CN106161225A - For processing method, the Apparatus and system of VXLAN message - Google Patents
For processing method, the Apparatus and system of VXLAN message Download PDFInfo
- Publication number
- CN106161225A CN106161225A CN201510127449.9A CN201510127449A CN106161225A CN 106161225 A CN106161225 A CN 106161225A CN 201510127449 A CN201510127449 A CN 201510127449A CN 106161225 A CN106161225 A CN 106161225A
- Authority
- CN
- China
- Prior art keywords
- head
- message
- encapsulation
- vni
- router
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/28—Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
- H04L12/46—Interconnection of networks
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
This application provides a kind of method for processing VXLAN message, Apparatus and system, contribute to the router between different data centers and obtain VNI.In the method, the first router receives the VXLAN message that VTEP sends, and described VXLAN message includes VNI;Described the first router is according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;Message after the second router sends described encapsulation for the described the first router.
Description
Technical field
The present invention relates to the communication technology, particularly relate to one for processing method, the Apparatus and system of virtual expansible LAN (English full name: Virtual Extensible Local Area Network, english abbreviation: VXLAN) message.
Background technology
VXLAN can be applicable to inside data center, make virtual machine can migrate in the range of the three-layer network interconnecting, without change Internet protocol (English full name: Internet Protocol, english abbreviation: IP) address and medium education (English full name: Media Access Control, english abbreviation: MAC) address, it is ensured that the continuity of business.Internet protocol security (English full name: Internet Protocol Security, english abbreviation: IPSec) agreement can guarantee to carry out on ip networks maintaining secrecy and the communication of safety by using the security service encrypted.ESP (English full name: Encapsulating Security Payload, english abbreviation: ESP) agreement is a kind of main protocol in IPsec agreement, IPsec-ESP can be applicable to the scene of communication between different data center'ss (English full name: Data Center, english abbreviation: DC).
Between different DC in communication scenes, in the scene such as communicating between DC1 and DC2, belong to the first router of DC1 to receive and belong to the VXLAN message that the virtual channel end points (English full name: virtual tunnel end point, english abbreviation: VTEP) of DC1 sends.The first router carries out IPsec-ESP encapsulation to the VXLAN message receiving, it is thus achieved that IPsec-ESP message.IPsec-ESP message include encryption after VXLAN message, be packaged in encryption after VXLAN message outside ESP head and the IP head being packaged in outside ESP head.IP head includes source IP address and purpose IP address, and source IP address is the IP address of the first router, and purpose IP address is the IP address of the second router.The second router belongs to DC2.The first router sends IPsec-ESP message to the second router.
The router being positioned between the first router and the second router can forward IPsec-ESP message, but, the router on transmission path being positioned between the first router and the second router cannot be in perception IPsec-ESP message included by VXLAN message the information related to VXLAN, such as VXLAN network identity (English full name: VXLAN Network Identifier, english abbreviation: VNI), and then cannot be carried out the Business Processing such as load balancing.
Content of the invention
In view of this, embodiments provide a kind of method for processing VXLAN message, Apparatus and system, contribute to the router between different data centers and obtain VNI.
The technical scheme that the embodiment of the present invention provides is as follows.
First aspect, provides a kind of method for processing VXLAN message, comprising:
The first router receives the VXLAN message that VTEP sends, and described VXLAN message includes VNI;
Described the first router is according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;
Message after the second router sends described encapsulation for the described the first router.
In the first possible implementation of first aspect, described IP head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.
In conjunction with above-mentioned first aspect, additionally provide the possible implementation of the second of first aspect, message after described encapsulation also includes User Datagram Protocol (the English full name: User Datagram Protocol being packaged between described IP head and described VNI, english abbreviation: UDP) head, UDP head included by the described VXLAN message from described VTEP for the described UDP head;
Described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.
Second aspect, provides a kind of method for processing VXLAN message, comprising:
Message after the encapsulation that the second router reception the first router sends, message after described encapsulation is the message carrying out to the VXLAN message from VTEP obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;
Message after described encapsulation for the described the second router obtains described VNI.
In the first possible implementation of second aspect, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described VNI, and message after described encapsulation for the described the second router obtains described VNI and includes:
Described first identification information that described the second router includes according to described IP head, determines that the message after described encapsulation includes described VNI;
Described the second router obtains described VNI between described IP head and described ESP head.
In conjunction with above-mentioned second aspect, additionally provide the possible implementation of the second of second aspect, message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, described UDP head is the UDP head including from the described VXLAN message of described VTEP, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, the message that described second identification information is used for after identifying described encapsulation carries described VNI;
Message after described encapsulation for the described the second router obtains described VNI and includes:
Described first identification information that described the second router includes according to described IP head, it is thus achieved that be packaged in the UDP head between described IP head and described VNI;
Described second identification information that described the second router includes according to the UDP head being packaged between described IP head and described VNI, determines that the message after described encapsulation includes described VNI;
Described the second router obtains described VNI between described IP head and described ESP head.
The third aspect, provides the first router, comprising:
Receiving unit, for receiving the VXLAN message that VTEP sends, described VXLAN message includes VNI;
Processing unit, for according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;
Transmitting element, for the message after the described encapsulation of the second router transmission.
In the first possible implementation of the third aspect, described IP head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.
In conjunction with the above-mentioned third aspect, additionally provide the possible implementation of the second of the third aspect, message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, UDP head included by the described VXLAN message from described VTEP for the described UDP head;
Described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.
Fourth aspect, provides the second router, comprising:
Receiving unit, for receive the first router send encapsulation after message, message after described encapsulation is the message carrying out to the described VXLAN message from VTEP obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;
Processing unit, obtains described VNI for the message after described encapsulation.
In the first possible implementation of fourth aspect, described IP head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI;
Described processing unit, specifically for described first identification information including according to described IP head, determines that the message after described encapsulation includes described VNI;
Described processing unit is specifically for obtaining described VNI between described IP head and described ESP head.
In conjunction with above-mentioned fourth aspect, additionally provide the possible implementation of the second of fourth aspect, message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, described UDP head is the UDP head including from the described VXLAN message of described VTEP, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, the message that described second identification information is used for after identifying described encapsulation carries described VNI;
Described processing unit is specifically for described first identification information including according to described IP head, it is thus achieved that be packaged in the UDP head between described IP head and described VNI;
Described processing unit, specifically for described second identification information including according to the UDP head being packaged between described IP head and described VNI, determines that the message after described encapsulation includes described VNI;
Described processing unit is specifically for obtaining described VNI between described IP head and described ESP head.
5th aspect, provides the system for processing VXLAN message, comprising:
The first router that any one possible implementation of the above-mentioned third aspect or the third aspect is provided and the second router that any one possible implementation of above-mentioned fourth aspect or fourth aspect is provided.
By such scheme, the embodiment of the present invention provide for processing the method for VXLAN message, in Apparatus and system, the VXLAN message that VTEP is sent by the first router carries out IPsec-ESP encapsulation, it is thus achieved that the message after encapsulation.The VNI that the described VXLAN message that described VTEP is sent by described the first router includes be packaged in described encapsulation after the IP head that includes of message and ESP head between.Message after the second router sends described encapsulation for the described the first router.Described the second router obtains, from the message after described encapsulation, the VNI being packaged between IP head and ESP head.So, it is positioned at the router between different data centers, such as the second router, VNI can be obtained from the message after the encapsulation receiving.
Brief description
In order to be illustrated more clearly that the embodiment of the present invention or scheme of the prior art, the accompanying drawing of use required in embodiment will be briefly described below, apparently, accompanying drawing in describing below is some embodiments of the present invention, for those of ordinary skills, on the premise of not paying creative work, other accompanying drawing can also be obtained according to these accompanying drawings.
The method flow diagram for processing VXLAN message that Fig. 1 provides for first embodiment of the invention;
The method flow diagram for processing VXLAN message that Fig. 2 provides for second embodiment of the invention;
The schematic diagram of message after a kind of encapsulation that Fig. 3 a provides for the embodiment of the present invention;
The schematic diagram of the message after the another kind of encapsulation that Fig. 3 b provides for the embodiment of the present invention;
The schematic diagram of message after a kind of encapsulation that Fig. 4 a provides for the embodiment of the present invention;
The schematic diagram of the message after the another kind of encapsulation that Fig. 4 b provides for the embodiment of the present invention;
The schematic diagram of the IP head that the message after the encapsulation that Fig. 5 provides for the embodiment of the present invention includes;
The schematic diagram of the UDP head that the message after the encapsulation that Fig. 6 provides for the embodiment of the present invention includes;
The structural representation of the first router that Fig. 7 provides for the embodiment of the present invention;
The structural representation of the first router that Fig. 8 provides for another embodiment of the present invention;
The structural representation of the second router that Fig. 9 provides for the embodiment of the present invention;
The structural diagrams of the second router that Figure 10 provides for another embodiment of the present invention is intended to;
The structural representation of the system for processing VXLAN message that Figure 11 provides for the embodiment of the present invention.
Detailed description of the invention
Purpose, technical scheme and advantage for making the embodiment of the present invention are clearer, below in conjunction with the accompanying drawing in the embodiment of the present invention, clear, complete description is carried out to the technical scheme in the embodiment of the present invention, obviously, described embodiment is a part of embodiment of the present invention, rather than whole embodiments.Based on the embodiment in the present invention, every other embodiment that those of ordinary skill in the art are obtained on the premise of not making creative work, broadly fall into the scope of protection of the invention.
The flow chart of the method for processing VXLAN message that Fig. 1 provides for first embodiment of the invention.First embodiment of the invention is the angle from the first router, illustrates the method for processing VXLAN message.Described the first router can be Provider Edge (English full name: provider edge, english abbreviation: PE) equipment.Below in conjunction with Fig. 1, provide first embodiment of the invention illustrates for the method processing VXLAN message.
S102, the first router receives the VXLAN message that VTEP sends, and described VXLAN message includes VNI.
Illustrating, between different DC in communication scenes, the first router may belong to DC1.The service message that virtual machine (English full name: virtual machine, english abbreviation: VM) sends can be carried out VXLAN encapsulation by the VTEP in DC1, it is thus achieved that VXLAN message.The VXLAN message that VTEP in DC1 is obtained includes VNI.The VXLAN message that VTEP in DC1 is obtained needs the VM, the VM in such as DC2 sending to another DC.The first router can receive the VXLAN message that the VTEP in DC1 sends.Wherein, VNI can be used for distinguishing different VXLAN.Such as: a VNI can be used for identifying a tenant.
S104, described the first router is according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head.
Illustrate, between the described IP head that the message after the described encapsulation of VNI insertion that VXLAN message can be included by described the first router includes and described ESP head.
Illustrating, described the first router is according to described VXLAN message, it is thus achieved that the message after encapsulation includes: described the first router obtains described VNI from described VXLAN message;Described the first router carries out IPsec-ESP encapsulation to described VXLAN message, obtaining IPsec-ESP encapsulated message, described IPsec-ESP encapsulated message includes ESP head and the IP head being packaged in outside ESP head outside the VXLAN message encrypted, the VXLAN message being packaged in encryption;Described the first router is by between the described VNI insertion IP head that includes of IPsec-ESP encapsulated message and described ESP head, it is thus achieved that the message after described encapsulation.Message after described encapsulation can be the message shown in Fig. 3 a or Fig. 3 b.Message after the encapsulation that message shown in Fig. 3 a sends for using transmission (English name is transport) pattern.The IP head that message shown in Fig. 3 a includes can use the structure shown in Fig. 5.Message after the encapsulation that message shown in Fig. 3 b sends for using tunnel (English name is tunnel) pattern.The Intranet IP head that message shown in Fig. 3 b includes is the IP head that VTEP includes to the VXLAN message that the first router sends.The IP head that message shown in Fig. 3 b includes can use the structure shown in Fig. 5.In Fig. 3 a and Fig. 3 b, the VXLAN message of encryption is the encrypted rear message obtaining of VXLAN that VTEP sends, and the content no longer including the VXLAN message of encryption at this repeats.
Illustrating, described the first router is according to described VXLAN message, it is thus achieved that the message after encapsulation includes: described the first router obtains described VNI from described VXLAN message;Described VXLAN message is encrypted by described the first router, it is thus achieved that the VXLAN message after encryption;Described the first router successively encapsulates described ESP head, described VNI and described IP head outside the VXLAN message after described encryption.Message after described encapsulation can be the message shown in Fig. 3 a or Fig. 3 b.
Alternatively, the IP head that the message after described encapsulation includes may also include the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.
Illustrate, if the IP head that the message after the encapsulation of Fig. 3 a or Fig. 3 b includes uses the IP head shown in Fig. 5.Shown first identification information can be carried on the protocol number field in the IP head shown in Fig. 5.Protocol number field in IP head shown in Fig. 5 can be used for representing the type of message after IP head in the present embodiment, for example, be " ESP/VXLAN " by described protocol number field definition, be the ESP message encapsulating VXLAN head in order to the type of message after indicating IP head.Wherein, the ESP message encapsulating VXLAN head can be the VXLAN head comprising VNI at ESP message outer package, can also is that at ESP message outer package described VNI.After described the first router can increase described VNI between described ESP head and described IP head, the information comprising described IP head is updated.IP head as shown in Figure 5, after described the first router can add described VNI between described ESP head and described IP head, protocol number field, total length field and the header check and the field that include IP head are updated so that add the message after the encapsulation of described VNI and meet call format.
Alternatively, described the first router can obtain VXLAN head from the VXLAN message from VTEP, and described VXLAN head includes described VNI.The VXLAN head that VXLAN message is included by described the first router is packaged between described IP head and described ESP head, it is thus achieved that the message after encapsulation.So, described the first router can contribute to simplifying operation without identifying from the VXLAN message from VTEP and obtaining VNI.The method that described the first router obtains the message after the method for the message after including the encapsulation of VXLAN head includes the encapsulation of VNI with above-mentioned acquisition is identical, does not repeats them here.
S106, message after the second router sends described encapsulation for the described the first router.
Illustrating, described the second router is the router between different DC.Such as described the first router belongs to DC1, and third router belongs to DC2.Message after described encapsulation is for needing to be sent the message of the third router to DC2 by the first router of DC1.Described the second router is the router being in the transmission network between DC1 and DC2.
Illustrating, if the message that the message after described encapsulation is the transmission of transport pattern, then the purpose IP address in the IP head that the message after described encapsulation includes is the IP address of third router.If the message that the message after described encapsulation is the transmission of tunnel pattern, then the purpose IP address in the IP head that the message after described encapsulation includes is the destination address in tunnel, and the destination address in described tunnel is the IP address of third router.
Illustrating, described the first router can being pre-configured with the first corresponding relation, described first corresponding relation includes the IP address of described VNI and third router.Described the first router can be according to described first corresponding relation and described VNI, it is thus achieved that the IP address of described third router.The purpose IP address that the IP address of described third router can be included by described the first router as the IP head in the message after described encapsulation.
Illustrating, described the first router can being pre-configured with the second corresponding relation, described second corresponding relation includes the IP address of address information and third router.Described address information can be any one in source IP address, purpose IP address, source MAC and the target MAC (Media Access Control) address that the VXLAN message that VTEP sends includes or any combination.
As a example by needing the scene communicating between DC1 and DC2, after the message after the described encapsulation of the first router acquisition in DC1, the purpose IP address including according to IP head, the third router in DC2 sends described message after encapsulating.The purpose IP address that in message after described encapsulation, IP head includes is the IP address of the third router in DC2.The first router in DC1 and include the second router between the third router in DC2, say, that include the second router on the path between the first router in DC1 and the third router in DC2.The router of the described VNI that the second router can be carried for the message after being obtained in that described encapsulation.Third router in DC2 for the first router in DC1 sends described message after encapsulating, and the message after described encapsulation can be forwarded to described the second router along the path between described the first router extremely described third router.
The embodiment of the present invention provide for processing in the method for VXLAN message, the first router obtain encapsulation according to the VNI in VXLAN message and described VXLAN message after message, be packaged with described VNI between the IP head that the message after described encapsulation includes and ESP head.Message after the second router sends described encapsulation for the first router, contribute to described the second router and carry out Business Processing further according to the described VNI carrying in the message after described encapsulation, the such as Business Processing such as load balancing, are favorably improved network operation efficiency.
The method for processing VXLAN message providing based on first embodiment of the invention, another embodiment of the present invention provides the method for processing VXLAN message.The method difference that what another embodiment of the present invention provided method and first embodiment of the invention provide is: the UDP head that VXLAN message also can be included by described the first router inserts between the described IP head that described message after encapsulating includes and described VNI.The S104 that the method that i.e. another embodiment of the present invention provides includes is different from the S104 in the method that first embodiment of the invention provides, and illustrates difference at this, and other contents can be referring to the corresponding contents in the method for first embodiment of the invention offer.
Illustrating, in S104, described the first router is according to described VXLAN message, it is thus achieved that the message after encapsulation includes: described the first router obtains described VNI and described UDP head from described VXLAN message;Described the first router carries out IPsec-ESP encapsulation to described VXLAN message, obtaining IPsec-ESP encapsulated message, described IPsec-ESP encapsulated message includes ESP head and the IP head being packaged in outside ESP head outside the VXLAN message encrypted, the VXLAN message being packaged in encryption;Described the first router is by between described VNI and the UDP head insertion IP head that includes of IPsec-ESP encapsulated message and described ESP head, it is thus achieved that the message after described encapsulation.Message after described encapsulation can be the message shown in Fig. 4 a or Fig. 4 b.Message after the encapsulation that message shown in Fig. 4 a sends for using transport pattern.The IP head that message shown in Fig. 4 a includes can use the structure shown in Fig. 5, and the UDP head that the message shown in Fig. 4 a includes can use the structure shown in Fig. 6.Message after the encapsulation that message shown in Fig. 4 b sends for using tunnel pattern.The Intranet IP head that message shown in Fig. 4 b includes is the IP head that VTEP includes to the VXLAN message that the first router sends.The IP head that message shown in Fig. 4 b includes can use the structure shown in Fig. 5, and the UDP head that the message shown in Fig. 4 b includes can use the structure shown in Fig. 6.In Fig. 4 a and Fig. 4 b, the VXLAN message of encryption is the encrypted rear message obtaining of VXLAN that VTEP sends, and the content no longer including the VXLAN message of encryption at this repeats.
Illustrating, in S104, described the first router is according to described VXLAN message, it is thus achieved that the message after encapsulation includes: described the first router obtains described VNI and described UDP head from described VXLAN message;Described VXLAN message is encrypted by described the first router, it is thus achieved that the VXLAN message after encryption;Described the first router successively encapsulates described ESP head, described VNI, described UDP head and described IP head outside the VXLAN message after described encryption.Message after described encapsulation can be the message shown in Fig. 4 a or Fig. 4 b.
Illustrate, the IP head that message after described encapsulation includes may also include the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.
Illustrate, if the IP head that the message after the encapsulation of Fig. 4 a or Fig. 4 b includes uses the IP head shown in Fig. 5.Shown first identification information can be carried on the protocol number field in the IP head shown in Fig. 5.In the present embodiment, the protocol number field in the IP head shown in Fig. 5 may be defined as UDP, carries UDP head after being used for representing IP head.After described the first router can increase described VNI and described UDP head between described ESP head and described IP head, the information comprising described IP head is updated.IP head as shown in Figure 5, after described the first router can add described VNI and described UDP head between described ESP head and described IP head, protocol number field, total length field and the header check and the field that include IP head are updated, in order to carry the message after the encapsulation of described VNI and described UDP head and meet call format.Destination slogan in UDP head shown in Fig. 6 can be used to carry described second identification information.Destination slogan in UDP head shown in Fig. 6 is ESP/VXLAN port numbers, i.e. ESP/VXLAN port numbers carries VNI after being used for identifying UDP head.If carry after UDP head is the VXLAN head containing VNI, the destination slogan in the UDP head shown in Fig. 6 is ESP/VXLAN port numbers, i.e. ESP/VXLAN port numbers carries, after being used for identifying UDP head, the ESP message being packaged with VXLAN head.The UDP head that message shown in Fig. 6 includes includes " UDP verification and " field.If the IP head that the message shown in Fig. 5 includes is provided with " header check and ", then " UDP verification and " in the UDP head that the message shown in Fig. 6 includes could be arranged to 0.
Illustrate, mulitpath between the first router of DC1 and the third router of DC2, can be included.Every paths on described mulitpath can include one or more router.The five-tuple information that the source port number in the UDP head that includes of message after described encapsulation and the message after described encapsulation include can be used to determine a path for forwarding the message after described encapsulation from described mulitpath.
Fig. 2 is the flow chart of the method for processing VXLAN message of second embodiment of the invention.Second embodiment of the invention is the angle from the second router, and provide the embodiment of the present invention illustrates for the method processing VXLAN message.Described the second router can be operator (English full name: provider, english abbreviation: P) equipment.Below in conjunction with Fig. 2, being specifically described for the method processing VXLAN message to second embodiment of the invention.
S202, message after the encapsulation that the second router reception the first router sends, message after described encapsulation is the message carrying out to the VXLAN message from VTEP obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head.
Illustrating, described the second router is on the path between the first router of DC1 and the third router of DC2, and described the second router receives message after the encapsulation that described third router sends for the described the first router.Message after described encapsulation is identical with the message after the encapsulation in first embodiment of the invention, does not repeats them here.
Alternatively, the IP head that the message after described encapsulation includes also carries the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.If the message after described encapsulation includes the VXLAN head being packaged in described IP head and described ESP head, described VXLAN head includes described VNI, then the message that described first identification information may be used for after identifying described encapsulation carries described VXLAN head.
Illustrating, the message after the encapsulation that described the second router receives can be the message shown in Fig. 3 a or Fig. 3 b, no longer repeats concrete structure at this.
S204, message after described encapsulation for the described the second router obtains described VNI.
Illustrating, message after described encapsulation for the described the second router obtains described VNI and includes: according to the first identification information carrying the IP head of the message after described encapsulation, described the second router can determine that the message after described encapsulation carries described VNI;The VNI that message after obtaining described encapsulation after the IP head of message after described encapsulation for the described the second router carries.
Illustrating, described the second router may utilize the VNI of acquisition, carries out Business Processing, the such as Business Processing such as Qos, load balancing to the message after described encapsulation.VNI is for distinguishing different VXLAN.Described the second router can pass through described VNI, determines the tenant belonging to VXLAN message that the message after described encapsulation includes.Described the second router can be stored with the mapping relations table of VNI and tenant.Described the second router can be carried out load balancing operation to the message after described encapsulation according to the VNI that carries of message after described encapsulation and described mapping relations table, no longer repeat concrete operating process at this.
The embodiment of the present invention provide for processing in the method for VXLAN message, the VNI that the message after encapsulation includes is packaged between IP head and ESP head, and the second router can be after the message after receiving encapsulation, and the VNI carrying the message after described encapsulation is identified.Described the second router can obtain described VNI from the message after described encapsulation.So, described the second router can utilize the described VNI of acquisition to carry out further Business Processing, is favorably improved network operation efficiency.
On the basis of being used for the method processing VXLAN message of second embodiment of the invention offer, another embodiment of the present invention provides the method for processing VXLAN message.In the method that another embodiment of the present invention provides, message after the encapsulation that described the second router receives includes VNI and the UDP head being packaged between IP head and ESP head, or the message after the encapsulation that described the second router receives includes VXLAN head and the UDP head being packaged between IP head and ESP head, described VXLAN head includes described VNI.The method difference that the method that another embodiment of the present invention provides provides with second embodiment of the invention is S204, only illustrates difference below, can be found in the corresponding contents in the method that second embodiment of the invention provides for identical content.
In S202, message after the encapsulation that described the second router receives includes the VXLAN message of IP head, UDP head, VNI, ESP head and encryption.Message after the encapsulation that described the second router receives can be the message shown in Fig. 4 a or Fig. 4 b, no longer repeats concrete structure at this.In this embodiment, the IP head of the message after described encapsulation can carry the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, and described UDP head is the UDP head that VTEP carries to the VXLAN message that the first router sends.The described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.Owing to described VNI would generally carry at VTEP in the VXLAN message that described the first router sends; if the message after described encapsulation includes being packaged in the VXLAN head in described IP head and described ESP head and UDP head, then the message that described second identification information can be used for after identifying described encapsulation carries VXLAN head.
Illustrating, in S204, message after described encapsulation for the described the second router obtains described VNI and includes: the IP head of message after described encapsulation for the described the second router, it is thus achieved that the first identification information that described IP head carries;Described the second router is according to described first identification information, it is thus achieved that the UDP head after what the message after described encapsulation included be positioned at described IP head;The destination slogan that described the second router includes according to described UDP head, determines that the message after described encapsulation carries described VNI;Described VNI is obtained after the UDP head of message after described encapsulation for the described the second router.If the VNI of the message after described encapsulation is carried in VXLAN head, described VXLAN head is packaged between UDP head and the ESP head of described message after encapsulating, then described the second router can obtain described VXLAN head after the UDP head of the message after described encapsulation, obtains described VNI from described VXLAN head.
Third router in DC2 receives the message after the encapsulation of the first router, i.e. message after the encapsulation that the second router forwards, and the message after described encapsulation can be processed by described third router, it is thus achieved that VXLAN message.
Illustrate, if the message after described encapsulation includes the VNI being packaged in IP head and ESP head, then described third router can to described encapsulation after message process, it is thus achieved that VXLAN message includes: described third router can be removed described encapsulation after message include be packaged in IP head and the VNI of ESP head;IP head in the message that described third router obtains after removing VNI is updated, it is thus achieved that described VXLAN message.Described VXLAN message is the message that the VTEP in DC2 is capable of identify that.Wherein, IP head in the message that described third router obtains after removing VNI is updated may include that the total length field of the IP head in the message obtaining after removing VNI, protocol number field and header check and field are updated by described third router, in order to described VXLAN message can be identified and/or processed by the VTEP in DC2.
Illustrate, if the message after described encapsulation includes VNI and the UEP head being packaged in IP head and ESP head, then the message after described encapsulation can be processed by described third router, it is thus achieved that VXLAN message includes: described third router can be removed VNI and the UDP head being packaged in IP head and ESP head that described message after encapsulating includes;IP head in the message that described third router obtains after removing VNI and UDP head is updated, it is thus achieved that described VXLAN message.Described VXLAN message is the message that the VTEP in DC2 is capable of identify that.Wherein, IP head in the message that described third router obtains after removing VNI and UDP head is updated may include that the total length field of the IP head in the message obtaining after removing VNI and UDP head, protocol number field and header check and field are updated by described third router, in order to described VXLAN message can be identified and/or processed by the VTEP in DC2.
The structural representation of the first router that Fig. 7 provides for the embodiment of the present invention.The corresponding the first router of Fig. 7 can perform the method that the corresponding embodiment of Fig. 1 provides.The corresponding the first router of Fig. 7 can be the first router in the corresponding embodiment of Fig. 2.The first router that the embodiment of the present invention provides includes receiving unit the 702nd, processing unit 704 and transmitting element 706.
Described receiving unit 702 is for receiving the VXLAN message that VTEP sends, and described VXLAN message includes VNI.
Described processing unit 704 is for according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head.
Described transmitting element 706 is for the message after the described encapsulation of the second router transmission.
Alternatively, described IP head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.
Alternatively, message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, UDP head included by the described VXLAN message from described VTEP for the described UDP head, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.
In the first router that the embodiment of the present invention provides, processing unit obtains the message after encapsulating according to the VNI in VXLAN message and described VXLAN message, is packaged with described VNI between the IP head that the message after described encapsulation includes and ESP head.Message after the second router sends described encapsulation for the transmitting element, contribute to described the second router and carry out Business Processing further according to the described VNI carrying in the message after described encapsulation, the such as Business Processing such as load balancing, are favorably improved network operation efficiency.
The structural representation of the first router that Fig. 8 provides for another embodiment of the present invention.Described the first router can perform the method that the corresponding embodiment of Fig. 1 provides.Described the first router can be the first router in the corresponding embodiment of Fig. 2.The first router that the embodiment of the present invention provides includes processor the 801st, memory the 802nd, interface 803 and bus 804.Wherein, interface 803 can realize by way of wirelessly or non-wirelessly, and such as interface 803 can be for NIC (English full name: Network Interface Card, english abbreviation: NIC) or other are for realizing the element of communication.Described processor the 801st, described memory the 802nd, described interface 803 can be connected by described bus 804.
Described memory 802 is used for storing program code.Alternatively, described program code can include operating system program and application program.
Executable instruction according to included by the program reading from described memory 802 for the described processor 801, performs following operation.
Described processor 801 passes through described interface 803, receives the VXLAN message that VTEP sends, and described VXLAN message includes VXLAN network identifier VNI;Described processor 801 is according to described VXLAN message, obtain the message after encapsulation, message after described encapsulation is the message carrying out to described VXLAN message obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, described VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;Described processor 801 passes through described interface 803, the message after the second router sends described encapsulation.
Alternatively, described IP head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries described VNI.
Alternatively, message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, UDP head included by the described VXLAN message from described VTEP for the described UDP head, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries described VNI.
In the first router that the embodiment of the present invention provides, processor 801 obtains the message after encapsulating according to the VNI in VXLAN message and described VXLAN message, is packaged with described VNI between the IP head that the message after described encapsulation includes and ESP head.Processor 801 passes through interface 803, message after the second router sends described encapsulation, contribute to described the second router and carry out Business Processing further, the such as Business Processing such as load balancing according to the described VNI carrying in the message after described encapsulation, be favorably improved network operation efficiency.
The structural representation of the second router that Fig. 9 provides for the embodiment of the present invention.The second router shown in Fig. 9 can perform the method that the corresponding embodiment of Fig. 2 provides.The second router shown in Fig. 9 can be the second router in the corresponding embodiment of Fig. 1.The second router that the embodiment of the present invention provides includes receiving unit 902 and processing unit 904.
Described receiving unit 902 is used for the message after receiving the encapsulation that the first router sends.Message after described encapsulation is the message carrying out to the described VXLAN message from VTEP obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head.
Described processing unit 904 obtains described VNI for the message after described encapsulation.
Illustrate, if described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described VNI, then described processing unit 904 is specifically for described first identification information including according to described IP head, determines that the message after described encapsulation includes described VNI;Described processing unit 904 is specifically for obtaining described VNI between described IP head and described ESP head.
Illustrate, if the message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, described UDP head is the UDP head including from the described VXLAN message of described VTEP, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, the message that described second identification information is used for after identifying described encapsulation carries described VNI, then described processing unit 904 is specifically for described first identification information including according to described IP head, obtain the UDP head being packaged between described IP head and described VNI;Described processing unit 904, specifically for described second identification information including according to the UDP head being packaged between described IP head and described VNI, determines that the message after described encapsulation includes described VNI;Described processing unit 904 is specifically for obtaining described VNI between described IP head and described ESP head.
In the second router that the embodiment of the present invention provides, the VNI that the message after encapsulation includes is packaged between IP head and ESP head, and processing unit 904 can be after the message after receiving encapsulation, and the VNI carrying the message after described encapsulation is identified.Described processing unit 904 can obtain described VNI from the message after described encapsulation.So, described the second router can utilize the described VNI of acquisition to carry out further Business Processing, is favorably improved network operation efficiency.
The second router structural representation that Figure 10 provides for another embodiment of the present invention.Described the second router can perform the method that the corresponding embodiment of Fig. 2 provides.Described the second router can be the second router in 1 corresponding embodiment.The second router that the embodiment of the present invention provides includes: processor the 1001st, memory the 1002nd, interface 1003 and bus 1004.Wherein, interface 1003 can realize by way of wirelessly or non-wirelessly, such as NIC or other for realize communication element.Described processor the 1001st, described memory the 1002nd, described interface 1003 is connected by described bus 1004.
Described memory 1002 is used for storing program code.Optionally, program code can include operating system program and application program.
Executable instruction according to included by the program reading from described memory 1002 for the described processor 1001, performs following operation.
Described processor 1001 passes through described interface 1003, receives the message after the encapsulation that the first router sends.Message after described encapsulation is the message carrying out to the described VXLAN message from VTEP obtaining after IPsec-ESP encapsulation, message after described encapsulation includes the described VXLAN message of IP head, VNI, ESP head and encryption, and described VNI is packaged between described IP head and described ESP head;Message after described encapsulation for the described processor 1001 obtains described VNI.
Illustrate, if described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described VNI, then described first identification information that described processor 1001 includes according to described IP head, determines that the message after described encapsulation includes described VNI;Described processor 1001 obtains described VNI between described IP head and described ESP head.
Illustrate, if the message after described encapsulation also includes the UDP head being packaged between described IP head and described VNI, described UDP head is the UDP head including from the described VXLAN message of described VTEP, described IP head includes the first identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, the message that described second identification information is used for after identifying described encapsulation carries described VNI, described first identification information that then described processor 1001 includes according to described IP head, obtain the UDP head being packaged between described IP head and described VNI;Described second identification information that described processor 1001 includes according to the UDP head being packaged between described IP head and described VNI, determines that the message after described encapsulation includes described VNI;Described processor 1001 obtains described VNI between described IP head and described ESP head.
In the second router that the embodiment of the present invention provides, the VNI that the message after encapsulation includes is packaged between IP head and ESP head, and processor 1001 can be after the message after receiving encapsulation, and the VNI carrying the message after described encapsulation is identified.Described processor 1001 can obtain described VNI from the message after described encapsulation.So, described the second router can utilize the described VNI of acquisition to carry out further Business Processing, is favorably improved network operation efficiency.
The system for processing VXLAN message that Figure 11 provides for the embodiment of the present invention.The system that the embodiment of the present invention provides can include the second router of the first router that earlier figures 7 or Fig. 8 corresponding embodiment provides and the offer of Fig. 9 or Figure 10 corresponding embodiment, no longer repeats the first router and the second router at this.
It will be recognized by those of ordinary skill in the art that the possible implementation of various aspects of the invention or various aspects can be embodied as system, method or computer program.Therefore, the possible implementation of each aspect of the present invention or various aspects can use complete hardware embodiment, complete software implementation (including firmware, resident software etc.), or the form of the embodiment of integration software and hardware aspect, collectively referred to herein as " circuit ", " module " or " system ".Additionally, the possible implementation of each aspect of the present invention or various aspects can use the form of computer program, computer program refers to the computer readable program code being stored in computer-readable medium.
Computer-readable medium can be computer-readable signal media or computer-readable recording medium.nullComputer-readable recording medium is including but not limited to electronics、Magnetic、Optics、Electromagnetism、Infrared or semiconductor system、Equipment or device,Or it is aforesaid arbitrarily appropriately combined,Such as random access memory (English full name: random access memory,English abbreviation: RAM)、Read-only storage (English full name: read-only memory,English abbreviation: ROM)、Erasable Programmable Read Only Memory EPROM ((English full name: erasable programmable read only memory,English abbreviation: EPROM) or flash memory)、Optical fiber、Portable read-only storage (English full name: compact disc read-only memory,English abbreviation: CD-ROM).
Processor in computer reads the computer readable program code being stored in computer-readable medium so that processor is able to carry out function action specified in the combination of each step or each step in flow charts;Generate the device being implemented in function action specified in each piece of block diagram or the combination of each piece.
Computer readable program code can perform completely on the local computer of user, part performs on the local computer of user, as single software kit, part on the local computer of user and part on the remote computer, or perform on remote computer or server completely.It is also noted that in some alternate embodiment, in each step or block diagram, each piece of function being indicated may not be occurred by the order indicating in figure in flow charts.For example, depending on involved function, two illustrating in succession step or two blocks actually may be executed substantially concurrently, or these blocks sometimes may be performed with reverse order.
Obviously, those skilled in the art the present invention can be carried out various change and modification without departing from the spirit and scope of the present invention.So, if these modifications of the present invention and modification belong to the claims in the present invention and equivalent technologies thereof, then the present invention is also intended to comprise these changes and modification.
Claims (13)
1. the method being used for processing virtual expansible LAN VXLAN message, it is characterised in that
Described method includes:
The first router receives the VXLAN message that virtual channel end points VTEP sends, described VXLAN
Message includes VXLAN network identifier VNI;
Described the first router is according to described VXLAN message, it is thus achieved that the message after encapsulation, described encapsulation
After message be that internet protocol security-ESP is carried out to described VXLAN message
The message obtaining after IPsec-ESP encapsulation, the message after described encapsulation includes Internet protocol IP head, institute
State the described VXLAN message of VNI, encapsulating security payload (esp) ESP head and encryption, described VNI
It is packaged between described IP head and described ESP head;
Message after the second router sends described encapsulation for the described the first router.
2. method according to claim 1, it is characterised in that described IP head includes the first mark
Information, the message that described first identification information is used for after identifying described encapsulation carries described VNI.
3. method according to claim 1, it is characterised in that the message after described encapsulation also wraps
Include the user datagram protocol UDP head being packaged between described IP head and described VNI, described UDP
UDP head included by the described VXLAN message from described VTEP for the head;
Described IP head includes the first identification information, after described first identification information is used for identifying described encapsulation
Message carry described UDP head, the described UDP being packaged between described IP head and described VNI
Head includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries
Described VNI.
4. the method being used for processing virtual expansible LAN VXLAN message, it is characterised in that
Described method includes:
Message after the encapsulation that the second router reception the first router sends, the message after described encapsulation is
Internet protocol security-encapsulation safety is carried out to the VXLAN message from virtual channel end points VTEP
Load IPsec-ESP encapsulation after obtain message, the message after described encapsulation include Internet protocol IP head,
The described VXLAN of VXLAN network identifier VNI, encapsulating security payload (esp) ESP head and encryption
Message, described VNI is packaged between described IP head and described ESP head;
Message after described encapsulation for the described the second router obtains described VNI.
5. method according to claim 4, it is characterised in that described IP head includes the first mark
Information, the message that described first identification information is used for after identifying described encapsulation carries described VNI, described
Message after described encapsulation for the second router obtains described VNI and includes:
Described first identification information that described the second router includes according to described IP head, determines described envelope
Message after dress includes described VNI;
Described the second router obtains described VNI between described IP head and described ESP head.
6. method according to claim 4, it is characterised in that the message after described encapsulation also wraps
Include the user datagram protocol UDP head being packaged between described IP head and described VNI, described UDP
Head is the UDP head including from the described VXLAN message of described VTEP, and described IP head includes the
One identification information, the message that described first identification information is used for after identifying described encapsulation carries described UDP
Head, the described UDP head being packaged between described IP head and described VNI includes the second identification information, institute
State the second identification information for identify described encapsulation after message carry described VNI;
Message after described encapsulation for the described the second router obtains described VNI and includes:
Described first identification information that described the second router includes according to described IP head, it is thus achieved that be packaged in
UDP head between described IP head and described VNI;
Described the second router includes according to the UDP head being packaged between described IP head and described VNI
Described second identification information, determines that the message after described encapsulation includes described VNI;
Described the second router obtains described VNI between described IP head and described ESP head.
7. a first router, it is characterised in that described the first router includes:
Receiving unit, for receiving the virtual expansible LAN that virtual channel end points VTEP sends
VXLAN message, described VXLAN message includes VXLAN network identifier VNI;
Processing unit, for according to described VXLAN message, it is thus achieved that the message after encapsulation, described encapsulation
After message be that internet protocol security-ESP is carried out to described VXLAN message
The message obtaining after IPsec-ESP encapsulation, the message after described encapsulation includes Internet protocol IP head, institute
State the described VXLAN message of VNI, encapsulating security payload (esp) ESP head and encryption, described VNI
It is packaged between described IP head and described ESP head;
Transmitting element, for the message after the described encapsulation of the second router transmission.
8. the first router according to claim 7, it is characterised in that described IP head includes
One identification information, described first identification information is used for the message after identifying described encapsulation and carries described
VNI。
9. the first router according to claim 7, it is characterised in that the report after described encapsulation
Literary composition also includes the user datagram protocol UDP head being packaged between described IP head and described VNI, described
UDP head included by the described VXLAN message from described VTEP for the UDP head;
Described IP head includes the first identification information, after described first identification information is used for identifying described encapsulation
Message carry described UDP head, the described UDP being packaged between described IP head and described VNI
Head includes the second identification information, and the message that described second identification information is used for after identifying described encapsulation carries
Described VNI.
10. a second router, it is characterised in that described the second router includes:
Receiving unit, is used for the message after receiving the encapsulation that the first router sends, the report after described encapsulation
Literary composition is to carry out internet protocol security to the described VXLAN message from virtual channel end points VTEP
The message obtaining after-ESP IPsec-ESP encapsulation, the message after described encapsulation includes internet
Protocol IP head, VXLAN network identifier VNI, encapsulating security payload (esp) ESP head and encryption
Described VXLAN message, described VNI is packaged between described IP head and described ESP head;
Processing unit, obtains described VNI for the message after described encapsulation.
11. the second router according to claim 10, it is characterised in that described IP head includes
First identification information, described first identification information is used for the message after identifying described encapsulation and carries described
VNI;
Described processing unit, specifically for described first identification information including according to described IP head, determines
Message after described encapsulation includes described VNI;
Described processing unit is specifically for obtaining described VNI between described IP head and described ESP head.
12. the second router according to claim 10, it is characterised in that after described encapsulation
Message also includes the user datagram protocol UDP head being packaged between described IP head and described VNI, institute
State UDP head for the UDP head including from the described VXLAN message of described VTEP, described IP
Head includes the first identification information, and the message that described first identification information is used for after identifying described encapsulation carries
Described UDP head, the described UDP head being packaged between described IP head and described VNI includes the second mark
Knowledge information, the message that described second identification information is used for after identifying described encapsulation carries described VNI;
Described processing unit is specifically for described first identification information including according to described IP head, it is thus achieved that
It is packaged in the UDP head between described IP head and described VNI;
Described processing unit is packaged in the UDP head between described IP head and described VNI specifically for basis
Including described second identification information, determine described encapsulation after message include described VNI;
Described processing unit is specifically for obtaining described VNI between described IP head and described ESP head.
13. 1 kinds for processing the system of virtual expansible LAN VXLAN message, it is characterised in that
Described system includes the first router and claim 10 to 12 described in any one of claim 7 to 9
The second router described in any one.
Priority Applications (2)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510127449.9A CN106161225B (en) | 2015-03-23 | 2015-03-23 | For handling the method, apparatus and system of VXLAN message |
PCT/CN2015/097523 WO2016150205A1 (en) | 2015-03-23 | 2015-12-15 | Method, device and system for processing vxlan message |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510127449.9A CN106161225B (en) | 2015-03-23 | 2015-03-23 | For handling the method, apparatus and system of VXLAN message |
Publications (2)
Publication Number | Publication Date |
---|---|
CN106161225A true CN106161225A (en) | 2016-11-23 |
CN106161225B CN106161225B (en) | 2019-05-28 |
Family
ID=56977035
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201510127449.9A Active CN106161225B (en) | 2015-03-23 | 2015-03-23 | For handling the method, apparatus and system of VXLAN message |
Country Status (2)
Country | Link |
---|---|
CN (1) | CN106161225B (en) |
WO (1) | WO2016150205A1 (en) |
Cited By (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN106878278A (en) * | 2017-01-09 | 2017-06-20 | 新华三技术有限公司 | A kind of message processing method and device |
CN108111471A (en) * | 2016-11-25 | 2018-06-01 | 中国电信股份有限公司 | Processing method, system and the VTEP of message |
CN109412922A (en) * | 2017-08-15 | 2019-03-01 | 华为技术有限公司 | A kind of method of transmitting message, forwarding device, controller and system |
CN109525477A (en) * | 2018-09-30 | 2019-03-26 | 华为技术有限公司 | Communication means, device and system in data center between virtual machine |
CN115766063A (en) * | 2022-09-26 | 2023-03-07 | 中国电子科技集团公司第三十研究所 | Data transmission method, device, equipment and medium |
WO2023125993A1 (en) * | 2021-12-31 | 2023-07-06 | 苏州盛科通信股份有限公司 | Tunnel encryption, forwarding and decryption methods and apparatuses |
CN116800486A (en) * | 2023-06-13 | 2023-09-22 | 中科驭数(北京)科技有限公司 | Cloud network communication method and system |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN110912859B (en) | 2018-09-17 | 2021-12-14 | 华为技术有限公司 | Method for sending message, method for receiving message and network equipment |
CN113794616B (en) * | 2021-08-31 | 2023-04-18 | 新华三信息安全技术有限公司 | Message forwarding method and device |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN103095546A (en) * | 2013-01-28 | 2013-05-08 | 华为技术有限公司 | Method, device and data center network for processing messages |
WO2014028094A1 (en) * | 2012-08-14 | 2014-02-20 | Vmware, Inc. | Method and system for virtual and physical network integration |
CN104104747A (en) * | 2014-07-28 | 2014-10-15 | 杭州华三通信技术有限公司 | Method and device for message transmission |
CN104335532A (en) * | 2012-06-04 | 2015-02-04 | 瑞典爱立信有限公司 | Routing VLAN tagged packets to far end addresses of virtual forwarding instances using separate administrations |
-
2015
- 2015-03-23 CN CN201510127449.9A patent/CN106161225B/en active Active
- 2015-12-15 WO PCT/CN2015/097523 patent/WO2016150205A1/en active Application Filing
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN104335532A (en) * | 2012-06-04 | 2015-02-04 | 瑞典爱立信有限公司 | Routing VLAN tagged packets to far end addresses of virtual forwarding instances using separate administrations |
WO2014028094A1 (en) * | 2012-08-14 | 2014-02-20 | Vmware, Inc. | Method and system for virtual and physical network integration |
CN103095546A (en) * | 2013-01-28 | 2013-05-08 | 华为技术有限公司 | Method, device and data center network for processing messages |
CN104104747A (en) * | 2014-07-28 | 2014-10-15 | 杭州华三通信技术有限公司 | Method and device for message transmission |
Cited By (12)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108111471A (en) * | 2016-11-25 | 2018-06-01 | 中国电信股份有限公司 | Processing method, system and the VTEP of message |
CN106878278A (en) * | 2017-01-09 | 2017-06-20 | 新华三技术有限公司 | A kind of message processing method and device |
CN106878278B (en) * | 2017-01-09 | 2021-06-22 | 新华三技术有限公司 | Message processing method and device |
CN109412922A (en) * | 2017-08-15 | 2019-03-01 | 华为技术有限公司 | A kind of method of transmitting message, forwarding device, controller and system |
CN109412922B (en) * | 2017-08-15 | 2021-07-20 | 华为技术有限公司 | Method, forwarding device, controller and system for transmitting message |
CN109525477A (en) * | 2018-09-30 | 2019-03-26 | 华为技术有限公司 | Communication means, device and system in data center between virtual machine |
WO2020063528A1 (en) * | 2018-09-30 | 2020-04-02 | 华为技术有限公司 | Method, apparatus and system for communication between virtual machines in data center |
WO2023125993A1 (en) * | 2021-12-31 | 2023-07-06 | 苏州盛科通信股份有限公司 | Tunnel encryption, forwarding and decryption methods and apparatuses |
CN115766063A (en) * | 2022-09-26 | 2023-03-07 | 中国电子科技集团公司第三十研究所 | Data transmission method, device, equipment and medium |
CN115766063B (en) * | 2022-09-26 | 2024-09-27 | 中国电子科技集团公司第三十研究所 | Data transmission method, device, equipment and medium |
CN116800486A (en) * | 2023-06-13 | 2023-09-22 | 中科驭数(北京)科技有限公司 | Cloud network communication method and system |
CN116800486B (en) * | 2023-06-13 | 2024-06-07 | 中科驭数(北京)科技有限公司 | Cloud network communication method and system |
Also Published As
Publication number | Publication date |
---|---|
WO2016150205A1 (en) | 2016-09-29 |
CN106161225B (en) | 2019-05-28 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN106161225A (en) | For processing method, the Apparatus and system of VXLAN message | |
US10547692B2 (en) | Adding cloud service provider, cloud service, and cloud tenant awareness to network service chains | |
CN107547508B (en) | Message sending and receiving method, device and network equipment | |
CN107682370B (en) | Method and system for creating protocol headers for embedded layer two packets | |
CN105340217B (en) | A kind of message processing method, apparatus and system | |
CN102136989B (en) | Message transmission method, system and equipment | |
CN116232988A (en) | Service operation linking method, device, system, and readable storage medium | |
JP5871063B2 (en) | Multi-tenant system, switch, controller, and packet transfer method | |
CN105591982A (en) | Message transmission method and device | |
CN107046506B (en) | Message processing method, flow classifier and service function example | |
WO2016086670A1 (en) | Vxlan packet transmission method and apparatus, and storage medium | |
CN104993993B (en) | A kind of message processing method, equipment and system | |
CN106559302A (en) | Single tunnel method for building up, device and system | |
CN111917625B (en) | Method, device and nodes for realizing difference from VXLAN service to SR domain | |
CN106878181A (en) | A kind of message transmitting method and device | |
CN108390812B (en) | Message forwarding method and device | |
US9762486B2 (en) | Method and system for using extension headers to support protocol stack migration | |
Herbert et al. | Generic UDP encapsulation | |
US20150139232A1 (en) | Virtual Machine Data Packet Encapsulation and Decapsulation | |
CN112217685A (en) | Tunnel detection method, terminal device, system, computer device and storage medium | |
WO2014190843A1 (en) | Input parameter generation method and device | |
CN104348821B (en) | Manage the method, apparatus and system of IPv4/IPv6 business | |
EP3389231A1 (en) | Cluster and forwarding method | |
CN107231309A (en) | Obtain method, controller and the purpose switching node of SDN the whole network views | |
CN111447131B (en) | Message de-encapsulation method and device and message encapsulation method and device |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |