CN106453150B - Flow control method and device - Google Patents

Flow control method and device Download PDF

Info

Publication number
CN106453150B
CN106453150B CN201610889723.0A CN201610889723A CN106453150B CN 106453150 B CN106453150 B CN 106453150B CN 201610889723 A CN201610889723 A CN 201610889723A CN 106453150 B CN106453150 B CN 106453150B
Authority
CN
China
Prior art keywords
bandwidth
application
level
network
maximum
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201610889723.0A
Other languages
Chinese (zh)
Other versions
CN106453150A (en
Inventor
谷久宏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Neusoft Corp
Original Assignee
Neusoft Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Neusoft Corp filed Critical Neusoft Corp
Priority to CN201610889723.0A priority Critical patent/CN106453150B/en
Publication of CN106453150A publication Critical patent/CN106453150A/en
Application granted granted Critical
Publication of CN106453150B publication Critical patent/CN106453150B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L47/00Traffic control in data switching networks
    • H04L47/70Admission control; Resource allocation
    • H04L47/80Actions related to the user profile or the type of traffic
    • H04L47/803Application aware
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L47/00Traffic control in data switching networks
    • H04L47/70Admission control; Resource allocation
    • H04L47/76Admission control; Resource allocation using dynamic resource allocation, e.g. in-call renegotiation requested by the user or requested by the network in response to changing network conditions
    • H04L47/762Admission control; Resource allocation using dynamic resource allocation, e.g. in-call renegotiation requested by the user or requested by the network in response to changing network conditions triggered by the network

Abstract

The invention discloses a kind of flow control method and devices, are related to network technique field, may be implemented to accomplish the reasonable distribution of bandwidth resources according to the actual use situation of application each in network.The described method includes: the network load information in interval acquiring network and the corresponding bandwidth use information of each application to schedule;According to the network load information and the bandwidth use information, the corresponding bandwidth deployment information of each application is generated;Bandwidth resources allotment is carried out to each application according to the bandwidth deployment information.The present invention is suitable for flow control processing.

Description

Flow control method and device
Technical field
The present invention relates to a kind of network technique fields, more particularly to a kind of flow control method and device.
Background technique
With the continuous development of network technology, a large amount of network application for people work and life provide it is huge just Benefit.Simultaneously as network application is many kinds of, need to carry out good management to network.And for the flow-control administration of application Two problems are mainly considered, first is that guaranteeing the certain bandwidth of each application to guarantee network service;Second is that vacant in current bandwidth When, existing bandwidth is used to the greatest extent, services the user in network efficiently using network.
Currently, being usually that user in network is divided into different classifications, the maximum of user of inferior grade classification is used Bandwidth is arranged relatively low, uses the relatively high of bandwidth setting for the maximum of the user of high-grade classification.However, such set It sets there is no the actual use situation in view of each application in network, can not accomplish the reasonable distribution of bandwidth resources.
Summary of the invention
In view of this, main purpose is that root may be implemented the embodiment of the invention provides a kind of flow control method and device According to the actual use situation of application each in network, accomplish the reasonable distribution of bandwidth resources.
According to an embodiment of the present invention on one side, a kind of flow control method is provided, this method comprises:
The network load information in interval acquiring network and the corresponding bandwidth of each application use letter to schedule Breath;
According to the network load information and the bandwidth use information, the corresponding bandwidth allotment of each application is generated Information;
Bandwidth resources allotment is carried out to each application according to the bandwidth deployment information.
Specifically, the network load information includes maximum network bandwidth current in the network, and the bandwidth uses Information includes accumulative use flow and the maximum bandwidth applied in the predetermined time interval, described according to the network load Information and the bandwidth use information generate the corresponding bandwidth deployment information of each application, specifically include:
According to it is described it is accumulative use flow, divide the application level in the network, obtain first level apply and second Level applications;
According to the accumulative using flow, maximum bandwidth and the maximum network bandwidth of first level application, determine every The guarantee bandwidth of a first level application;
Accumulative according to first level application uses flow, the maximum network bandwidth and the second level application Number, determine the guarantee bandwidth of each second level application;
According to the maximum bandwidth that the first level is applied, the limitation bandwidth and each the of each first level application is determined The limitation bandwidth of two level applications;
According to the guarantee bandwidth of each first level application and limitation bandwidth and each second level application Guarantee bandwidth and limitation bandwidth, generate the corresponding bandwidth deployment information of each application.
Specifically, described that flow, maximum bandwidth and the maximum network are used according to the accumulative of first level application Bandwidth determines the guarantee bandwidth of each first level application, specifically includes:
Calculate the accumulative using the accumulative always using the of flow of the sum of flow and each application of each first level application One ratio and the maximum bandwidth of each first level application account for second ratio of the sum of maximum bandwidth;
Calculate first ratio, second ratio, the default product for guaranteeing bandwidth regulation coefficient, maximum network bandwidth Value obtains the guarantee bandwidth of each first level application.
Specifically, described that flow, the maximum network bandwidth and described are used according to the accumulative of first level application The number of second level application determines the guarantee bandwidth of each second level application, specifically includes:
Calculate the accumulative using the accumulative always using the ratio of flow of the sum of flow and each application of each first level application Value;
Calculate the ratio and the default product value for guaranteeing bandwidth regulation coefficient;
By 1 with the difference of the product value multiplied by maximum network bandwidth, and the number applied divided by the second level, it obtains The guarantee bandwidth of each second level application.
Specifically, the maximum bandwidth applied according to the first level determines the limitation of each first level application The limitation bandwidth of bandwidth and the application of each second level, specifically includes:
The maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, obtains each first level The limitation bandwidth of application;
The minimum value in maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains The limitation bandwidth applied to each second level.
Specifically, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, obtains The limitation bandwidth of each first level application, specifically includes:
Detect whether current network bandwidth load in the network is less than or equal to preset threshold value;
If so, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, along with working as The bandwidth that preceding remaining bandwidth is distributed according to the first preset ratio obtains the limitation bandwidth of each first level application;
Minimum value in the maximum bandwidth that each first level is applied regulates and controls multiplied by the preset limit bandwidth is Number obtains the limitation bandwidth of each second level application, specifically includes:
Detect whether current network bandwidth load in the network is less than or equal to predetermined threshold;
If so, the minimum value in the maximum bandwidth that each first level is applied regulates and controls multiplied by the preset limit bandwidth Coefficient obtains each second level application along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio Limit bandwidth.
Further, the method also includes:
Each application is carried out using identification;
It detects in the first level application with the presence or absence of unknown applications;
If so, being associated analysis to the corresponding bandwidth use information of the unknown applications.
Specifically, described that analysis is associated to the corresponding bandwidth use information of the unknown applications, it specifically includes:
By inquiring accumulative domain-name information and Internet protocol address IP prestige using in flow, unknown answered to described Analysis is associated with corresponding bandwidth use information.
Further, it is described analysis is associated to the corresponding bandwidth use information of the unknown applications after, the side Method further include:
If not can determine that, the unknown applications are security application, configure second for the limitation bandwidth of the unknown applications The guarantee bandwidth of level applications.
Further, the method also includes:
The bandwidth use information of detection application is with the presence or absence of abnormal;
If so, the relevant information that bandwidth use information is existed to abnormal application carries out record backup, after carrying out Continuous analysis.
According to an embodiment of the present invention on the other hand, a kind of flow control apparatus is provided, which includes:
Acquiring unit, for the network load information and each application pair in interval acquiring network to schedule The bandwidth use information answered;
Generation unit, network load information and the bandwidth use information for being obtained according to the acquiring unit are raw At the corresponding bandwidth deployment information of each application;
Deployment unit, the bandwidth deployment information for being generated according to the generation unit carry out bandwidth to each application Resource allocation.
Specifically, the network load information includes maximum network bandwidth current in the network, and the bandwidth uses Information includes accumulative use flow and the maximum bandwidth applied in the predetermined time interval, and the generation unit includes:
Division module, for according to it is described it is accumulative use flow, divide the application level in the network, obtain the first order It Ying Yong not be with second level application;
Determining module, the accumulative of first level application for being divided according to the division module use flow, most Big bandwidth and the maximum network bandwidth determine the guarantee bandwidth of each first level application;
The determining module is also used to use flow, the maximum network band according to the accumulative of first level application The number of the wide and described second level application determines the guarantee bandwidth of each second level application;
The determining module is also used to the maximum bandwidth applied according to the first level, determines that each first level is answered Limit the limitation bandwidth of bandwidth and the application of each second level;
Generation module, the guarantee bandwidth and restriction band of each first level application for being determined according to the determining module The guarantee bandwidth and limitation bandwidth of wide and described each second level application, generate the corresponding bandwidth tune of each application With information.
Specifically, the determining module, specifically for calculate the application of each first level it is accumulative using the sum of flow with Each application it is accumulative always using the maximum bandwidth that the first ratio of flow and each first level are applied account for maximum bandwidth it Second ratio of sum;
Calculate first ratio, second ratio, the default product for guaranteeing bandwidth regulation coefficient, maximum network bandwidth Value obtains the guarantee bandwidth of each first level application.
Specifically, the determining module, specifically for calculate the application of each first level it is accumulative using the sum of flow with Each application it is accumulative always using the ratio of flow;
Calculate the ratio and the default product value for guaranteeing bandwidth regulation coefficient;
By 1 with the difference of the product value multiplied by maximum network bandwidth, and the number applied divided by the second level, it obtains The guarantee bandwidth of each second level application.
Specifically, the determining module, specifically for the maximum bandwidth of applying each first level multiplied by preset limit Bandwidth regulates and controls coefficient, obtains the limitation bandwidth of each first level application;
The minimum value in maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains The limitation bandwidth applied to each second level.
Specifically, the determining module, is specifically also used to detect whether current network bandwidth load in the network is less than Or it is equal to preset threshold value;
If so, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, along with working as The bandwidth that preceding remaining bandwidth is distributed according to the first preset ratio obtains the limitation bandwidth of each first level application;
The determining module, is specifically also used to detect whether current network bandwidth load in the network is less than or equal in advance Determine threshold value;
If so, the minimum value in the maximum bandwidth that each first level is applied regulates and controls multiplied by the preset limit bandwidth Coefficient obtains each second level application along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio Limit bandwidth.
Further, described device further include:
Recognition unit, for carrying out each application using identification;
Detection unit, for detecting in the first level application with the presence or absence of unknown applications;
Analytical unit, it is right if detecting that there are unknown applications in the first level application for the detection unit The corresponding bandwidth use information of the unknown applications is associated analysis.
Specifically, the analytical unit, specifically for passing through the accumulative domain-name information and interconnection using in flow of inquiry FidonetFido address ip prestige is associated analysis to the corresponding bandwidth use information of the unknown applications.
Further, described device further include:
Configuration unit, if for not can determine that the unknown applications are security application, by the limitation of the unknown applications Band width configuration is the guarantee bandwidth of second level application.
Further, described device further include:
Detection unit, for detecting the bandwidth use information of application with the presence or absence of abnormal;
Bandwidth is used letter if it is abnormal to detect that bandwidth use information exists for the detection unit by backup units The relevant information that breath has abnormal application carries out record backup, to carry out subsequent analysis.
By above-mentioned technical proposal, technical solution provided in an embodiment of the present invention is at least had the advantage that
A kind of flow control method and device provided in an embodiment of the present invention obtain in network first, in accordance with predetermined time interval Network load information and the corresponding bandwidth use information of each application;Then according to the network load information and the band Wide use information generates the corresponding bandwidth deployment information of each application;Finally according to the bandwidth deployment information to described Each application carries out bandwidth resources allotment.The embodiment of the present invention is according to the bandwidth usage and net applied in nearest a period of time Network loading condition carries out bandwidth resource allocation according to statistical data for each application, achievees the effect that distribution according to need, may be implemented According to the actual use situation of application each in network, accomplish the reasonable distribution of bandwidth resources, both ensure that each application just It is often used, and bandwidth resources is adequately utilized.
The above description is only an overview of the technical scheme of the present invention, in order to better understand the technical means of the present invention, And it can be implemented in accordance with the contents of the specification, and in order to allow above and other objects of the present invention, feature and advantage can It is clearer and more comprehensible, the followings are specific embodiments of the present invention.
Detailed description of the invention
By reading the following detailed description of the preferred embodiment, various other advantages and benefits are common for this field Technical staff will become clear.The drawings are only for the purpose of illustrating a preferred embodiment, and is not considered as to the present invention Limitation.And throughout the drawings, the same reference numbers will be used to refer to the same parts.In the accompanying drawings:
Fig. 1 shows a kind of flow control method flow diagram provided in an embodiment of the present invention;
Fig. 2 shows another flow control method flow diagrams provided in an embodiment of the present invention;
Fig. 3 shows a kind of flow control apparatus structural schematic diagram provided in an embodiment of the present invention;
Fig. 4 shows another flow control apparatus structural schematic diagram provided in an embodiment of the present invention;
Fig. 5 shows a kind of schematic diagram of flow control system framework provided in an embodiment of the present invention.
Specific embodiment
Exemplary embodiments of the present disclosure are described in more detail below with reference to accompanying drawings.Although showing the disclosure in attached drawing Exemplary embodiment, it being understood, however, that may be realized in various forms the disclosure without should be by embodiments set forth here It is limited.On the contrary, these embodiments are provided to facilitate a more thoroughly understanding of the present invention, and can be by the scope of the present disclosure It is fully disclosed to those skilled in the art.
The embodiment of the invention provides a kind of flow control method, the actual use feelings according to application each in network may be implemented Condition accomplishes the reasonable distribution of bandwidth resources, as shown in Figure 1, which comprises
101, the network load information in interval acquiring network and the corresponding bandwidth of each application make to schedule Use information.
Wherein, predetermined time interval can be set with actual demand, for example, predetermined time interval can be set as 5 seconds, 10 seconds etc..May include maximum network bandwidth current in network in network load information, and it is current it is each using The information such as total bandwidth.It may include that the accumulative of interior application at preset time intervals uses flow and maximum belt in bandwidth use information Width, and maximum concurrent connection number according to etc. information.
In embodiments of the present invention, by the network load information in interval acquiring network to schedule, and it is every A to apply corresponding bandwidth use information, and these information according to acquisition, each application of dynamic regulation, which may be implemented, to be made The network demand of each application is effectively guaranteed in bandwidth range.
102, according to network load information and bandwidth use information, the corresponding bandwidth deployment information of each application is generated.
Wherein, the guarantee bandwidth and limitation bandwidth needed to configure in bandwidth deployment information comprising each application.
Specifically, the corresponding guarantee bandwidth of each application and restriction band can be calculated according to preconfigured formula Width, the formula can carry out option and installment according to actual needs.For example, being first depending on the accumulative using the more of flow of each application Few, counting which application is key monitoring application, which application is common monitoring application, and the guarantee band of key monitoring application Wide and limitation bandwidth and the guarantee bandwidth and limitation bandwidth of common monitoring application, can calculate according to preconfigured formula Out, the lesser common monitoring of flow accounting is taken into account while normal use to guarantee key monitoring application to apply.
103, bandwidth resources allotment is carried out to each application according to bandwidth deployment information.
Specifically, the guarantee bandwidth and limitation bandwidth needed to configure according to each application for including in bandwidth deployment information, The guarantee bandwidth and limitation bandwidth of each application are configured, and then controls the bandwidth resources that these applications are able to use, thus according to The actual use situation of each application in network, accomplishes the reasonable distribution of bandwidth resources.
It is negative to obtain the network in network first, in accordance with predetermined time interval for a kind of flow control method provided in an embodiment of the present invention Information carrying breath and the corresponding bandwidth use information of each application;Then it is used according to the network load information and the bandwidth Information generates the corresponding bandwidth deployment information of each application;Finally each answered according to the bandwidth deployment information described With carrying out bandwidth resources allotment.The embodiment of the present invention is according to the bandwidth usage and network load applied in nearest a period of time Situation carries out bandwidth resource allocation according to statistical data for each application, achievees the effect that distribution according to need, may be implemented according to net The actual use situation of each application in network, accomplishes the reasonable distribution of bandwidth resources, both ensure that the normal use of each application, Bandwidth resources are adequately utilized again.
In order to preferably understand above-mentioned method shown in FIG. 1, as the refinement and extension to above embodiment, The embodiment of the invention provides another flow control methods, as shown in Figure 2, which comprises
201, the network load information in interval acquiring network and the corresponding bandwidth of each application make to schedule Use information.
It can also include: to carry out each application using identification before step 201.It specifically, can be by matching in advance The application recognition module set carries out using identification each application, and after carrying out identification label to each application, passes through data Collector module is spaced to schedule carries out data acquisition, obtains network load information and each application in network Corresponding bandwidth use information, and pass to strategy controller module and analyzed, obtain the corresponding bandwidth allotment of each application Information.
202, it according to the accumulative application level for using flow, dividing in network applied interior at preset time intervals, obtains First level is applied and second level application.
Wherein, first level application can be emphasis monitoring application, and second level application can be common monitoring application.
Specifically, at preset time intervals, flow is used by counting the accumulative of each application, calculates application monitoring ginseng Number n, n are the application numbers of key monitoring application, so that accumulative just big using the sum of the flow of preceding n application of maximum flow In the predetermined ratio threshold value of total flow, such as predetermined ratio threshold value can be 80%.In the application number for determining key monitoring application After mesh, currently in addition to the application of these key monitorings, remaining application is common monitoring application.
Further, in order to analyze the safety of application, security risk is reduced, the method also includes: detections described the It whether there is unknown applications in one level applications;If so, being associated to the corresponding bandwidth use information of the unknown applications Analysis.
Specifically, corresponding to the unknown applications by inquiring accumulative domain-name information and IP prestige using in flow Bandwidth use information be associated analysis.
For example, detecting in the application of these key monitorings with the presence or absence of unknown flow rate, i.e., only know protocol type, concrete application It is unknown, and if it exists, unknown flow rate is then sent to data recordin module and backs up and carries out association analysis, by query flows Domain-name information and IP (Internet Protocol Address, Internet protocol address), determine whether the unknown flow rate pacifies Entirely, when being determined as danger, it can carry out blocking and reduce security risk with operations such as speed limits to guarantee safety.
It, cannot if can also include: after being associated analysis to the corresponding bandwidth use information of the unknown applications It determines that the unknown applications are security application, then configures the limitation bandwidth of the unknown applications to the guarantee of second level application Bandwidth.For example, the limitation bandwidth that the partial discharge corresponds to unknown applications is set under the premise of not can guarantee unknown flow rate safety It is set to the guarantee bandwidth of common monitoring application, the limitation bandwidth that script key monitoring is applied is turned down, to improve safety.
203, according to the accumulative using flow, maximum bandwidth and maximum network bandwidth of first level application, each the is determined The guarantee bandwidth of one level applications.
In embodiments of the present invention, step 203 can specifically include: calculate the accumulative using stream of each first level application The sum of amount is always accounted for most using the maximum bandwidth that the first ratio of flow and each first level are applied with the accumulative of each application Second ratio of the sum of big bandwidth;Calculate first ratio, second ratio, default guarantee bandwidth regulation coefficient, maximum The product value of network bandwidth obtains the guarantee bandwidth of each first level application, wherein default to guarantee that bandwidth regulation coefficient root It selects to set according to actual conditions, the value range of the coefficient is greater than 0 and less than 1, if including user in common monitoring application The application being commonly used, then the coefficient can be smaller with value, i.e., applies some guarantee bandwidth of overabsorption to common monitoring.
Specifically, the guarantee bandwidth of each key monitoring application=default guarantee bandwidth regulates and controls all key monitorings of coefficient * The accumulative of application uses the sum of flow/accumulative total maximum belt using each key monitoring application of flow * maximum network bandwidth * Wide/(the sum of the maximum bandwidths of all key monitoring applications).For example, at preset time intervals, 20 application traffic before ranking Summation accounts for the 80% of all flows, this 20 applications are confirmed as key monitoring application, and 80% maximum network bandwidth is multiplied Guarantee that bandwidth regulation coefficient distributes to this 20 applications with default, the maximum bandwidth pro rate then applied further according to this 20 The guarantee bandwidth of each application.
204, the accumulative number applied using flow, maximum network bandwidth and second level applied according to first level, Determine the guarantee bandwidth of each second level application.
In embodiments of the present invention, step 204 can specifically include: calculate the accumulative using stream of each first level application The sum of amount is accumulative always using the ratio of flow with each application;Calculate the ratio and the default product for guaranteeing bandwidth regulation coefficient Value;By 1 with the difference of the product value multiplied by maximum network bandwidth, and the number applied divided by the second level, it obtains each The guarantee bandwidth of second level application.
Specifically, the guarantee bandwidth that each common monitoring is applied=(1- is default to guarantee all emphasis prisons of bandwidth regulation coefficient * / accumulative total use flow) the * maximum network bandwidth/number of common monitoring application accumulative the sum of using flow of control application.
205, the maximum bandwidth applied according to first level determines the limitation bandwidth and each the of each first level application The limitation bandwidth of two level applications.
In embodiments of the present invention, step 205 can specifically include: the maximum bandwidth that each first level is applied multiplied by Preset limit bandwidth regulates and controls coefficient, obtains the limitation bandwidth of each first level application;The maximum that each first level is applied Minimum value in bandwidth regulates and controls coefficient multiplied by the preset limit bandwidth, obtains the limitation bandwidth of each second level application.Its In, preset limit bandwidth regulation coefficient can select to set according to the actual situation, and the value range of the coefficient is greater than 1 and to be less than 2。
Specifically, the maximum bandwidth each first level applied regulates and controls coefficient multiplied by preset limit bandwidth, obtains each The limitation bandwidth of first level application, can specifically include: detect in the network current network bandwidth load whether be less than or Equal to preset threshold value;If so, the maximum bandwidth that each first level is applied multiplied by preset limit bandwidth regulate and control coefficient, then plus The bandwidth that upper current remaining bandwidth is distributed according to the first preset ratio obtains the limitation bandwidth of each first level application, Wherein, preset threshold value and the first preset ratio can be configured according to actual needs, for example, the preset threshold value can for 0.8, 0.9 etc., and the first preset ratio can be 0.5.
For example, the limitation bandwidth=each key monitoring application maximum bandwidth * for defaulting each key monitoring application is default It limits bandwidth and regulates and controls factor beta, if current network bandwidth is less than 0.9* maximum network bandwidth, the limit of each key monitoring application The maximum bandwidth * preset limit bandwidth regulation coefficient of bandwidth processed=each key monitoring application+(0.9* maximum network bandwidth-when Preceding network bandwidth) * 0.5, i.e. the limitation bandwidth of default key monitoring application is β times of respective maximum bandwidth, if current network The half of current residual bandwidth is then given the application less than 0.9 by bandwidth load.
The minimum value in maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains The limitation bandwidth applied to each second level, can specifically include: whether detect in the network current network bandwidth load Less than or equal to predetermined threshold;If so, the minimum value in the maximum bandwidth that each first level is applied is multiplied by described default It limits bandwidth and regulates and controls coefficient, along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio, obtain each the The limitation bandwidth of two level applications.Wherein, predetermined threshold and the second preset ratio can be configured according to actual needs, example Such as, which can be 0.8,0.9 etc., and the second preset ratio can be 0.25.
For example, the minimum value * preset limit bandwidth regulation factor beta in key monitoring application in maximum bandwidth is taken, as general The default of logical monitoring application limits bandwidth, if current network bandwidth is less than 0.9* maximum network bandwidth, common monitoring application Limitation bandwidth=key monitoring application in minimum value * preset limit bandwidth in maximum bandwidth regulate and control coefficient+(0.9* maximum web Network bandwidth-current network bandwidth) * 0.25, i.e. the limitation bandwidth of the common monitoring application of default is maximum belt in emphasis monitoring application β times of minimum value in width, if current network bandwidth load gives a quarter of current residual bandwidth less than 0.9 The application.
It should be noted that can determine that each application obtains network bandwidth based on network load condition through the above way The size of resource, and then the limitation bandwidth that each application is dynamically improved when network load is lower may be implemented, by idle band Width distributes to the application of demand, and bandwidth resources are adequately utilized.
206, according to the guarantee bandwidth of each first level application and limitation bandwidth and the guarantor of each second level application Bandwidth and limitation bandwidth are demonstrate,proved, the corresponding bandwidth deployment information of each application is generated.
In embodiments of the present invention, in the bandwidth deployment information of generation comprising each first level application guarantee bandwidth and Limit the guarantee bandwidth and limitation bandwidth of bandwidth and the application of each second level.
207, bandwidth resources allotment is carried out to each application according to bandwidth deployment information.
Specifically, the guarantee bandwidth and limitation bandwidth needed to configure according to each application for including in bandwidth deployment information, Configure the guarantee bandwidth and limitation bandwidth of each application.
Further, in order to inhibit the behavior for being generated massive band width resource by malicious exploitation in time, the method is also wrapped It includes: detecting the bandwidth use information of application with the presence or absence of abnormal;If so, bandwidth use information to be existed to the phase of abnormal application It closes information and carries out record backup, to carry out subsequent analysis.
For example, detecting that the bandwidth of some applications is more than certain times of maximum bandwidth according to the bandwidth usage of application It is abnormal to illustrate that the bandwidth use information of these applications exists for number, by as beyond length of time, more than bandwidth how much, the application The relevant informations such as all link informations (i.e. source IP address, purpose IP address, source port, destination port) are sent to data record Module carries out record backup, so as to subsequent tracking and processing.
It should be noted that bandwidth use information is existed when the bandwidth use information for detecting application is deposited when abnormal The relevant information of abnormal application carries out record backup, so as to subsequent tracking and processing.And then can effectively it inhibit by malice benefit With and generate the behavior of massive band width resource, avoid the normal use for influencing other application.Make full use of existing bandwidth resources Meanwhile the use of dynamic regulation bandwidth resources.Abnormal behaviour is managed and is recorded, to unknown flow rate save with it is pre- It is alert.
Another kind flow control method provided in an embodiment of the present invention, passes through the network in interval acquiring network to schedule Load information and the corresponding bandwidth use information of each application, and these information according to acquisition, may be implemented dynamic regulation The network demand of each application is effectively guaranteed in the bandwidth range that each application can be used;When detecting that first level answers There are when unknown applications in, analysis can be associated to the corresponding bandwidth use information of the unknown applications, when being determined as endangering Script emphasis is supervised when not can determine that unknown applications is security application with operations such as speed limits in application, can carry out blocking danger The limitation bandwidth of control application is turned down, and to guarantee safety, reduces security risk;It can each be answered based on network load condition determination With the size for obtaining network bandwidth resources, and then may be implemented dynamically to improve the limit of each application when network load is lower Idle bandwidth is distributed to the application of demand, bandwidth resources is adequately utilized by bandwidth processed;When the bandwidth for detecting application makes It is deposited when abnormal with information, the relevant information that bandwidth use information is existed to abnormal application carries out record backup, so as to subsequent Tracking and processing.And then it can effectively inhibit by malicious exploitation and generate the behavior of massive band width resource.
Further, the specific implementation as Fig. 1 the method, the embodiment of the invention provides a kind of flow control apparatus, such as Shown in Fig. 3, described device includes: acquiring unit 31, generation unit 32, deployment unit 33.
The acquiring unit 31 can be used for the network load information in interval acquiring network to schedule, and It is each to apply corresponding bandwidth use information.The acquiring unit 31 is that progress data in interval are adopted to schedule in the present apparatus The main functional modules of collection, having can be timing statistical module, count in certain time interval, the use feelings of various applications Condition, integrated flow, maximum bandwidth data including each application, maximum concurrent connection number according to etc..It triggers after data acquisition The generation module 32 works.
The generation unit 32 can be used for the network load information and the bandwidth obtained according to the acquiring unit 31 Use information generates the corresponding bandwidth deployment information of each application.The generation unit 32 is in the present apparatus according to acquisition Data generate the main functional modules of the corresponding bandwidth deployment information of application, it is specifically corresponding comprising each application in the information Guarantee that bandwidth and limitation bandwidth trigger the deployment unit and work after generating bandwidth deployment information.
The deployment unit 33, the bandwidth deployment information that can be used for being generated according to the generation unit 32 is to described each Using progress bandwidth resources allotment.The deployment unit 33 is to carry out the major function of bandwidth resources allotment in the present apparatus to application Module, and then the bandwidth resources that these applications are able to use are controlled, thus according to the actual use situation of application each in network, Accomplish the reasonable distribution of bandwidth resources.
It should be noted that other of each functional unit involved by a kind of flow control apparatus provided in an embodiment of the present invention are corresponding Description, can be with reference to the corresponding description in Fig. 1, and details are not described herein.
A kind of flow control apparatus provided in an embodiment of the present invention, can be only fitted in terminal device, it can be used for management of application Bandwidth resources, specifically include: acquiring unit, generation unit, deployment unit, first by acquiring unit to schedule between Every the network load information and the corresponding bandwidth use information of each application in acquisition network;Then pass through generation unit root According to the network load information and the bandwidth use information, the corresponding bandwidth deployment information of each application is generated;Finally Bandwidth resources allotment is carried out to each application according to the bandwidth deployment information by deployment unit.Root of the embodiment of the present invention According to the bandwidth usage and network load condition applied in nearest a period of time, band is carried out according to statistical data for each application Wide resource allocation, achievees the effect that distribution according to need, may be implemented to accomplish band according to the actual use situation of application each in network The reasonable distribution of wide resource, not only ensure that the normal use of each application, but also bandwidth resources are adequately utilized.
Further, the specific implementation as Fig. 2 the method, the embodiment of the invention provides another flow control apparatus, As shown in figure 4, described device includes: acquiring unit 41, generation unit 42, deployment unit 43.
The acquiring unit 41 can be used for the network load information in interval acquiring network to schedule, and It is each to apply corresponding bandwidth use information.The acquiring unit 41 is that progress data in interval are adopted to schedule in the present apparatus The main functional modules of collection, having can be timing statistical module, count in certain time interval, the use feelings of various applications Condition, integrated flow, maximum bandwidth data including each application, maximum concurrent connection number according to etc..It triggers after data acquisition The generation module 42 works.
The generation unit 42 can be used for the network load information and the bandwidth obtained according to the acquiring unit 41 Use information generates the corresponding bandwidth deployment information of each application.The generation unit 42 is in the present apparatus according to acquisition Data generate the main functional modules of the corresponding bandwidth deployment information of application, it is specifically corresponding comprising each application in the information Guarantee that bandwidth and limitation bandwidth trigger the deployment unit and work after generating bandwidth deployment information.
The deployment unit 43, the bandwidth deployment information that can be used for being generated according to the generation unit 42 is to described each Using progress bandwidth resources allotment.The deployment unit 43 is to carry out the major function of bandwidth resources allotment in the present apparatus to application Module, and then the bandwidth resources that these applications are able to use are controlled, thus according to the actual use situation of application each in network, Accomplish the reasonable distribution of bandwidth resources.
Optionally, the network load information may include maximum network bandwidth current in the network, the bandwidth Use information may include accumulative use flow and the maximum bandwidth applied in the predetermined time interval.
Specifically, the generation unit 42 includes: division module 421, determining module 422, generation module 423.
The division module 421 can be used for dividing the application layer in the network according to described accumulative using flow Not, first level is obtained to apply and second level application.Wherein, first level application can be emphasis monitoring application, and second Level applications can be common monitoring application.
The determining module 422 can be used for dividing the tired of obtained first level application according to the division module 421 Meter uses flow, maximum bandwidth and the maximum network bandwidth, determines the guarantee bandwidth of each first level application.
The determining module 422 can be also used for using flow, the maximum according to the accumulative of first level application The number of network bandwidth and second level application determines the guarantee bandwidth of each second level application.
The determining module 422 can be also used for the maximum bandwidth applied according to the first level, determine each first The limitation bandwidth of the limitation bandwidth of level applications and the application of each second level.
The generation module 423, the guarantor for each first level application that can be used for being determined according to the determining module 422 Card bandwidth and the guarantee bandwidth and limitation bandwidth for limiting bandwidth and each second level application, generation is described each to answer With corresponding bandwidth deployment information.
The determining module 422, specifically can be used for calculating the application of each first level it is accumulative using the sum of flow with Each application it is accumulative always using the maximum bandwidth that the first ratio of flow and each first level are applied account for maximum bandwidth it Second ratio of sum;Calculate first ratio, second ratio, default guarantee bandwidth regulation coefficient, maximum network bandwidth Product value, obtain the guarantee bandwidth of each first level application.
The determining module 422 specifically can be also used for calculating the accumulative using the sum of flow of each first level application It is accumulative always using the ratio of flow with each application;Calculate the ratio and the default product value for guaranteeing bandwidth regulation coefficient;By 1 Difference with the product value is multiplied by maximum network bandwidth, and the number applied divided by the second level, obtains each second level The guarantee bandwidth that do not apply.
The determining module 422 specifically can be also used for maximum bandwidth that each first level is applied multiplied by limiting in advance Bandwidth processed regulates and controls coefficient, obtains the limitation bandwidth of each first level application;In the maximum bandwidth that each first level is applied Minimum value regulate and control coefficient multiplied by the preset limit bandwidth, obtain the limitation bandwidth of each second level application.
The determining module 422, specifically can be also used for detecting whether current network bandwidth load in the network is less than Or it is equal to preset threshold value;If so, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, then In addition the bandwidth that current residual bandwidth is distributed according to the first preset ratio, obtains the restriction band of each first level application It is wide.
The determining module 422, specifically can be also used for detecting whether current network bandwidth load in the network is less than Or it is equal to predetermined threshold;If so, the minimum value in the maximum bandwidth that each first level is applied is multiplied by the preset limit Bandwidth regulates and controls coefficient and obtains each second level along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio The limitation bandwidth that do not apply.
It should be noted that can determine that each application obtains network bandwidth based on network load condition through the above way The size of resource, and then the limitation bandwidth that each application is dynamically improved when network load is lower may be implemented, by idle band Width distributes to the application of demand, and bandwidth resources are adequately utilized.
Further, described device further include: recognition unit 44, detection unit 45, analytical unit 46.
The recognition unit 44 can be used for carrying out each application using identification.
The detection unit 45 can be used for detecting in the first level application with the presence or absence of unknown applications.
The analytical unit 46, if can be used for the detection unit 45 detects exist not in the first level application Know application, then analysis is associated to the corresponding bandwidth use information of the unknown applications.For example, when determining that unknown flow rate is danger When dangerous, it can carry out blocking and reduce security risk with operations such as speed limits to guarantee safety.
The analytical unit 46 specifically can be used for by inquiring accumulative domain-name information and internet using in flow Protocol address IP prestige is associated analysis to the corresponding bandwidth use information of the unknown applications.
Further, described device further include: configuration unit 47.
The configuration unit 47, if can be used for not can determine that, the unknown applications are security application, will be described unknown The limitation bandwidth of application is configured to the guarantee bandwidth of second level application.The limitation bandwidth that script key monitoring is applied is turned down, To improve safety.
Further, described device further include: backup units 48.
The detection unit 45 can be also used for the bandwidth use information of detection application with the presence or absence of abnormal.
The backup units 48, if can be used for the detection unit 45 detects that bandwidth use information has exception, The relevant information that bandwidth use information is existed to abnormal application carries out record backup, to carry out subsequent analysis.And then it can be with Effectively inhibit the behavior for being generated massive band width resource by malicious exploitation, avoids the normal use for influencing other application.Sufficiently benefit While with existing bandwidth resources, the use of dynamic regulation bandwidth resources.Abnormal behaviour is managed and is recorded, to unknown stream Amount carries out preservation and early warning.
It should be noted that other phases of each functional unit involved by another kind flow control apparatus provided in an embodiment of the present invention It should describe, can be with reference to the corresponding description in Fig. 2, details are not described herein.
Another kind flow control apparatus provided in an embodiment of the present invention, can be only fitted in terminal device, it can be used for management of answer Bandwidth resources specifically include: acquiring unit, generation unit, deployment unit, recognition unit, detection unit, analytical unit Deng passing through network load information in acquiring unit to schedule interval acquiring network and the corresponding band of each application Wide use information, and these information according to acquisition may be implemented the bandwidth range that each application of dynamic regulation can be used, have The network demand that ensure that each application of effect;When detecting in first level application there are when unknown applications, can by point Analysis unit is associated analysis to the corresponding bandwidth use information of the unknown applications, when being determined as hazardous applications, can carry out It blocks and the operation such as speed limit, when not can determine that unknown applications is security application, limitation bandwidth that script key monitoring is applied It turns down, to guarantee safety, reduces security risk;When detect application bandwidth use information deposit when abnormal, pass through backup The relevant information that bandwidth use information is had abnormal application by unit carries out record backup, so as to subsequent tracking and processing.Into And it can effectively inhibit the behavior that massive band width resource is generated by malicious exploitation.
Based on above-mentioned method and apparatus embodiment, the embodiment of the invention provides a kind of signals of flow control system framework Figure, as shown in figure 5, the system includes: application recognition module, strategy controller module, data collector module, data record mould Block.After network data carries out identification label by application recognition module, Access strategy controller carries out the flowtube of network data Control.Wherein, data collector module is a timing statistical module, is counted in certain time interval, the service condition of various applications, Specifically include the integrated flow of each application, maximum bandwidth data, maximum concurrent connection number evidence.Data collector module will acquire To data be supplied to strategy controller module, strategy controller module carries out strategy according to the service condition of current network bandwidth Adjustment.Accounting is biggish in abnormal data information and network data in data recordin module essential record network unknown answers Use data.
It, can be effective to guarantee each with bandwidth range workable for each application of dynamic regulation by above system framework The network demand of application, while the bandwidth usage of application can be effectively controlled, effectively inhibit to be generated by malicious exploitation The behavior of massive band width resource, and then influence the normal use of other application.According in network user using situation, both It ensure that the normal use of each application, and bandwidth resources be adequately utilized, while the abnormal service condition of application is carried out Record and analysis are done certain limitation to unknown flow rate and are handled.
In the above-described embodiments, it all emphasizes particularly on different fields to the description of each embodiment, there is no the portion being described in detail in some embodiment Point, reference can be made to the related descriptions of other embodiments.
It is understood that the correlated characteristic in the above method and device can be referred to mutually.In addition, in above-described embodiment " first ", " second " etc. be and not represent the superiority and inferiority of each embodiment for distinguishing each embodiment.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description, The specific work process of device and unit, can refer to corresponding processes in the foregoing method embodiment, and details are not described herein.
Algorithm and display are not inherently related to any particular computer, virtual system, or other device provided herein. Various general-purpose systems can also be used together with teachings based herein.As described above, it constructs required by this kind of system Structure be obvious.In addition, the present invention is also not directed to any particular programming language.It should be understood that can use various Programming language realizes summary of the invention described herein, and the description done above to language-specific is to disclose this hair Bright preferred forms.
In the instructions provided here, numerous specific details are set forth.It is to be appreciated, however, that implementation of the invention Example can be practiced without these specific details.In some instances, well known method, structure is not been shown in detail And technology, so as not to obscure the understanding of this specification.
Similarly, it should be understood that in order to simplify the disclosure and help to understand one or more of the various inventive aspects, Above in the description of exemplary embodiment of the present invention, each feature of the invention is grouped together into single implementation sometimes In example, figure or descriptions thereof.However, the disclosed method should not be interpreted as reflecting the following intention: i.e. required to protect Shield the present invention claims features more more than feature expressly recited in each claim.More precisely, as following Claims reflect as, inventive aspect is all features less than single embodiment disclosed above.Therefore, Thus the claims for following specific embodiment are expressly incorporated in the specific embodiment, wherein each claim itself All as a separate embodiment of the present invention.
Those skilled in the art will understand that can be carried out adaptively to the module in the equipment in embodiment Change and they are arranged in one or more devices different from this embodiment.It can be the module or list in embodiment Member or component are combined into a module or unit or component, and furthermore they can be divided into multiple submodule or subelement or Sub-component.Other than such feature and/or at least some of process or unit exclude each other, it can use any Combination is to all features disclosed in this specification (including adjoint claim, abstract and attached drawing) and so disclosed All process or units of what method or apparatus are combined.Unless expressly stated otherwise, this specification is (including adjoint power Benefit require, abstract and attached drawing) disclosed in each feature can carry out generation with an alternative feature that provides the same, equivalent, or similar purpose It replaces.
In addition, it will be appreciated by those of skill in the art that although some embodiments described herein include other embodiments In included certain features rather than other feature, but the combination of the feature of different embodiments mean it is of the invention Within the scope of and form different embodiments.For example, in the following claims, embodiment claimed is appointed Meaning one of can in any combination mode come using.
Various component embodiments of the invention can be implemented in hardware, or to run on one or more processors Software module realize, or be implemented in a combination thereof.It will be understood by those of skill in the art that can be used in practice Microprocessor or digital signal processor (DSP) are realized in a kind of flow control method and device according to an embodiment of the present invention The some or all functions of some or all components.The present invention is also implemented as executing method as described herein Some or all device or device programs (for example, computer program and computer program product).Such reality Existing program of the invention can store on a computer-readable medium, or may be in the form of one or more signals. Such signal can be downloaded from an internet website to obtain, and perhaps be provided on the carrier signal or in any other forms It provides.
It should be noted that the above-mentioned embodiments illustrate rather than limit the invention, and ability Field technique personnel can be designed alternative embodiment without departing from the scope of the appended claims.In the claims, Any reference symbol between parentheses should not be configured to limitations on claims.Word "comprising" does not exclude the presence of not Element or step listed in the claims.Word "a" or "an" located in front of the element does not exclude the presence of multiple such Element.The present invention can be by means of including the hardware of several different elements and being come by means of properly programmed computer real It is existing.In the unit claims listing several devices, several in these devices can be through the same hardware branch To embody.The use of word first, second, and third does not indicate any sequence.These words can be explained and be run after fame Claim.

Claims (18)

1. a kind of flow control method characterized by comprising
Network load information in interval acquiring network to schedule, the network load information include in the network when Preceding maximum network bandwidth and the corresponding bandwidth use information of each application, the bandwidth use information is included in described pre- It fixes time and is spaced accumulative use flow and the maximum bandwidth of interior application;
According to the network load information and the bandwidth use information, the corresponding bandwidth allotment letter of each application is generated Breath;
Bandwidth resources allotment is carried out to each application according to the bandwidth deployment information;
Wherein, described according to the network load information and the bandwidth use information, generate the corresponding band of each application Wide deployment information, specifically includes:
According to it is described it is accumulative use flow, divide the application level in the network, obtain first level application and second level Using;
According to the accumulative using flow, maximum bandwidth and the maximum network bandwidth of first level application, each the is determined The guarantee bandwidth of one level applications;
According to accumulative applied using flow, the maximum network bandwidth and the second level of first level application Number determines the guarantee bandwidth of each second level application;
According to the maximum bandwidth that the first level is applied, the limitation bandwidth and each second level that each first level is applied are determined The limitation bandwidth that do not apply;
According to the guarantee bandwidth of each first level application and limitation bandwidth and the guarantor of each second level application Bandwidth and limitation bandwidth are demonstrate,proved, the corresponding bandwidth deployment information of each application is generated.
2. flow control method according to claim 1, which is characterized in that accumulative the making according to first level application With flow, maximum bandwidth and the maximum network bandwidth, determines the guarantee bandwidth of each first level application, specifically includes:
The accumulative of each first level application is calculated always to compare using the first of flow using the sum of flow and the accumulative of each application Value and the maximum bandwidth of each first level application account for second ratio of the sum of maximum bandwidth;
First ratio, second ratio, the default product value for guaranteeing bandwidth regulation coefficient, maximum network bandwidth are calculated, is obtained The guarantee bandwidth applied to each first level.
3. flow control method according to claim 1, which is characterized in that accumulative the making according to first level application The number applied with flow, the maximum network bandwidth and the second level determines the guarantee band of each second level application Width specifically includes:
Calculate the accumulative using the accumulative always using the ratio of flow of the sum of flow and each application of each first level application;
Calculate the ratio and the default product value for guaranteeing bandwidth regulation coefficient;
By 1 with the difference of the product value multiplied by maximum network bandwidth, and the number applied divided by the second level, it obtains each The guarantee bandwidth of second level application.
4. flow control method according to claim 1, which is characterized in that the maximum belt applied according to the first level Width determines the limitation bandwidth of each first level application and the limitation bandwidth of each second level application, specifically includes:
The maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, obtains each first level application Limitation bandwidth;
The minimum value in maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains every The limitation bandwidth of a second level application.
5. flow control method according to claim 4, which is characterized in that the maximum bandwidth for applying each first level Regulate and control coefficient multiplied by preset limit bandwidth, obtain the limitation bandwidth of each first level application, specifically include:
Detect whether current network bandwidth load in the network is less than or equal to preset threshold value;
If so, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, along with current surplus The bandwidth that remaining bandwidth is distributed according to the first preset ratio obtains the limitation bandwidth of each first level application;
Minimum value in the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains The limitation bandwidth applied to each second level, specifically includes:
Detect whether current network bandwidth load in the network is less than or equal to predetermined threshold;
If so, the minimum value in the maximum bandwidth that each first level is applied regulates and controls system multiplied by the preset limit bandwidth Number obtains the limit of each second level application along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio Bandwidth processed.
6. flow control method according to claim 1, which is characterized in that the method also includes:
Each application is carried out using identification;
It detects in the first level application with the presence or absence of unknown applications;
If so, being associated analysis to the corresponding bandwidth use information of the unknown applications.
7. flow control method according to claim 6, which is characterized in that described to use the corresponding bandwidth of the unknown applications Information is associated analysis, specifically includes:
By inquiring accumulative domain-name information and Internet protocol address IP prestige using in flow, to the unknown applications pair The bandwidth use information answered is associated analysis.
8. flow control method according to claim 6, which is characterized in that described to use the corresponding bandwidth of the unknown applications Information is associated after analysis, the method also includes:
If not can determine that, the unknown applications are security application, configure second level for the limitation bandwidth of the unknown applications The guarantee bandwidth of application.
9. flow control method according to claim 1, which is characterized in that the method also includes:
The bandwidth use information of detection application is with the presence or absence of abnormal;
If so, the relevant information that bandwidth use information is existed to abnormal application carries out record backup, to carry out subsequent point Analysis.
10. a kind of flow control apparatus characterized by comprising
Acquiring unit, for the network load information in interval acquiring network to schedule, the network load information packet It includes maximum network bandwidth and the corresponding bandwidth use information of each application, the bandwidth current in the network and uses letter Breath includes accumulative use flow and the maximum bandwidth applied in the predetermined time interval;
Generation unit, network load information and the bandwidth use information for being obtained according to the acquiring unit generate institute State the corresponding bandwidth deployment information of each application;
Deployment unit, the bandwidth deployment information for being generated according to the generation unit carry out bandwidth resources to each application Allotment;
Wherein, the generation unit includes:
Division module, for according to it is described it is accumulative use flow, divide the application level in the network, obtain first level and answer With with second level application;
Determining module, the accumulative of first level application for being divided according to the division module use flow, maximum belt The wide and described maximum network bandwidth determines the guarantee bandwidth of each first level application;
The determining module, be also used to according to the first level apply it is accumulative using flow, the maximum network bandwidth and The number of the second level application determines the guarantee bandwidth of each second level application;
The determining module is also used to the maximum bandwidth applied according to the first level, determines each first level application Limit the limitation bandwidth of bandwidth and the application of each second level;
Generation module, the guarantee bandwidth and limitation bandwidth of each first level application for being determined according to the determining module, And the guarantee bandwidth and limitation bandwidth of each second level application, generate the corresponding bandwidth allotment letter of each application Breath.
11. flow control apparatus according to claim 10, which is characterized in that
The determining module, specifically for calculating the accumulative using the tired of the sum of flow and each application of each first level application Meter always accounts for second ratio of the sum of maximum bandwidth using the maximum bandwidth of the first ratio of flow and the application of each first level Value;
First ratio, second ratio, the default product value for guaranteeing bandwidth regulation coefficient, maximum network bandwidth are calculated, is obtained The guarantee bandwidth applied to each first level.
12. flow control apparatus according to claim 10, which is characterized in that
The determining module, specifically for calculating the accumulative using the tired of the sum of flow and each application of each first level application Meter always uses the ratio of flow;
Calculate the ratio and the default product value for guaranteeing bandwidth regulation coefficient;
By 1 with the difference of the product value multiplied by maximum network bandwidth, and the number applied divided by the second level, it obtains each The guarantee bandwidth of second level application.
13. flow control apparatus according to claim 10, which is characterized in that
The determining module regulates and controls system multiplied by preset limit bandwidth specifically for the maximum bandwidth for applying each first level Number obtains the limitation bandwidth of each first level application;
The minimum value in maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by the preset limit bandwidth, obtains every The limitation bandwidth of a second level application.
14. flow control apparatus according to claim 13, which is characterized in that
The determining module, is specifically also used to detect whether current network bandwidth load in the network is less than or equal to preset threshold Value;
If so, the maximum bandwidth that each first level is applied regulates and controls coefficient multiplied by preset limit bandwidth, along with current surplus The bandwidth that remaining bandwidth is distributed according to the first preset ratio obtains the limitation bandwidth of each first level application;
The determining module, is specifically also used to detect whether current network bandwidth load in the network is less than or equal to predetermined threshold Value;
If so, the minimum value in the maximum bandwidth that each first level is applied regulates and controls system multiplied by the preset limit bandwidth Number obtains the limit of each second level application along with the bandwidth that current residual bandwidth is distributed according to the second preset ratio Bandwidth processed.
15. flow control apparatus according to claim 10, which is characterized in that described device further include:
Recognition unit, for carrying out each application using identification;
Detection unit, for detecting in the first level application with the presence or absence of unknown applications;
Analytical unit, if detecting that there are unknown applications in the first level application for the detection unit, to described The corresponding bandwidth use information of unknown applications is associated analysis.
16. flow control apparatus according to claim 15, which is characterized in that
The analytical unit, specifically for passing through the accumulative domain-name information and Internet protocol address IP using in flow of inquiry Prestige is associated analysis to the corresponding bandwidth use information of the unknown applications.
17. flow control apparatus according to claim 15, which is characterized in that described device further include:
Configuration unit, if for not can determine that the unknown applications are security application, by the limitation bandwidth of the unknown applications It is configured to the guarantee bandwidth of second level application.
18. flow control apparatus according to claim 10, which is characterized in that described device further include:
Detection unit, for detecting the bandwidth use information of application with the presence or absence of abnormal;
Backup units deposit bandwidth use information if it is abnormal to detect that bandwidth use information exists for the detection unit Record backup is carried out in the relevant information of abnormal application, to carry out subsequent analysis.
CN201610889723.0A 2016-10-11 2016-10-11 Flow control method and device Active CN106453150B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610889723.0A CN106453150B (en) 2016-10-11 2016-10-11 Flow control method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610889723.0A CN106453150B (en) 2016-10-11 2016-10-11 Flow control method and device

Publications (2)

Publication Number Publication Date
CN106453150A CN106453150A (en) 2017-02-22
CN106453150B true CN106453150B (en) 2019-10-18

Family

ID=58174761

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610889723.0A Active CN106453150B (en) 2016-10-11 2016-10-11 Flow control method and device

Country Status (1)

Country Link
CN (1) CN106453150B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107205084B (en) * 2017-05-11 2020-12-18 北京小米移动软件有限公司 Network speed processing method and device of application program and terminal
CN109428781B (en) * 2017-08-30 2021-11-05 中兴通讯股份有限公司 Session usage monitoring control method, server and storage medium
CN107896190A (en) * 2017-12-26 2018-04-10 新华三技术有限公司 It route system of selection, device and the routing device of outgoing interface
CN109995668B (en) * 2018-01-02 2022-10-21 中国移动通信有限公司研究院 Flow control method and device and storage medium
CN109495299B (en) * 2018-11-07 2021-12-28 同盾控股有限公司 Data flow control method and device
CN113727394B (en) * 2021-08-31 2023-11-21 杭州迪普科技股份有限公司 Method and device for realizing shared bandwidth

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
GB0322770D0 (en) * 2003-09-29 2003-10-29 British Telecomm Bandwith allocation
CN101977146B (en) * 2010-10-25 2013-04-17 成都飞鱼星科技开发有限公司 Intelligent network traffic controller and implementation method thereof
CN102035748B (en) * 2010-12-31 2014-07-30 深圳市深信服电子科技有限公司 Application-based traffic control method and controller
CN102916908B (en) * 2011-08-02 2014-03-19 腾讯科技(深圳)有限公司 Method and system for optimizing bandwidth in network application
CN103067192B (en) * 2011-10-20 2016-03-16 北京天行网安信息技术有限责任公司 A kind of analytical system of network traffics and method
CN104038442B (en) * 2014-06-11 2017-07-04 普联技术有限公司 The method and router of a kind of bandwidth allocation
CN105337901A (en) * 2015-09-30 2016-02-17 北京四达时代软件技术股份有限公司 Router intelligent bandwidth allocation method and device

Also Published As

Publication number Publication date
CN106453150A (en) 2017-02-22

Similar Documents

Publication Publication Date Title
CN106453150B (en) Flow control method and device
US10355949B2 (en) Behavioral network intelligence system and method thereof
US20180084039A1 (en) Method and apparatus for scheduling cloud server
US20150371163A1 (en) Churn prediction in a broadband network
US20070150958A1 (en) N grouping of traffic and pattern-free Internet worm response system and method using N grouping of traffic
US20160371178A1 (en) Method and system for testing cloud based applications in a production environment using fabricated user data
CN104391749A (en) Resource allocation method and device
CN108965347A (en) A kind of detecting method of distributed denial of service attacking, device and server
WO2014126576A2 (en) Churn prediction in a broadband network
CN106506266A (en) Network flow analysis method based on GPU, Hadoop/Spark mixing Computational frame
CN109840185A (en) A kind of index correlating method and device
CN106445686A (en) Resource distribution method and device
CN104572302A (en) Method and device for distributing resources
CN111245738B (en) Flow dyeing method
CN116760655B (en) POP point method for providing CPE optimal access in SD-WAN application
CN108270753A (en) The method and device of logging off users account
CN107846614B (en) Video traffic scheduling method and device and electronic equipment
CN113765850B (en) Internet of things abnormality detection method and device, computing equipment and computer storage medium
US10243988B2 (en) Configurable network security
CN105335376A (en) Stream processing method, device and system
CN105187490B (en) A kind of transfer processing method of internet of things data
CN108027760B (en) Method and system for monitoring data storage device
EP3062228B1 (en) Lightweight functional testing
CN110198246B (en) Method and system for monitoring flow
US20160094580A1 (en) Dynamic loading and configuation of threat detectors based on feedback from other nodes

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant