CN108471383A - Message forwarding method, device and system - Google Patents

Message forwarding method, device and system Download PDF

Info

Publication number
CN108471383A
CN108471383A CN201810130678.XA CN201810130678A CN108471383A CN 108471383 A CN108471383 A CN 108471383A CN 201810130678 A CN201810130678 A CN 201810130678A CN 108471383 A CN108471383 A CN 108471383A
Authority
CN
China
Prior art keywords
message
bridge
flow table
table item
type identification
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201810130678.XA
Other languages
Chinese (zh)
Other versions
CN108471383B (en
Inventor
何灿
李晓
徐聪
黄志�
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Cloud Computing Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN201810130678.XA priority Critical patent/CN108471383B/en
Publication of CN108471383A publication Critical patent/CN108471383A/en
Application granted granted Critical
Publication of CN108471383B publication Critical patent/CN108471383B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/74Address processing for routing
    • H04L45/745Address table lookup; Address filtering
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L49/00Packet switching elements
    • H04L49/70Virtual switches

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

A kind of message forwarding method of the application offer, device and system.The message forwarding method is applied in message forwarding system, and message forwarding system includes virtual switch and at least one virtual machine, and virtual switch includes that integrated bridge and interior network bridge, each virtual machine are connect with integrated bridge, and default flow table is stored in interior network bridge.The message forwarding method includes:Interior network bridge, which receives, integrates the message that bridge is sent;Interior network bridge E-Packets according to message and default flow table.The NameSpace in existing message retransmission technique is substituted by using interior network bridge for message forwarding method provided by the present application, the message for integrating bridge forwarding is received by interior network bridge, and according to message and the default flow table being stored in interior network bridge, message is forwarded, the switching between caused User space and kernel state when NameSpace progress message forwarding is avoided, the performance of message forwarding is improved.

Description

Message forwarding method, device and system
Technical field
This application involves network technology more particularly to a kind of message forwarding method, device and system.
Background technology
In the cloud computing virtual network based on cloud computing management platform Openstack, the flow that has two classes important:It is a kind of It is the communication message flow between the virtual machine (Virtual Machine, VM) for belonging to different sub-network, such flow is in forwarding Usually using distributed virtual router (Distributed Virtual Routing, DVR) technology, such flow is known as DVR Flow;Another kind is the communication message flow between VM and outer net Internet, such flow is in forwarding usually using floating IP (Floating IP, FIP) technology, such flow are known as FIP flows.
It is real usually using Linux NameSpace namespace technologies and policy routing technique in cloud computing virtual network The routing forwarding of existing DVR flow amount and FIP flows.Fig. 1 is the schematic diagram of the framework embodiment of existing Virtual Networking System 100.Its In, tactful road information is stored in Intranet NameSpace 104 and outer net NameSpace 107 respectively, for realizing to different flow Identification and forwarding.Message communication path when DVR flow amount and FIP flows forward illustratively is shown in Fig. 1.Wherein, DVR The communication path of flow is as shown in solid lines in fig. 1:First virtual machine, 101 → the first virtual machine bridge 102 → integrated bridge (BR- INT) 105 → the second virtual machine 106 of the virtual machines of 103 → Intranet NameSpace, 104 → BR-INT103 → second bridge.FIP flows Communication path it is as shown in phantom in Figure 1:First virtual machine, 101 → the first 102 → BR-INT103 of virtual machine bridge → Intranet life 107 → BR-INT103 of the name space 104 → outer net NameSpace → outer net.
Communication path shown in referring to Fig.1, it is primary that DVR flow amount message can pass in and out Intranet NameSpace in forwarding, FIP streams Amount message can pass in and out Intranet NameSpace in forwarding and outer net NameSpace is each primary.Since namespace is kernel level Be environmentally isolated method, can exist when message passes in and out namespace every time at the User space kernel state switching of operating system Reason, User space kernel state hand-off process can bring serious performance to be lost.Therefore, the performance of existing message pass-through mode is relatively low.
Invention content
The application provides a kind of message forwarding method, device and system, for solve existing message pass-through mode performance compared with Low problem.
In a first aspect, the application provides a kind of message forwarding method, the method is applied in message forwarding system, described Message forwarding system includes virtual switch and at least one virtual machine, and the virtual switch includes integrated bridge, Intranet net Bridge and outer network bridge, each virtual machine are connect with the integrated bridge, and default flow table is stored in the interior network bridge;It is described Method includes:
The interior network bridge receives the message that the integrated bridge is sent;The interior network bridge turns according to the default flow table Send out message described.
Namespace in the prior art is substituted by using interior network bridge, is received by interior network bridge and integrates bridge hair The message sent, and according to message and the default flow table being stored in interior network bridge, message is forwarded, is avoided The switching between caused User space and kernel state when message forwarding is carried out in namespace, improves the performance of message forwarding.
In a kind of possible embodiment, type identification is carried in the message, the type identification is used to indicate The destination network segment of the message;
The interior network bridge forwards the message according to the message and the default flow table, including:
The interior network bridge is according to the type identification of the message, by each flow table in the message and the default flow table Item is matched by preset order, until determining and matched first flow table item of the message;Type identification in the message It is identical with the type identification in first flow table item;The interior network bridge forwards the message according to first flow table item.
In a kind of possible embodiment, when in first flow table item do not include type identification when, the message with The first flow table item matching.
Type identification is carried in the message that interior network bridge receives, facilitates the Ethernet of interior network bridge only analytic message Heading, the first-class layer three information of IP packet without analytic message, thus improve message forwarding performance.By according to message Type identification the matched flow table item of message is determined in default flow table, and then message forwarding is carried out according to matched flow table item, Message repeating process is simplified, avoids in existing message pass-through mode and analytic message is both needed to come in and go out involved by namespace And Linux command, it is also necessary to parse the routing policy stored in namespace.
In a kind of possible embodiment, type identification is carried in the message, the type identification is used to indicate The destination network segment of the message;The interior network bridge forwards the message according to the default flow table, including:
The interior network bridge, will be in the message and the default flow table according to the type identification and metadata of the message Each flow table item matched by preset order, until determine with matched second flow table item of the message;In the message Type identification is identical with the type identification in second flow table item;
The interior network bridge changes the metadata of the message according to second flow table item, obtains modified message;
The interior network bridge is according to the type identification and metadata of the modified message, by the modified message It is matched by preset order with each flow table item in the default flow table, until determining and the matched third of modified message Flow table item;
The interior network bridge forwards the message according to the third flow table item.
In a kind of possible embodiment, when in second flow table item do not include type identification when, the message with The second flow table item matching.
Interior network bridge modifies to message according to the matched flow table item of message institute before modification in above-described embodiment, then root Realize that message forwarding, the port forwarded the packet pass through individual flow table item reality according to the matched flow table item of modified message institute Existing, the workload of flow table modification, improves the readability of the stability and flow table code of flow table when reducing port-mark variation, It is beneficial to the realization of flow table code.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the Intranet network segment When, the message output port indicated by first flow table item is integrated bridge port;
The interior network bridge forwards the message according to first flow table item, including:
The message by the integrated bridge port, is forwarded to the integrated bridge by the interior network bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the outer net network segment When, the message output port indicated by first flow table item is outer net bridge port;
The interior network bridge forwards the message according to first flow table item, including:
The message by the outer net bridge port, is forwarded to the outer network bridge by the interior network bridge.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the default network segment When, the message output port indicated by first flow table item is the pre- of the purpose equipment indicated by the destination address of the message If port;
The interior network bridge forwards the message according to first flow table item, including:
The interior network bridge by the message by the default port, indicated by the destination address for being forwarded to the message Purpose equipment.
Before the interior network bridge receives the message that the integrated bridge is sent, message forwarding method further includes:
The virtual machine bridge receives the message that virtual machine is sent;
The virtual machine bridge determines the type identification of the message according to the destination network segment of the message, in the report Increase the type identification in text;
The message for carrying type identification is forwarded to integrated bridge by the virtual machine bridge.
Type identification is carried in message, facilitates the Ethernet heading of interior network bridge only analytic message, without solution The first-class layer three information of IP packet for analysing message also avoids that IP address routing table is arranged in interior network bridge, so simplify Intranet Bridge forwarding process facilitates interior network bridge and is forwarded to message, improves message sending performance.
In a kind of possible embodiment, before the interior network bridge receives the message that the integrated bridge is sent, report Literary retransmission method further includes:
The integrated bridge receives the message that the virtual machine bridge is sent;
The message is forwarded to the interior network bridge by the integrated bridge.
In a kind of possible embodiment, before the message is forwarded to interior network bridge by the integrated bridge, message Retransmission method further includes:
The integrated bridge determines that the message is three layers according to the purpose MAC address of the message Message.
In a kind of possible embodiment, message forwarding method further includes:
It is if the integrated bridge according to the target MAC (Media Access Control) address of the message, determines that the message is two layer message, then described The message is forwarded to the target MAC (Media Access Control) address by integrated bridge.
Before message is sent to interior network bridge, integrated bridge first need to determine whether message belongs to three-tier message, to keep away Exempt from two layer message being sent to interior network bridge, reduces the workload of interior network bridge.
In a kind of possible embodiment, message forwarding method further includes:
The outer network bridge receives the message that the interior network bridge is sent, and the target MAC (Media Access Control) address of the message is revised as The MAC Address of outer net gateway obtains outer network packet;
The outer network packet is forwarded to the integrated bridge by the outer network bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
Second aspect, the application also provide a kind of apparatus for forwarding message, and the message for executing above-mentioned first aspect forwards Method, technical characteristic and technique effect having the same.The application repeats no more this.
The application second aspect provides a kind of apparatus for forwarding message,
Including integrated bridge, interior network bridge and outer network bridge, default flow table is stored in the interior network bridge;The Intranet Bridge is used for,
Receive the message that the integrated bridge is sent;
The message is forwarded according to the default flow table.
In a kind of possible embodiment, type identification is carried in the message, the type identification is used to indicate The destination network segment of the message;
The interior network bridge is specifically used for, according to the type identification of the message, by the message and the default flow table In each flow table item matched by preset order, until determine with matched first flow table item of the message;Wherein, the report Type identification in text is identical with the type identification in first flow table item;The report is forwarded according to the forwarding flow table item Text.
In a kind of possible embodiment, when in first flow table item do not include type identification when, the message with The first flow table item matching.
In a kind of possible embodiment, the interior network bridge is specifically used for,
According to the type identification and metadata of the message, each flow table item in the message and the default flow table is pressed Preset order is matched, until determining and matched second flow table item of the message;Type identification in the message and institute The type identification stated in the second flow table item is identical;
The interior network bridge changes the metadata of the message according to second flow table item, obtains modified message;
The interior network bridge is according to the type identification and metadata of the modified message, by the modified message It is matched by preset order with each flow table item in the default flow table, until determining and the matched third of modified message Flow table item;
The message is forwarded according to the third flow table item.
In a kind of possible embodiment, when in second flow table item do not include type identification when, the message with The second flow table item matching.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the Intranet network segment When, the message output port forwarded indicated by flow table item is integrated bridge port;
The interior network bridge is specifically used for, and by the message by the integrated bridge port, is forwarded to the collection networking Bridge;
The integrated bridge is additionally operable to, and after receiving the message that interior network bridge is sent, the message is forwarded to The destination address of the message.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the outer net network segment When, the message output port forwarded indicated by flow table item is outer net bridge port;
The interior network bridge is specifically used for, and by the message by the outer net bridge port, is forwarded to the outer net net Bridge.
In a kind of possible embodiment, when the type identification indicates that the destination network segment of the message is the default network segment When, the message output port forwarded indicated by flow table item is the pre- of the purpose equipment indicated by the destination address of the message If port;
The interior network bridge is specifically used for, and by the message by the default port, is forwarded to the purpose of the message Purpose equipment indicated by address.
In a kind of possible embodiment, the integrated bridge is used for, and is received virtual machine and is sent by virtual machine bridge Message, and the message is forwarded to the interior network bridge.
In a kind of possible embodiment, the integrated bridge is additionally operable to, and the message is being forwarded to interior network bridge Before, according to the target MAC (Media Access Control) address of the message, determine that the message is three-tier message.
In a kind of possible embodiment, the integrated bridge is additionally operable to, if according to the purpose MAC of the message Location determines that the message is two layer message, then the message is forwarded to the target MAC (Media Access Control) address.
In a kind of possible embodiment, the outer network bridge is used for, and receives the message that the interior network bridge is sent, will The target MAC (Media Access Control) address of the message is revised as the MAC Address of outer net gateway, obtains outer network packet;The outer network packet is forwarded To the integrated bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
The third aspect, the application also provide a kind of message forwarding system, and the message forwarding system includes such as above-mentioned 25 Apparatus for forwarding message in the arbitrary possible realization of aspect or second aspect and at least one virtual machine, each virtual machine are logical The corresponding virtual machine bridge of each virtual machine is crossed to connect with the integrated bridge;The virtual machine bridge is used for, and is received virtual The message that machine is sent;According to the destination network segment of the message, the type identification of the message is determined, increase institute in the message State type identification;The message for carrying type identification is forwarded to the integrated bridge.
Fourth aspect, the application also provides a kind of host, including processor, memory, communication interface and bus, described Mutual communication is connected and completed between processor, the memory and the communication interface by the bus, it is described to deposit For storing computer executed instructions in reservoir, when the host is run, the processor executes the calculating in the memory Machine is executed instruction in the arbitrary possible realization to be executed first aspect or first aspect using the hardware resource in the host Operating procedure.
The 5th aspect of the application provides a kind of computer-readable medium, and finger is stored in computer readable storage medium It enables, when run on a computer so that computer executes in the arbitrary possible realization of first aspect or first aspect The instruction of method.
On the basis of the realization of the application provided in above-mentioned various aspects, it can also be further combined more to provide It realizes.
Description of the drawings
Fig. 1 is the schematic diagram of the framework embodiment of existing Virtual Networking System 100;
Fig. 2 is the schematic diagram for the message forwarding system framework embodiment one that the embodiment of the present application is applicable in;
Fig. 3 is the flow diagram for the message forwarding method that the embodiment of the present application one provides;
Fig. 4 is the flow diagram for the message forwarding method that the embodiment of the present application two provides;
Fig. 5 is the flow diagram for the message forwarding method that the embodiment of the present application three provides;
Fig. 6 is the flow diagram for the message forwarding method that the embodiment of the present application four provides;
Fig. 7 is the signaling process schematic diagram for the message forwarding method that the embodiment of the present application five provides;
Fig. 8 is the structural schematic diagram for the host that the embodiment of the present application one provides.
Specific implementation mode
In order to make those skilled in the art more fully understand application scheme, below in conjunction in the embodiment of the present application Attached drawing, technical solutions in the embodiments of the present application are explicitly described.Obviously, described embodiment is only the application The embodiment of a part, instead of all the embodiments.
Fig. 2 is the schematic diagram for the message forwarding system framework embodiment one that the embodiment of the present application is applicable in.As shown in Fig. 2, this The message forwarding system 200 that embodiment provides at least may include virtual switch (OpenvSwitch) 10 and at least one void Quasi- machine.With three virtual machines in Fig. 2, the first virtual machine 21, the second virtual machine 22 and third virtual machine 23, for carry out it is exemplary Explanation.Illustratively, virtual switch 10 and deploying virtual machine are in a calculate node.Virtual switch 10 includes collection networking Bridge (BR-INT) 11, interior network bridge (DVR) 12 and outer network bridge (FIP) 13.Each virtual machine passes through corresponding virtual machine net Bridge (qbr) is connect with integrated bridge 11.For example, the first virtual machine 21 passes through corresponding first virtual machine bridge 31 and integrated bridge 11 connections, the second virtual machine 22 are connect by corresponding second virtual machine bridge 32 with integrated bridge 11, and third virtual machine 23 is logical Corresponding third virtual machine bridge 33 is crossed to connect with integrated bridge 11.It should be noted that message provided by the embodiments of the present application In repeater system 200, other than device shown in Fig. 2, message forwarding system 200 can also including virtual memory etc. its His device, is not limited herein.
Virtual switch 10 is a kind of virtual switch software operated on virtual platform.Virtual switch 10 can be very Access strategy, Network Isolation, traffic monitoring in good control virtual network etc..Illustratively, virtual switch 10 can be with For transmitting flow between different virtual machine and for realizing the communication between virtual machine and outer net.Virtual switch 10 can To be deployed in (SuSE) Linux OS.It is stored with flow table in integrated bridge 11, interior network bridge 12 and outer network bridge 13, for real The forwarding of existing message.Wherein, flow table is a series of set of message forward rules, and virtual switch 10 is according to each bridge internal institute The flow table of configuration handles the message for entering virtual switch 10.
Wherein, in virtual switch 10 in integrated bridge 11, pass through between interior network bridge 12 and outer network bridge 13 The ports patch connect, and message, which is sent, between each bridge is in same data path, will not cause the switching of kernel state and User space. Illustratively, interior network bridge 12 is communicated to connect by the ports patch 1 and the ports patch 2 with integrated bridge 11, for example, collection networking The message of first subnet is sent to interior network bridge 12 by bridge 11 by port 1, and integrated bridge 11 passes through the message of the second subnet Port 2 is sent to interior network bridge 12, and the message that destination network segment can be belonged to the first subnet by interior network bridge 12 is sent to by port 1 Integrated bridge 11, the message that destination network segment can be belonged to the second subnet by interior network bridge 12 are sent to integrated bridge 11 by port 2. Interior network bridge 12 is communicated to connect by the ports patch 5 and the ports patch 6 of outer network bridge 13, and outer network bridge 13 passes through patch Port 7 is communicated to connect with integrated bridge 11, Intranet gateway port 3 is provided on interior network bridge 12, when interior network bridge 12 receives Message destination address be Intranet gateway address when, message is sent to port 3 by interior network bridge 12.It is set on outer network bridge 13 It is equipped with outer net gateway port 8, when the destination address for the message that outer network bridge 13 receives is the address of outer net gateway, outer net net Message is sent to port 8 by bridge 13.
Multiple virtual machines in message forwarding system 200 may belong to identical or different subnet, the void in same subnet Quasi- machine subnet mask having the same.Message is sent and received by virtual switch 10 between each virtual machine.Virtual switch The message that 10 pairs of virtual machines are sent out is monitored and forwards.
Virtual machine is connect by virtual machine bridge with virtual machine interchanger 10, realization and other virtual machines or outbound communication, It is provided with iptables in virtual machine bridge.Iptables is the fire wall that (SuSE) Linux OS carries, and iptables includes A plurality of rule, iptables can be used for secure group realization, be detected to message, realize access control.
When message transmits in existing Virtual Networking System as shown in Figure 1, no matter message be DVR flow amount or FIP flows, message can pass in and out namespace.And namespace is the method that is environmentally isolated of kernel level, when message is each Can there be User space kernel state hand-off process when passing in and out namespace, User space kernel state hand-off process can be brought serious Performance is lost, and affects the forwarding speed of message.Therefore, in existing message forwarding method, the communication performance of message is poor, delay It is longer, and traffic throughput is few.
In order to improve the performance of message forwarding, a kind of message forwarding method of the embodiment of the present application offer, device and system.
Message forwarding method provided by the embodiments of the present application, device and system are carried out with reference to specific embodiment detailed Explanation.Below in these specific embodiments, for same or analogous concept or process may some embodiments no longer It repeats.
On the one hand the embodiment of the present application provides a kind of message forwarding method.Fig. 3 is the message that the embodiment of the present application one provides The flow diagram of retransmission method.Message forwarding method provided in this embodiment is applied to message forwarding system as shown in Figure 2 In 200.As shown in figure 3, message forwarding method provided in this embodiment includes:
S301, the first virtual machine 21 send message to the first virtual machine bridge 31.
Illustratively, each virtual machine is connect by virtual machine bridge with virtual switch 10, therefore virtual machine is being reported When text forwarding, message is sent to virtual machine bridge first.It is right in the following embodiment of the application by taking the first virtual machine 21 as an example Blog article retransmission method is illustratively illustrated.
S302, the first virtual machine bridge 31 determine the type of message according to the destination network segment of the message received, in message The middle mark for increasing type.
Illustratively, the first virtual machine bridge 31 carries out the type that classification obtains message using iptables to message, then According to the type of message, increase the corresponding label of type in messages.For example, the first virtual machine bridge 31 can be according to message Destination network segment classifies to message, specifically can assign different value to the type identification pkt_mark of message to increase in messages The mark of type.
Specifically, the process for increasing the mark of type in messages can specifically include:
S3021, judge whether the destination network segment of message is the Intranet network segment;If so, executing S3022;If not;Then execute S3024;
S3022, judge whether the destination network segment of message is virtual machine address;If so, executing S3023;If not;Then execute S3025;
S3023, the IP address that the pkt_mark of message is assigned a value of to the purpose virtual machine using the expression of 16 systems;
S3024, the pkt_mark of message is assigned a value of the first numerical value;Wherein, the first numerical example can be 0x7f000002。
S3025, the pkt_mark of message is assigned a value of second value;Wherein, second value can be illustratively 0x7f000004。
Illustratively, when determining that the destination network segment of message is not belonging to the Intranet network segment, when the type of message is FIP flows, The pkt_mark of message is assigned a value of 0x7f000002 at this time.When determining that the destination network segment of message belongs to the Intranet network segment, into one Step determines whether the destination network segment of message belongs to virtual machine address, if so, determining that the type of message is DVR flow amount, by message Pkt_mark be assigned a value of using 16 systems indicate purpose IP address;If not, then it is assumed that the destination network segment of message is default net Section determines that the type of message is other flows, the pkt_mark of message is assigned a value of 0x7f000004.Illustratively, this implementation Example in virtual machine bridge in original iptables increase for message classification rule, to virtual machine bridge change compared with It is small, the setting IP address routing table in interior network bridge is avoided, the overall performance of message forwarding system is improved.
The message for carrying type identification is sent to integrated bridge 11 by S303, the first virtual machine bridge 31.
S304, integrated bridge 11 determine whether message belongs to three-tier message according to the target MAC (Media Access Control) address of message;If it is not, then Execute S305;If so, executing S306;
Illustratively, bridge 11 is integrated after receiving and carrying the message of type identification, if according to the purpose MAC of message Address determines that the virtual machine for receiving message and the virtual machine for sending message belong to same subnet, then can determine that message belongs to two layers Message, however, it is determined that the target MAC (Media Access Control) address of message is webmaster MAC Address, then can determine that message belongs to three-tier message.Wherein, two layers Message refers to the flow in same subnet, and two layer message directly can be sent to the virtual machine in subnet and needed not move through by integrated bridge 11 Interior network bridge 12 and outer network bridge 13, three-tier message refer to the flow between different sub-network, such as DVR flow amount, FIP flows.Due to two Layer message can directly be forwarded by integrated bridge 11, need not move through the routing of interior network bridge 12, therefore in being sent to message Before network bridge 12, integrated bridge 11 first need to determine whether message belongs to three-tier message, in being sent to two layer message Network bridge 12 reduces the workload of interior network bridge 12.
S305, integrated bridge 11 are forwarded the packet to target MAC (Media Access Control) address.
Message is sent to interior network bridge 12 by S306, integrated bridge 11.
S307, interior network bridge 12 according in message type identification and interior network bridge 12 in preset flow table E-Packet.
Illustratively, interior network bridge 12 determines the corresponding flow table item of message, and according to stream according to the type identification in message List item E-Packets.Specifically, in the matched flow table item of determining message in presetting flow table, according to flow table item in default flow table Preset order is matched one by one.The different message of destination network segment is matched to different flow table items, to execute different flow tables It is acted after the corresponding matching of item, realizes that the message of different destination network segments passes through different ports and forwards.
Illustratively, interior network bridge 12 is specifically included according to the mode that default flow table E-Packets:
S3071, interior network bridge 12 determine whether the pkt_mark values of message are the second number according to the type identification of message Value;If so, executing S3072;If not;Then execute S3073;
Illustratively, it is matching object with pkt_mark, each flow table item in message and default flow table is pressed into preset order It is matched, if message can be matched with the flow table item that pkt_mark is second value, then interior network bridge 12 executes the stream It is acted after the matching of list item namely S3072.
S3072, interior network bridge 12 are forwarded the packet to target MAC (Media Access Control) address.
It, then can be directly according to the target MAC (Media Access Control) address of message, by interior network bridge when determining that message destination network segment is the default network segment 12 directly send message to target MAC (Media Access Control) address.
S3073, judge message pkt_mark values whether be the first numerical value and message metadata metedata value Whether it is 0;If so, executing S3074;If not;Then execute S3075;
Illustratively, the initial value of the metedata for the message that interior network bridge 12 receives is 0.With pkt_mark and Metedata be matching object, each flow table item in message and default flow table is matched by preset order, if message with Pkt_mark is the first numerical value, and the flow table item that metedata values are 0 can match, then interior network bridge 12 executes the flow table Matching after act namely S3074.
S3074, the value for changing the metedata of message are 2, and execute S3071;
Illustratively, the value of the metedata of message is revised as 2 so that modified message can be with pkt_mark values Flow table item that value for the first numerical value and the metedata of message is 2 matching, to act after executing the matching of the flow table item.
Illustratively, during actual match, the letters such as type identification, metadata that interior network bridge 12 is carried according to message Breath, determines message respectively matched flow table item.Action is indicated generally at different ports after matching in each flow table item so that Intranet Bridge 12 sends the message of different destination network segments by different port, realizes message forwarding.Wherein, port-mark is not It is to immobilize, when virtual switch is restarted, port-mark may change, and need to change the end in each flow table item at this time Mouth mark.Due to the case where indicating the same port there may be multiple flow table items, the port in flow table item is changed one by one The workload of mark is larger.Process is changed to simplify flow table, it can be in default flow table, for the specially design one of each port Port flow table item so that when port-mark changes, it is only necessary to change the port-mark in each port flow table item.It is corresponding, it is former The metadata for then no longer indicating port in this flow table item, and being used to indicate in modification message.
S3075, judge whether the value of the metedata of message is 0;If so, executing S3076;If it is not, then executing S3077;
Illustratively, determining that message is not belonging to the message that destination network segment is the default network segment and determining message according to S3071 It is not belonging to the DVR flow amount of unmodified metadata, message is determined as FIP messages according to metedata values or has modified metadata DVR flow amount.
S3076, the value for changing the metedata of message are 5, and execute S3071;
Illustratively, it when the metadata values of message are 0, determines that message is DVR flow amount, changes message at this time Metedata values are 5.
S3077, judge whether the value of the metedata of message is 2;If so, executing S3078;If it is not, then executing S3080;
S3078, interior network bridge 12 are forwarded the packet to outer network bridge 13;
S3079, outer network bridge 13 are forwarded the packet to integrated bridge 11;Execute S308;
Illustratively, the target MAC (Media Access Control) address of message is revised as outer net gateway by outer network bridge 12 after receiving message Then modified message is sent to integrated bridge 11 by MAC Address.
S3080, judge whether the value of the metedata of message is 2;If so, executing S3081;If it is not, then executing S3082;
Illustratively, when the destination network segment for determining message according to the type identification of message is the outer net network segment, interior network bridge 12 Message is sent to outer network bridge 13.
S3081, interior network bridge 12 are forwarded the packet to integrated bridge 11;Execute S308;
Illustratively, when the destination network segment for determining message according to the type identification of message is the Intranet network segment, interior network bridge 12 The source MAC and target MAC (Media Access Control) address of message will be changed, modified message is then sent to integrated bridge 11.
S3082,12 dropping packets of interior network bridge.
S308, integrated bridge 11 receive the message that interior network bridge 12 or outer network bridge 13 are sent, and forward the packet to message Destination address.
Illustratively, bridge 11 is integrated after receiving the message that interior network bridge 12 or outer network bridge 13 are sent, by message It is forwarded, it is identical as the mode that existing integrated bridge E-Packets that the mode that bridge E-Packets is integrated in this step.
Namespace in the prior art is substituted using interior network bridge and outer network bridge in the present embodiment, by Intranet net Bridge joint collects the message sent at bridge, and according to message and default flow table, is forwarded to message, avoids namespace Switching when carrying out message forwarding between caused User space and kernel state improves the performance of message forwarding.
On the one hand the embodiment of the present application provides a kind of message forwarding method.Fig. 4 is the message that the embodiment of the present application two provides The flow diagram of retransmission method.Namespace in the prior art is substituted using interior network bridge in the present embodiment, by Intranet Bridge, which receives, integrates the message that bridge is sent, and according to message and default flow table, is forwarded to message, avoids Switchings of the namespace when carrying out message forwarding between caused User space and kernel state improves the performance of message forwarding. As shown in figure 4, message forwarding method provided in this embodiment, is applied in message forwarding system 200 as shown in Figure 2, message The executive agent of retransmission method can be the interior network bridge 12 in Fig. 2.Illustratively, message forwarding method includes:
S401, interior network bridge, which receive, integrates the message that bridge is sent.
Illustratively, when the first virtual machine 21 is sent out message, message is sent to virtual friendship by the first virtual machine 21 It changes planes 10, message is sent to by difference by different ports according to the difference of the purpose IP address of message by virtual switch 10 Destination address.Further, inside virtual machine interchanger 10, message is first sent to integrated bridge 11, then by collection networking Message is sent to interior network bridge 12 by bridge 11.Illustratively, integrating bridge 11 can be with the collection in existing Virtual Networking System 200 It is identical at bridge 103.Interior network bridge 12 is used to replace existing Intranet NameSpace 104, realizes message routing in namespace Function message is sent from integrated bridge 11 since interior network bridge 12 and integrated bridge 11 are by patch port communications When to interior network bridge 12, message is unanimously on the same data path datapath, can't be generated as namespace The switching of kernel state and User space reduces delay when message forwarding, improves report to improve the performance of message forwarding Literary traffic throughput.
S402, interior network bridge E-Packet according to default flow table.
Illustratively, interior network bridge 12 for realizing message forwarding.Specifically, being stored with default stream in interior network bridge 12 Table, flow table include at least one flow table item.Interior network bridge 12 is according to information such as the destination network segment of message or five-tuples, default The matched processing mode of message is determined in flow table, and message is sent according to matched processing mode.Five-tuple letter is carried in message Breath, five-tuple information include:Source IP address, source port, purpose IP address, destination interface and transport layer protocol.The purpose of message The network segment can be determined according to the purpose IP address of message.Illustratively, the destination network segment of message can be divided into the Intranet network segment, outer net Network segment etc..When the destination network segment of message is the Intranet network segment, message belongs to the message between different virtual machine, and sends message Virtual machine and the virtual machine for receiving message belong to different subnets, and message belongs to DVR flow amount at this time.When the destination network segment of message is When the outer net network segment, message belongs to the message between virtual machine and outer net, at this point, the virtual machine for sending message passes through outer net and reception The virtual machine of message communicates, and message belongs to FIP flows.Illustratively, when the source IP address of the purpose IP address of message and message When subnet mask having the same, the virtual machine for sending message belongs to identical subnet with the virtual machine for receiving message.Work as message Purpose IP address and the source IP address of message when there is different subnet masks, send the virtual machine of message and receive message Virtual machine belongs to different subnets.
Exemplary, when the destination network segment of message is the Intranet network segment, interior network bridge 12 exists according to the purpose IP address of message Determine that the matched processing mode of message is that message is retracted into integrated bridge 11 in default flow table, integrated bridge 11 again sends out message It send to the destination address of message;When the destination network segment of message is gateway, interior network bridge 12 exists according to the purpose IP address of message Determine that the matched processing mode of message is that message is sent directly to gateway in default flow table.It is substituted by using interior network bridge 12 Intranet NameSpace 104, and received by interior network bridge 12 integrated in interior network bridge 12 using flow table is preset instead of routing policy The message that bridge 11 is sent, and the matched processing mode of message is determined according to default flow table, realize the forwarding of message.
The embodiment of the present application provides a kind of message forwarding method, is applied in message forwarding system, message forwarding system packet Include virtual switch and at least one virtual machine, virtual switch includes integrated bridge and interior network bridge, each virtual machine with it is integrated Bridge connects, and default flow table is stored in interior network bridge.The message forwarding method includes:Interior network bridge, which receives, integrates bridge transmission Message;Interior network bridge E-Packets according to message and default flow table.It is substituted by using interior network bridge in the prior art Namespace is received the message for integrating bridge and sending by interior network bridge, and according to message and is stored in default in interior network bridge Flow table is forwarded message, avoids when carrying out message forwarding in namespace between caused User space and kernel state Switching improves the performance of message forwarding.
Illustratively, on the basis of embodiment shown in Fig. 4, the embodiment of the present application also provides a kind of message forwarding method. Fig. 5 is the flow diagram for the message forwarding method that the embodiment of the present application three provides.With embodiment illustrated in fig. 4 difference lies in, Type identification is carried in the message of interior network bridge reception 12 in the present embodiment, further improves message forwarding performance.Such as Fig. 5 Shown, message forwarding method includes:
S501, interior network bridge, which receive, integrates the message that bridge is sent, and carries type identification in message, type identification is used for Indicate the destination network segment of message.
Illustratively, in the embodiment shown in fig. 4, for the determining and matched processing mode of message, analytic message is needed The first-class layer three information of IP packet obtains the purpose IP address of message, and the purpose of message is determined according to preset IP address routing table The network segment, and then determined and the matched processing mode of message in default flow table further according to the destination network segment of message.Above-mentioned message turns Originating party formula complex steps, speed are slower.And in the present embodiment, type identification is carried in the message that interior network bridge 12 receives, Type identification indicates the destination network segment of message, so that interior network bridge 12 only needs the Ethernet heading of analytic message, and nothing The first-class layer three information of the IP packet of analytic message is needed, also avoids that IP address routing table is arranged in interior network bridge 12, so it is simple 12 forwarding process of network bridge, facilitates interior network bridge 12 and is forwarded to message, improve message sending performance in changing.
S502, interior network bridge are pressed each flow table item in message and default flow table default suitable according to the type identification of message Sequence is matched, until determining and matched first flow table item of message.
Wherein, the type identification in the type identification in message and the first flow table item is identical, or, not wrapped in the first flow table item Containing type identification.
Illustratively, it includes at least one flow table item to preset flow table, every flow table item at least may include basic information, It is acted after matching entries and matching.Basic information is the relevant information of the flow table item, generally include the flow table item issue the time, Free time and priority etc..Matching entries include type identification, metadata etc., are used for and the type identification in message, member Data etc. are compared.Illustratively, the matching entries in flow table item are possibly less than the matching entries in message, at this time not to report The matching entries are compared in text, judge whether message matches with flow table item according only to other matching entries in flow table item. Action is used to indicate the post-treatment operations with the matched message of the flow table item after matching.Illustratively can be by message pre- If one or more matching entries etc. of port forwarding, the source/destination IP address of modification message, modification message.Specifically matching In the process, interior network bridge is after receiving message, by interior network bridge by each flow table in the type identification of message and default flow table Item is matched by preset order, when the type identification for detecting the presence of a certain flow table item is identical as the type identification of message, Or when detecting in a certain flow table item including type identification, which is denoted as the first flow table item, determines the first flow table item It is matched with message.Wherein, preset order can be illustratively that each flow table item puts in order or according to each flow table in flow table The sequence that the priority of item determines from high to low.
S503, interior network bridge E-Packet according to the first flow table item.
Illustratively, after interior network bridge 12 is in matched first flow table item of determining message in presetting flow table, according to first Action E-Packets after the matching that flow table item includes.It is moved after matching for example, interior network bridge passes through message in the first flow table item Make indicated port to send out.
In message forwarding method provided by the embodiments of the present application, interior network bridge will be in the type identification of message and default flow table Each flow table item matched by preset order, determine with matched first flow table item of message, and according to the first flow table item forward Message.In the present embodiment, type identification is carried in message, facilitates the Ethernet heading of interior network bridge only analytic message, The first-class layer three information of IP packet without analytic message also avoids that IP address routing table is arranged in interior network bridge, so Network bridge forwarding process, facilitates interior network bridge and is forwarded to message, improve message sending performance in simplifying.Meanwhile it is logical It crosses and the matched flow table item of message is determined in default flow table according to the type identification of message, and then carried out according to matched flow table item Message forwards, and simplifies message repeating process, avoids in existing message pass-through mode and both analytic message was needed to come in and go out Linux command involved by namespace, it is also necessary to parse the routing policy stored in namespace.
Illustratively, right below according to the difference of the type identification of message on the basis of above-mentioned embodiment illustrated in fig. 5 Message forwarding method is described in detail.
In a kind of feasible realization method, when type identification indicates that the destination network segment of message is the Intranet network segment, first Message output port indicated by flow table item is integrated bridge port.At this point, message belongs to VDR flows.
Corresponding, the interior network bridge 12 in S503 E-Packets according to forwarding flow table item, specifically includes:
Message by integrating bridge port 2, is forwarded to integrated bridge 11 by interior network bridge 12.
Illustratively, the destination address that the message received is sent to message by bridge 22 is integrated.
In another feasible realization method, when type identification indicates that the destination network segment of message is the outer net network segment, turn It is outer net bridge port to send out the message output port indicated by flow table item.At this point, message belongs to FIP flows.
Corresponding, the interior network bridge 12 in S503 E-Packets according to forwarding flow table item, specifically includes:
Message by outer net bridge port 5, is forwarded to outer network bridge 13 by interior network bridge 12.
Illustratively, message is sent to integrated bridge 11 by outer network bridge 13 by port 7 so that integrated bridge 11 will report Text is sent to the destination address of message.
In another feasible realization method, when type identification indicates that the destination network segment of message is the default network segment, turn Send out the default port that the message output port indicated by flow table item is the purpose equipment indicated by the destination address of message.For example, The destination address of message may be LAN gateway.
Corresponding, the interior network bridge 12 in S503 E-Packets according to forwarding flow table item, specifically includes:
Message is forwarded to the purpose equipment indicated by the destination address of message by interior network bridge 12 by default port 3.
Illustratively, on the basis of embodiment shown in Fig. 5, the embodiment of the present application also provides a kind of message forwarding method. Fig. 6 is the flow diagram for the message forwarding method that the embodiment of the present application four provides.The base of the present embodiment embodiment shown in Fig. 5 On plinth, the flow table item in flow table is had been further described.As shown in fig. 6, message forwarding method includes:
S601, interior network bridge, which receive, integrates the message that bridge is sent, and carries type identification in message, type identification is used for Indicate the destination network segment of message.
