described each VPN instance comprises:
According to the configuration-direct received, perform the configuration order row in described VPN configuration file, wherein, if when recognizing described application identities, perform the corresponding configuration order row in VPN instance template corresponding to described application identities.
5. VPN (virtual private network) exemplary configuration method according to claim 4, is characterized in that, the corresponding configuration order row in the VPN instance template that the described application identities of described execution is corresponding, comprising:
If recognize the type of a configuration order row in VPN instance template corresponding to described application identities, identical with the type of a privately owned configuration order row in the described privately owned configuration order row in the template type configuration order at described application identities place, then perform other configuration order row except the identical configuration order row of described type in described VPN instance template.
6. a VPN (virtual private network) exemplary configuration device, is characterized in that, comprising:
Configuration file generation unit, for the privately owned configuration order row in the configuration order that configures for each VPN instance according to the application identities of at least one VPN (virtual private network) VPN instance template and needing, generate VPN configuration file, to be configured described each VPN instance, wherein, described VPN instance template comprises shared configuration order row, configuration order row identical in the configuration order configured for each VPN instance is needed described in described shared configuration order behavior, described VPN configuration file comprises multiple template type configuration orders corresponding with described each VPN instance respectively, each described template type configuration order comprises described application identities and is applied to the described privately owned configuration order row of the VPN instance corresponding with this template type configuration order,
Wherein, described configuration file generation unit comprises:
Application identities replaces subelement, for working as according to the described shared configuration order row in described VPN instance template, described need to recognize the whole described shared configuration order row existed in described VPN instance template in the configuration order configured for each VPN instance time, then replace corresponding configuration order row, to form described template type configuration order by described application identities;
Configuration file generates subelement, for each described template type configuration order after the described application identities of application is integrated into described VPN configuration file.
7. VPN (virtual private network) exemplary configuration device according to claim 6, is characterized in that, also comprise:
Template generation unit, for according to the described configuration order needed for each VPN instance configures, generates described VPN instance template.
8. VPN (virtual private network) exemplary configuration device according to claim 7, is characterized in that, described template generation unit comprises:
Extracting subelement, describedly to need in the configuration order configured for each VPN instance at least one group of identical configuration order row as described shared configuration order row for extracting;
Template generation subelement, for generating the described VPN instance template comprising described shared configuration order row;
Application identities distributes subelement, for distributing described application identities for described VPN instance template.
9. the VPN (virtual private network) exemplary configuration device according to claim 6 or 8, is characterized in that, also comprise:
Dispensing unit, for according to the configuration-direct received, performs the configuration order row in described VPN configuration file, wherein, if when recognizing described application identities, performs the corresponding configuration order row in VPN instance template corresponding to described application identities.
10. VPN (virtual private network) exemplary configuration device according to claim 9, it is characterized in that: described dispensing unit, also in the type recognizing a configuration order row in VPN instance template corresponding to described application identities, time identical with the type of a privately owned configuration order row in the described privately owned configuration order row in the template type configuration order at described application identities place, perform other configuration order row except the identical configuration order row of described type in described VPN instance template.
11. 1 kinds of edge routers, is characterized in that, comprise the arbitrary described VPN (virtual private network) exemplary configuration device of claim 6-10.
12. 1 kinds of Virtual Networking Systems, comprise user network boundary device, service provider edge router and P, it is characterized in that: adopt edge router according to claim 11 as described service provider edge router.
CN201110204114.4A 2011-07-20 2011-07-20 VPN (virtual private network) exemplary configuration method and device, router and network system Expired - Fee Related CN102891789B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110204114.4A CN102891789B (en) 2011-07-20 2011-07-20 VPN (virtual private network) exemplary configuration method and device, router and network system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110204114.4A CN102891789B (en) 2011-07-20 2011-07-20 VPN (virtual private network) exemplary configuration method and device, router and network system

Publications (2)

Publication Number Publication Date
CN102891789A CN102891789A (en) 2013-01-23
CN102891789B true CN102891789B (en) 2015-08-05

Family

ID=47535163

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110204114.4A Expired - Fee Related CN102891789B (en) 2011-07-20 2011-07-20 VPN (virtual private network) exemplary configuration method and device, router and network system

Country Status (1)

Country Link
CN (1) CN102891789B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107147509B (en) * 2016-03-01 2022-03-11 中兴通讯股份有限公司 Virtual private network service implementation method, device and communication system
CN109525409B (en) * 2017-09-19 2021-07-20 华为技术有限公司 Processing method and management equipment of network slice template
US10560390B2 (en) * 2018-03-05 2020-02-11 Schweitzer Engineering Laboratories, Inc. Time-based network operation profiles in a software-defined network
CN111371665B (en) * 2018-12-25 2022-05-13 华为技术有限公司 Routing restriction method and network equipment
CN110324186A (en) * 2019-06-28 2019-10-11 迈普通信技术股份有限公司 Network collocating method, device, server and computer readable storage medium
CN111740893B (en) * 2020-06-30 2022-02-11 成都卫士通信息产业股份有限公司 Method, device, system, medium and equipment for realizing software-defined VPN

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1980148A (en) * 2005-12-07 2007-06-13 中兴通讯股份有限公司 Method for configurating and managing exchange apparatus of vitual local network
CN101102251A (en) * 2006-07-07 2008-01-09 中兴通讯股份有限公司 A method for deploying VLAN service in the whole network

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1980148A (en) * 2005-12-07 2007-06-13 中兴通讯股份有限公司 Method for configurating and managing exchange apparatus of vitual local network
CN101102251A (en) * 2006-07-07 2008-01-09 中兴通讯股份有限公司 A method for deploying VLAN service in the whole network

Also Published As

Publication number Publication date
CN102891789A (en) 2013-01-23

Similar Documents

Publication Publication Date Title
CN102891789B (en) VPN (virtual private network) exemplary configuration method and device, router and network system
JP7290732B2 (en) Data transfer method and related equipment
EP3096490B1 (en) Method for realizing network virtualization and related device and communication system
US9143442B2 (en) Flexible and scalable virtual network segment pruning
CN111224874B (en) Path construction method and related equipment
EP2299637A1 (en) Pseudo wire establishing method, device and system
CN104253736A (en) PE (provider edge) equipment and method for notifying same of information
CN103269315B (en) Label distribution method, device, System and Network equipment
CN104219098A (en) Hard pipe building method, packet forwarding method and device in network
CN109936516A (en) System and method for promoting transparent service mapping across multiple network transmission options
CN103354520B (en) A kind of method and device of tag processes
CN112134801B (en) Method and device for processing segment identification SID and each node
CN106941437A (en) A kind of information transferring method and device
CN103475557A (en) Tunnel setup method and router
CN102571375B (en) Multicast forwarding method and device as well as network device
CN106209559B (en) A kind of method and apparatus for establishing Multicast Tunnel
EP3627775B1 (en) Route synchronization
CN109639577A (en) A kind of wide area network bandwidth stage division, apparatus and system
CN101621477A (en) Method and device for one-to-many port mirror image
CN102394803B (en) VPN service programming and deploying method and system
CN103916303A (en) MPLS TE tunnel configuration device and method
CN105763411A (en) Method and device for establishing multicast tunnel
CN103986660B (en) The device of loading micro code and the method for loading micro code
CN102244615B (en) Forwarding entry sending method, device and system as well as autonomous system border router
CN104660478B (en) A kind of method and apparatus for realizing that data flow concatenates between tunnel

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C53 Correction of patent for invention or patent application
CB02 Change of applicant information

Address after: 100085 Beijing, Haidian District on the road, No. 3

Applicant after: Beijing Huawei Digital Technology Co.,Ltd.

Address before: 100085 Beijing, Haidian District on the road, No. 3

Applicant before: Huawei Digit Technology Co., Ltd.

COR Change of bibliographic data

Free format text: CORRECT: APPLICANT; FROM: HUAWEI DIGIT TECHNOLOGY CO., LTD. TO: BEIJING HUAWEI DIGITAL TECHNOLOGY CO., LTD.

C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20150805

Termination date: 20190720

CF01 Termination of patent right due to non-payment of annual fee