CN107113278A - 邻居建立的方法、设备和系统 - Google Patents
邻居建立的方法、设备和系统 Download PDFInfo
- Publication number
- CN107113278A CN107113278A CN201580062748.7A CN201580062748A CN107113278A CN 107113278 A CN107113278 A CN 107113278A CN 201580062748 A CN201580062748 A CN 201580062748A CN 107113278 A CN107113278 A CN 107113278A
- Authority
- CN
- China
- Prior art keywords
- network equipment
- udl
- certification
- authentication information
- message
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0869—Network architectures or network communication protocols for network security for authentication of entities for achieving mutual authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/12—Discovery or management of network topologies
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
- H04L43/10—Active monitoring, e.g. heartbeat, ping or trace-route
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L45/00—Routing or path finding of packets in data switching networks
- H04L45/02—Topology update or discovery
- H04L45/026—Details of "hello" or keep-alive messages
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/14—Multichannel or multilink protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
- H04L67/10—Protocols in which an application is distributed across nodes in the network
- H04L67/104—Peer-to-peer [P2P] networks
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Health & Medical Sciences (AREA)
- Cardiology (AREA)
- General Health & Medical Sciences (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
本发明实施例公开了一种邻居建立的方法、设备和系统,该方法根据第一网络设备和第二网络设备使能认证的情况,在互相发送的报文中添加对应的认证信息,由第一网络设备向第二网络设备发送HELLO报文,由所述第二网络设备接收HELLO报文并进行认证,当认证通过后,通过扩展的UDL LSP报文应答所述HELLO报文;再由第一网络设备接收所述扩展的UDL LSP报文并进行认证,当认证结果为所述第一网络设备和所述第二网络设备均使能了认证且认证通过,可建立两者之间的邻居关系。通过上述过程,能够仅一端认证通过也可以建立邻居关系的情况出现,从而克服邻居建立时认证不完整的问题,提高了网络设备间建立邻居时的安全可靠性。
Description
PCT国内申请,说明书已公开。
Claims (19)
- PCT国内申请,权利要求书已公开。
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
PCT/CN2015/085431 WO2017015899A1 (zh) | 2015-07-29 | 2015-07-29 | 邻居建立的方法、设备和系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN107113278A true CN107113278A (zh) | 2017-08-29 |
CN107113278B CN107113278B (zh) | 2019-10-22 |
Family
ID=57886936
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201580062748.7A Active CN107113278B (zh) | 2015-07-29 | 2015-07-29 | 邻居建立的方法、设备和系统 |
Country Status (4)
Country | Link |
---|---|
US (1) | US10447549B2 (zh) |
EP (1) | EP3319286B1 (zh) |
CN (1) | CN107113278B (zh) |
WO (1) | WO2017015899A1 (zh) |
Families Citing this family (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US11032144B2 (en) * | 2017-07-12 | 2021-06-08 | Nec Corporation | Network control system, method and program |
US11252162B2 (en) * | 2019-04-02 | 2022-02-15 | Ciena Corporation | Enhancement to the IS-IS protocol for eliminating unwanted network traffic |
CN116527408B (zh) * | 2023-07-05 | 2023-09-08 | 中国电子科技集团公司第十五研究所 | 一种基于友邻总线的认证管理方法及应用 |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101426004A (zh) * | 2007-10-29 | 2009-05-06 | 华为技术有限公司 | 三层会话的接入方法、系统及设备 |
CN101431471A (zh) * | 2008-12-17 | 2009-05-13 | 华为技术有限公司 | 一种lsp报文传输的方法、设备及系统 |
CN103095563A (zh) * | 2011-11-01 | 2013-05-08 | 中兴通讯股份有限公司 | 一种报文处理方法及系统 |
US20140313939A1 (en) * | 2013-04-23 | 2014-10-23 | Telefonaktiebolaget L M Ericsson (Publ) | Method and system for synchronizing with neighbor in a distributed resilient network interconnect (drni) link aggregation group |
Family Cites Families (21)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US7327683B2 (en) * | 2000-03-16 | 2008-02-05 | Sri International | Method and apparatus for disseminating topology information and for discovering new neighboring nodes |
US7386792B1 (en) * | 2001-03-07 | 2008-06-10 | Thomas Layne Bascom | System and method for collecting, storing, managing and providing categorized information related to a document object |
US20030149869A1 (en) * | 2002-02-01 | 2003-08-07 | Paul Gleichauf | Method and system for securely storing and trasmitting data by applying a one-time pad |
US7372859B2 (en) * | 2003-11-19 | 2008-05-13 | Honeywell International Inc. | Self-checking pair on a braided ring network |
US7406032B2 (en) * | 2005-01-06 | 2008-07-29 | At&T Corporation | Bandwidth management for MPLS fast rerouting |
US7499445B2 (en) * | 2005-03-18 | 2009-03-03 | Cisco Technology, Inc. | System and method for routing ISIS traffic through unidirectional links of a computer network |
CN100389571C (zh) * | 2005-03-25 | 2008-05-21 | 华为技术有限公司 | 检测混合网络中端到端节点间链路故障的方法 |
US7957380B2 (en) * | 2005-11-21 | 2011-06-07 | Cisco Technology, Inc. | Support of unidirectional link in IS-IS without IP encapsulation and in presence of unidirectional return path |
US9712486B2 (en) * | 2006-09-25 | 2017-07-18 | Weaved, Inc. | Techniques for the deployment and management of network connected devices |
US7912094B2 (en) * | 2006-12-13 | 2011-03-22 | Honeywell International Inc. | Self-checking pair-based master/follower clock synchronization |
US7778159B2 (en) * | 2007-09-27 | 2010-08-17 | Honeywell International Inc. | High-integrity self-test in a network having a braided-ring topology |
US8289879B2 (en) * | 2008-02-07 | 2012-10-16 | Ciena Corporation | Methods and systems for preventing the misconfiguration of optical networks using a network management system |
CN102136928B (zh) * | 2010-07-02 | 2013-10-09 | 华为技术有限公司 | 拓扑发现方法及装置 |
CN102480429A (zh) * | 2010-11-26 | 2012-05-30 | 华为数字技术有限公司 | 报文处理方法、装置和系统 |
US10257161B2 (en) | 2012-05-22 | 2019-04-09 | Cisco Technology, Inc. | Using neighbor discovery to create trust information for other applications |
EP2706705B1 (en) * | 2012-09-07 | 2015-11-04 | Alcatel Lucent | Connectivity checking of a bidirectional circular path in a communication network |
US8711855B1 (en) * | 2012-12-18 | 2014-04-29 | Juniper Networks, Inc. | Topology discovery, control channel establishment, and datapath provisioning within an aggregation network with centralized control |
US9722919B2 (en) * | 2014-01-22 | 2017-08-01 | Cisco Technology, Inc. | Tying data plane paths to a secure control plane |
US10142444B2 (en) * | 2014-07-01 | 2018-11-27 | Trinity Mobile Networks, Inc. | Methods, devices, and systems for implementing centralized hybrid wireless self-organizing networks |
US9634928B2 (en) * | 2014-09-29 | 2017-04-25 | Juniper Networks, Inc. | Mesh network of simple nodes with centralized control |
EP3206338A1 (en) * | 2016-02-11 | 2017-08-16 | Xieon Networks S.à r.l. | Service-based loss forwarding in communication networks |
-
2015
- 2015-07-29 WO PCT/CN2015/085431 patent/WO2017015899A1/zh active Application Filing
- 2015-07-29 CN CN201580062748.7A patent/CN107113278B/zh active Active
- 2015-07-29 EP EP15899251.1A patent/EP3319286B1/en active Active
-
2018
- 2018-01-29 US US15/881,965 patent/US10447549B2/en active Active
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101426004A (zh) * | 2007-10-29 | 2009-05-06 | 华为技术有限公司 | 三层会话的接入方法、系统及设备 |
CN101431471A (zh) * | 2008-12-17 | 2009-05-13 | 华为技术有限公司 | 一种lsp报文传输的方法、设备及系统 |
CN103095563A (zh) * | 2011-11-01 | 2013-05-08 | 中兴通讯股份有限公司 | 一种报文处理方法及系统 |
US20140313939A1 (en) * | 2013-04-23 | 2014-10-23 | Telefonaktiebolaget L M Ericsson (Publ) | Method and system for synchronizing with neighbor in a distributed resilient network interconnect (drni) link aggregation group |
Also Published As
Publication number | Publication date |
---|---|
CN107113278B (zh) | 2019-10-22 |
WO2017015899A1 (zh) | 2017-02-02 |
EP3319286B1 (en) | 2021-03-24 |
US20180152355A1 (en) | 2018-05-31 |
EP3319286A1 (en) | 2018-05-09 |
US10447549B2 (en) | 2019-10-15 |
EP3319286A4 (en) | 2018-07-18 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN107947357B (zh) | 一种基于安全接入区的配电自动化数据采集装置及方法 | |
US20020076054A1 (en) | Session shared key sharing method, wireless terminal authentication method, wireless terminal, and base station device | |
US20150207793A1 (en) | Feature Enablement or Disablement Based on Discovery Message | |
CN108521662A (zh) | 一种卫星安全过顶切换的方法及系统 | |
CN105262597B (zh) | 网络接入认证方法、客户终端、接入设备及认证设备 | |
CN105578463B (zh) | 一种双连接安全通讯的方法及装置 | |
CN103701700A (zh) | 一种通信网络中的节点发现方法及系统 | |
Carlos et al. | An updated threat model for security ceremonies | |
CN107277058B (zh) | 一种基于bfd协议的接口认证方法及系统 | |
CN101616412A (zh) | 无线局域网中管理帧的校验方法和设备 | |
Shukla et al. | A bit commitment signcryption protocol for wireless transport layer security (wtls) | |
US10447549B2 (en) | Neighbor establishment method and system, and device | |
CN106603512B (zh) | 一种基于sdn架构的is-is路由协议的可信认证方法 | |
EP3932044B1 (en) | Automatic distribution of dynamic host configuration protocol (dhcp) keys via link layer discovery protocol (lldp) | |
CN101166093A (zh) | 一种认证方法和系统 | |
CN101527907A (zh) | 无线局域网接入认证方法及无线局域网系统 | |
Ren et al. | IPSadas: identity‐privacy‐aware secure and anonymous data aggregation scheme | |
CN109150925B (zh) | IPoE静态认证方法及系统 | |
CN106537962B (zh) | 无线网络配置、接入和访问方法、装置及设备 | |
Costea et al. | Secure opportunistic multipath key exchange | |
CN109039841A (zh) | 加入级联组网的方法、装置及刀箱 | |
CN114765805A (zh) | 一种通信方法、网络设备、基站及计算机可读存储介质 | |
KR101204648B1 (ko) | 무선 통신 네트워크와 유선 통신 네트워크가 공존하는 통신 네트워크에서 안전하게 비밀키를 교환하는 방법 | |
Hepsiba et al. | Enhanced techniques to strengthening DTN against flood attacks | |
CN109347885B (zh) | 一种网络认证系统的认证方法 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |