CN106656718A - VxLAN gateway and method for connecting host computer to Internet based on same - Google Patents

VxLAN gateway and method for connecting host computer to Internet based on same Download PDF

Info

Publication number
CN106656718A
CN106656718A CN201510737292.1A CN201510737292A CN106656718A CN 106656718 A CN106656718 A CN 106656718A CN 201510737292 A CN201510737292 A CN 201510737292A CN 106656718 A CN106656718 A CN 106656718A
Authority
CN
China
Prior art keywords
flow
lan
vxlan
mouths
gateways
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201510737292.1A
Other languages
Chinese (zh)
Other versions
CN106656718B (en
Inventor
李实�
陈仲华
金凌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Telecom Corp Ltd
Original Assignee
China Telecom Corp Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Telecom Corp Ltd filed Critical China Telecom Corp Ltd
Priority to CN201510737292.1A priority Critical patent/CN106656718B/en
Publication of CN106656718A publication Critical patent/CN106656718A/en
Application granted granted Critical
Publication of CN106656718B publication Critical patent/CN106656718B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02DCLIMATE CHANGE MITIGATION TECHNOLOGIES IN INFORMATION AND COMMUNICATION TECHNOLOGIES [ICT], I.E. INFORMATION AND COMMUNICATION TECHNOLOGIES AIMING AT THE REDUCTION OF THEIR OWN ENERGY USE
    • Y02D30/00Reducing energy consumption in communication networks
    • Y02D30/50Reducing energy consumption in communication networks in wire-line communication networks, e.g. low power modes or reduced link rate

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)

Abstract

The invention discloses a VxLAN gateway and a method for connecting a host computer to the Internet based on the same. The method comprises the following steps: a VxLAN gateway responds to an ARP query broadcasted by a host computer in a local area network (LAN) for querying the MAC address of a default gateway, and replies to the ARP query with the MAC address of the LAN port of the VxLAN gateway to guide the host computer in the LAN to send Internet traffic to the LAN port of the VxLAN gateway; and the VxLAN gateway receives the Internet traffic sent by the host computer in the LAN through the LAN port, carries out network address translation on the Internet traffic, and then sends the Internet traffic to the Internet via a WAN port. The VxLAN gateway replies to the ARP query of the host computer in the LAN with the MAC address of the LAN port of the VxLAN gateway to guide the host computer in the LAN to send Internet traffic to the LAN port of the VxLAN gateway, so that the Internet traffic in the LAN can be sent to the Internet through the VxLAN gateway directly without via other VxLAN gateways. Thus, network resources are saved, and the network performance and user experience are improved.

Description

The method that VxLAN gateways and the main frame realized based on VxLAN gateways access internet
Technical field
The present invention relates to computer network field, especially a kind of VxLAN gateways and be based on VxLAN (Virtual Extensible Local Area Network, virtual expansible local Net) gateway realize main frame access internet method and VxLAN gateways.
Background technology
In traditional approach, government and enterprises user realizes big two layers of connection using VxLAN technologies, and By unified DHCP, (Dynamic Host Configuration Protocol, dynamic is main Machine configuration protocol) server gives host assignment address.
Dynamic Host Configuration Protocol server cannot be distinguished from same double layer intercommunication domain LAN (i.e. Enterprise branch) main frame, the address that can only distribute in the same network segment to All hosts and same Default gateway.This require main frame in whole VxLAN double layer intercommunications domain by it is same go out Mouth is linked into internet.As shown in figure 1, the Internet exportation 12 of each LAN is located at the One LAN 14, the surfing flow of the second LAN 16 cannot be directly accessed internet 18, must Must Jing the first LANs 14 it is roundabout and be sent to Internet exportation 12.Enterprise practical is paid for online Unnecessary traffic overhead is gone out.
The content of the invention
An embodiment of the present invention technical problem to be solved is:Based on VxLAN technology realities In the network of existing double layer intercommunication, how to avoid from other LANs of the surfing flow Jing of LAN Internet is entered back into after roundabout.
One side according to embodiments of the present invention, there is provided one kind is based on virtual expansible local The method that the main frame that net VxLAN gateways are realized accesses internet, including:VxLAN gateways pair In this LAN host broadcast inquiry default gateway MAC (Media Access Control, Media access control) address ARP (Address Resolution Protocol, address resolution Agreement) inquiry responded, reply with the LAN of VxLAN gateways (Local Area Network, LAN) mouth MAC Address, guide main frame in this LAN to send surfing flow with this To the LAN mouths of VxLAN gateways;VxLAN gateways are received in this LAN from LAN mouths After the surfing flow that main frame sends, surfing flow is carried out into NAT (Network Address Translation, network address translation) conversion after, from WAN (Wide Area Network, Wide area network) mouth is sent to internet.
In one embodiment, VxLAN gateways receive main frame in this LAN by LAN mouths The surfing flow of transmission includes:VxLAN gateways receive main frame in this LAN by LAN mouths The flow of transmission, and recognize whether flow is surfing flow by the target MAC (Media Access Control) address of flow, If the target MAC (Media Access Control) address of flow is the MAC Address of the LAN mouths of VxLAN gateways, Then flow is surfing flow, if the target MAC (Media Access Control) address of flow is not VxLAN gateways The MAC Address of LAN mouths, then flow is double layer intercommunication flow.
In one embodiment, method also includes:VxLAN gateways receive this by LAN mouths The double layer intercommunication flow that main frame sends in LAN, to the double layer intercommunication flow from LAN mouths VxLAN encapsulation is carried out, and other VxLAN gateways are sent to by WAN mouths.
In one embodiment, method also includes:VxLAN gateways receive mutual by WAN mouths Networking flow, internet traffic is carried out after the conversion of network address translation NAT, from LAN mouths It is sent to main frame in this LAN.
In one embodiment, VxLAN gateways receive internet traffic and include by WAN mouths: VxLAN gateways receive flow by WAN mouths, and recognize flow by the type of message of flow Whether it is internet traffic, if flow is not VxLAN encapsulation flows, flow is interconnection Net flow, if flow is VxLAN encapsulation flows, flow is double layer intercommunication flow.
In one embodiment, method also includes:VxLAN gateways receive it by WAN mouths The double layer intercommunication flow that his VxLAN gateways send, to the double layer intercommunication stream from WAN mouths Amount carries out VxLAN decapsulations, and the main frame being sent to by LAN mouths in this LAN.
A kind of second aspect according to embodiments of the present invention, there is provided VxLAN gateways, including: Arp response module, for the inquiry default gateway media interviews to host broadcast in this LAN The ARP inquiry of control MAC Address is responded, and is replied with VxLAN The MAC Address of the local network LAN mouth of gateway, guides main frame in this LAN to surf the Net with this Flow is sent to the LAN mouths of VxLAN gateways;Flow receiver module, for from LAN mouths Receive the surfing flow that main frame sends in this LAN;NAT modules, for by surfing flow Carry out NAT conversions;Flow sending module, for by the surfing flow after conversion from wide area network WAN mouths are sent to internet.
In one embodiment, flow receiver module also includes MAC recognition units, for leading to Whether the target MAC (Media Access Control) address identification flow of inflow-rate of water turbine is surfing flow, if the purpose of flow MAC Address is the MAC Address of the LAN mouths of VxLAN gateways, then flow is online stream Amount, if the target MAC (Media Access Control) address of flow is not the MAC of the LAN mouths of VxLAN gateways Address, then flow is double layer intercommunication flow.
In one embodiment, flow receiver module is additionally operable to receive this local by LAN mouths The double layer intercommunication flow that main frame sends in net;VxLAN gateways also include VxLAN package modules, For carrying out VxLAN encapsulation to the double layer intercommunication flow from LAN mouths;Flow sending module It is additionally operable to that the flow after encapsulation is sent into other VxLAN gateways by WAN mouths.
In one embodiment, flow receiver module is used to receive Internet streaming by WAN mouths Amount, flow sending module is used to that internet traffic to be carried out into network address translation in NAT modules After NAT conversions, from LAN mouths main frame in this LAN is sent to.
In one embodiment, flow receiver module also includes message recognition unit, for passing through Whether the type of message identification flow of flow is internet traffic, if flow is not VxLAN Encapsulation flow, then flow is internet traffic, if flow is VxLAN encapsulation flows, Flow is double layer intercommunication flow.
In one embodiment, flow receiver module is used to receive other by WAN mouths The double layer intercommunication flow that VxLAN gateways send;VxLAN gateways are also unsealed including VxLAN Die-filling piece, for carrying out VxLAN decapsulations to the double layer intercommunication flow from WAN mouths; Flow sending module is used to that the flow after decapsulation is sent in this LAN by LAN mouths Main frame.
By the present invention in that being replied in LAN with the MAC Address of VxLAN gateway LAN mouths The ARP inquiries of main frame, guide main frame in this LAN that surfing flow is sent into VxLAN nets The LAN mouths of pass such that it is able to which the surfing flow in this LAN is directly passed through VxLAN nets Pass is sent to internet, and without the need for Jing, other VxLAN gateways are roundabout, saved Internet resources, Improve network performance and Consumer's Experience.
Additionally, the destination-mac address of message that VxLAN gateways are received according to LAN mouths is known Other different flow, realizes the multiplexing of VxLAN gateway LAN mouths;Received according to WAN mouths Message the different flow of type identification, realize the multiplexing of VxLAN gateway WAN mouths.
By referring to the drawings to the detailed description of exemplary embodiment of the invention, the present invention Further feature and its advantage will be made apparent from.
Description of the drawings
In order to be illustrated more clearly that the embodiment of the present invention or technical scheme of the prior art, below will The accompanying drawing to be used needed for embodiment or description of the prior art is briefly described, it is clear that Ground, drawings in the following description are only some embodiments of the present invention, for the common skill in this area For art personnel, on the premise of not paying creative work, can be with according to these accompanying drawings acquisitions Other accompanying drawings.
Fig. 1 is illustrated in prior art and is realized that the LAN of double layer intercommunication connects based on VxLAN technologies Enter the schematic diagram of a scenario of internet.
Fig. 2 illustrates the method that the present invention accesses internet based on the main frame that VxLAN gateways are realized Schematic diagram of a scenario.
Fig. 3 illustrates the method that the present invention accesses internet based on the main frame that VxLAN gateways are realized One embodiment flow chart.
Fig. 4 illustrates that the present invention is identified to the flow that the LAN mouths of VxLAN gateways are received Method one embodiment flow chart.
Fig. 5 illustrates that the present invention is identified to the flow that the WAN mouths of VxLAN gateways are received Method one embodiment flow chart.
Fig. 6 illustrates the structure chart of VxLAN gateways one embodiment of the present invention.
Specific embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, to the technical scheme in the embodiment of the present invention It is clearly and completely described, it is clear that described embodiment is only that a present invention part is real Apply example, rather than the embodiment of whole.Below to the description reality of at least one exemplary embodiment It is merely illustrative on border, never as to the present invention and its application or any restriction for using. Based on the embodiment in the present invention, those of ordinary skill in the art are not before creative work is made The every other embodiment for being obtained is put, the scope of protection of the invention is belonged to.
Fig. 2 is the method that the present invention accesses internet based on the main frame that VxLAN gateways are realized Schematic diagram of a scenario.As a example by there is two LANs in VxLAN intercommunication areas, as shown in Fig. 2 First LAN 14 has VxLAN gateways 24, and the second LAN 16 has VxLAN nets Close 26.Each LAN realizes sending out for internet traffic by respective VxLAN gateways Send or receive, without the need for roundabout by other VxLAN gateways.
Below with reference to Fig. 3 describe one embodiment of the invention based on VxLAN gateways realize The method that main frame accesses internet.Fig. 3 is the main frame that the present invention is realized based on VxLAN gateways Access the flow chart of one embodiment of the method for internet.As shown in figure 3, the embodiment Method includes:
Step S302, the host broadcast inquiry default gateway in the LAN of VxLAN gateways place The ARP inquiries of MAC Address.
Wherein, default gateway is that Dynamic Host Configuration Protocol server is each VxLAN in VxLAN intercommunication areas Host assignment unified gateway.
Step S304, VxLAN gateways response ARP is inquired about and replied with VxLAN gateways The MAC Address of LAN mouths, rather than reply with default gateway (or claiming unified gateway) MAC Address, guides main frame in this LAN that surfing flow is sent into VxLAN gateways with this LAN mouths.Main frame is received after arp response, and surfing flow is sent to VxLAN gateways LAN mouths.
Specifically, first, VxLAN gateways check the Target IP (Internet of ARP query messages Protocol, Internet protocol) address, it is ensured that will not be by inquiry default gateway MAC Address ARP messages are forwarded to other LANs in same intercommunication area;Secondly, if VxLAN nets Close and find default gateway in local area network, then VxLAN gateways no longer need to carry out more Operation, default gateway will respond this ARP inquiry;If default gateway is not in local area network It is interior, then VxLAN gateways respond this ARP with the MAC Address of VxLAN gateway LAN mouths Query message.
Wherein, surfing flow accesses the message of internet.
Step S306, VxLAN gateways receive what main frame in this LAN sent by LAN mouths Surfing flow, surfing flow is carried out after NAT conversions, from WAN mouths internet to be sent to.
Wherein, NAT is converted to network address translation.VxLAN gateways are effectively outer with one Portion's IP address, the nat feature of VxLAN gateways can by this LAN main frame it is local Address conversion is Global IP addresses, enables the host to carry out proper communication with internet.
Main frame in LAN is replied by using the MAC Address of VxLAN gateway LAN mouths ARP is inquired about, and guides main frame in this LAN that surfing flow is sent into VxLAN gateways LAN mouths such that it is able to directly send out the surfing flow in this LAN by VxLAN gateways Internet is sent to, and without the need for Jing, other VxLAN gateways are roundabout, saved Internet resources, carry Network performance and Consumer's Experience are risen.
Send in flow from VxLAN, in addition to the surfing flow for being sent to internet, also It is sent to the double layer intercommunication flow of other LANs VxLAN intercommunication areas Nei.The present invention is also proposed can Both flows are identified with the destination-mac address of the message received according to LAN mouths. The LAN mouths to VxLAN gateways for describing one embodiment of the invention below with reference to Fig. 4 are received The method that is identified of flow.
Fig. 4 is the side that the present invention is identified to the flow that the LAN mouths of VxLAN gateways are received The flow chart of method one embodiment.As shown in figure 4, the method for the embodiment includes:
Step S402, VxLAN gateways receive what main frame in this LAN sent by LAN mouths Flow.
Step S404, VxLAN gateways judge whether the target MAC (Media Access Control) address of flow is equal to The LAN mouth MAC Address of VxLAN gateways.
Step S406, if the target MAC (Media Access Control) address of flow is VxLAN gateways, i.e. VxLAN The LAN mouth MAC Address of gateway, then flow is surfing flow.Then, surfing flow is entered Row NAT is changed, and the local address of main frame is converted into Global IP addresses, then execution step S410。
Step S408, if the target MAC (Media Access Control) address of flow is not VxLAN gateways, flows Amount is double layer intercommunication flow.Then, VxLAN gateways are to the double layer intercommunication stream from LAN mouths Amount carries out VxLAN encapsulation, then execution step S412.
Wherein, VxLAN encapsulation is a kind of technology for being packaged two layer message with three layer protocols, Double layer network can be extended in three layers of scope, allow virtual machine in three for interconnecting Migrate in the range of layer network, without changing IP address and MAC Address, it is ensured that business Continuity.
Surfing flow is sent to internet by step S410, VxLAN gateways by WAN mouths.
Double layer intercommunication flow is sent to it by step S412, VxLAN gateways by WAN mouths His VxLAN gateways.
Such scheme, the Destination MAC ground of the message that VxLAN gateways are received according to LAN mouths Location recognizes different flow, and surfing flow and double layer intercommunication flow are distinguished, and realizes The multiplexing of VxLAN gateway LAN mouths.
With the process of above-mentioned transmission internet traffic accordingly, VxLAN gateways can also lead to The existing reception to internet traffic of WAN causes for gossip of VxLAN gateways is crossed, for example, can be adopted Following method:First, VxLAN gateways receive internet traffic by WAN mouths;So Afterwards, internet traffic is carried out NAT conversions by VxLAN gateways, would indicate that flow destination The Global IP addresses of location are converted to local address;Finally, VxLAN gateways by flow from LAN Mouth is sent to main frame in this LAN.
By the way that in this way, VxLAN gateways can directly receive internet and be sent to office The flow of domain net, and needing not move through unified entrance in VxLAN intercommunication areas carries out roundabout, saving Internet resources, improve efficiency.
In addition to receiving internet traffic, the WAN mouths of VxLAN gateways also can be received Double layer intercommunication flow.Below with reference to Fig. 5 describe one embodiment of the invention to VxLAN nets The method that the flow that the WAN mouths of pass are received is identified.
Fig. 5 is the side that the present invention is identified to the flow that the WAN mouths of VxLAN gateways are received The flow chart of method one embodiment.As shown in figure 5, the method for the embodiment includes:
Step S502, VxLAN gateways receive flow by WAN mouths.
Step S504, VxLAN gateways check the type of message of flow.
Step S506, if flow is not VxLAN encapsulation flows, flow is Internet streaming Amount.Internet traffic is carried out NAT conversions by VxLAN gateways, would indicate that flow destination address Global IP addresses be converted to local host address, then step S510.
Step S508, if flow is VxLAN encapsulation flows, flow is double layer intercommunication stream Amount.VxLAN gateways carry out VxLAN decapsulations to the double layer intercommunication flow from WAN mouths, Then step S510.
Flow is sent to step S510, VxLAN gateways the main frame in LAN from LAN mouths.
Because double layer intercommunication flow has carried out before transmitting VxLAN encapsulation, thus by stream The type of message of amount can come the traffic differentiation for receiving.So as to be received according to WAN mouths Message the different flow of type identification, realize the multiplexing of VxLAN gateway WAN mouths.
By the internet access method using above-mentioned each embodiment, can realize passing through The process that VxLAN gateways are received and dispatched to internet traffic and double layer intercommunication flow, makes each office Domain net can respectively be directly accessed internet in the case where communication each other is realized, save About flow, and improve the experience of user.
The VxLAN gateways of one embodiment of the invention are described below with reference to Fig. 6.
Fig. 6 is the structure chart of VxLAN gateways one embodiment of the present invention.As shown in fig. 6, should The VxLAN gateways of embodiment include:Arp response module 622, for main in this LAN The ARP of the inquiry default gateway MAC address of machine broadcast Inquiry is responded, and replys the MAC Address of the local network LAN mouth of VxLAN gateways, with Guide main frame in this LAN that surfing flow is sent to the LAN mouths of VxLAN gateways;Flow Receiver module 624, for receiving the surfing flow that main frame sends in this LAN by LAN mouths; NAT modules 626, for surfing flow to be carried out into NAT conversions;Flow sending module 628, For the surfing flow after conversion to be sent into internet from wide area network WAN mouths.
Wherein, flow receiver module 624 can also include MAC recognition units, for by stream Whether the target MAC (Media Access Control) address identification flow of amount is surfing flow, if purpose MAC of flow Address is the MAC Address of the LAN mouths of VxLAN gateways, then flow is surfing flow, if The target MAC (Media Access Control) address of flow is not the MAC Address of the LAN mouths of VxLAN gateways, then flow Amount is double layer intercommunication flow.
Flow receiver module 624 can be also used for receiving main frame transmission in this LAN by LAN mouths Double layer intercommunication flow;Now, VxLAN gateways can also include VxLAN package modules, use In carrying out VxLAN encapsulation to the double layer intercommunication flow from LAN mouths;Flow sending module 628 Can be also used for that the flow after encapsulation is sent into other VxLAN gateways by WAN mouths.
Flow receiver module 624 can be also used for receiving internet traffic, flow by WAN mouths Sending module 628 is used to that internet traffic to be carried out into network address translation NAT in NAT modules 626 After conversion, from LAN mouths main frame in this LAN is sent to.
Wherein, flow receiver module 624 can also include message recognition unit, for by flow Type of message identification flow whether be internet traffic, if flow be not VxLAN encapsulation stream Amount, then flow is internet traffic, if flow is VxLAN encapsulation flows, flow is two Layer intercommunication flow.
Flow receiver module 624 can be used for receiving other VxLAN gateways transmissions by WAN mouths Double layer intercommunication flow;Gateway also includes VxLAN decapsulation modules, for from WAN mouths Double layer intercommunication flow carry out VxLAN decapsulations;Flow sending module 628 is used to pass through LAN Flow after decapsulation is sent to main frame in this LAN by mouth.
The VxLAN gateways of the present invention reply main in LAN using the MAC Address of LAN mouths The ARP inquiries of machine, guide main frame in this LAN that surfing flow is sent into VxLAN gateways LAN mouths such that it is able to by the surfing flow in this LAN directly pass through VxLAN gateways Internet is sent to, and without the need for Jing, other VxLAN gateways are roundabout, saved Internet resources, Improve network performance and Consumer's Experience.
Additionally, the destination-mac address of message that VxLAN gateways are received according to LAN mouths is known Other different flow, realizes the multiplexing of VxLAN gateway LAN mouths;Received according to WAN mouths Message the different flow of type identification, realize the multiplexing of VxLAN gateway WAN mouths.
Additionally, the method according to the invention is also implemented as a kind of computer program, should Computer program includes computer-readable medium, is stored with the computer-readable medium The computer program of the above-mentioned functions limited in for performing the method for the present invention.Art technology Personnel will also understand is that, the various illustrative logical blocks with reference to described by disclosure herein, mould Block, circuit and algorithm steps may be implemented as the group of electronic hardware, computer software or both Close.
Presently preferred embodiments of the present invention is the foregoing is only, it is all at this not to limit the present invention Within the spirit and principle of invention, any modification, equivalent substitution and improvements made etc. all should be wrapped It is contained within protection scope of the present invention.

Claims (12)

1. a kind of main frame realized based on virtual expansible LAN VxLAN gateways accesses mutual The method of networking, including:
Inquiry default gateway media interviews control of the VxLAN gateways to host broadcast in this LAN The ARP inquiry of MAC Address processed is responded, and is replied with the VxLAN The MAC Address of the local network LAN mouth of gateway, guides main frame in this LAN to surf the Net with this Flow is sent to the LAN mouths of the VxLAN gateways;
After the surfing flow that VxLAN gateways receive that main frame sends in this LAN from LAN mouths, Surfing flow is carried out after network address translation NAT, from wide area network WAN mouths interconnection is sent to Net.
2. method according to claim 1, it is characterised in that the VxLAN nets Closing the surfing flow for receiving main frame transmission in this LAN by LAN mouths includes:
VxLAN gateways receive the flow that main frame sends in this LAN from LAN mouths, and lead to Whether the target MAC (Media Access Control) address identification flow of inflow-rate of water turbine is surfing flow, if the purpose of flow MAC Address is the MAC Address of the LAN mouths of the VxLAN gateways, then the flow It is surfing flow, if the target MAC (Media Access Control) address of flow is not the LAN of the VxLAN gateways The MAC Address of mouth, then the flow is double layer intercommunication flow.
3. method according to claim 1 and 2, it is characterised in that methods described is also Including:
VxLAN gateways receive the double layer intercommunication stream that main frame sends in this LAN by LAN mouths Amount, to the double layer intercommunication flow from LAN mouths VxLAN encapsulation is carried out, and by WAN Mouth is sent to other VxLAN gateways.
4. method according to claim 1, it is characterised in that methods described also includes:
VxLAN gateways receive internet traffic by WAN mouths, and internet traffic is carried out into net After the conversion of network address conversion NAT, from LAN mouths main frame in this LAN is sent to.
5. method according to claim 4, it is characterised in that the VxLAN nets Close is included by WAN mouths reception internet traffic:
VxLAN gateways receive flow by WAN mouths, and are recognized by the type of message of flow Whether flow is internet traffic, if flow is not VxLAN encapsulation flows, the stream Amount is internet traffic, if flow is VxLAN encapsulation flows, the flow is two layers Mutual through-current capacity.
6. the method according to claim 4 or 5, it is characterised in that methods described is also Including:
VxLAN gateways receive the double layer intercommunication that other VxLAN gateways send by WAN mouths Flow, to the double layer intercommunication flow from WAN mouths VxLAN decapsulations are carried out, and are passed through LAN mouths are sent to the main frame in this LAN.
7. a kind of VxLAN gateways, including:
Arp response module, for inquiry of the VxLAN gateways to host broadcast in this LAN The ARP inquiry of default gateway MAC address is responded, Reply with the MAC Address of the local network LAN mouth of the VxLAN gateways, this is guided with this Surfing flow is sent to main frame the LAN mouths of the VxLAN gateways in LAN;
Flow receiver module, for receiving the online that main frame sends in this LAN from LAN mouths Flow;
NAT modules, for surfing flow to be carried out into NAT conversions;
Flow sending module, for the surfing flow after conversion to be sent from wide area network WAN mouths To internet.
8. VxLAN gateways according to claim 7, it is characterised in that the stream Amount receiver module also includes MAC recognition units, for by the target MAC (Media Access Control) address of flow Whether identification flow is surfing flow, if the target MAC (Media Access Control) address of flow is the VxLAN The LAN mouth MAC Address of gateway, then the flow is surfing flow, if the purpose of flow MAC Address is not the MAC Address of the LAN mouths of the VxLAN gateways, then the stream Amount is double layer intercommunication flow.
9. VxLAN gateways according to claim 7 or 8, it is characterised in that institute State flow receiver module to be additionally operable to receive two layers of main frame transmission in this LAN by LAN mouths Mutual through-current capacity;
The VxLAN gateways also include VxLAN package modules, for from LAN mouths Double layer intercommunication flow carry out VxLAN encapsulation;
The flow sending module is additionally operable to that the flow after encapsulation is sent into it by WAN mouths His VxLAN gateways.
10. VxLAN gateways according to claim 7, it is characterised in that the stream Amount receiver module is used to receive internet traffic by WAN mouths, and the flow sending module is used After internet traffic is carried out into the conversion of network address translation NAT in the NAT modules, from LAN mouths are sent to main frame in this LAN.
11. VxLAN gateways according to claim 10, it is characterised in that the stream Amount receiver module also includes message recognition unit, for recognizing flow by the type of message of flow Whether it is internet traffic, if flow is not VxLAN encapsulation flows, the flow is Internet traffic, if flow is VxLAN encapsulation flows, the flow is double layer intercommunication Flow.
The 12. VxLAN gateways according to claim 10 or 11, it is characterised in that The flow receiver module is used to receive other VxLAN gateways send two by WAN mouths Layer intercommunication flow;
The VxLAN gateways also include VxLAN decapsulation modules, for from WAN The double layer intercommunication flow of mouth carries out VxLAN decapsulations;
The flow sending module is used to that the flow after decapsulation to be sent into this by LAN mouths Main frame in LAN.
CN201510737292.1A 2015-11-04 2015-11-04 VxLAN gateway and method for accessing host to internet based on VxLAN gateway Active CN106656718B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201510737292.1A CN106656718B (en) 2015-11-04 2015-11-04 VxLAN gateway and method for accessing host to internet based on VxLAN gateway

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201510737292.1A CN106656718B (en) 2015-11-04 2015-11-04 VxLAN gateway and method for accessing host to internet based on VxLAN gateway

Publications (2)

Publication Number Publication Date
CN106656718A true CN106656718A (en) 2017-05-10
CN106656718B CN106656718B (en) 2020-01-24

Family

ID=58810063

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201510737292.1A Active CN106656718B (en) 2015-11-04 2015-11-04 VxLAN gateway and method for accessing host to internet based on VxLAN gateway

Country Status (1)

Country Link
CN (1) CN106656718B (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111371666A (en) * 2018-12-26 2020-07-03 华为技术有限公司 Method, device and system for processing message

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101052022A (en) * 2006-04-05 2007-10-10 华为技术有限公司 System and method for virtual special net user to access public net
CN102209124A (en) * 2011-06-08 2011-10-05 杭州华三通信技术有限公司 Method for communication between private network and public network and network address translation equipment
CN103546374A (en) * 2012-07-10 2014-01-29 杭州华三通信技术有限公司 Message forwarding method and device in two-layered edge network
US20140269702A1 (en) * 2013-03-14 2014-09-18 Cisco Technology, Inc. Interoperability of data plane based overlays and control plane based overlays in a network environment
CN104702476A (en) * 2013-12-05 2015-06-10 华为技术有限公司 Distributed gateway, message processing method and message processing device based on distributed gateway

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101052022A (en) * 2006-04-05 2007-10-10 华为技术有限公司 System and method for virtual special net user to access public net
CN102209124A (en) * 2011-06-08 2011-10-05 杭州华三通信技术有限公司 Method for communication between private network and public network and network address translation equipment
CN103546374A (en) * 2012-07-10 2014-01-29 杭州华三通信技术有限公司 Message forwarding method and device in two-layered edge network
US20140269702A1 (en) * 2013-03-14 2014-09-18 Cisco Technology, Inc. Interoperability of data plane based overlays and control plane based overlays in a network environment
CN104702476A (en) * 2013-12-05 2015-06-10 华为技术有限公司 Distributed gateway, message processing method and message processing device based on distributed gateway

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111371666A (en) * 2018-12-26 2020-07-03 华为技术有限公司 Method, device and system for processing message
CN111371666B (en) * 2018-12-26 2021-12-31 华为技术有限公司 Method, device and system for processing message

Also Published As

Publication number Publication date
CN106656718B (en) 2020-01-24

Similar Documents

Publication Publication Date Title
US10432428B2 (en) Automatic resolution of virtual network instance to VLAN mapping conflicts in dual-homed deployments in a dynamic fabric automation network architecture
CN101022394B (en) Method for realizing virtual local network aggregating and converging exchanger
US9819574B2 (en) Concerted multi-destination forwarding in a joint TRILL fabric and VXLAN/IP fabric data center
EP2901630B1 (en) Method operating in a fixed access network and user equipments
US10164910B2 (en) Method and apparatus for an information-centric MAC layer
WO2015165311A1 (en) Method for transmitting data packet and provider edge device
CN102075438B (en) unicast data frame transmission method and device
CN102710485B (en) Transparent proxy method and proxy server
CN102355417A (en) Data center two-layer interconnection method and device
US8472420B2 (en) Gateway device
CN103763407A (en) Method for achieving address resolution protocol proxy through two-layer virtual local area network and local area network system
US8724630B2 (en) Method and system for implementing network intercommunication
CN102821165B (en) Ip address conversion method and device
CN102546407B (en) File transmitting method and device
CN103747116A (en) Business access method and device based on Layer 2 Tunneling Protocol (L2TP)
CN109547452A (en) The method and system of TCP Transparent Proxy are realized on Linux bridge equipment
CN107733930B (en) Method and system for forwarding Internet Protocol (IP) packets at multiple WAN network gateways
CN109246016B (en) Cross-VXLAN message processing method and device
CN105991446A (en) Three-layer networking method, device and system and data processing method, device and system of TRILL network
CN105933235A (en) Data communication method and data communication device
CN108023971A (en) A kind of DHCP message retransmission method and device
CN109818869B (en) Method for generating multicast traffic forwarding port and related equipment
US20120300776A1 (en) Method for creating virtual link, communication network element, and ethernet network system
CN107666428A (en) Silencing devices detection method and device
CN109728926A (en) Communication means and the network equipment

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant