CN107113278A - 邻居建立的方法、设备和系统 - Google Patents

邻居建立的方法、设备和系统 Download PDF

Info

Publication number
CN107113278A
CN107113278A CN201580062748.7A CN201580062748A CN107113278A CN 107113278 A CN107113278 A CN 107113278A CN 201580062748 A CN201580062748 A CN 201580062748A CN 107113278 A CN107113278 A CN 107113278A
Authority
CN
China
Prior art keywords
network equipment
udl
certification
authentication information
message
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201580062748.7A
Other languages
English (en)
Other versions
CN107113278B (zh
Inventor
唐治宇
侯文霞
张旭东
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Publication of CN107113278A publication Critical patent/CN107113278A/zh
Application granted granted Critical
Publication of CN107113278B publication Critical patent/CN107113278B/zh
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0869Network architectures or network communication protocols for network security for authentication of entities for achieving mutual authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/12Discovery or management of network topologies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/10Active monitoring, e.g. heartbeat, ping or trace-route
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/02Topology update or discovery
    • H04L45/026Details of "hello" or keep-alive messages
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L69/00Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
    • H04L69/14Multichannel or multilink protocols
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/104Peer-to-peer [P2P] networks

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Health & Medical Sciences (AREA)
  • Cardiology (AREA)
  • General Health & Medical Sciences (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

本发明实施例公开了一种邻居建立的方法、设备和系统,该方法根据第一网络设备和第二网络设备使能认证的情况,在互相发送的报文中添加对应的认证信息,由第一网络设备向第二网络设备发送HELLO报文,由所述第二网络设备接收HELLO报文并进行认证,当认证通过后,通过扩展的UDL LSP报文应答所述HELLO报文;再由第一网络设备接收所述扩展的UDL LSP报文并进行认证,当认证结果为所述第一网络设备和所述第二网络设备均使能了认证且认证通过,可建立两者之间的邻居关系。通过上述过程,能够仅一端认证通过也可以建立邻居关系的情况出现,从而克服邻居建立时认证不完整的问题,提高了网络设备间建立邻居时的安全可靠性。

Description

PCT国内申请,说明书已公开。

Claims (19)

  1. PCT国内申请,权利要求书已公开。
CN201580062748.7A 2015-07-29 2015-07-29 邻居建立的方法、设备和系统 Active CN107113278B (zh)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2015/085431 WO2017015899A1 (zh) 2015-07-29 2015-07-29 邻居建立的方法、设备和系统

Publications (2)

Publication Number Publication Date
CN107113278A true CN107113278A (zh) 2017-08-29
CN107113278B CN107113278B (zh) 2019-10-22

Family

ID=57886936

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201580062748.7A Active CN107113278B (zh) 2015-07-29 2015-07-29 邻居建立的方法、设备和系统

Country Status (4)

Country Link
US (1) US10447549B2 (zh)
EP (1) EP3319286B1 (zh)
CN (1) CN107113278B (zh)
WO (1) WO2017015899A1 (zh)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11032144B2 (en) * 2017-07-12 2021-06-08 Nec Corporation Network control system, method and program
US11252162B2 (en) * 2019-04-02 2022-02-15 Ciena Corporation Enhancement to the IS-IS protocol for eliminating unwanted network traffic
CN116527408B (zh) * 2023-07-05 2023-09-08 中国电子科技集团公司第十五研究所 一种基于友邻总线的认证管理方法及应用

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101426004A (zh) * 2007-10-29 2009-05-06 华为技术有限公司 三层会话的接入方法、系统及设备
CN101431471A (zh) * 2008-12-17 2009-05-13 华为技术有限公司 一种lsp报文传输的方法、设备及系统
CN103095563A (zh) * 2011-11-01 2013-05-08 中兴通讯股份有限公司 一种报文处理方法及系统
US20140313939A1 (en) * 2013-04-23 2014-10-23 Telefonaktiebolaget L M Ericsson (Publ) Method and system for synchronizing with neighbor in a distributed resilient network interconnect (drni) link aggregation group

Family Cites Families (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7327683B2 (en) * 2000-03-16 2008-02-05 Sri International Method and apparatus for disseminating topology information and for discovering new neighboring nodes
US7386792B1 (en) * 2001-03-07 2008-06-10 Thomas Layne Bascom System and method for collecting, storing, managing and providing categorized information related to a document object
US20030149869A1 (en) * 2002-02-01 2003-08-07 Paul Gleichauf Method and system for securely storing and trasmitting data by applying a one-time pad
US7372859B2 (en) * 2003-11-19 2008-05-13 Honeywell International Inc. Self-checking pair on a braided ring network
US7406032B2 (en) * 2005-01-06 2008-07-29 At&T Corporation Bandwidth management for MPLS fast rerouting
US7499445B2 (en) * 2005-03-18 2009-03-03 Cisco Technology, Inc. System and method for routing ISIS traffic through unidirectional links of a computer network
CN100389571C (zh) * 2005-03-25 2008-05-21 华为技术有限公司 检测混合网络中端到端节点间链路故障的方法
US7957380B2 (en) * 2005-11-21 2011-06-07 Cisco Technology, Inc. Support of unidirectional link in IS-IS without IP encapsulation and in presence of unidirectional return path
US9712486B2 (en) * 2006-09-25 2017-07-18 Weaved, Inc. Techniques for the deployment and management of network connected devices
US7912094B2 (en) * 2006-12-13 2011-03-22 Honeywell International Inc. Self-checking pair-based master/follower clock synchronization
US7778159B2 (en) * 2007-09-27 2010-08-17 Honeywell International Inc. High-integrity self-test in a network having a braided-ring topology
US8289879B2 (en) * 2008-02-07 2012-10-16 Ciena Corporation Methods and systems for preventing the misconfiguration of optical networks using a network management system
CN102136928B (zh) * 2010-07-02 2013-10-09 华为技术有限公司 拓扑发现方法及装置
CN102480429A (zh) * 2010-11-26 2012-05-30 华为数字技术有限公司 报文处理方法、装置和系统
US10257161B2 (en) 2012-05-22 2019-04-09 Cisco Technology, Inc. Using neighbor discovery to create trust information for other applications
EP2706705B1 (en) * 2012-09-07 2015-11-04 Alcatel Lucent Connectivity checking of a bidirectional circular path in a communication network
US8711855B1 (en) * 2012-12-18 2014-04-29 Juniper Networks, Inc. Topology discovery, control channel establishment, and datapath provisioning within an aggregation network with centralized control
US9722919B2 (en) * 2014-01-22 2017-08-01 Cisco Technology, Inc. Tying data plane paths to a secure control plane
US10142444B2 (en) * 2014-07-01 2018-11-27 Trinity Mobile Networks, Inc. Methods, devices, and systems for implementing centralized hybrid wireless self-organizing networks
US9634928B2 (en) * 2014-09-29 2017-04-25 Juniper Networks, Inc. Mesh network of simple nodes with centralized control
EP3206338A1 (en) * 2016-02-11 2017-08-16 Xieon Networks S.à r.l. Service-based loss forwarding in communication networks

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101426004A (zh) * 2007-10-29 2009-05-06 华为技术有限公司 三层会话的接入方法、系统及设备
CN101431471A (zh) * 2008-12-17 2009-05-13 华为技术有限公司 一种lsp报文传输的方法、设备及系统
CN103095563A (zh) * 2011-11-01 2013-05-08 中兴通讯股份有限公司 一种报文处理方法及系统
US20140313939A1 (en) * 2013-04-23 2014-10-23 Telefonaktiebolaget L M Ericsson (Publ) Method and system for synchronizing with neighbor in a distributed resilient network interconnect (drni) link aggregation group

Also Published As

Publication number Publication date
CN107113278B (zh) 2019-10-22
WO2017015899A1 (zh) 2017-02-02
EP3319286B1 (en) 2021-03-24
US20180152355A1 (en) 2018-05-31
EP3319286A1 (en) 2018-05-09
US10447549B2 (en) 2019-10-15
EP3319286A4 (en) 2018-07-18

Similar Documents

Publication Publication Date Title
CN107947357B (zh) 一种基于安全接入区的配电自动化数据采集装置及方法
US20020076054A1 (en) Session shared key sharing method, wireless terminal authentication method, wireless terminal, and base station device
US20150207793A1 (en) Feature Enablement or Disablement Based on Discovery Message
CN108521662A (zh) 一种卫星安全过顶切换的方法及系统
CN105262597B (zh) 网络接入认证方法、客户终端、接入设备及认证设备
CN105578463B (zh) 一种双连接安全通讯的方法及装置
CN103701700A (zh) 一种通信网络中的节点发现方法及系统
Carlos et al. An updated threat model for security ceremonies
CN107277058B (zh) 一种基于bfd协议的接口认证方法及系统
CN101616412A (zh) 无线局域网中管理帧的校验方法和设备
Shukla et al. A bit commitment signcryption protocol for wireless transport layer security (wtls)
US10447549B2 (en) Neighbor establishment method and system, and device
CN106603512B (zh) 一种基于sdn架构的is-is路由协议的可信认证方法
EP3932044B1 (en) Automatic distribution of dynamic host configuration protocol (dhcp) keys via link layer discovery protocol (lldp)
CN101166093A (zh) 一种认证方法和系统
CN101527907A (zh) 无线局域网接入认证方法及无线局域网系统
Ren et al. IPSadas: identity‐privacy‐aware secure and anonymous data aggregation scheme
CN109150925B (zh) IPoE静态认证方法及系统
CN106537962B (zh) 无线网络配置、接入和访问方法、装置及设备
Costea et al. Secure opportunistic multipath key exchange
CN109039841A (zh) 加入级联组网的方法、装置及刀箱
CN114765805A (zh) 一种通信方法、网络设备、基站及计算机可读存储介质
KR101204648B1 (ko) 무선 통신 네트워크와 유선 통신 네트워크가 공존하는 통신 네트워크에서 안전하게 비밀키를 교환하는 방법
Hepsiba et al. Enhanced techniques to strengthening DTN against flood attacks
CN109347885B (zh) 一种网络认证系统的认证方法

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant