CN104506437A - Item setup method and device - Google Patents

Item setup method and device Download PDF

Info

Publication number
CN104506437A
CN104506437A CN201410839769.2A CN201410839769A CN104506437A CN 104506437 A CN104506437 A CN 104506437A CN 201410839769 A CN201410839769 A CN 201410839769A CN 104506437 A CN104506437 A CN 104506437A
Authority
CN
China
Prior art keywords
message
unknown
forwarding
unknown message
control plane
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201410839769.2A
Other languages
Chinese (zh)
Other versions
CN104506437B (en
Inventor
何川
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CN201410839769.2A priority Critical patent/CN104506437B/en
Publication of CN104506437A publication Critical patent/CN104506437A/en
Application granted granted Critical
Publication of CN104506437B publication Critical patent/CN104506437B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention provides an item setup method and device. The item setup method includes judging whether downlink messages are unknown or not when a forwarding layer receives the downlink messages; when the downlink messages are unknown, transmitting the unknown messages to a control layer by the forwarding layer; setting up corresponding safe binding items for destination hosts of the unknown messages after the control layer receives the unknown messages. Therefore, through the item setup method, the destination hosts can normally access to the network by setting up the safe binding items.

Description

A kind of item establishing method and device
Technical field
The present invention relates to communication technical field, particularly relate to a kind of item establishing method and device.
Background technology
Along with the application & development of network, internet security is taken seriously gradually.Due to ND Snooping (Neighbor Discovery Snooping; neighbor discovery protocol message is intercepted) technology can by intercepting the uplink message that in Layer2 switching network, subscriber's main station sends; such as ND protocol massages; set up NDSnooping list item; therefore ND Snooping list item can be utilized in prior art as the secure binding list item of subscriber's main station to carry out safeguard protection; network is conducted interviews by IP (Internet Protocol, the net interconnection agreement) address of counterfeit validated user to prevent disabled user.
But when network forwarding equipment restarts because of exception or equipment the ND snooping list item loss causing this locality; because subscriber's main station possibly cannot this situation of perception; then subscriber's main station can not resend ND protocol massages; therefore described network forwarding equipment cannot learn the ND snooping list item of this subscriber's main station, causes subscriber's main station cannot accesses network.
Summary of the invention
In view of this, the invention provides a kind of item establishing method and device.
Particularly, the present invention is achieved through the following technical solutions:
A kind of item establishing method, described method is applied to network forwarding equipment, and described method comprises:
When forwarding plane receives downlink message, judge whether described downlink message is unknown message;
When described downlink message is unknown message, described forwarding plane by described unknown message up sending to control plane;
After control plane receives described unknown message, for corresponding secure binding list item set up by the destination host of described unknown message.
Further, described forwarding plane judges whether described downlink message is unknown message, comprising:
Forwarding plane obtains the source medium access control MAC Address of described downlink message;
The source MAC of described downlink message is searched in the mac address table of self;
If do not find, then determine that described downlink message is unknown message.
Further, when issuing access control list ACL rule in advance on the port of described network forwarding equipment, described unknown message up sending to control plane, comprises by described forwarding plane:
Described forwarding plane searches the acl rule mated with described unknown message in the acl rule issued in advance;
According to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.
Further, when described network forwarding equipment comprises the forwarding chip with register, described unknown message up sending to control plane, comprises by described forwarding plane:
Described forwarding plane according in described register preset forwarding strategy, copy described unknown message and on deliver to control plane.
Further, described control plane is that corresponding secure binding list item set up by the destination host of described unknown message, comprising:
Obtain the virtual LAN VLAN belonging to described unknown message and object Internet protocol IP address;
According to described object IP address creation Neighbor Discovery protocol massages, and described ND protocol massages is broadcasted in described VLAN, after receiving described ND protocol massages, return ND response message to make the destination host of described unknown message;
According to the ND response message that described destination host returns, create the secure binding list item that described destination host is corresponding.
A kind of list item apparatus for establishing, described application of installation is in network forwarding equipment, and described device comprises:
Message judging unit, for when forwarding plane receives downlink message, judges whether described downlink message is unknown message;
Message up sending unit, for when described downlink message is unknown message, by described unknown message up sending to control plane;
List item sets up unit, for receive described unknown message at control plane after, for corresponding secure binding list item set up by the destination host of described unknown message.
Further, described message judging unit, specifically for obtaining the source MAC of described downlink message, searches the source MAC of described downlink message in the mac address table of self, if do not find, then determines that described downlink message is unknown message.
Further, when issuing acl rule in advance on the port of described network forwarding equipment,
Described message up sending unit, specifically for searching the acl rule mated with described unknown message in the acl rule issued in advance; According to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.
Further, when described network forwarding equipment comprises the forwarding chip with register,
Described message up sending unit, specifically for according in described register preset forwarding strategy, copy described unknown message and on deliver to control plane.
Further, described list item sets up unit, specifically for obtaining VLAN belonging to described unknown message and object IP address; According to described object IP address creation ND protocol massages, and described ND protocol massages is broadcasted in described VLAN, after receiving described ND protocol massages, return ND response message to make the destination host of described unknown message; According to the ND response message that described destination host returns, create the secure binding list item that described destination host is corresponding.
As can be seen here, the present invention is by when the forwarding plane of network forwarding equipment receives downlink message, if judge, described downlink message is unknown message, by the control plane of described unknown message up sending to described network forwarding equipment, and corresponding secure binding list item set up by the destination host being described unknown message by control plane, when described network forwarding equipment receives the access request of described destination host transmission, can determine that described destination host is validated user according to described secure binding list item, thus make described destination host can when there is no uplink message normal accesses network.
Accompanying drawing explanation
Fig. 1 is the network architecture diagram in a kind of illustrative embodiments of the present invention;
Fig. 2 is the process chart of the item establishing method in a kind of illustrative embodiments of the present invention;
Fig. 3 is the process chart of the network forwarding equipment in a kind of illustrative embodiments of the present invention;
Fig. 4 is the hardware structure diagram that the network of a kind of list item apparatus for establishing in a kind of illustrative embodiments of the present invention turns equipment;
Fig. 5 is the building-block of logic of a kind of list item apparatus for establishing in a kind of illustrative embodiments of the present invention.
Embodiment
Referring to Fig. 1, is the network architecture diagram in a kind of illustrative embodiments of the present invention, and wherein network forwarding equipment establishes network with main frame 1 and main frame 2 respectively and is connected.Usually can by the direction of main frame towards described network forwarding equipment, be called " up direction ", the message that the party is upwards transmitted can be described as " uplink message ".Corresponding, the direction of described network forwarding equipment towards main frame can be called " down direction ", the message that the party is upwards transmitted can be described as " downlink message ".Different according to the business division of labor, usually described network forwarding equipment can be divided into control plane and forwarding plane.Processor wherein in network forwarding equipment can be considered control plane, control plane be generally used for by inner passage to forwarding plane issue control strategy and with other network equipment interactive controlling messages.Port in network forwarding equipment and forwarding chip can be considered forwarding plane, and the control strategy that forwarding plane is generally used for issuing according to control plane E-Packets.
Traditional network forwarding equipment is that trigging control aspect can create secure binding list item for the main frame sending described uplink message when forwarding plane receives the uplink message that main frame sends, thus makes main frame can secure access network.But when the secure binding list item of the main frame 1 on described network forwarding equipment is lost, because main frame 1 cannot perceive this situation as a rule, therefore initiatively can not send uplink message and carry out trigging control aspect again and set up secure binding list item.When main frame 1 again request access network time, just may by this network forwarding equipment denied access.
In the embodiment of the present invention, when the forwarding plane of network forwarding equipment receives downlink message, if judge, described downlink message is unknown message, by the control plane of described unknown message up sending to described network forwarding equipment, and corresponding secure binding list item set up by the destination host being described unknown message by control plane, thus make described destination host can normal accesses network.
Please refer to Fig. 2, be the process chart of the item establishing method in a kind of illustrative embodiments of the present invention, described method is applied to network forwarding equipment, and described method comprises:
When step 201, forwarding plane receive downlink message, judge whether described downlink message is unknown message;
Wherein, when the forwarding plane of network forwarding equipment receives downlink message by downlink port, MAC (Media Access Control, media the get involved key-course) address list item can searching self judges whether this downlink message is unknown message.In optional embodiment of the present invention, described forwarding plane judges that whether described downlink message is that the process of unknown message is specially: first resolve this downlink message, obtain the source MAC of described downlink message; Then in the mac address table self learnt, search the source MAC of described downlink message; If do not find the source MAC of described downlink message, then determine that described downlink message is unknown message.
Described unknown message in the present embodiment can be unknown unicast message, also can be unknown multicast packets, treatment step below for unknown unicast message and unknown multicast packets all applicable.
Step 202, when described downlink message is unknown message, described forwarding plane by described unknown message up sending to control plane;
When determining that described downlink message is unknown message, except according to conventional treatment mode this unknown message being broadcasted to the main frame of down direction, described forwarding plane also can according to the processing policy preset by described unknown message up sending to control plane process.
In optional embodiment of the present invention, described unknown message up sending can be realized by following two kinds of modes to control plane by described forwarding plane.
Mode one:
On the port of described network forwarding equipment, issue ACL (Access Control List, Access Control List (ACL)) rule in advance, forwarding plane can search the acl rule mated with described unknown message in the acl rule issued in advance; And according to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.Because acl rule is widely used on forwarding plane as the main policies of Protection of Network Security, therefore this method has good compatibility, can be applied to various network forwarding equipment.
Mode two:
When described forwarding plane comprises the forwarding chip with register, forwarding strategy can also be pre-set in described register.When forwarding plane receives descending unknown message, can according in described register preset forwarding strategy, copy described unknown message and on send control plane.Because forwarding chip is forwarded by hardware, faster compared to software forward processing speed, therefore by forwarding chip sending described unknown message can improve the treatment effeciency of described network forwarding equipment to the method for control plane.
It should be noted that, because described network forwarding equipment is except initiatively going to set up except secure binding list item by described descending unknown message trigging control aspect, also will ensure that described unknown message can be transferred on main frame.Carry out therefore needing to copy this unknown message in the present embodiment, and non-immediate is sent.
After step 203, control plane receive described unknown message, for corresponding secure binding list item set up by the destination host of described unknown message.
After control plane receives the described unknown message that forwarding plane send, described control plane can be triggered and send to destination host corresponding to this unknown message and control message, by mutual with destination host, thus set up the secure binding list item of correspondence for this destination host.
As can be seen here, the present invention is by when the forwarding plane of network forwarding equipment receives downlink message, if judge, described downlink message is unknown message, by the control plane of described unknown message up sending to described network forwarding equipment, and corresponding secure binding list item set up by the destination host being described unknown message by control plane, when described network forwarding equipment receives the access request of described destination host transmission, can determine that described destination host is validated user according to described secure binding list item, thus make described destination host can when there is no uplink message normal accesses network.
Because described secure binding list item can comprise multiple list item, conventional secure binding list item is NDSnooping list item, therefore in optional embodiment of the present invention, NDSnooping list item is set up for network forwarding equipment, after illustrating that described control plane receives unknown message, specifically set up the process of secure binding list item.First the control plane of network forwarding equipment can obtain VLAN (Virtual Local Area Network, VLAN) belonging to described unknown message and object IP address, namely the IP address of destination host; Control plane creates ND protocol massages, and described object IP address is filled up to the specific field of this ND protocol massages, is then broadcasted in the VLAN belonging to described unknown message by described ND protocol massages.After described destination host receives described ND protocol massages, confirm that the object IP address of carrying in this ND protocol massages is exactly behind the IP address of self, return ND response message to described network forwarding equipment, and carry the information such as MAC Address, IP address of main frame self.The ND response message that described control plane returns according to described destination host, creates the secure binding list item that described destination host is corresponding, can comprise the information such as the MAC Address of main frame, IP address, affiliated VLAN and port numbers in this list item.Because ND protocol massages can replace ARP to ask to carry out link layer address parsing, can also carry out in neighbor discovery process, screening inaccessible neighbor node, screening repeat to address (RA), therefore by ND protocol massages mutual with destination host, the information such as the MAC Address of destination host, IP address can be obtained fast and accurately.
For making object of the present invention, technical scheme and advantage clearly understand, below based on the network architecture of Fig. 1, scheme of the present invention is described in further detail.
According to previous embodiment, when main frame on network forwarding equipment 1 ND snooping list item lose time, the concrete processing procedure of described network forwarding equipment as shown in Figure 3, comprising:
After the forwarding plane reception downlink message of step 301, network forwarding equipment, obtain the source MAC of this downlink message;
The forwarding plane of step 302, network forwarding equipment judges that the source MAC of described downlink message is whether in the mac address table of self, if so, then goes to step 303; If not, then 304 are gone to step;
The forwarding plane of step 303, network forwarding equipment forwards this downlink message, and terminates;
The forwarding plane of step 304, network forwarding equipment copies and broadcasts described downlink message;
The forwarding plane of step 305, network forwarding equipment send described downlink message to control plane;
VLAN belonging to described downlink message of the control plane of step 306, network forwarding equipment and object IP address creation ND protocol massages are also broadcasted in described VLAN;
Suppose that the object IP address of this downlink message is IP1, affiliated VLAN is VLAN1.IP1 writes in the specific field of ND protocol massages by this control plane, and described ND protocol massages can be the DAD-NS message for requesting host position usually.Because main frame 1 and main frame 2 all belong to VLAN1, therefore main frame 1 and main frame 2 can both receive the DAD-NS message that network forwarding equipment sends.Main frame 1 and main frame 2, after receiving this DAD-NS message, can obtain the IP1 that it carries, and then mate with the IP address of self, suppose that the IP address of main frame 1 is IP1, then illustrate that main frame 1 is the destination host of described unknown message.So main frame 1 can return ND response message to network forwarding equipment.Described ND response message comprises the information such as source IP address IP1, source MAC MAC1, inbound port P1 of main frame 1.
Step 307, control plane create the ND snooping list item of described main frame 1 correspondence after receiving the ND response message that main frame 1 returns.
This control plane is that the ND snooping list item that main frame 1 creates is as shown in table 1 below:
Source IP address Source MAC Inbound port Affiliated VALN
IP1 MAC1 P1 VALN1
Table 1
So when described network forwarding equipment is follow-up receive again main frame 1 send accesses network request time, according to the source IP address of the main frame 1 in this request, source MAC, the information such as inbound port and affiliated VALN and the ND snooping list item self preserved are compared, just can identify the identity of main frame 1, thus safe clearance is carried out to main frame 1.
As can be seen here, the present invention is by when the forwarding plane of network forwarding equipment receives downlink message, if judge, described downlink message is unknown message, by the control plane of described unknown message up sending to described network forwarding equipment, and corresponding secure binding list item set up by the destination host being described unknown message by control plane, when described network forwarding equipment receives the access request of described destination host transmission, can determine that described destination host is validated user according to described secure binding list item, thus make described destination host can when there is no uplink message normal accesses network.
Based on identical design, the present invention also provides a kind of list item apparatus for establishing, and described device can pass through software simulating, also can be realized by the mode of hardware or software and hardware combining.For software simulating, list item apparatus for establishing of the present invention, as the device on a logical meaning, is run after being read by computer program instructions corresponding in memory by the CPU of its place network forwarding equipment to form.
Please refer to Fig. 4 and Fig. 5, be a kind of list item apparatus for establishing 400 in a kind of illustrative embodiments of the present invention, described application of installation is in network forwarding equipment, the basic running environment of described device comprises CPU, memory and other hardware, from logic level, described device 400 comprises:
Message judging unit 401, for when forwarding plane receives downlink message, judges whether described downlink message is unknown message;
Message up sending unit 402, for when described downlink message is unknown message, by described unknown message up sending to control plane;
List item sets up unit 403, for receive described unknown message at control plane after, for corresponding secure binding list item set up by the destination host of described unknown message.
Optionally, described message judging unit, specifically for obtaining the MAC Address of described downlink message, searches the source MAC of described downlink message in the mac address table of self, if do not find, then determines that described downlink message is unknown message.
Optionally, when issuing acl rule in advance on the port of described network forwarding equipment, described message up sending unit, specifically for searching the acl rule mated with described unknown message in the acl rule issued in advance; According to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.
Optionally, when described network forwarding equipment comprises the forwarding chip with register, described message up sending unit, specifically for according in described register preset forwarding strategy, copy described unknown message and on deliver to control plane.
Optionally, described list item sets up unit, specifically for obtaining VLAN belonging to described unknown message and object IP address; According to described object IP address creation ND protocol massages, and described ND protocol massages is broadcasted in described VLAN, after receiving described ND protocol massages, return ND response message to make the destination host of described unknown message; According to the ND response message that described destination host returns, create the secure binding list item that described destination host is corresponding.
As can be seen here, the present invention is by when the forwarding plane of network forwarding equipment receives downlink message, if judge, described downlink message is unknown message, by the control plane of described unknown message up sending to described network forwarding equipment, and corresponding secure binding list item set up by the destination host being described unknown message by control plane, when described network forwarding equipment receives the access request of described destination host transmission, can determine that described destination host is validated user according to described secure binding list item, thus make described destination host can when there is no uplink message normal accesses network.
The foregoing is only preferred embodiment of the present invention, not in order to limit the present invention, within the spirit and principles in the present invention all, any amendment made, equivalent replacement, improvement etc., all should be included within the scope of protection of the invention.

Claims (10)

1. an item establishing method, is characterized in that, described method is applied to network forwarding equipment, and described method comprises:
When forwarding plane receives downlink message, judge whether described downlink message is unknown message;
When described downlink message is unknown message, described forwarding plane by described unknown message up sending to control plane;
After control plane receives described unknown message, for corresponding secure binding list item set up by the destination host of described unknown message.
2. method according to claim 1, is characterized in that, described forwarding plane judges whether described downlink message is unknown message, comprising:
Forwarding plane obtains the source medium access control MAC Address of described downlink message;
The source MAC of described downlink message is searched in the mac address table of self;
If do not find, then determine that described downlink message is unknown message.
3. method according to claim 1, is characterized in that, when issuing access control list ACL rule in advance on the port of described network forwarding equipment, described unknown message up sending to control plane, comprises by described forwarding plane:
Described forwarding plane searches the acl rule mated with described unknown message in the acl rule issued in advance;
According to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.
4. method according to claim 1, is characterized in that, when described network forwarding equipment comprises the forwarding chip with register, described unknown message up sending to control plane, comprises by described forwarding plane:
Described forwarding plane according in described register preset forwarding strategy, copy described unknown message and on deliver to control plane.
5. method according to claim 1, is characterized in that, described control plane is that corresponding secure binding list item set up by the destination host of described unknown message, comprising:
Obtain the virtual LAN VLAN belonging to described unknown message and object Internet protocol IP address;
According to described object IP address creation Neighbor Discovery protocol massages, and described ND protocol massages is broadcasted in described VLAN, after receiving described ND protocol massages, return ND response message to make the destination host of described unknown message;
According to the ND response message that described destination host returns, create the secure binding list item that described destination host is corresponding.
6. a list item apparatus for establishing, is characterized in that, described application of installation is in network forwarding equipment, and described device comprises:
Message judging unit, for when forwarding plane receives downlink message, judges whether described downlink message is unknown message;
Message up sending unit, for when described downlink message is unknown message, by described unknown message up sending to control plane;
List item sets up unit, for receive described unknown message at control plane after, for corresponding secure binding list item set up by the destination host of described unknown message.
7. device according to claim 6, is characterized in that,
Described message judging unit, specifically for obtaining the source MAC of described downlink message, searches the source MAC of described downlink message in the mac address table of self, if do not find, then determines that described downlink message is unknown message.
8. device according to claim 6, is characterized in that, when issuing acl rule in advance on the port of described network forwarding equipment,
Described message up sending unit, specifically for searching the acl rule mated with described unknown message in the acl rule issued in advance; According to the action defined in the acl rule matched, copy described unknown message and on deliver to control plane.
9. device according to claim 6, is characterized in that, when described network forwarding equipment comprises the forwarding chip with register,
Described message up sending unit, specifically for according in described register preset forwarding strategy, copy described unknown message and on deliver to control plane.
10. device according to claim 6, is characterized in that, described list item sets up unit, specifically for obtaining VLAN belonging to described unknown message and object IP address; According to described object IP address creation ND protocol massages, and described ND protocol massages is broadcasted in described VLAN, after receiving described ND protocol massages, return ND response message to make the destination host of described unknown message; According to the ND response message that described destination host returns, create the secure binding list item that described destination host is corresponding.
CN201410839769.2A 2014-12-29 2014-12-29 A kind of item establishing method and device Active CN104506437B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410839769.2A CN104506437B (en) 2014-12-29 2014-12-29 A kind of item establishing method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410839769.2A CN104506437B (en) 2014-12-29 2014-12-29 A kind of item establishing method and device

Publications (2)

Publication Number Publication Date
CN104506437A true CN104506437A (en) 2015-04-08
CN104506437B CN104506437B (en) 2018-08-24

Family

ID=52948152

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410839769.2A Active CN104506437B (en) 2014-12-29 2014-12-29 A kind of item establishing method and device

Country Status (1)

Country Link
CN (1) CN104506437B (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104836744A (en) * 2015-05-29 2015-08-12 杭州华三通信技术有限公司 Message processing method and device
CN107317740A (en) * 2017-08-01 2017-11-03 京信通信系统(中国)有限公司 A kind of processing method and processing device of data message
CN111083049A (en) * 2019-12-13 2020-04-28 迈普通信技术股份有限公司 User table item recovery method and device, electronic equipment and storage medium
WO2020119317A1 (en) * 2018-12-14 2020-06-18 中兴通讯股份有限公司 Message forwarding method and apparatus, storage medium, and electronic apparatus

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101022394A (en) * 2007-04-06 2007-08-22 杭州华为三康技术有限公司 Method for realizing virtual local network aggregating method and converging exchanger
CN101431428A (en) * 2007-11-09 2009-05-13 中国电信股份有限公司 Security monitoring service recovery method and system
CN101552677A (en) * 2009-05-12 2009-10-07 杭州华三通信技术有限公司 Processing method and exchange equipment for address detected message
CN101582888A (en) * 2009-06-01 2009-11-18 杭州华三通信技术有限公司 Method for creating neighbor discovery table item and server
CN101909007A (en) * 2010-07-29 2010-12-08 福建星网锐捷网络有限公司 Production method, device and network equipment of binding table
CN103795633A (en) * 2012-10-31 2014-05-14 中兴通讯股份有限公司 Layer-2 forwarding method and forwarding equipment

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101022394A (en) * 2007-04-06 2007-08-22 杭州华为三康技术有限公司 Method for realizing virtual local network aggregating method and converging exchanger
CN101431428A (en) * 2007-11-09 2009-05-13 中国电信股份有限公司 Security monitoring service recovery method and system
CN101552677A (en) * 2009-05-12 2009-10-07 杭州华三通信技术有限公司 Processing method and exchange equipment for address detected message
CN101582888A (en) * 2009-06-01 2009-11-18 杭州华三通信技术有限公司 Method for creating neighbor discovery table item and server
CN101909007A (en) * 2010-07-29 2010-12-08 福建星网锐捷网络有限公司 Production method, device and network equipment of binding table
CN103795633A (en) * 2012-10-31 2014-05-14 中兴通讯股份有限公司 Layer-2 forwarding method and forwarding equipment

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104836744A (en) * 2015-05-29 2015-08-12 杭州华三通信技术有限公司 Message processing method and device
CN104836744B (en) * 2015-05-29 2018-06-12 新华三技术有限公司 A kind of message processing method and device
CN107317740A (en) * 2017-08-01 2017-11-03 京信通信系统(中国)有限公司 A kind of processing method and processing device of data message
WO2020119317A1 (en) * 2018-12-14 2020-06-18 中兴通讯股份有限公司 Message forwarding method and apparatus, storage medium, and electronic apparatus
CN111327543A (en) * 2018-12-14 2020-06-23 中兴通讯股份有限公司 Message forwarding method and device, storage medium and electronic device
CN111083049A (en) * 2019-12-13 2020-04-28 迈普通信技术股份有限公司 User table item recovery method and device, electronic equipment and storage medium
CN111083049B (en) * 2019-12-13 2024-02-27 迈普通信技术股份有限公司 User table item recovery method and device, electronic equipment and storage medium

Also Published As

Publication number Publication date
CN104506437B (en) 2018-08-24

Similar Documents

Publication Publication Date Title
US10237230B2 (en) Method and system for inspecting network traffic between end points of a zone
RU2357281C2 (en) Virtual broadcasting network for inter-domain connection
US8189580B2 (en) Method for blocking host in IPv6 network
WO2019137355A1 (en) Method and device for transmitting data, and network system
CN101674306B (en) Address resolution protocol message processing method and switch
US20170279775A1 (en) Method and apparatus for anonymous access and control of a service node
WO2013189059A1 (en) Packet processing method, apparatus, host and network system
CN103118149B (en) Communication control method between same tenant's server and the network equipment
CN104243269A (en) Processing method and device of messages in VxLAN (virtual extensible local area network)
WO2013029440A1 (en) Method and apparatus for implementing layer-2 interconnection of data centers
CN103248720A (en) Method and device for inquiring physical address
WO2016197689A1 (en) Method, apparatus and system for processing packet
CN104506437A (en) Item setup method and device
WO2017107871A1 (en) Access control method and network device
CN102546428A (en) System and method for internet protocol version 6 (IPv6) message switching based on dynamic host configuration protocol for IPv6 (DHCPv6) interception
CN105530188B (en) A kind of multicast forward method and device
CN105187311A (en) Message forwarding method and message forwarding device
CN105490995A (en) Method and device for forwarding message by NVE in NVO3 network
CN105337890A (en) Control strategy generation method and apparatus
CN103780484A (en) Message transmitting method and device
CN102546308B (en) The method and system of neighbor uni-cast agency is realized based on duplicate address detection
CN112134776A (en) Method for generating multicast forwarding table item and access gateway
CN109818869B (en) Method for generating multicast traffic forwarding port and related equipment
WO2021184862A1 (en) Message sending method, first network device, and network system
CN104683500A (en) Generation method and device for security entries

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Applicant after: Xinhua three Technology Co., Ltd.

Address before: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Applicant before: Huasan Communication Technology Co., Ltd.

CB02 Change of applicant information
GR01 Patent grant
GR01 Patent grant