CN107819628B - A kind of certificate server escape system and method based on the backup of reciprocal loop - Google Patents

A kind of certificate server escape system and method based on the backup of reciprocal loop Download PDF

Info

Publication number
CN107819628B
CN107819628B CN201711134808.9A CN201711134808A CN107819628B CN 107819628 B CN107819628 B CN 107819628B CN 201711134808 A CN201711134808 A CN 201711134808A CN 107819628 B CN107819628 B CN 107819628B
Authority
CN
China
Prior art keywords
server
backup
certificate
certificate server
escape
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201711134808.9A
Other languages
Chinese (zh)
Other versions
CN107819628A (en
Inventor
岳宝强
魏洪昌
黄倩
张永超
李绵鹏
徐子瞬
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
State Grid Shandong Electric Power Co Qufu Power Supply Co
State Grid Shandong Electric Power Co Ltd
Jinan Power Supply Co of State Grid Shandong Electric Power Co Ltd
Linyi Power Supply Co of State Grid Shandong Electric Power Co Ltd
Shandong Luneng Software Technology Co Ltd
TaiAn Power Supply Co of State Grid Shandong Electric Power Co Ltd
Liaocheng Power Supply Co of State Grid Shandong Electric Power Co Ltd
Original Assignee
State Grid Shandong Electric Power Co Qufu Power Supply Co
State Grid Shandong Electric Power Co Ltd
Jinan Power Supply Co of State Grid Shandong Electric Power Co Ltd
Linyi Power Supply Co of State Grid Shandong Electric Power Co Ltd
Shandong Luneng Software Technology Co Ltd
TaiAn Power Supply Co of State Grid Shandong Electric Power Co Ltd
Liaocheng Power Supply Co of State Grid Shandong Electric Power Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by State Grid Shandong Electric Power Co Qufu Power Supply Co, State Grid Shandong Electric Power Co Ltd, Jinan Power Supply Co of State Grid Shandong Electric Power Co Ltd, Linyi Power Supply Co of State Grid Shandong Electric Power Co Ltd, Shandong Luneng Software Technology Co Ltd, TaiAn Power Supply Co of State Grid Shandong Electric Power Co Ltd, Liaocheng Power Supply Co of State Grid Shandong Electric Power Co Ltd filed Critical State Grid Shandong Electric Power Co Qufu Power Supply Co
Priority to CN201711134808.9A priority Critical patent/CN107819628B/en
Publication of CN107819628A publication Critical patent/CN107819628A/en
Application granted granted Critical
Publication of CN107819628B publication Critical patent/CN107819628B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/06Management of faults, events, alarms or notifications
    • H04L41/0654Management of faults, events, alarms or notifications using network fault recovery
    • H04L41/0668Management of faults, events, alarms or notifications using network fault recovery by dynamic selection of recovery network elements, e.g. replacement by the most appropriate element after failure
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/1001Protocols in which an application is distributed across nodes in the network for accessing one among a plurality of replicated servers
    • H04L67/1004Server selection for load balancing
    • H04L67/1008Server selection for load balancing based on parameters of servers, e.g. available memory or workload

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computing Systems (AREA)
  • Computer And Data Communications (AREA)

Abstract

The present invention relates to a kind of certificate server annular escape systems, including server group S={ S1,S2……SN, the server group S includes the certificate server S of N number of interconnection1,S2……SN;Each certificate server S in server group Si, there is the first backup server S all in server group SjWith the second backup server Sk;Moreover, being all some certificate server S in server group SpThe first backup server and some certificate server SqThe second backup server;The first backup relation of all certificate servers constitutes annular in server group S, and the second backup relation constitutes the inverse ring shape of the first backup relation.By the certificate server escape system and method, the topological complexity of escape system can be reduced while difficult striking capabilities are combated a natural disaster in raising in effective fast quick-recovery service application.

Description

A kind of certificate server escape system and method based on the backup of reciprocal loop
Technical field
The present invention relates to certificate server technical field, more particularly to a kind of certificate server escape method and system.
Background technology
With the development of society and advancement of technology, computer network plays more and more important work in daily life With certificate server is the important node in network system, and the safety of certificate server network system is increasingly prominent.For example, In the certification network of electric power networks, using 802.1x certifications, this authentication mode generally uses two-node cluster hot backup, a certification Server breaks down, and faulty equipment can be taken over by remaining certificate server and provides corresponding service, if two certification clothes Business device is all paralysed, then starts escape server.
But in current power communications network system, two certificate servers and escape server are generally having the same Computer room physical location (such as in the unit computer room in the same county or city), therefore when building environment is in the presence of undesirable, Certificate server can be lost together with escape server or some lost ability to work, is brought to the continuity of network communication great It influences.Moreover, unimpeded in order to ensure network communication, be also required in electric power network system at least three servers realize certifications and Escaping function, authentication authorization and accounting server, backup certificate server and escape server are higher so as to cause certification cost.
State net system submit application No. is 201710388516.1, it is entitled that " a kind of certificate server annular is escaped The technical solution introduced in the patent application of raw system and method " can effectively improve the anti-risk energy of certificate server system Power can fast quick-recovery business use when certificate server is by hitting.But in the technical solution for server The topological structure of group S, and the setting of escape strategy are complex, have certain enforcement difficulty.
In the application, application No. is the full contents of 201710388516.1 patent application to be introduced into.
Invention content
To solve the above problems, the present invention relates to a kind of certificate server annular escape system, including server group S= {S1,S2……SN, the server group S includes the certificate server S of N number of interconnection1,S2……SN;In server group S Each certificate server Si, there is the first backup server S all in server group SjWith the second backup server Sk;And And all it is some certificate server S in server group SpThe first backup server and some certificate server SqSecond Backup server;The first backup relation of all certificate servers constitutes annular in server group S, and the second backup relation is constituted The inverse ring shape of first backup relation.By the certificate server escape system and method, can be answered in effective fast quick-recovery business With raising reduces the topological complexity of escape system while combat a natural disaster difficult striking capabilities.
The present invention also provides certificate server annular escape methods.
Description of the drawings
Fig. 1 is the schematic diagram of certificate server annular escape system;
Fig. 2 is the flow chart that the authentication method being authenticated into the equipment to be certified of network is docked using certificate server.
Specific implementation mode
To make the object, technical solutions and advantages of the present invention clearer, the present invention will be made further in conjunction with attached drawing Detailed description.This description is to describe specific implementation consistent with the principles of the present invention by way of example, and not limitation The description of mode, these embodiments is detailed enough, so that those skilled in the art can put into practice the present invention, is not being taken off Other embodiment can be used in the case of from scope and spirit of the present invention and can change and/or replace each element Structure.Therefore, it should not understand the following detailed description from restrictive, sense.
As shown in Figure 1, according to an aspect of the invention, there is provided a kind of certificate server annular escape system, including Server group S={ S1,S2……SN, the server group S includes N number of (such as N>=3, preferably N>=6) it is connected with each other Certificate server S1,S2……SN
In schematic diagram shown in Fig. 1, the case where only showing with 6 certificate server (N=6), and In a specific embodiment, the specific technical solution of the present invention is mainly introduced using 6 certificate servers as example, but ability Field technique personnel understand the escape system that can be also realized when N takes other numerical value also and can fall protection scope of the present invention it It is interior.
Each certificate server S in server group Si, there is the first backup server S all in server group SjWith Second backup server Sk;Moreover, being all some certificate server S in server group SpThe first backup server and some Certificate server SqThe second backup server.For certificate server S2 as shown in Figure 1, there is the first backup server S3 (solid arrow direction), it may have the second backup server S1 (dotted arrow direction), while the first backup of S2 or S1 Second backup server of server and S3.
The first backup relation of all certificate servers constitutes annular in server group S, and the second backup relation constitutes the The inverse ring shape of one backup relation.As shown in Figure 1, the first backup relation be solid line constitute annular S1, S2, S3, S4, S5, S6, S1 }, the second backup relation is the annular { S1, S6, S5, S4, S3, S2, S1 } that dotted line is constituted.Obviously, the second backup relation is the The inverse ring shape of one backup relation.
It can be seen that being required as general, SjAnd SkIt is different certificate server;SjAnd SqIt is identical certificate server;Sk And SpIt is identical certificate server.Still by taking certificate server S2 as shown in Figure 1 as an example, associated four servers S3, S1, S1, S3 meet above-mentioned relation.
According to the present invention, N number of certificate server is geographically separated by a distance.For as shown in Figure 1, In powerline network system, 6 certificate servers can be individually positioned in the computer room of 6 different regions.When certain certification It, can be standby to its first backup server S3 or second by the corresponding terminal transfers of S2 when server (such as S2) can not work It is authenticated in part server S 1, since S2, S3 and S1 are physically belonging respectively to three different areas, therefore occurs simultaneously Can not work (such as have a power failure or server hardware and software failure) probability it is very low, in this way, ensure that terminal network The continuity of communication.Further, since any certificate server (such as S2) has 2 backup servers, i.e., for should be by S2 The terminal being authenticated can totally three certificate servers be authenticated by S2, S3 and S1, therefore in annular escape system, Lose the certification that arbitrary two certificate servers all do not interfere with system.
In a kind of realization method of the present invention, certificate server (S2) includes two network interface cards, wherein first network interface card is used Communication when being authenticated to corresponding terminal, second network interface card are virtual as two network interface cards, the first Microsoft Loopback Adapter be used for S2 is communication when the corresponding terminal of the first standby server (S1) is authenticated, and the second Microsoft Loopback Adapter is used to S2 be second standby Communication when being authenticated with the corresponding terminal of server (S3).This can be designed so that only retains one at each physics computer room Platform tool is there are two the server of network interface card, and under normal circumstances, each certificate server is responsible for the load of terminal in corresponding region, backup The frequency that server uses is smaller, therefore backup server need not be separately provided with cost-effective in the case where taking into account performance.
The annular escape system of the present invention further includes an escape server.There is large area system in server group S Property certificate server the case where can not working when, startup of server of escaping promotes the terminal that can not be authenticated escape (to change net The permission of network node device allows terminal directly to log in LAN or internet without certification).Clearly for server group S In N platform certificate servers, it is only necessary to one escape server.
According to the present invention, the communication connection path in server group S between each certificate server is P={ p1,p2…… pN, it is each to communicate to connect path piFor connecting two certificate servers.For example, in Fig. 1, p1Can be logical between S1 and S2 Believe connection path, p2Can be the communication connection path ... ... between S1 and S2, and so on.
P={ p1,p2……pNIn respectively communicate to connect path communication speed be B={ b1,b2……bN, art technology Personnel know that it is specific interior that network loan, network hops, history the preceding paragraph between each certificate server may be used in communication speed Any or weighted array of averaging network transmission speed is characterized.
Physical distance between each certificate server is D={ d1,d2……dN, it is preferred that physical distance is space line Physical distance.
According to the present invention, when the backup relation of server group S is arranged, should according to communication speed B and physical distance D, When constructing the first and second backup relation so that the value of the weighting weight W of the communication path of annular and inverse ring shape that it is constituted Highest, to ensure the minimum number for occurring the certificate server of delay machine in actual application to greatest extent.Obviously, Due to the invertibity of communication speed B and physical distance D, the weighting weight of annular communication path and the communication path of inverse ring shape Weighting weight is consistent.
According to the present invention, weight is weighted
Wherein, min (D) and max (D) be in server group S between any two server the minimum value of physical distance and Maximum value, min (B) are the minimum value of communication speed between any two server in server group S.
According to the present invention, since communication speed B and physical distance D has different physical units, when in use first Be normalized by function f1 and f2, and make communication speed B and physical distance D value range be limited to [1, 2] between, to facilitate subsequent operation.
According to the present invention, is there is the authentication service of delay machine to be easy by natural conditions interference in first kind certificate server Device is such as, but not limited in Earthquake Fault Zone, flood diversion zone or the region that landslide easily occurs;Second class certificate server There is the certificate server of delay machine to be not readily susceptible to natural conditions interference.
First and second class certificate server is specified by user, such as specified by expert;Or it is automatic by annular escape system It obtains, such as is obtained according to the statistical data of the natural calamities such as historical earthquake, flood, or according to geographical location and Earthquake Faulting Band, flood diversion zone geographical location compare acquisition.
According to the present invention, it is desirable to backup relation not constituted as possible between first kind certificate server, so if certain logical Believe path piConnection is two first kind certificate servers, then the weight of the communication path is by the relatively low of setting, further, In the present invention, the weight of the communication path is only related to the physical distance of communication path, to avoid communication lines as far as possible There is delay machine simultaneously in two certificate servers of diameter connection.Correspondingly, according to the present invention, it is desirable to first kind certificate server and Backup relation, therefore the communication path for connecting the first and second class certificate server are constituted between two class certificate servers as possible, It is provided with higher weight;And weight also has communication speed positive correlation, so that in certificate server delay machine, moves as early as possible Move on to backup server.Finally, main to consider to use up when delay machine for two the second class certificate servers according to the present invention Fast migration, therefore the Main Basiss for using communication speed to be arranged as weight, and according to two the second class certificate servers away from From being finely adjusted, it is also desirable to both avoid hypotelorism to a certain extent, while be interfered by natural conditions.
Compared with the background patents application application No. is 201710388516.1, in annular escape system of the invention, one Aspect, annular and inverse ring shape are one-to-one, simplify topological structure, on the other hand, when determining Ring-backup relationship, are led to Cross weighting weight and emphasize to avoid the certificate server for occurring multiple delay machines simultaneously, rather than only emphasize in background patents application from Migration velocity of the delay machine server to backup server.
As shown in Fig. 2, the present invention also provides a kind of method carrying out annular escape using above-mentioned annular escape system, packet Include following steps:
Step S100 judges have several certificate servers delay machine simultaneously to be executed if it is determined that without delay machine in server group Step S200;If it is determined that there is a delay machine, step S300 is executed;If it is determined that there are two delay machines, step S400 is executed;If Judgement has three delay machines, executes step S500;If it is determined that there are four or four or more delay machines, S600 is thened follow the steps.
Step S200, each certificate server are authenticated corresponding terminal.
Step S300, by the certificate server S of delay machineeTerminal transfer to SeThe first and second backup server in load capacity It is authenticated in smaller backup server.When there is a certificate server delay machine, such as 2 delay machine of server S, then by S2 pairs The smaller terminal of load capacity in the terminal transfer answered to the first backup server S3 or the second backup server S1 waits for that S2 restores work After work, then by corresponding terminal transfer return S2.Load capacity is the terminal quantity being authenticated by certificate server.
It will be apparent to those skilled in the art that a variety of technical sides already existing in the prior art can be used for the migration of terminal Case, therefore be no longer introduced in the present invention to how to migrate.Those skilled in the art will also recognize that, the basis for estimation of load capacity It can be calculated, can also be calculated according to actual loading amount according to rated weight capacity, it can also be according to rated weight capacity and actual negative The mathematic interpolation of carrying capacity, but preferably calculated according to actual loading amount, i.e., smaller complete of actual negative carrying capacity is selected in S3 and S1 At the migration of S2.
Step S400 judges the certificate server S of delay machineeAnd SfWhether backup relation is had, i.e. Se is that the first or second is standby Part server is Sf;If there is backup relation, then by SeAnd SfTerminal moved to respectively different from SeAnd SfBackup services It is authenticated in device;If there is no backup relation, S450 is thened follow the steps.Still illustrate by taking Fig. 1 as an example, such as when S1 and S2 delay When machine, simply, the corresponding terminals of S1 can not move to S2 (because of S2 also delay machine), and the corresponding terminals of S2 can not also move to S1 (because of S1 also delay machine), therefore, is merely able to the corresponding terminal transfers of S1 to S6, the corresponding terminal transfers of S2 to S3.
Step S450, by SeTerminal transfer to SeThe first and second backup server in the smaller backup server of load capacity In be authenticated, by SfTerminal transfer to SfThe first and second backup server in carry out in the smaller backup server of load capacity Certification.Still illustrate by taking Fig. 1 as an example, such as when S1 and S4 delay machines, S1 may be selected S2 and S6 migrated, S4 can select S3 and S5 is migrated.Migrating objects similar with the mode in step S300, selecting load capacity smaller as S1 in S2 and S6, The migrating objects for selecting load capacity smaller as S4 in S3 and S5, further to reach load balance.
According to an aspect of the present invention, it is preferred that also followed the steps below in step S450:
Judge certificate server SeAnd SfWhether backup server having the same, if there is no (such as S1 and S4 delay machines), Then handled according to above-mentioned processing mode;If there is identical backup server, such as when S1 and S3 delay machines, the first of S1 is standby The second part server of part server and S3 are S2.If the load capacity of S2 is the second backup server S6 less than S1, It is less than the first backup server S4 of S3 again, then is easy the terminal of S1 and S3 moving to S2, so that the load capacity of S2 It is excessive.
Therefore, in this case, currently preferred to require SeAnd SfThe backup server of migration is not the same backup Server.A kind of optional mode is that the load capacity of S2 is the second backup server S6 less than S1, and first less than S3 is standby When part server S 4, by SeAnd SfThe terminal transfer of random selection one (such as S1) is to S2 in (being S1 and S3 in the example), separately The terminal transfer of one (such as S3) is to S4.It is preferable that obtaining SeAnd SfThe historic load of (being S1 and S3 in the example) Amount, by the terminal transfer of a larger certificate server of historic load amount to S2, so that the overall load of escape system It is more balanced.
According to an aspect of the present invention, as follows to the processing procedure of three certificate servers while delay machine:
Step S500 obtains the certificate server set { S of delay machineu、Sv、Sw, if some certificate server S of delay machineu The first, second backup server Sv、SwEqual delay machine (such as the equal delay machine of S1, S2, S3, at this time the first and second backup server of S2 The equal delay machines of S1 and S3), then start escape server, to SuCorresponding terminal carries out escape operation, and by Sv、SwCorresponding terminal Corresponding certificate server is moved to respectively;It is no to then follow the steps S520.
Step S520, if { Su、Sv、SwMiddle in the presence of the certificate server { S for having backup relationu、Sv, then by SuAnd Sv Terminal moved to respectively different from SuAnd SvBackup server in be authenticated;By SwTerminal transfer to SwFirst and second It is authenticated in the smaller backup server of load capacity in backup server;It is no to then follow the steps S540.Such as S1, S2 and S5 delay Machine can only be by the terminal transfer of S1 to S6 due to having backup relation between S1 and S2, the terminal transfer of S2 to S3, S5 It then selects to load in S4 and S6 and smaller migrate.
Step S540, by { Su、Sv、SwTerminal move to { S respectivelyu、Sv、SwThe first and second backup server in bear It is authenticated in the smaller backup server of carrying capacity.
Another preferred aspect according to the present invention is delayed due to occurring three certificate servers in annular escape system simultaneously The probability of machine is minimum, therefore starts escape server in step S500, is carried out to the corresponding terminal of the certificate server of delay machine Escape operation, to allow terminal to be able to access that network.
Finally, if it is determined that there are four or more (containing four) delay machines, S600 is thened follow the steps, escape server is started, it is right The corresponding terminal of certificate server of delay machine carries out escape operation, to allow terminal to be able to access that network.
Method disclosed by the invention includes the one or more steps for realizing the object of the invention, and method and step can be each other It is exchanged with each other without leaving the scope of the present invention.In other words, unless the step of normal operating of embodiment needs particular order, The sequence that specific steps can be changed, the range without leaving spirit of that invention.Although the present invention essentially describes specific implementation Example and application, but it will be understood by those skilled in the art that the present invention is not limited thereto.According to method and system disclosed by the invention, For the apparent various modifications of those skilled in the art, variation and change all without departing from the spirit and scope of the present invention.

Claims (4)

1. a kind of certificate server annular escape system, including server group S={ S1,S2……SN, in the server group S Certificate server S including N number of interconnection1,S2……SN, wherein N>=6;Each authentication service in server group S Device Si, there is the first backup server S all in server group SjWith the second backup server Sk;Moreover, being all server group S In some certificate server SpThe first backup server and some certificate server SqThe second backup server;Its feature It is:
The first backup relation of all certificate servers constitutes annular in server group S, and it is standby that the second backup relation constitutes first The inverse ring shape of part relationship;The annular escape system further includes an escape server, for what can not be authenticated to server group S Terminal is escaped;
Wherein, the communication connection path in server group S between each certificate server is P={ p1,p2……pN, each communication link The communication speed for connecing path is B={ b1,b2……bN, the physical distance between each certificate server is D={ d1,d2…… dN};The annular and inverse ring shape that first and second backup relation is constituted make the value highest for weighting weight W;
Wherein, min (D) and max (D) is the minimum value and maximum of physical distance between any two server in server group S Value, min (B) are the minimum value of communication speed between any two server in server group S;First kind certificate server is to hold It is vulnerable to natural conditions interference and the certificate server of delay machine occurs;Second class certificate server is to be not readily susceptible to natural conditions It interferes and the certificate server of delay machine occurs, the first and second class certificate server is specified by user, or certainly by annular escape system It is dynamic to obtain.
2. a kind of method carrying out annular escape using annular escape system described in claim 1, it is characterised in that including with Lower step:
Step S100 judges have several certificate servers delay machine simultaneously to execute step if it is determined that without delay machine in server group S200;If it is determined that there is a delay machine, step S300 is executed;If it is determined that there are two delay machines, step S400 is executed;
Step S200, each certificate server are authenticated corresponding terminal;
Step S300, by the certificate server S of delay machineeTerminal transfer to SeThe first and second backup server in load capacity it is smaller Backup server in be authenticated;
Step S400 judges the certificate server S of delay machineeAnd SfWhether backup relation is had;If there is backup relation, then will SeAnd SfTerminal moved to respectively different from SeAnd SfBackup server in be authenticated;If there is no backup relation, then Execute step S450;
Step S450, by SeTerminal transfer to SeThe first and second backup server in the smaller backup server of load capacity into Row certification, by SfTerminal transfer to SfThe first and second backup server in recognized in the smaller backup server of load capacity Card.
3. the method for annular escape according to claim 2, it is characterised in that further include in the step S100, if sentenced It is disconnected to have three delay machines, execute step S500;
Step S500 obtains the certificate server set { S of delay machineu、Sv、Sw, if some certificate server S of delay machineu One, the second backup server Sv、SwEqual delay machine then starts escape server, to SuCorresponding terminal carries out escape operation, and will Sv、SwCorresponding terminal is moved to respectively different from SuBackup server in be authenticated;It is no to then follow the steps S520;
Step S520, if { Su、Sv、SwMiddle in the presence of the certificate server { S for having backup relationu、Sv, then by SuAnd SvEnd End is moved to respectively different from SuAnd SvBackup server in be authenticated;By SwTerminal transfer to SwFirst and second backup It is authenticated in the smaller backup server of load capacity in server;It is no to then follow the steps S540;
Step S540, by { Su、Sv、SwTerminal move to { S respectivelyu、Sv、SwThe first and second backup server in load capacity It is authenticated in smaller backup server.
4. the method for annular escape according to claim 3, it is characterised in that further include in the step S100, if sentenced It is disconnected to have four or more delay machines, then follow the steps S600;
Step S600 starts escape server, escape operation is carried out to the corresponding terminal of the certificate server of delay machine, to allow It states terminal and is able to access that network.
CN201711134808.9A 2017-11-16 2017-11-16 A kind of certificate server escape system and method based on the backup of reciprocal loop Expired - Fee Related CN107819628B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201711134808.9A CN107819628B (en) 2017-11-16 2017-11-16 A kind of certificate server escape system and method based on the backup of reciprocal loop

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201711134808.9A CN107819628B (en) 2017-11-16 2017-11-16 A kind of certificate server escape system and method based on the backup of reciprocal loop

Publications (2)

Publication Number Publication Date
CN107819628A CN107819628A (en) 2018-03-20
CN107819628B true CN107819628B (en) 2018-07-13

Family

ID=61609841

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201711134808.9A Expired - Fee Related CN107819628B (en) 2017-11-16 2017-11-16 A kind of certificate server escape system and method based on the backup of reciprocal loop

Country Status (1)

Country Link
CN (1) CN107819628B (en)

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106878139A (en) * 2017-03-17 2017-06-20 迈普通信技术股份有限公司 Certification escape method and device based on 802.1X agreements
CN107204878A (en) * 2017-05-27 2017-09-26 国网山东省电力公司 A kind of annular escape system of certificate server and method

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP2663919B1 (en) * 2011-01-11 2019-07-03 A10 Networks Inc. Virtual application delivery chassis system

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106878139A (en) * 2017-03-17 2017-06-20 迈普通信技术股份有限公司 Certification escape method and device based on 802.1X agreements
CN107204878A (en) * 2017-05-27 2017-09-26 国网山东省电力公司 A kind of annular escape system of certificate server and method

Also Published As

Publication number Publication date
CN107819628A (en) 2018-03-20

Similar Documents

Publication Publication Date Title
CN106161495A (en) A kind of host node electoral machinery, device and storage system
US11095476B2 (en) Spanning tree protocol enabled n-node link aggregation system
CN103888360A (en) Method for integrating covering method to obtain service node in SDN based on greedy algorithm
CN109151045A (en) A kind of distribution cloud system and monitoring method
CN108055338B (en) ISCSI access load balancing method
CN112491700A (en) Network path adjusting method, system, device, electronic equipment and storage medium
CN108810129A (en) Internet of Things network control system and method, terminal device and local network services equipment
JP4478686B2 (en) Backup cell controller
CN107819628B (en) A kind of certificate server escape system and method based on the backup of reciprocal loop
CN108683561B (en) Site state detection method and device
CN102932249B (en) A kind of transmission method of VRRP message and device
CN110225133A (en) Message method, node, device, system and relevant device
CN107204878B (en) A kind of certificate server annular escape system and method
Guillen et al. A resilient mechanism for multi-controller failure in hybrid SDN-based networks
CN105763483A (en) Message sending method and message sending device
CN108616954A (en) A kind of system based on WiFi-Direct structure equipment interconnections
JP6533758B2 (en) Network access system and its control device, line backup control method and program
CN107094099B (en) High-reliability service function chain and construction method thereof
CN110611613B (en) Multipath routing method and device based on network equipment
CN101877714A (en) Integrated server
Msadek et al. Trustworthy self-optimization in organic computing environments
JP2014158225A (en) Communication system
CN105634975B (en) A kind of load share method of short wave communication network
CN101170544A (en) A communication method in high-availability cluster system based on single practical IP address
US11245752B2 (en) Load balancing in a high-availability cluster

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20180713

Termination date: 20201116