CN106254569A - A kind of IP distribution method based on SDN - Google Patents

A kind of IP distribution method based on SDN Download PDF

Info

Publication number
CN106254569A
CN106254569A CN201610607488.3A CN201610607488A CN106254569A CN 106254569 A CN106254569 A CN 106254569A CN 201610607488 A CN201610607488 A CN 201610607488A CN 106254569 A CN106254569 A CN 106254569A
Authority
CN
China
Prior art keywords
sdn
dhcp
dynamic host
protocol server
host configuration
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610607488.3A
Other languages
Chinese (zh)
Inventor
翟跃
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shanghai Feixun Data Communication Technology Co Ltd
Original Assignee
Shanghai Feixun Data Communication Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shanghai Feixun Data Communication Technology Co Ltd filed Critical Shanghai Feixun Data Communication Technology Co Ltd
Priority to CN201610607488.3A priority Critical patent/CN106254569A/en
Publication of CN106254569A publication Critical patent/CN106254569A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/50Address allocation
    • H04L61/5007Internet protocol [IP] addresses
    • H04L61/5014Internet protocol [IP] addresses using dynamic host configuration protocol [DHCP] or bootstrap protocol [BOOTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/1466Active attacks involving interception, injection, modification, spoofing of data unit addresses, e.g. hijacking, packet injection or TCP sequence number attacks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/1491Countermeasures against malicious traffic using deception as countermeasure, e.g. honeypots, honeynets, decoys or entrapment

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention discloses a kind of IP distribution method based on SDN, the method is when described Dynamic Host Configuration Protocol server receives the IP distribution request from described SDN, a return information is sent to described SDN switch, described return information is forwarded to described SDN controller by described SDN switch, described SDN controller is according to this return information, the legitimacy of described Dynamic Host Configuration Protocol server is verified, after being verified, described SDN controller notice SDN switch forwards described return information, such that it is able to automatically identify in SDN whether have pseudo-Dynamic Host Configuration Protocol server.

Description

A kind of IP distribution method based on SDN
Technical field
The present invention relates to SDN technical field, particularly relate to a kind of IP distribution method based on SDN.
Background technology
If network has the Dynamic Host Configuration Protocol server privately arranged, when client terminal application IP address, will be with broadcast packet Form send DHCP Discover message, in network, all of Dynamic Host Configuration Protocol server all can provide response, sends DHCP Offer Message.Client terminal can only process one of them DHCP Offer message, processes the DHCP Offer message received at first.If The DHCP Offer message received is that the Dynamic Host Configuration Protocol server privately arranged sends, and may result in client and obtains the IP ground of mistake Location.This Dynamic Host Configuration Protocol server set up illegally is referred to as pseudo-Dynamic Host Configuration Protocol server.
The pseudo-Dynamic Host Configuration Protocol server detection technique of legacy network is to configure trusted port and non-on forward node in a network The Dynamic Host Configuration Protocol server of trusted port, only trusted port can provide DHCP service to network.For non-trusted port, up Dynamic Host Configuration Protocol server message will be intercepted, make client will not obtain IP by the Dynamic Host Configuration Protocol server on non-trusted port, to ensure The IP of client is distribution on the legal Dynamic Host Configuration Protocol server from the trusted port specified.Traditional pseudo-Dynamic Host Configuration Protocol server inspection Survey technology is local, and needing the port configuring every switch is trusted port or non-trusted port, therefore configures work Complicated and loaded down with trivial details, and whole DHCP pseudo server detection technique is based on switch ports themselves, and Control granularity is the thickest.
SDN (Software Defined Network, software defined network) is a kind of emerging network based on software Framework and technology, its core technology is OpenFlow technology.Core technology OpenFlow of SDN is by by network equipment key-course Separating with data Layer, SDN controller can be to whole real-time performance centralized Control.But in the prior art of SDN, still do not have There is scheme can realize the detection method of pseudo-Dynamic Host Configuration Protocol server in network.
Therefore, how in SDN, to detect pseudo-Dynamic Host Configuration Protocol server simply and effectively, be that those skilled in the art of the present technique are general All over the problem paid close attention to.
Summary of the invention
In consideration of it, it is an object of the invention to provide a kind of IP distribution method based on SDN, in order to automatically to SDN In Dynamic Host Configuration Protocol server verify.
According to foregoing invention purpose, the present invention proposes a kind of IP distribution method based on SDN, described SDN bag Include customer side and network side, described network side include some SDN switch, at least one SDN controller and at least one Dynamic Host Configuration Protocol server, it is characterised in that
When described Dynamic Host Configuration Protocol server receives the IP distribution request from described SDN, send to described SDN switch One return information, described return information is forwarded to described SDN controller by described SDN switch, and described SDN controller is according to being somebody's turn to do Return information, verifies the legitimacy of described Dynamic Host Configuration Protocol server, after being verified, and the notice SDN exchange of described SDN controller Machine forwards described return information.
Preferably, the return information that described DHCP sends is based on the DHCP offer message under DHCP protocol.
Preferably, described proof procedure specifically includes:
MAC Address and the IP address of all legal Dynamic Host Configuration Protocol server in this SDN it is configured with in SDN controller;
Described SDN controller resolves the described DHCP offer message that described SDN switch sends, and obtains this DHCP Source MAC in offer message and source IP address;
Described SDN controller according to described source MAC and source IP address, and with the conjunction of configuration in described SDN controller MAC Address and the IP address of method Dynamic Host Configuration Protocol server are mated;
If the match is successful, then decision verification passes through;Otherwise, it is determined that checking is not passed through.
Preferably, obstructed out-of-date in checking, described SDN controller notifies that described SDN switch abandons described return information.
Preferably, before described return information is forwarded to described SDN controller by described SDN switch, exist according to SDN agreement The forwarding rule of described DHCP offer message inquired about by the local stream table of this SDN switch;
When stream table successful inquiring, then according to the configuration in stream table, this DHCP message is performed corresponding action;
When stream table inquiry is unsuccessful, then described DHCP offer message is transmitted to described SDN controller.
Preferably, after described DHCP offer message successfully forwards in described SDN, described Dynamic Host Configuration Protocol server A DHCP ACK message is replied always according to the DHCP Request message from described SDN.
Preferably, DHCP ACK message is forwarded to described SDN controller, described SDN controller root by described SDN switch According to this DHCP ACK message, verifying the legitimacy of described Dynamic Host Configuration Protocol server, after being verified, described SDN controller leads to Know that SDN switch forwards DHCP ACK message.
Preferably, when checking is obstructed out-of-date, and described SDN controller produces an alarm notification network manager.
Compared with prior art, a kind of IP distribution method based on SDN of the present invention, have the advantages that SDN Switch sends DHCP message and verifies this DHCP message to SDN controller, SDN controller, can be automatic by checking Identify the existence whether having pseudo-Dynamic Host Configuration Protocol server in network, and notify network manager in alarm mode;This verification method letter Single and efficient, it is not necessary to complicated configuration.
Accompanying drawing explanation
Fig. 1 is the verification method flow chart of one specific embodiment of the present invention;
Fig. 2 is the SDN system structure schematic diagram of one embodiment of the invention;
Detailed description of the invention
Mention as in background technology how in SDN, to detect pseudo-Dynamic Host Configuration Protocol server simply and effectively, be this skill Art skilled person's question of common concern.
Therefore the present invention receives the return information from the Dynamic Host Configuration Protocol server in SDN by SDN switch, and will This return information is forwarded to SDN controller, and the legitimacy of this Dynamic Host Configuration Protocol server, according to this return information, is carried out by SDN controller Checking, such that it is able to whether with the presence of pseudo-Dynamic Host Configuration Protocol server in simple efficient detection SDN.
Below by way of specific instantiation accompanying drawings embodiments of the present invention, those skilled in the art can Further advantage and effect of the present invention is understood easily by content disclosed in the present specification.The present invention also can be different by other Instantiation implemented or applied, the every details in this specification also can based on different viewpoints and application, without departing substantially from Various modification and change is carried out under the spirit of the present invention.
In implementation process, SDN includes customer side and network side, and this network side includes some SDN switch, at least One SDN controller and at least one Dynamic Host Configuration Protocol server, when in SDN, client terminal broadcasts an IP distribution request, should When Dynamic Host Configuration Protocol server in network receives from IP distribution request, then the SDN switch in network sends a return information. This return information is forwarded to SDN controller by SDN switch, and SDN controller is according to this return information, to this Dynamic Host Configuration Protocol server Legitimacy is verified, after being verified, SDN controller notice SDN switch forwards this return information.
In one embodiment, the return information that DHCP sends is based on the DHCP offer message under DHCP protocol. Fig. 1 is the verification method flow chart of one specific embodiment of the present invention.As it is shown in figure 1, this authenticated one-tenth specifically includes:
Step S1: be configured with MAC Address and the IP of all legal Dynamic Host Configuration Protocol server in this SDN in SDN controller Address;
Step S2:SDN controller resolves the DHCP offer message that SDN switch sends, and obtains this DHCPoffer message In source MAC and source IP address;
Step S3:SDN controller according to source MAC and source IP address, and with the legal DHCP of configuration in SDN controller MAC Address and the IP address of server are mated;
Step S4: if the match is successful, then decision verification passes through;Otherwise, it is determined that checking is not passed through.
Also included before step S2:
Inquire about the forwarding rule of this DHCP offer message at the local stream table of this SDN switch according to SDN agreement;
When stream table successful inquiring, then according to the configuration in stream table, this DHCP message is performed corresponding action;
When stream table inquiry is unsuccessful, then this DHCP offer message is transmitted to described SDN controller.
In this specific embodiment, in SDN, user configures at least one Dynamic Host Configuration Protocol server as required, for dividing Join IP address.In SDN controller, configure MAC Address and the IP address of this legal Dynamic Host Configuration Protocol server.Such as, at SDN controller In be provided with an allocation list, the configuration item of this table includes MAC Address and the IP address of legal Dynamic Host Configuration Protocol server, wherein configuration item such as table Shown in 1.Table 1 is the configuration item of legal Dynamic Host Configuration Protocol server in SDN controller.
Table 1 is the configuration item of SDN controller.
Configuration item Describe
Dynamic Host Configuration Protocol server authentication function Open and close Dynamic Host Configuration Protocol server authentication function
Dhcp server ip address Specify legal dhcp server ip address
Dynamic Host Configuration Protocol server MAC Address Specify legal Dynamic Host Configuration Protocol server MAC Address
For SDN, if need to detect, the Dynamic Host Configuration Protocol server in network depending on particular situation Depending on, whether such as network management personnel, when having pseudo-Dynamic Host Configuration Protocol server in needs monitoring network, it is possible to by SDN control Dynamic Host Configuration Protocol server authentication function opened by device.
In this specific embodiment, when client terminal application IP address in SDN, will be with the form of broadcast packet Sending DHCP Discover message, the Dynamic Host Configuration Protocol server in network all can provide response, sends DHCP Offer message, and The field of DHCP Offer message there is Dynamic Host Configuration Protocol server be supplied to the IP address of client terminal.SDN switch receives DHCP clothes After the DHCP Offer message that business device sends, in the stream table of this locality, target MAC (Media Access Control) address and purpose IP address according to message are carried out Inquiry, if having, then processes this DHCP Offer message according to action command in stream table accordingly, if not having, then will DHCP Offer message sends to SDN controller.
In this specific embodiment, SDN controller receives the DHCP Offer message that SDN switch sends, and obtains DHCP Source MAC and source IP address in message;Then according to this source MAC and source IP address, configuration in coupling SDN controller The MAC Address of legal Dynamic Host Configuration Protocol server and IP address.If mating unsuccessful, then SDN controller configure in the field of stream table right The action command of this DHCP Offer message is " abandoning ", and issues stream table entering to this DHCP Offer message forwarding path Mouth SDN switch.After entrance SDN switch receives stream table, according to the action command in this stream table, this DHCP Offer is reported Literary composition abandons.SDN controller produces an alarm notification network manager simultaneously, to illustrate that this Dynamic Host Configuration Protocol server is pseudo-DHCP service Device.If the match is successful, then this DHCP Offer message is that Dynamic Host Configuration Protocol server legal in network sends, then SDN controller exists The action command configuring this DHCP Offer message in the field of stream table is " forwarding ", and issues stream table to DHCP Offer message Forward-path on SDN switch.This DHCP Offer message is forwarded to by SDN switch according to the forward-path in stream table Client terminal.
In this specific embodiment, after client terminal receives this DHCP Offer message and correspondingly process, process After completing, client sends the message of the DHCP Request of a broadcast eventually in SDN, at DHCP Request message Field in have Dynamic Host Configuration Protocol server that client terminal chooses IP address and the IP address that oneself needs.DHCP in SDN After server receives this message, can judge that the IP address in DHCP Request message is the most identical with the IP address of oneself, If differing, then Dynamic Host Configuration Protocol server does not processes;If identical, then Dynamic Host Configuration Protocol server sends DHCP ACK message in network SDN switch, and in the field of message increase IP address rental period information.After SDN switch receives DHCP ACK message, Similarly make the proof procedure the same with DHCP Offer message.If after being verified, SDN switch is according to turning in stream table Send out path, this DHCP ACK message is forwarded to client terminal.After client terminal receives this DHCP ACK message, obtain DHCP The IP address of server-assignment.
To sum up, the present invention receives the return information from the Dynamic Host Configuration Protocol server in SDN by SDN switch, and This return information is forwarded to SDN controller, and the legitimacy of this Dynamic Host Configuration Protocol server, according to this return information, is entered by SDN controller Row checking, thus whether centralized detecting network exists in SDN controller pseudo-Dynamic Host Configuration Protocol server, at the SDN of user side inlet Switch has stopped the access of pseudo-Dynamic Host Configuration Protocol server, and whole implementation method is simple and efficient.
Below, the SDN system with function of the present invention will be described in detail.
Refer to the SDN system structure schematic diagram that Fig. 2, Fig. 2 are one embodiment of the invention.As in figure 2 it is shown, SDN Network includes some SDN switch and SDN controller and user configured at least one Dynamic Host Configuration Protocol server, some SDN switch Constitute data each node in network transmits.When in SDN, client terminal broadcasts an IP distribution request, SDN net When Dynamic Host Configuration Protocol server in network receives from IP distribution request, then the SDN switch in SDN sends a reply letter Breath.This return information is forwarded to SDN controller by SDN switch, and SDN controller is according to this return information, to this DHCP service The legitimacy of device is verified, after being verified, SDN controller notice SDN switch forwards this return information.If checking does not has Passing through, SDN controller notice SDN switch loses this return information.
In sum, a kind of IP distribution method based on SDN of the present invention, based on SDN, can be simple and efficient Pseudo-Dynamic Host Configuration Protocol server in detection network, need not complicated loaded down with trivial details configuration.
Above-described embodiment all can be repaiied by any those skilled in the art under the spirit and the scope of the present invention Decorations and change.Therefore, the scope of the present invention, should be as listed by claims.

Claims (9)

1. an IP distribution method based on SDN, described SDN includes customer side and network side, described network side bag Include some SDN switch, at least one SDN controller and at least one Dynamic Host Configuration Protocol server, it is characterised in that
When described Dynamic Host Configuration Protocol server receives the IP distribution request from described SDN, send one time to described SDN switch Complex information, described return information is forwarded to described SDN controller by described SDN switch, and described SDN controller is according to this reply Information, verifies the legitimacy of described Dynamic Host Configuration Protocol server, and after being verified, described SDN controller notice SDN switch turns Send out return information described.
A kind of IP distribution method based on SDN, it is characterised in that described DHCP sends Return information is based on the DHCP offer message under DHCP protocol.
A kind of IP distribution method based on SDN, it is characterised in that: described proof procedure has Body includes:
MAC Address and the IP address of all legal Dynamic Host Configuration Protocol server in this SDN it is configured with in SDN controller;
Described SDN controller resolves the described DHCP offer message that described SDN switch sends, and obtains this DHCP offer report Source MAC in literary composition and source IP address;
Described SDN controller according to described source MAC and source IP address, and with configuration legal in described SDN controller MAC Address and the IP address of Dynamic Host Configuration Protocol server are mated;
If the match is successful, then decision verification passes through;Otherwise, it is determined that checking is not passed through.
4. a kind of based on SDN the IP distribution method as described in claim 1 or 3, it is characterised in that do not pass through in checking Time, described SDN controller notifies that described SDN switch abandons described return information.
A kind of IP distribution method based on SDN, it is characterised in that described SDN exchanges Before described return information is forwarded to described SDN controller by machine, inquire about at the local stream table of this SDN switch according to SDN agreement The forwarding rule of described DHCP offer message;
When stream table successful inquiring, then according to the configuration in stream table, this DHCP message is performed corresponding action;
When stream table inquiry is unsuccessful, then described DHCP offer message is transmitted to described SDN controller.
A kind of IP distribution method based on SDN, it is characterised in that as described DHCP After offer message successfully forwards in described SDN, described Dynamic Host Configuration Protocol server is always according to from described SDN DHCP Request message replys a DHCP ACK message.
A kind of IP distribution method based on SDN, it is characterised in that described SDN switch will DHCP ACK message is forwarded to described SDN controller, and described DHCP, according to this DHCP ACK message, is taken by described SDN controller The legitimacy of business device is verified, after being verified, described SDN controller notice SDN switch forwards DHCP ACK message.
A kind of IP distribution method based on SDN, it is characterised in that when checking is obstructed out-of-date, Described SDN controller produces an alarm notification network manager.
A kind of IP distribution method based on SDN, it is characterised in that also wrap before described checking Include the function opening Dynamic Host Configuration Protocol server legitimate verification in SDN controller.
CN201610607488.3A 2016-07-28 2016-07-28 A kind of IP distribution method based on SDN Pending CN106254569A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610607488.3A CN106254569A (en) 2016-07-28 2016-07-28 A kind of IP distribution method based on SDN

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610607488.3A CN106254569A (en) 2016-07-28 2016-07-28 A kind of IP distribution method based on SDN

Publications (1)

Publication Number Publication Date
CN106254569A true CN106254569A (en) 2016-12-21

Family

ID=57604126

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610607488.3A Pending CN106254569A (en) 2016-07-28 2016-07-28 A kind of IP distribution method based on SDN

Country Status (1)

Country Link
CN (1) CN106254569A (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107046585A (en) * 2017-03-30 2017-08-15 百富计算机技术(深圳)有限公司 Dynamic Host Configuration Protocol server system of selection and device
CN107613044A (en) * 2017-10-26 2018-01-19 郑州云海信息技术有限公司 The method and apparatus of virtual machine IP address is updated in a kind of SDN

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20030054979A (en) * 2001-12-26 2003-07-02 엘지전자 주식회사 Dynamic ip address assignment method in wireless packet service network
CN1466341A (en) * 2002-06-22 2004-01-07 ��Ϊ�������޹�˾ Method for preventing IP address deceit in dynamic address distribution
CN101321102A (en) * 2007-06-07 2008-12-10 杭州华三通信技术有限公司 Detection method and access equipment of DHCP server
CN102438028A (en) * 2012-01-19 2012-05-02 神州数码网络(北京)有限公司 Method, device and system for preventing fraud of dynamic host configuration protocol (DHCP) server
CN103973828A (en) * 2013-02-01 2014-08-06 华为技术有限公司 Method and device for acquiring IP (internet protocol) addresses for DHCP (dynamic host configuration protocol) clients
CN105430113A (en) * 2015-11-03 2016-03-23 上海斐讯数据通信技术有限公司 SDN APR message processing method and device, SDN controller and SDN switch

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR20030054979A (en) * 2001-12-26 2003-07-02 엘지전자 주식회사 Dynamic ip address assignment method in wireless packet service network
CN1466341A (en) * 2002-06-22 2004-01-07 ��Ϊ�������޹�˾ Method for preventing IP address deceit in dynamic address distribution
CN101321102A (en) * 2007-06-07 2008-12-10 杭州华三通信技术有限公司 Detection method and access equipment of DHCP server
CN102438028A (en) * 2012-01-19 2012-05-02 神州数码网络(北京)有限公司 Method, device and system for preventing fraud of dynamic host configuration protocol (DHCP) server
CN103973828A (en) * 2013-02-01 2014-08-06 华为技术有限公司 Method and device for acquiring IP (internet protocol) addresses for DHCP (dynamic host configuration protocol) clients
CN105430113A (en) * 2015-11-03 2016-03-23 上海斐讯数据通信技术有限公司 SDN APR message processing method and device, SDN controller and SDN switch

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107046585A (en) * 2017-03-30 2017-08-15 百富计算机技术(深圳)有限公司 Dynamic Host Configuration Protocol server system of selection and device
CN107613044A (en) * 2017-10-26 2018-01-19 郑州云海信息技术有限公司 The method and apparatus of virtual machine IP address is updated in a kind of SDN

Similar Documents

Publication Publication Date Title
CN101370019B (en) Method and switchboard for preventing packet cheating attack of address analysis protocol
US8875233B2 (en) Isolation VLAN for layer two access networks
US7272846B2 (en) System and method for detecting and reporting cable modems with duplicate media access control addresses
US7895665B2 (en) System and method for detecting and reporting cable network devices with duplicate media access control addresses
US7596614B2 (en) Network including snooping
US8200798B2 (en) Address security in a routed access network
CN104113443A (en) Network equipment detection method, device and cloud detection system
CN102263774B (en) Method and device for processing source role information
US8260941B2 (en) System and method for detecting and reporting cable modems with duplicate media access control addresses
CN101895587B (en) Prevent the methods, devices and systems of users from modifying IP addresses privately
CN103874069B (en) A kind of wireless terminal MAC authentication devices and method
WO2016082588A1 (en) Link connectivity checking method and apparatus
US20080028437A1 (en) Early authentication in cable modem initialization
CN104104744A (en) IP address assignment method and device
CN103442358B (en) Method for local forwarding concentrated authentication and control device
CN106161227B (en) Message forwarding method and device
CN104618522B (en) The method and Ethernet access equipment that IP address of terminal automatically updates
CN102404346A (en) Method and system for controlling access authority of internet user
CN106254569A (en) A kind of IP distribution method based on SDN
CN104683500B (en) A kind of safe list item generation method and device
CN105939230A (en) Multipoint remote monitoring method and device
KR102092015B1 (en) Method, apparatus and computer program for recognizing network equipment in a software defined network
CN106685861B (en) A kind of software defined network system and its message transmission control method
CN106060040A (en) Enterprise network access control method and device
JP2019041369A (en) Communication protection device, control method, and program

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20161221

WD01 Invention patent application deemed withdrawn after publication