A kind of message forwarding method and equipment
Technical field
The present invention relates to communication technical field, particularly to a kind of message forwarding method and equipment.
Background technology
Shortest path bridge MAC-in-MAC(SPBM) technology can apply to SPB network.SPB network
Between equipment and equipment by provider backbone bridging (PBB, Provider Backbone Bridge) type
Backbone links composition, equipment can be divided into backbone edges bridge (BEB, Backbone Egdge Bridge),
The types such as backbone network core bridges (BCB, Backbone Core Bridge).SPBM technology is in SPB network
In application final body forward now: the message from user network is carried out by BEB equipment
MAC-in-MAC encapsulates, and the message encapsulated through MAC-in-MAC is referred to as M-in-M message turns
It is dealt in backbone network;BCB equipment is according to backbone network Media Access Control Address (B-MAC) and backbone network
VLAN(B-VLAN) M-in-M message is forwarded;Last message arrives the BEB equipment of destination, BEB
M-in-M message from backbone network is decapsulated by equipment, and is forwarded in destination user network.
For compatible with existing operator VPN, need SPB network and three-layer virtual special network
(L3VPN) intercommunication, prior art SPB accesses the networking of L3VPN as shown in Figure 1.In Fig. 1,
When accessing L3VPN network, having two edge devices, one is the borderline BEBR1 of SPB network, one
Individual is the PER1 on L3VPN network boundary.Therefore, in prior art during two network integrations, border sets
Standby quantity is the most, and operation cost is higher.
Summary of the invention
It is an object of the invention to provide a kind of message forwarding method and equipment, it is possible to reduce and run into
This.
For achieving the above object, the invention provides a kind of message forwarding method, the method is applied to
Being simultaneously connected with in the equipment of shortest path bridge SPB network and L3VPN network, the method includes:
Set up the virtual of the VPN instance in association L3VPN network and SPB example in SPB network
Forwarding channel VFC, the different virtual LAN VLAN mark in described SPB example is corresponding different
VFC, each VFC bind a VPN instance;
By described VFC from SPB network side study route table items corresponding to VPN instance, described route
The content of list item includes: purpose IP address, outgoing interface, next-hop ip address and forwarding encapsulation, described
The data message being packaged for mailing to SPB network side is forwarded to carry out MAC-in-MAC encapsulation;
When receiving the message mailing to SPB network, according to VPN described in the purpose IP address search of message
The route table items that example is corresponding, obtains corresponding forwarding encapsulation, and encapsulates message according to the forwarding obtained
After carrying out MAC-in-MAC encapsulation, message is sent to by the VFC corresponding by described VPN instance
In SPB network;
When receiving the message mailing to L3VPN network, according to SPB instance identification and VPN instance
Incidence relation, forwards the packet to L3VPN network by corresponding VFC interface.
For achieving the above object, present invention also offers a kind of BEB-PE equipment, described
BEB-PE equipment includes:
Virtual forwarding channel VFC interface dispensing unit, for setting up the VPN in association L3VPN network
The virtual forwarding channel VFC of the SPB example in example and SPB network, in described SPB example not
A VPN instance is bound with virtual LAN VLAN mark corresponding different VFC, each VFC;
Unit, for by described VFC from SPB network side study route corresponding to VPN instance
List item, the content of described route table items includes: purpose IP address, outgoing interface, next-hop ip address and
Forwarding encapsulation, the data message that described forwarding is packaged for mailing to SPB network side is carried out
MAC-in-MAC encapsulates;
Processing forward unit, for when receiving the message mailing to SPB network, according to the purpose of message
The route table items that VPN instance described in IP address search is corresponding, obtains corresponding forwarding and encapsulates, and according to
After the forwarding encapsulation obtained carries out MAC-in-MAC encapsulation to message, corresponding by described VPN instance
VFC message is sent in SPB network;
When receiving the message mailing to L3VPN network, according to SPB instance identification and VPN instance
Incidence relation, forwards the packet to L3VPN network by corresponding VFC interface.
For achieving the above object, present invention also offers a kind of BEB equipment, described BEB equipment
Including:
Receive unit, the VFC sent in link state data bag LSP for receiving BEB-PE to carry
Gateway type length value TLV, the content of described VFC gateway TLV includes the VLAN in SPB example,
VFC interface IP address corresponding for each VLAN, VFC interface MAC corresponding for each VLAN
Address;It is additionally operable to receive ARP request message;
Processing unit, for the content of the VFC gateway TLV in corresponding SPB example being taken out, issues
List item is answered to local generation;It is additionally operable to the purpose IP address receiving the transmission of user side answer in list item for local generation
During the ARP request message of VFC interface IP address, answer from local generation list item obtains corresponding informance to
Side, family carries out arp response.
In sum, in the embodiment of the present invention, when SPB network accesses L3VPN network, or L3VPN
During network insertion SPB network, VPN instance and SPB example are associated by BEB-PE equipment,
BEB-PE equipment had both had the function of BEB equipment in SPB network, it may have PE in L3VPN network
The function of equipment.The BEB-PE equipment of association VPN instance and SPB example configures VFC interface,
Each VFC interface one VPN instance of binding, and a VLAN ID in corresponding SPB example, stream
Amount realizes intercommunication by the VFC interface of corresponding instance in SPB network and VPN.
Accompanying drawing explanation
Fig. 1 is the networking schematic diagram that prior art SPB accesses L3VPN.
Fig. 2 is the networking schematic diagram that in first embodiment of the invention, SPB accesses L3VPN.
Fig. 3 is the networking schematic diagram that in second embodiment of the invention, SPB accesses L3VPN.
Fig. 4 is third embodiment of the invention VFC gateway TLV structural representation.
Fig. 5 is the structural representation of backbone edges bridge-provider edge equipment in the embodiment of the present invention.
Fig. 6 is the structural representation of backbone edges bridge equipment in the embodiment of the present invention.
Detailed description of the invention
For making the purpose of the present invention, technical scheme and advantage clearer, develop simultaneously referring to the drawings
Embodiment, is described in further detail scheme of the present invention.
The present invention mutually accesses for realizing SPB network and L3VPN network, by VPN instance and SPB example
Being associated by backbone edges bridge-provider edge equipment (BEB-PE), BEB-PE equipment both had
There is the function of BEB equipment in SPB network, it may have the function of PE equipment in L3VPN network.Crucial
It is, BEB-PE sets up the virtual forwarding channel (VFC) for associating VPN instance and SPB example
Interface, each VLAN ID (VLAN ID) in same SPB example is respectively by corresponding VFC
Interface, is tied to the VPN instance being associated with described SPB example.Obviously, VFC interface is virtual
Logic interfacing, each VFC interface is configured with corresponding IP address and MAC Address.Set at BEB-PE
It is configured with MAC Address on the standby interface being connected with the BCB equipment of SPB network;At BEB-PE equipment
It is configured with IP address and MAC Address on the public network interface being connected with the PE equipment of L3VPN network.Need
Being noted that in SPB network, a MAC-in-MAC example represents the class that operator provides
Business, I-SID(Backbone Service Instance Identifier, backbone network Service Instance is numbered) be exactly
The unique number of this MAC-in-MAC example, heretofore described SPB example refers to
MAC-in-MAC example, the example i.e. identified by I-SID.Heretofore described VPN instance refers to
It it is all the VPN instance in L3VPN network.SPB network accesses L3VPN network by multiple VLAN
Time, can there is the VFC passage corresponding with each VLAN, it is possible to say, each VFC has one
A VLAN ID VLAN ID in the VPN instance of binding, and corresponding SPB example, therefore,
On BEB-PE, according to the VLAN ID in SPB example, it is possible to find the VPN instance VFC of correspondence
Interface.
Fig. 2 is the networking schematic diagram that in first embodiment of the invention, SPB accesses L3VPN.BEB-PE upper with
Other BEB equally run SPB-ISIS, learn and calculate respective path, " are connected " by VFC interface
L3VPN network side.SPB example is associated with " left side " of VFC interface.BEB-PE is upper to be set with other PE
Standby equally operation BGP/MPLS L3VPN agreement, " connects " SPB network side by VFC interface.VPN
Example is associated with " right side " of VFC interface.Site1 and Site2 is accessed by SPB network, and Site3 passes through
L3VPN network insertion.Site1 and Site2 belongs to same SPB example, and belongs to same VLAN100,
The I-SID that this SPB example is corresponding is 1.Site3 belongs to and is associated with Site1 and Site2 place SPB example
VPN instance, referred to as VPN1.Having gateway device IP address in Site2 is 1.1.1.1, and MAC Address is
0-1-1;Having device address in Site3 is 4.0.0.2, and corresponding PE2 interface IP address is 4.0.0.1;Site2 institute
Belong to the VLAN100 in SPB example (I-SID is 1), by VFC interface (VFC1), binding and institute
Stating VPN instance (VPN1) belonging to the Site3 that SPB example is associated, the IP address of this VFC1 interface is
1.1.1.2。
Flow repeating process from L3VPN network to SPB network is described in detail below.If message is pressed
According in Fig. 2 with dotted line the direction of arrow forward, i.e. message sends from Site3, and purpose IP address is
1.1.1.1。
BEB-PE is respectively configured (such as manager's manual configuration) SPB example (I-SID is 1) and VPN
Example (VPN1), needs to communicate due between SPB example and VPN instance VPN1 that I-SID is 1,
It is therefore desirable to by SPB example and VPN1 configuration binding.And owing to Site2 belongs under SPB example
VLAN100, so the VLAN100 in this SPB example is by VFC1 interface, binds VPN1, because of
This, configure VFC1 interface on BEB-PE, and IP address is 1.1.1.2.
Message is when Site3 sends, and purpose IP address is 1.1.1.1, and target MAC (Media Access Control) address is PE2's
MAC Address, PE2 arrives BEB-PE according to existing L3VPN forward process, message after receiving.This
In, how PE2 being determined and forwards the message to BEB-PE, concrete grammar includes: on BEB-PE
After configuration VFC1 interface, while generating the address 1.1.1.2 of VFC1 interface 32 bitmask, raw
Become the network segment route 1.1.1.0 of VFC1 interface 24 bitmask;BEB-PE passes through Border Gateway Protocol
(BGP) 1.1.1.0 application private network tags (applying for from label pond) it is route for this, it is assumed that application is arrived
Private network tags is 1000;This route 1.1.1.0 and private network tags 1000 thereof are sent to PE2 by BEB-PE,
Determine for PE2 formation VPN route table and forward the message to BEB-PE.After PE2 is received according to
Existing L3VPN forward process, refers to, according to prior art, message is carried out Tag Packaging, is encapsulated as
With private network tags, the message of public network label, concrete encapsulation process is prior art, does not repeats them here.
Message arrives BEB-PE, determines affiliated VPN instance according to private network tags, peels the label of message, root off
Search, according to the purpose IP address 1.1.1.1 of message, the route table items that this VPN instance is corresponding, match
1.1.1.1/32 list item, obtains the forwarding encapsulation in described route table items, and according to forwarding encapsulation that message is entered
Row M-in-M encapsulates, and the VFC interface corresponding at this VPN instance forwards.
Wherein, the route table items that this VPN instance is corresponding, BEB-PE equipment passes through VFC1 interface from SPB
Side Routing Protocol study obtains, and the content of route table items includes: purpose IP address, outgoing interface, down hop
IP address and forwarding encapsulation.It can be seen, unlike the prior art, this VPN route table items
In add forward encapsulation content.
In the present embodiment, the route table items that this VPN instance is corresponding is as shown in table 1:
Purpose IP address |
Outgoing interface |
Next-hop ip address |
Forward encapsulation |
1.1.1.1 |
VFC1 |
1.1.1.1 |
Obtain according to ARP |
Table 1
BEB-PE learns ARP(Address Resolution Protocol by SPB network, and address solves
Analysis agreement), form the ARP in SPB network.In this embodiment, specifically, BEB-PE to
1.1.1.1 in Site2 sends ARP request, the MAC Address of request 1.1.1.1;
In Site2, the IP address of gateway is 1.1.1.1, sends arp response, this ARP to BEB-PE
Response is carried MAC Address 0-1-1 corresponding for 1.1.1.1, this arp response through BEB2 be into
The M-in-M that gone encapsulation, so the B-SA of this arp response is BEB2, and ARP can be passed through
Response finds the virtual link (PW) of correspondence, i.e. PW between BEB2 and BEB-PE;
After BEB-PE receives arp response, obtain correspondence according to the I-SID of encapsulation in arp response message
SPB example, knows this arp response pair according to VLAN Yu VFC binding relationship in this SPB example
The VPN instance VFC interface VFC1 answered, is designated as corresponding VPN instance VFC interface by message incoming interface
VFC1, generates ARP, and the content of this ARP includes: IP address, MAC Address, VFC
Outgoing interface, VLAN ID, opposite end BEB equipment, between opposite end BEB equipment and BEB-PE equipment
Virtual link, the most as shown in table 2:
Table 2
Content in above-mentioned ARP is exactly the content forwarding encapsulation in table 1 routing table, therefore, by ARP
In the middle of the forwarding encapsulation fields that content record in list item is corresponding in route table items.
BEB-PE carries out M-in-M encapsulation to data message, at VFC1 interface by number according to forwarding encapsulation
The virtual link of correspondence it is sent to according to message.In this embodiment, it is sent between BEB-PE and BEB2
Virtual link, arrives BEB2, therefore in M-in-M encapsulation,
B-SA is backbone network source MAC, is also the outer layer source MAC of M-in-M encapsulation, fills in
The MAC Address configured in SPB network side for BEB-PE;
B-DA is backbone network target MAC (Media Access Control) address, is also the outer layer target MAC (Media Access Control) address of M-in-M encapsulation,
Extend this as BEB2;
B-Tag extends this as the B-Tag that the virtual link between BEB-PE and BEB2 is corresponding;
It is right that backbone network service instance identification (I-SID) in backbone network service instance tag (I-Tag) extends this as
Answering the I-SID of SPB example, C-DA is user network target MAC (Media Access Control) address, extends this as the MAC that down hop is corresponding
Address 0-1-1, C-SA are user network source MACs, extend this as local VFC interface MAC in this example,
The i.e. MAC Address of the VFC outgoing interface VFC1 in ARP;
C-Tag is the VLAN that VFC1 interface is corresponding, extends this as VLAN100 in the present embodiment;
Ethernet type is IP agreement (value is 0x0800);
Data field is the data message (IP header and load thereof) needing to forward.
Further, in L3VPN network, the private network tags of encapsulation is relevant with down hop, in SPB network
M-in-M encapsulation be also that the ARP according to down hop is packaged, so private network tags and M-in-M
Encapsulation is associated by down hop.Owing to data message needs to peel off in L3VPN network on BEB-PE
Label, and carry out M-in-M encapsulation entrance SPB network, for making BEB-PE equipment process simplicity, excellent
Selection of land, is associated private network tags by down hop with M-in-M encapsulated content, and wherein, M-in-M encapsulates
The content of the forwarding encapsulation fields in content i.e. table 1.Down hop i.e. 1.1.1.1, then basis in the present embodiment
Private network tags and the incidence relation of M-in-M encapsulation, peel off private network tags and public network label, replace with
M-in-M encapsulates.For understanding the explanation present invention, realize private network tags and M-in-M encapsulation below by table 3
Directly replacement management:
Table 3
Specifically, table 3 is it is also assumed that be a kind of special to enter label mapping table, according to the private entered in label
Net label value 1000, performs operation: jump to M-in-M encapsulation, by private network tags that label value is 1000 with
And public network tag replacement is the M-in-M encapsulation formed according to the ARP that down hop (1.1.1.1) is corresponding.
Flow is described in detail below from SPB network to the repeating process of L3VPN network.Such as message is according to figure
In 2, the direction of arrow with solid line forwards, i.e. message sends from Site2, and purpose IP address is 4.0.0.2.
First, Site2 configures the IP address 1.1.1.2 that gateway IP is BEB-PE VFC1 interface,
And learnt to BEB-PE VFC1 interface mac address by ARP, therefore, by the gateway MAC of message
Being set to BEB-PE VFC1 interface mac address, purpose IP address is 4.0.0.2.After arriving BEB2
Realize forwarding according to existing SPB, arrive BEB-PE.Here, according to existing SPB after arrival BEB2
Realizing forwarding, refer to, according to prior art, message is carried out M-in-M encapsulation, concrete encapsulation process is
Prior art, does not repeats them here.
Encapsulate with M-in-M owing to message arrives BEB-PE, so message arrives BEB-PE, check
User network purpose MAC(C-DA) whether it is the MAC Address that the machine VFC interface is corresponding, if it is,
And the purpose IP address of message is not the IP address that the machine VFC interface is corresponding, then obtain according to I-SID
Corresponding SPB example, according to VLAN Yu VFC binding relationship in this SPB example, finds correspondence
VPN instance VFC interface, is designated as message incoming interface corresponding VPN instance VFC interface, and searches
Corresponding VPN instance routing table carries out three layers of forwarding;
If the MAC Address that the machine VFC interface is corresponding, and the purpose IP address of message is the machine
The IP address that VFC interface is corresponding, illustrates that this message is the protocol massages needing processing locality, on needs
Send central processing unit (CPU) to process, then obtain corresponding SPB example according to I-SID, according to this
VLAN Yu VFC binding relationship in SPB example, finds the VPN instance VFC interface of correspondence, will
Message incoming interface is designated as corresponding VPN instance VFC interface, processes message;If it is the most described
Message is ARP message, then need to process ARP message up sending ARP protocol module.
If not the MAC Address that the machine VFC interface is corresponding, then this unicast message is abandoned.
In the present embodiment, purpose MAC of unicast message is BEB-PE VFC1 interface mac address,
Purpose IP address is 4.0.0.2, so message incoming interface is designated as VFC1, searches corresponding VPN real
Example routing table coupling 4.0.0.0/24 list item carries out three layers of forwarding.It is then passed through L3VPN network and arrives PE2,
PE2 searches VPN correspondence routing table, the corresponding device being transmitted in Site3.
If it addition, arrive BEB-PE is multicast or broadcasting packet, check that user network purpose MAC is
The no MAC Address being native protocol and needing, if it is, obtain corresponding SPB example, root according to I-SID
VLAN Yu VFC binding relationship in SPB example accordingly, finds the VPN instance VFC interface of correspondence,
Message incoming interface is designated as corresponding VPN instance VFC interface, message is processed;If it is not, then
This multicast or broadcasting packet are abandoned.Such as, the equipment in Site2 sends ARP request report to BEB-PE
Literary composition, its broadcast MAC is that BEB-PE needs MAC Address to be processed, then BEB-PE is according to VLAN in message
ID(VLAN100), find the VPN instance VFC interface of correspondence, message incoming interface be designated as VFC1,
Equipment in Site2 sends arp response, i.e. processes broadcasting packet.
Fig. 3 is the networking schematic diagram that in second embodiment of the invention, SPB accesses L3VPN.With Fig. 2 not
With, Site4 accesses (i.e. BEB-PE Yu Site4 connected interface by BEB-PE in two layers of mode
Access SPB).Having IP address of equipment in Site4 is 1.1.1.3, and MAC Address is 0-1-4.
If flow is from Site3 to the Site4 of L3VPN network, according in Fig. 3 with the arrow side of solid line
To forwarding, message is when Site3 sends, and purpose IP address is 1.1.1.3, and target MAC (Media Access Control) address is PE2
MAC Address, PE2 arrives BEB-PE according to existing L3VPN forward process, message after receiving.This
In, PE2 receive after according to existing L3VPN forward process, refer to according to prior art, message be carried out
Tag Packaging, is encapsulated as with private network tags, the message of public network label, and concrete encapsulation process is existing skill
Art, does not repeats them here.Message arrives BEB-PE, BEB-PE and determines affiliated VPN according to private network tags
Example, peels the label of message off, searches this VPN instance pair according to the purpose IP address 1.1.1.3 of message
The route table items answered, matches 1.1.1.3/32 list item, obtains the forwarding encapsulation in described route table items,
And E-Packet according to clean culture this locality virtual link list item of this user site forwarded in encapsulation.
Wherein, the route table items that this VPN instance is corresponding, BEB-PE equipment passes through VFC1 interface from Site4
Routing Protocol study obtains, and in the present embodiment, the route table items that this VPN instance is corresponding is as shown in table 4:
Purpose IP address |
Outgoing interface |
Next-hop ip address |
Forward encapsulation |
1.1.1.3 |
VFC1 |
1.1.1.0 |
Obtain according to ARP |
Table 4
BEB-PE equipment learns ARP by Site4, forms clean culture this locality virtual link table of this user site
Item as shown in table 5, records in the forwarding of route table items encapsulates;
Target MAC (Media Access Control) address |
Outgoing interface |
VLAN |
0-1-4 |
BEB-PE Yu Site4 connected interface |
VLAN100 |
Table 5
If the Site2 that flow is from Site4 to SPB network, according to the direction of arrow with dotted line in Fig. 3
Forwarding, BEB-PE receives the message of Site4, if unicast message, purpose MAC of message is not
The MAC Address that the machine VFC interface is corresponding, then search SPB example MAC table and carry out the forwarding of message;
If multicast or broadcasting packet, check whether purpose MAC of message is native protocol needs
MAC Address, if it is, process message, forwards message simultaneously;Otherwise to message
Forward.
It addition, when having user site to be directly accessed on BEB-PE equipment, BEB-PE equipment creates should
The MAC address entries of user site, and also automatically create broadcast this locality virtual link list item of this user site.
If flow is from Site2 to the Site4 of SPB network, according in Fig. 3 with dashdotted arrow side
To forwarding, encapsulate with M-in-M owing to message arrives BEB-PE, so if unicast message,
User network purpose MAC of message is not the MAC Address that the machine VFC interface is corresponding, then BEB-PE
The MAC address entries searching this user site carries out the forwarding of message;If multicast or broadcasting packet,
BEB-PE checks that whether user network purpose MAC of message is the MAC Address that native protocol needs, as
Fruit is then to process message, forwards message simultaneously;Otherwise message is forwarded.This
In native protocol can be ARP protocol, it is also possible to be other agreements such as Routing Protocol.
In the present embodiment, broadcast this locality virtual link list item of the Site4 that BEB-PE creates is as shown in table 6:
Target MAC (Media Access Control) address |
Outgoing interface |
VLAN |
FFFF-FFFF-FFFF |
BEB-PE Yu Site4 connected interface |
VLAN100 |
Table 6
BEB-PE equipment is sent out according to above-mentioned broadcast this locality virtual link list item corresponding VLAN in Site4
Send broadcast or multicast message.
Embodiment three
When the equipment in the SPB example accessed by BEB-PE or Site is more, due in SPB example
Equipment access L3VPN time, need the corresponding instance VFC interface of BEB-PE is set to gateway, institute
Needing to process more ARP message with BEB-PE, BEB-PE processing pressure is more.Now can use
BEB equipment is carried out for answering to reduce BEB-PE message.Method has two kinds: 1, and static configuration, at BEB
In the ARP generation configuring corresponding instance correspondence VLAN on equipment, answers function.Shortcoming is, BEB-PE may not
Quickly understand the change of device A RP, and amendment complexity during configuration variation.2, BEB-PE dynamic publishing network management informations.
Behind BEB-PE configuration VFC virtual interface address, by VFC virtual interface address and corresponding vlan information thereof
It is distributed to other BEB.
Specifically, newly-increased a kind of type lengths values (tlv) in SPB-ISIS: VFC gateway TLV, BEB-PE
Carry other BEB equipment that is conducted in link state data bag (LSP).Third embodiment of the invention VFC
Gateway TLV structural representation is as shown in Figure 4.Wherein, VFC-Gateway: show that this TLV is VFC
Gateway TLV;Length Length: show the length of this TLV;I-SID: show the I-SID of corresponding SPB example;
Number Number: show the quantity of the corresponding multiple VLAN of this SPB example;VLAN: show this SPB
A certain VLAN in example;IP address ip Address: VFC interface IP address corresponding for this VLAN;
VFC MAC: show VFC interface mac address corresponding for this VLAN.
The VLAN that BEB-PE comprises each SPB example in the VFC gateway TLV that BEB equipment sends
Corresponding VFC interface;
After BEB equipment receives VFC gateway TLV, by the VFC gateway TLV in corresponding SPB example
Content take out, being issued to local generation answers list item;
BEB equipment receives the purpose IP address of user side transmission and answers VFC interface in list item for local generation
During the ARP request message of IP address, answer from local generation and list item obtains corresponding informance user side is carried out
Arp response.
For example, I-SID is IP Address:1.1.1.2, the VFC MAC in 1 by BEB equipment:
The content of 0-1-2, VLAN:VLAN100 is taken out, and is issued to local for answering list item;
If BEB equipment receives the ARP request message that purpose IP is 1.1.1.2 that Site2 sends,
Answer the MAC Address 0-1-2 obtaining correspondence list item from local generation, Site2 is responded, so that
Obtain Site2 and obtain the gateway VFC MAC of BEB-PE.
Therefore, if in the ARP generation not configuring corresponding instance correspondence VLAN on BEB equipment, answers function,
BEB equipment receives the ARP request that purpose IP address is VFC interface IP address that user side sends
During message, ARP request message is replicated by BEB equipment, and is transmitted to BEB-PE;BEB-PE
The ARP request message received is processed.After the optimization of the present invention, on BEB equipment
Achieve autogateway ARP proxy, reduce the processing pressure of BEB-PE equipment.
Based on same inventive concept, the present invention also proposes a kind of backbone edges bridge-Provider Edge
Equipment, is applied to shortest path bridge network and incorporates in three-layer virtual special network, sees Fig. 5, Fig. 5 and is
The specific embodiment of the invention is applied to the backbone edges bridge-provider edge equipment of said method
Structural representation.This backbone edges bridge-provider edge equipment includes:
Virtual forwarding channel VFC interface dispensing unit 501, for setting up in association L3VPN network
The virtual forwarding channel VFC of the SPB example in VPN instance and SPB network, in described SPB example
Different virtual LAN mark VLAN corresponding different VFC, each VFC to bind a VPN real
Example;
Unit 502, for corresponding from SPB network side study VPN instance by described VFC
Route table items, the content of described route table items includes: purpose IP address, outgoing interface, next-hop IP ground
Location and forwarding encapsulation, the data message that described forwarding is packaged for mailing to SPB network side is carried out
MAC-in-MAC encapsulates;
Processing forward unit 503, for when receiving the message mailing to SPB network, according to message
The route table items that VPN instance described in the address search of purpose IP is corresponding, obtains corresponding forwarding encapsulation, and
After message being carried out MAC-in-MAC encapsulation according to the forwarding encapsulation obtained, by described VPN instance
Message is sent in SPB network by corresponding VFC;
When receiving the message mailing to L3VPN network, according to SPB instance identification and VPN instance
Incidence relation, forwards the packet to L3VPN network by corresponding VFC interface.
Wherein, unit 502 is further used for by described VFC from SPB network side learned addresses
Analysis protocol ARP, according to the content of described ARP, obtains record at described route table items
In forwarding encapsulation, described ARP includes IP address, MAC Address, VFC outgoing interface, VLAN
ID, opposite end BEB equipment, virtual link between opposite end BEB equipment and this equipment.
Described processing forward unit 503, is additionally operable to lead to private network tags with MAC-in-MAC encapsulated content
Cross down hop to be associated;When receiving the message mailing to SPB network, according to private network tags and
The incidence relation of MAC-in-MAC encapsulation, peels off private network tags and public network label, replaces with
MAC-in-MAC encapsulates, and message is sent to SPB network by the VFC corresponding by described VPN instance
In.
Described processing forward unit 503 is further used for, and when receiving the message in SPB network, sentences
The type of message of the message that disconnecting receives:
If unicast message, check whether user network purpose MAC is that the machine VFC interface is corresponding
MAC Address, if it is, and the purpose IP address of message be not the IP ground that the machine VFC interface is corresponding
Location, then according to VLAN ID in message, find the VFC interface of the VPN instance of correspondence, entered by message
Interface is designated as the VFC interface of corresponding VPN instance, and the VPN instance routing table searching correspondence carries out three
Layer forwards;If it is, and the purpose IP address of message be the IP address that the machine VFC interface is corresponding, then
According to VLAN ID in message, find the VFC interface of the VPN instance of correspondence, by message incoming interface mark
For the VFC interface of corresponding VPN instance, message is carried out respective handling;If it is not, then this is single
Broadcast packet loss;
If multicast or broadcasting packet, check whether user network purpose MAC is native protocol needs
MAC Address, if it is, according to VLAN ID in message, find the VPN instance of correspondence
VFC interface, is designated as message incoming interface the VFC interface of corresponding VPN instance, carries out message accordingly
Process;If it is not, then this multicast or broadcasting packet are abandoned.
Further, when having user site to be directly accessed on BEB-PE equipment,
Processing forward unit 503, is additionally operable to the user site study ARP by being directly accessed, and being formed should
Clean culture this locality virtual link list item of user site, records in the forwarding of route table items encapsulates;Receiving
After message in VPN, peeling the label of message off, according to the purpose IP address of message, searching should
The route table items that VPN instance is corresponding, determines that purpose IP address is the use in the user site being directly accessed
Family, obtains the forwarding encapsulation in described route table items, and according to the list of this user site forwarded in encapsulation
Broadcast local virtual link list item to E-Packet;
It is additionally operable to automatically create broadcast this locality virtual link list item of this user site, according to this user site
The local virtual link list item of broadcast corresponding VLAN in this user site sends broadcast or multicast message.
After being additionally operable to the unicast message in receiving SPB network, user network purpose MAC of message is not
The MAC Address that the machine VFC interface is corresponding, then the MAC address entries searching this user site carries out message
Forwarding;
After the multicast received in SPB network or broadcasting packet, check user network purpose MAC of message
It is whether the MAC Address that needs of native protocol, if it is, message is processed, simultaneously to report
Literary composition forwards;Otherwise message is forwarded.
After the message receiving the user site being directly accessed, if unicast message, the purpose of message
MAC is not the MAC Address that the machine VFC interface is corresponding, then search SPB example MAC table and carry out
The forwarding of message;If multicast or broadcasting packet, check whether purpose MAC of message is local
The MAC Address that agreement needs, if it is, process message, forwards message simultaneously;
Otherwise message is forwarded.
The present invention also proposes a kind of backbone edges bridge equipment, is applied to shortest path bridge network and incorporates three
In layer virtual private network, seeing Fig. 6, Fig. 6 is to be applied to said method in the specific embodiment of the invention
The structural representation of backbone edges bridge equipment.This backbone edges bridge equipment includes:
Receive unit 601, the VFC gateway TLV sent in LSP for receiving BEB-PE to carry,
The content of described VFC gateway TLV includes the VLAN in SPB example, and each VLAN is corresponding
VFC interface IP address, VFC interface mac address corresponding for each VLAN;It is additionally operable to receive ARP
Request message;
Processing unit 602, for the content of the VFC gateway TLV in corresponding SPB example is taken out,
It is issued to local for answering list item;It is additionally operable to the purpose IP address receiving the transmission of user side and answers table for local generation
In Xiang during the ARP request message of VFC interface IP address, answer acquisition corresponding informance list item from local generation
User side is carried out arp response.
Above-mentioned modular unit is that logic-based function divides, in actual applications, and a modular unit
Function can also be realized by multiple modular units, or the function of multiple modular unit is by a module list
Unit realizes.
In sum, VPN instance has been associated by BEB-PE by the embodiment of the present invention with SPB example
Come, BEB-PE sets up the virtual forwarding channel VFC for associating VPN instance and SPB example
Interface, each VFC interface one VPN instance of binding, and a VLAN in corresponding SPB example
ID, message realizes intercommunication by the VFC interface of corresponding instance in SPB network and VPN.Enter
One step ground, accesses the subscriber equipment of SPB network, by the VFC interface mac address of BEB-PE equipment
As gateway MAC, so the subscriber equipment accessing SPB network will necessarily be carried out by BEB-PE equipment
Arp response, for reduce BEB-PE equipment processing pressure, use BEB carry out ARP generation answer,
Autogateway ARP proxy is achieved on BEB equipment.
The above, only presently preferred embodiments of the present invention, it is not intended to limit the protection of the present invention
Scope.All within the spirit and principles in the present invention, any modification, equivalent substitution and improvement made
Deng, should be included within the scope of the present invention.