Summary of the invention
In view of this, the invention provides a kind of operation flow adjusting device, be applied on the network equipment, wherein this network equipment comprises OAA plate and master control borad, and described OAA plate comprises OAA front card and forwards back card/back board; Described OAA front card is used for carrying out OAA process to the message received, and wherein, this device comprises:
OAA plate detecting unit, for detecting whether the veneer inserting the network equipment is OAA plate;
Rule issues unit, for after OAA plate is inserted into the network equipment, issue this plate by the control channel between master control borad and OAA plate to OAA front card to reflux rule, wherein this this plate backflow rule is used for being sent to by the message after the process of OAA front card by passage between plate forwarding the enterprising row relax of back card/back board.
The present invention also provides a kind of operation flow method of adjustment, is applied on the network equipment, and wherein this network equipment comprises OAA plate and master control borad, and described OAA plate comprises OAA front card and forwards back card/back board; Described OAA front card is used for carrying out OAA process to the message received, and the method comprises the following steps:
Whether the veneer that steps A, detection insert the network equipment is OAA plate;
Step B, after OAA plate is inserted into the network equipment, issue this plate by the control channel between master control borad and OAA plate to OAA front card to reflux rule, wherein this this plate backflow rule is used for being sent to by the message after the process of OAA front card by communication between plates mechanism forwarding the enterprising row relax of back card/back board.
The present invention takes full advantage of the business processing resources on forwarding back card/back board that OAA plate has existed, and the network equipment just no longer needs an extra OAA agency board to serve OAA front card, considerably reduces the manufacturing cost of the network equipment; And simplify the general handling process of message, improve the treatment effeciency of message.
Embodiment
In OAA framework, traditional network equipment is as a platform (being commonly referred to NFC), and this platform other manufacturers integrated can develop various application plug-in card (being commonly referred to IAC), such as IPS plug-in card etc.Communication pattern between NFC and IAC generally includes four kinds: host mode, mirror image pattern, redirect mode and penetrate pattern.The introduction of more OAA technology can the related application that proposes of REFERENCE TO RELATED people, as the multinomial Chinese patent application of WO/2008/037159 and the basis for priority as this PCT application.
In OAA framework, in four kinds of communication patterns of NFC and IAC, redirect mode is a kind of tightly coupled pattern, and other patterns are then tight couplings comparatively speaking.In redirect mode, message enters from the general service port of NFC, hit is redirected rule and can be redirected on OAA plate (comprising IAC), turns back to NFC and proceed traditional message repeating after OAA plate carries out OAA process (the such as network application such as safety filtering or network speed limit).
Please refer to Fig. 1, the legacy network devices based on OAA system comprises master control borad, forwarding service plate, OAA agency board, network board and OAA plate.Wherein OAA plate generally includes OAA front card and forwards back card/back board.Consider that the list item of each forwarding service plate on NFC may there are differences and the versatility of scheme, in the prior art, in order to the forwarding ensureing message of correctly tabling look-up, need the message forcing OAA close coupling plate to return to go to the veneer of acting on behalf of of specifying and carry out forwarding of tabling look-up.Needing to specify special forward mode (L2-enhanced) when configuring OAA plate return flow, also needing after appointment to preserve and configure and restart to allow configuration take-effective.In the scheme of Fig. 1, the network equipment needs to provide separately the high standard veneer with agent capability (such as forwarding service plate), this makes the cost up of the whole realization of OAA framework, and the development cost of a usual high standard veneer and Material Cost are quite significant.And the whole handling process of message is also long, first message enters from forwarding service plate, the forwarding back card/back board of OAA plate is arrived through network board, OAA front card is arrived again by the physical interface forwarded between back card/back board and OAA front card, OAA front card delivers to forwarding back card/back board by said physical interface after carrying out OAA process again, forward back card/back board and will be forwarded to OAA agency board according to communication between plates head determination message, after message arrives OAA agency board, the forwarding-table item that OAA agency board is searched on plate performs message repeating flow process.The handling process of whole message can the lines of band arrow in reference diagram 1.
Please refer to the logic diagram that the present invention shown in Fig. 2 uses the network equipment of OAA system, wherein the network equipment comprises master control borad, forwarding service plate, network board and OAA plate.Wherein OAA plate generally includes OAA front card and forwards back card/back board.Network board is data channel and the control channel that whole OAA internal system provides communication between plates.In the present invention, no longer need additionally to provide separately an OAA agency board to come for the service of tightly coupled OAA plate.One of the present invention preferred embodiment in, the operation flow method of adjustment of the invention described above is realized by the computer program on transformation master control borad, wherein the CPU of master control borad reads this computer program from memory and runs, and the general processing procedure of this program comprises the following steps:
Step 101, detects whether the OAA plate inserting the network equipment is OAA close coupling plate;
Step 102, when OAA close coupling plate being detected, user oriented this plate of OAA close coupling plate backflow order is revised as open visible state from shielding invisible mode, the regular forwarding back card/back board be back to the message of control OAA close coupling plate on OAA plate of backflow can be issued by this this plate of input backflow command triggers master control borad to make user;
Step 103, after OAA close coupling plate is inserted into the network equipment, master control borad issues this plate backflow rule by control channel to OAA front card, and wherein the message after process is sent to the forwarding back card/back board on OAA plate by this this plate backflow rule instruction OAA front card.
It should be noted that step 102 is not the necessary step of the present invention, because OAA system also can adopt the pattern automatically detecting and issue, such as be designed to issue this plate backflow rule from trend OAA front card when master control borad detects the OAA close coupling plate insertion network equipment, thus dispense the step of the manual intervention as step 102.It is to embody suitable flexibility that certain permission user issues backflow rule at some application scenarios by control command.After OAA close coupling plate is inserted in system, the testing mechanism that master control borad can be preset according at least one finds the insertion of OAA close coupling plate, and this testing mechanism can cover the detection of bottom hardware and even the various level of upper layer software (applications).
Before there is no the OAA close coupling plate insertion network equipment, this plate backflow order can be designed as and masks this order in other words to user is invisible, because now this plate backflow order is for user's not meaning, open this this plate backflow order also may cause user error to operate this order causing system cloud gray model mistake.After OAA close coupling plate inserts, master control borad can carry out the negotiation of various level with OAA close coupling plate, and having consulted rear backflow order can to user's opening.Be the 75E series of switch that H3C company provides for the network equipment, this plate backflow order can be: switch-modeOAAslotxx.Wherein xx represents the slot number on backboard (not shown) of Target Board.In a preferred embodiment, the compatibility of support of the present invention and prior art, if such as user wishes to continue to use the agency board in prior art, it can issue corresponding agency and to reflux order, for the 75E series of switch of H3C company, this agency order that refluxes can be switch-model2-enhanced, after user issues this order, master control borad can issue agency corresponding to the order that to reflux with this agency to correspondingly OAA plate and to reflux rule, can be back on agency board to make the message after the process of OAA front card and carry out forward process.
In fact, in the typical network equipment, especially distributed network equipment, various veneer is all inserted on backboard, the mark of normally each veneer of the slot on backboard.Xx wherein in " slotxx " represents the slot number of OAA plate.Although OAA plate physical specification is identical with other veneers, but OAA plate is a special veneer, it has two daughter boards, i.e. OAA front card and forward back card/back board.Getting in the slot that its repeating back card/back board is inserted into backboard, and is connected to form passage between plate by connector between OAA front card and forwarding back card/back board, and that is the message inflow and outflow of OAA front card all can through forwarding back card/back board.As can be seen here, above-mentioned plate backflow order represents it is the slot of the destination that OAA refluxes being revised as the OAA plate at self place, and the Target Board of namely message backflow is for forwarding back card/back board.
After receiving this plate backflow order of user's input, master control borad correspondingly issues corresponding this plate backflow rule by control channel to OAA front card according to this plate backflow order, such as issue a redirected ACL(Access Control List (ACL)), after this redirected ACL is issued to OAA front card, the message after OAA front card carries out OAA process will be redirected to by this ACL and forward on back card/back board.After normal service message is entered by the service port of certain forwarding service plate of the network equipment, if this message hit processing rule (such as some acl rules), then can be redirected on OAA front card and process.After OAA front card finishing service process upper layer application process such as () such as intrusion detections, during message backflow, then can hit aforementioned plate backflow rule.The message hitting this plate backflow rule then can be redirected to the regular forwarding back card/back board of specifying of this plate backflow.
Forward on back card/back board because message is redirected to, the forwarding resource forwarding back card/back board just can be utilized.Suppose that message is IP message, forward back card/back board and just can obtain down hop and corresponding outgoing interface according to object IP address search route table items, then inquire about the encapsulation that ARP completes two layer message head, the outgoing interface corresponding from down hop sends.Whole process is transparent for forwarding back card/back board, and it does not need to do any change, forwards as long as come to carry out normal business through the message of front card process to backflow.Please refer in Fig. 2 represent message flow to band arrow lines, message enters from a forwarding service plate, arrive through network board and forward back card/back board, OAA front card is arrived again by the physical interface forwarded between back card/back board and OAA front card, OAA front card delivers to forwarding back card/back board by said physical interface after finishing OAA process (being generally the various network applications on OAA front card) again, because the destination address being attached to the communication between plates head between header forwards back card/back board, therefore forwarding back card/back board can carry out aforesaid forward process to the message received.In contrast to the Message processing flow process of Fig. 1, Message processing flow process of the present invention is more succinct, and efficiency is higher.
Correspondingly, the present invention also provides the adjusting device of the operation flow in a kind of open architecture, and a kind of operation flow adjusting device, is applied on the network equipment, wherein this network equipment comprises OAA plate and master control borad, and described OAA plate comprises OAA front card and forwards back card/back board; Described OAA front card is used for carrying out OAA process to the message received, and this device comprises:
OAA plate detecting unit, for detecting whether the veneer inserting the network equipment is OAA plate;
Rule issues unit, for after OAA plate is inserted into the network equipment, issue this plate by the control channel between master control borad and OAA plate to OAA front card to reflux rule, wherein this this plate backflow rule is used for being sent to by the message after the process of OAA front card by communication between plates mechanism forwarding the enterprising row relax of back card/back board.
Wherein, described OAA plate detecting unit detects whether the veneer inserting the network equipment is that OAA plate is specially: detect whether the veneer inserting the network equipment is OAA close coupling plate, and described OAA close coupling plate mode of operation is redirect mode; Described backflow rule is access control list ACL.In preferred mode, this device also comprises: command process unit, for when this plate backflow order receiving user's input, notifies that described rule issues unit and issues to reflux with this this plate to OAA front card and order this corresponding plate to reflux rule.When command process unit described in preferred mode is further used for refluxing order the agency receiving user's input, notify that described rule issues unit and issues agency corresponding to the order that to reflux with this agency to OAA front card and to reflux rule.
The present invention, by succinct computer program design, changes the message backflow of OAA front card, allows the message of OAA front card be back to forwarding back card/back board.Be inserted on backboard because forwarding back card/back board and OAA front card are integrated on an OAA plate usually as a veneer, be equivalent to the veneer having two subsystems, therefore forward back card/back board and belong to the resource existed, forwarding back card/back board is in the prior art only on OAA agency board by the message repeating of OAA backflow, and by design of the present invention, forwarding back card/back board is revised as in backflow destination, by receiving the forwarding back card/back board of message to perform the forwarding work of message.So, the present invention takes full advantage of the business processing resources on forwarding back card/back board that OAA plate has existed, and the network equipment just no longer needs an extra OAA agency board to serve OAA front card, considerably reduces the manufacturing cost of the network equipment; And simplify the general handling process of message, improve the treatment effeciency of message.
The foregoing is only preferred embodiment of the present invention, not in order to limit the present invention, within the spirit and principles in the present invention all, any amendment made, equivalent replacement, improvement etc., all should be included within the scope of protection of the invention.