S602, interior network bridge are according to the type identification and metadata of message, by each flow table item in message and default flow table It is matched by preset order, until determining and matched second flow table item of message.
Wherein, the type identification in message and metadata in the second flow table item type identification and metadata it is identical; Or, the type identification in message is identical as the type identification in the second flow table item, and metadata is not included in the second flow table item; Or, the metadata in message is identical as the metadata in the second flow table item, and type identification is not included in the second flow table item;Or, Type identification and metadata are not included in second flow table item.Wherein, metadata is used to indicate the port to E-Packet.
Illustratively, S501, S502 in S601, S602 and embodiment illustrated in fig. 5 in the present embodiment are same or similar, The application repeats no more this.
S603, interior network bridge change the metadata of message, obtain modified message according to the second flow table item.
Illustratively, during actual match, the letters such as type identification, metadata that interior network bridge 12 is carried according to message Breath, determines message respectively matched flow table item.Action is indicated generally at different ports after matching in each flow table item so that Intranet Bridge 12 sends the message of different destination network segments by different port, realizes message forwarding.Wherein, port-mark is not It is to immobilize, when virtual switch is restarted, port-mark may change, and need to change the end in each flow table item at this time Mouth mark.Due to the case where indicating the same port there may be multiple flow table items, the port in flow table item is changed one by one The workload of mark is larger.Process is changed to simplify flow table, it can be in default flow table, for the specially design one of each port Port flow table item so that when port-mark changes, it is only necessary to change the port-mark in each port flow table item.It is corresponding, it is former The metadata for then no longer indicating port in this flow table item, and being used to indicate in modification message.
S604, interior network bridge by modified message and are preset according to the type identification and metadata of modified message Each flow table item in flow table is matched by preset order, until determining and the matched third flow table item of modified message.
Wherein, the type identification in modified message and metadata in third flow table item type identification and first number According to identical;Or, the type identification in modified message is identical as the type identification in third flow table item, and in third flow table item Not comprising metadata;Or, the metadata in modified message is identical as the metadata in third flow table item, and third flow table item In do not include type identification;Or, not including type identification and metadata in third flow table item.
Illustratively, interior network bridge 12 is according to the type identification and metadata of modified message, determined in flow table with The matched third flow table item of modified message namely port flow table item.Illustratively, the identical message of type identification, Intranet Bridge 12 passes through identical port, after being changed according to the second flow table item, metadata having the same in forwarding.Type identification Different messages has different metadata values after being changed according to the second flow table item.It can be subtracted by the way that port flow table item is arranged The workload of few port-mark modification, and then the stability of flow table is improved, and the readability of flow table code is improved, it is beneficial to flow The realization of table code.
S605, interior network bridge E-Packet according to third flow table item.
Illustratively, interior network bridge 12 forwards modified message according to action after the matching in third flow table item.
In message forwarding method provided by the embodiments of the present application, interior network bridge is determined according to type identification and metadata After matched second flow table item of message, the metadata of message is changed according to the second flow table item, further according to modified message Type identification and metadata determine the matched third flow table item of message, and message forwarding is carried out according to third flow table item.The application is real The message forwarding method for applying example offer modifies to message according to the matched flow table item of message institute before modification, further according to modification The matched flow table item of message institute afterwards realizes that message forwarding, the port forwarded the packet are realized by individual flow table item, reduces The workload of flow table modification, improves the readability of the stability and flow table code of flow table, is beneficial to when port-mark variation The realization of flow table code.
Below on the basis of message forwarding system 200 shown in Fig. 2, in conjunction with specific flow table example to shown in above-mentioned Fig. 6 Embodiment illustrates.
Illustratively, with reference to existing OpenFlow flow table agreement, a kind of flow table scheme can be as follows in interior network bridge 12 It is shown, including:
(1) cookie=0x0, duration=87552.187s, table=0, n_packets=0, n_bytes=0, Idle_age=65534, hard_age=65534, priority=2, pkt_mark=0x7f000004, metadata=0, In_port=1, dl_dst=fa:16:3e:aa:22:B6actions=output:3
(2) cookie=0x0, duration=1161.965s, table=0, n_packets=1, n_bytes=42, Idle_age=798, priority=1, metadata=0, in_port=2, dl_dst=fa:16:3e:be:41: 1dactions=load:0x5->OXM_OF_METADATA [], resubmit (, 0)
(3) cookie=0x0, duration=1152.466s, table=0, n_packets=0, n_bytes=0, Idle_age=1152, priority=1, pkt_mark=0xC0A80A02, metadata=0x5actions=mod_dl_ src:fa:16:3e:aa:22:B6, mod_dl_dst:fa:16:3e:68:c9:28, output:1
(4) cookie=0x0, duration=87552.133s, table=0, n_packets=4, n_bytes= 392, idle_age=65534, hard_age=65534, priority=2, pkt_mark=0x7f000002, metadata =0, in_port=1actions=load:0x2->OXM_OF_METADATA [], resubmit (, 0)
(5) cookie=0x0, duration=87545.975s, table=0, n_packets=4, n_bytes= 392, idle_age=65534, hard_age=65534, priority=1, metadata=0x2actions=output: 5
Wherein, the message of FIP types is sent to outer network bridge by the instruction of this flow table item.
Illustratively, for above-mentioned flow table item (1) to (5), it is stored with default flow table in interior network bridge 12, is preset in flow table Including flow table item can be divided to different table (table), the value of table determines message when carrying out flow table item matching Sequencing.For example, message first with table values be 0 flow table item matched, then with table values be 1,2, 3 ... flow table item is matched.Illustratively, priority is the priority of flow table item, and in a table, message is pressed Priority is matched with flow table item.The numerical value of priority is bigger in the present embodiment, and priority is higher, and message is being flowed Flow table item larger priority match priority when list item matches.For in a table, the identical flow table items of priority, Then matched according to the number order of flow table item.
Illustratively, pkt_mark is type identification, and metadata is metadata, and the action corresponding to actions is It is acted after matching.In the present embodiment, pkt_mark values are that 0x7f000002 indicates that the purpose IP address of message is outer net IP, message Belong to FIP flows;Pkt_mark values are that 0x7f000004 indicates that the purpose IP address of message is Intranet IP, and message is not belonging to The purpose IP address of DVR flow amount, message is, for example, the IP address of gateway.
Illustratively, when determining that message is matched with flow table item (1) according to type identification and metadata, it may be determined that message Destination network segment is the default network segment, and flow table item (1) instruction at this time forwards message from the port of interior network bridge 12 3.Work as basis When type identification and metadata determine that message is matched with flow table item (2), indicated the member of message in the actions of flow table item (2) Data metadata is revised as 0x5, and modified message is re-started matching since table values are 0 flow table item. When determining that message matches flow table item (3) according to type identification and metadata, it may be determined that the destination address of message 192.168.10.2, destination network segment is the Intranet network segment, and the actions in flow table item (3) is indicated the source MAC and mesh of message MAC Address modify and modified message be forwarded to integrated bridge 11 from the port of interior network bridge 12 1.When according to class When type identifies and metadata determines that message is matched with flow table item (4), it may be determined that the destination network segment of message is the outer net network segment, and message is The metadata of message is revised as 0x2 by FIP flows, flow table item (4) instruction, and by modified message from table values be 0 Flow table item starts to re-start matching.When determining that message is matched with flow table item (5) according to type identification and metadata, flow table item (5) message is forwarded to outer network bridge 13 by instruction from the port of interior network bridge 12 5.
Illustratively, a kind of scheme of flow table is as follows in outer network bridge 13, including:
(6) cookie=0x0, duration=87556.376s, table=0, n_packets=4, n_bytes= 392, idle_age=65534, hard_age=65534, priority=1, in_port=6actions=resubmit (, 17)
Illustratively, the instruction of this flow table item, which resubmits message in the flow table item that table values are 17, carries out flow table Item matching.
(7) cookie=0x0, duration=87553.203s, table=17, n_packets=4, n_bytes= 392, idle_age=65534, hard_age=3, actions=load:0x707be875a399->NXM_OF_ETH_DST [], output:7
Illustratively, the target MAC (Media Access Control) address of message is revised as the MAC Address of outer net gateway by the instruction of this flow table item, and will Message is forwarded to integrated bridge 11 from the port of outer network bridge 13 7.
Illustratively, in conjunction with above-mentioned flow table item, when message belongs to FIP flows, the message forwarding flow in message forwarding system Journey is illustratively:It is 0x7f000002 according to the type identification pkt_mark values of message, first by message and priority It is matched for 2 flow table item (1), finds to mismatch, and then message is matched with the priority flow table items (4) for being 2, Determination is matched with flow table item (4).The metadata fields of message are revised as 0x2 by 0x0 according to flow table item (4), and according to Actions resubmits progress flow table item matching in message to the flow table item of table=0.Illustratively, flow table item is carried out for the first time The value of the metadata of matched message is 0x0.When modified message matches again, because metadata is changed For 0x2, so modified message is mismatched with the priority flow table items for being 2, then according to flow table item (2), (3) and (5) sequence is matched successively, finally determines that modified message is matched with flow table item (5), according in flow table item (5) Actions=output:Message is forwarded to outer network bridge 13 by 5 from the port that port-mark is 5.Outer network bridge 13 receives report Wen Hou, it is first determined message is matched with flow table item (6), and message is resubmited to the flow table of table=17 according to flow table item (6) The flow table item matching that message is carried out in, so that it is determined that message is matched with flow table item (7), according to flow table item (7) by the mesh of message MAC Address be revised as the MAC Address of outer net gateway, and message is beamed back into integrated bridge 11 by port 7.Illustratively, lead to It crosses and the flow table item in default flow table is divided into different table, matching workload when message Secondary Match can be reduced.
Illustratively, in conjunction with above-mentioned flow table item, when message belongs to DVR flow amount, the message forwarding flow in message forwarding system Journey is illustratively:Since message belongs to DVR flow amount, the value of the pkt_mark of message be not 0x7f000004 or 0x7f000002, therefore message can not be matched with flow table item (1) or (4).In flow table item (2), (3) and (5), message and flow table Item (2) matching.The metadata fields that message is changed according to flow table item (2) are 0x5, and resubmit message to table=0's The flow table item matching that message is carried out in flow table item, since the metadata of message has been modified into 0x5, message and flow table Item (3) matching, the source MAC and target MAC (Media Access Control) address of message are changed according to flow table item (3), and modified message is passed through The port that port-mark is 1 is forwarded to integrated bridge 11.
Illustratively, in conjunction with above-mentioned flow table item, when message belongs to other flows, (such as destination address is LAN gateway Flow), the message forwarding process in message forwarding system is illustratively:It is according to the type identification pkt_mark values of message 0x7f000004, it may be determined that message is matched with the priority flow table items (1) for being 2, and message is passed through port according to flow table item (1) 3, which are sent directly to purpose equipment, is handled.
Illustratively, bridge 11 is integrated for the processing side of the message received from interior network bridge 12 and outer network bridge 13 Formula is identical as the processing mode of integrated bridge 104 in the traditional virtual network architecture 100, and the application repeats no more this.
Illustratively, based on any of the above embodiments, the embodiment of the present application also provides a kind of message forwarding method. Fig. 7 is the signaling process schematic diagram for the message forwarding method that the embodiment of the present application five provides.It is forwarded with message in the present embodiment and is Each bridge in system is executive agent, and total process of the message forwarding in system is described in detail.As shown in fig. 7, message Retransmission method includes:
S701, virtual machine bridge receive the message that virtual machine is sent.
Illustratively, each virtual machine is connect by virtual machine bridge with virtual switch, thus the first virtual machine 21 into When row message forwards, message is sent to the first virtual machine bridge 31 first.
S702, virtual machine bridge determine the type identification of message, increase type in messages according to the destination network segment of message Mark.
Illustratively, the first virtual machine bridge 31 classifies to message using iptables, according to the type of message, Increase label in message.For example, stamping corresponding label in the pkt_mark attributes of message according to the destination network segment of message.Work as root When determining that message belongs to FIP flows according to the destination network segment of message, the pkt_mark of message is assigned a value of 0x7f000002, works as basis When the destination network segment of message determines that message belongs to DVR flow amount, the pkt_mark of message is assigned a value of the mesh using the expression of 16 systems IP address determine that message belongs to other when it is the default network segment to determine the destination network segment of message according to the destination network segment of message When flow, the pkt_mark of message is assigned a value of 0x7f000004.Illustratively, original in virtual machine bridge in the present embodiment Iptables in increase for message classification rule, to virtual machine bridge change it is smaller, avoid and set in interior network bridge IP address routing table is set, the overall performance of message forwarding system is improved.
The message for carrying type identification is sent to integrated bridge 11 by S703, the first virtual machine bridge 31.
Optionally, after S703, message forwarding method further includes:
S7031, integrated bridge 11 determine that message is three-tier message according to the target MAC (Media Access Control) address of message.
Illustratively, bridge 11 is integrated after receiving message, if according to the target MAC (Media Access Control) address of message, is determined and is received report The virtual machine of text and the virtual machine for sending message belong to same subnet, then can determine that message belongs to two layer message, otherwise, it may be determined that Message belongs to three-tier message.Since two layer message can directly be forwarded by integrated bridge 11, the road of interior network bridge 12 is needed not move through By, therefore before message is sent to interior network bridge 12, integrated bridge 11 need to first determine that message belongs to three-tier message.
Optionally, in message forwarding method provided in this embodiment, after S703, further include:
If integrated bridge 11 determines that message is two layer message according to the target MAC (Media Access Control) address of message, then integrating bridge 11 will report Text is forwarded to target MAC (Media Access Control) address.
Message is sent to interior network bridge 12 by S704, integrated bridge 11.
S705, interior network bridge 12 E-Packet according to type identification and default flow table.
Illustratively, interior network bridge 12 determines the corresponding flow table item of message, and according to stream according to the type identification in message List item E-Packets.Specifically when E-Packeting, according to the difference of the type identification of message, interior network bridge 12 forward the packet to Outer network bridge 13 or integrated bridge 11.
In a kind of possible realization method, S705 is specifically included:
S7051, interior network bridge 12 are forwarded the packet according to type identification and default flow table to outer network bridge 13.
Illustratively, when the destination network segment for determining message according to the type identification of message is the outer net network segment, interior network bridge 12 Message is sent to outer network bridge 13.
Corresponding, message forwarding method further includes:
S7052, outer network bridge 13 are forwarded the packet to integrated bridge 11.
Illustratively, the target MAC (Media Access Control) address of message is revised as outer net gateway by outer network bridge 13 after receiving message Then modified message is sent to integrated bridge 11 by MAC Address.
In alternatively possible realization method, S705 is specifically included:
S7053, interior network bridge 12 are forwarded the packet according to type identification and default flow table to integrated bridge 11.
Illustratively, when the destination network segment for determining message according to the type identification of message is the Intranet network segment, interior network bridge 12 The source MAC and target MAC (Media Access Control) address of message will be changed, modified message is then sent to integrated bridge 11.
S706, integrated bridge 11 receive the message that interior network bridge 12 or outer network bridge 13 are sent, and forward the packet to message Destination address.
Illustratively, bridge 11 is integrated after receiving the message that interior network bridge 12 or outer network bridge 13 are sent, by message It is forwarded, the mode phase that the mode that bridge 11 E-Packets E-Packets with the integrated bridge 104 in Fig. 1 is integrated in this step Together.
Message forwarding method provided by the embodiments of the present application is applied in message forwarding system, and virtual machine bridge is to receive To message add type identification to improve the performance of interior network bridge, integrate bridge receive virtual machine bridge send message simultaneously turn It is sent to interior network bridge, the message that destination network segment is the Intranet network segment is sent to integrated bridge by interior network bridge, and by destination network segment Integrated bridge is forwarded to by outer network bridge for the message transmission of the outer net network segment, then realizes the forwarding of message by integrating bridge.This Apply for that the message forwarding method performance that embodiment provides is higher.
On the other hand the embodiment of the present application also provides a kind of apparatus for forwarding message, for executing the message in above-described embodiment Retransmission method, technical characteristic and technique effect having the same.
Apparatus for forwarding message provided by the embodiments of the present application can be illustratively the virtual switch 10 in Fig. 2, message The structure of retransmission unit can be with as shown in Fig. 2, including integrating bridge 11, interior network bridge 12 and outer network bridge 13, interior network bridge 12 In be stored with default flow table.Specifically, interior network bridge 1212 is used for,
It receives and integrates the message that bridge 11 is sent;
It is E-Packeted according to default flow table.
Optionally, type identification is carried in message, type identification is used to indicate the destination network segment of message;
Interior network bridge 12 is specifically used for, and according to the type identification of message, each flow table item in message and default flow table is pressed Preset order is matched, until determining and matched first flow table item of message;Wherein, the type identification in message and first-class Type identification in list item is identical;It is E-Packeted according to forwarding flow table item.
Optionally, interior network bridge 12 is specifically used for,
According to the type identification and metadata of message, each flow table item in message and default flow table is carried out by preset order Matching, until determining and matched second flow table item of message;The type identification in type identification and the second flow table item in message It is identical;
Interior network bridge 12 changes the metadata of message according to the second flow table item, obtains modified message;
Interior network bridge 12 is according to the type identification and metadata of modified message, by modified message and default flow table In each flow table item matched by preset order, until determine with the matched third flow table item of modified message;
It is E-Packeted according to third flow table item.
Optionally, when type identification indicates that the destination network segment of message is the Intranet network segment, the report indicated by flow table item is forwarded Literary output port is integrated 11 port of bridge;
Interior network bridge 12 is specifically used for, and by message by integrating 11 port of bridge, is forwarded to integrated bridge 11;
Integrated bridge 11 is additionally operable to, and after the message for receiving the transmission of interior network bridge 12, is forwarded the packet to the mesh of message Address.
Optionally, when type identification indicates that the destination network segment of message is the outer net network segment, the report indicated by flow table item is forwarded Literary output port is 13 port of outer network bridge;
Interior network bridge 12 is specifically used for, and by message by 13 port of outer network bridge, is forwarded to outer network bridge 13.
Optionally, when type identification indicates that the destination network segment of message is the default network segment, the report indicated by flow table item is forwarded Literary output port is the default port of the purpose equipment indicated by the destination address of message;
Interior network bridge 12 is specifically used for, and by message by presetting port, is forwarded to the mesh indicated by the destination address of message Equipment.
Optionally, it integrates bridge 11 to be used for, receives the message that virtual machine is sent by virtual machine bridge, and forward the packet To interior network bridge 12.
Optionally, it integrates bridge 11 to be additionally operable to, forward the packet to before interior network bridge 12, according to the purpose of message MAC Address determines that message is three-tier message.
Optionally, it integrates bridge 11 to be additionally operable to, if according to the target MAC (Media Access Control) address of message, determines that message is two layer message, then It forwards the packet to target MAC (Media Access Control) address.
Optionally, outer network bridge 13 is used for, and receives the message that interior network bridge 12 is sent, the target MAC (Media Access Control) address of message is repaiied It is changed to the MAC Address of outer net gateway, obtains outer network packet;Outer network packet is forwarded to integrated bridge 11;
Integrated bridge 11 is forwarded the packet to the destination address of message.
On the other hand the embodiment of the present application also provides a kind of message forwarding system, as shown in Fig. 2, message forwarding system 200 Include as in above-mentioned any embodiment apparatus for forwarding message and at least one virtual machine, each virtual machine corresponded to by each virtual machine Virtual machine bridge connect with integrated bridge 11;Virtual machine bridge is used for,
Receive the message that virtual machine is sent;
According to the destination network segment of message, determines the type identification of message, increase type identification in messages;
The message for carrying type identification is forwarded to integrated bridge 11.
On the other hand the embodiment of the present application also provides a kind of host.Fig. 8 is the knot for the host that the embodiment of the present application one provides Structure schematic diagram.As shown in figure 8, host includes processor 801, memory 802, communication interface 803 and bus 804;Wherein,
It is connected by bus 804 between processor 801, memory 802 and communication interface 803 and completes mutual lead to Believe, for storing computer executed instructions in memory 802, when host is run, processor 801 executes the meter in memory 802 Calculation machine is executed instruction to be executed in Fig. 3 to Fig. 7 in the message forwarding method of any embodiment using the hardware resource in host Step.
On the other hand the embodiment of the present application additionally provides a kind of computer-readable medium, deposited in computer readable storage medium Instruction is contained, when run on a computer so that computer executes the message forwarding side of any embodiment in Fig. 3 to Fig. 7 The instruction of method.
It should be noted that embodiment provided herein is only schematical.Those skilled in the art can To be well understood, for convenience of description and succinctly, in the above-described embodiments, all respectively there is side to the description of each embodiment It is heavy, there is no the part being described in detail in some embodiment, may refer to the associated description of other embodiment.In the embodiment of the present application and The feature disclosed in attached drawing, which can be individually present, can also combine presence.The spy described in the form of hardware in the embodiment of the present application Sign can be executed by software, and vice versa.It does not limit herein.
In addition, it is necessary to which explanation is, it should be understood that the division of each bridge is only a kind of logic work(in the above virtual switch The division of energy, formula that in actual implementation, there may be another division manner, such as multiple units or component can combine or can collect At to another system, or some features can be ignored or not executed.Another point, shown or discussed mutual coupling Close or direct-coupling or communication connection can be by some interfaces, the INDIRECT COUPLING or communication connection of device or unit, can be with It is electrical, machinery or other forms.
The unit illustrated as separating component may or may not be physically separated, aobvious as unit The component shown may or may not be physical unit, you can be located at a place, or may be distributed over multiple In network element.Some or all of unit therein can be selected according to the actual needs to realize the mesh of this embodiment scheme 's.
In addition, each functional unit in this application can be integrated in a processing unit, can also be each unit It physically exists alone, it can also be during two or more units be integrated in one unit.Above-mentioned integrated unit can both be adopted It is realized, can also be realized in the form of hardware adds SFU software functional unit with the form of hardware.
Those of ordinary skill in the art may realize that sides described in conjunction with the examples disclosed in the embodiments of the present disclosure Method step can be realized with the combination of electronic hardware or computer software and electronic hardware.These functions are actually with hardware Or software mode executes, and depends on the specific application and design constraint of technical solution.Professional technician can be right Each specific application uses different methods to achieve the described function, but this realizes it is not considered that exceeding the application Range.
In the above-described embodiments, can come wholly or partly by software, hardware, firmware or its arbitrary combination real It is existing.When implemented in software, it can entirely or partly realize in the form of a computer program product.The computer program Product includes one or more computer instructions.When loading on computers and executing the computer program instructions, all or It partly generates according to the flow or function described in the embodiment of the present application.The computer can be all-purpose computer, special meter Calculation machine, computer network or other programmable devices.The computer instruction can be stored in computer readable storage medium In, or from a computer readable storage medium to the transmission of another computer readable storage medium, for example, the computer Instruction can pass through wired (such as coaxial cable, optical fiber) or nothing from a web-site, computer, server or data center Line (such as infrared, wireless, microwave etc.) mode is transmitted to another web-site, computer, server or data center. The computer readable storage medium can be that any usable medium that computer can access either includes one or more The data storage devices such as usable medium integrated server, data center.The usable medium can be that magnetic medium is (such as soft Disk, hard disk, tape), optical medium (such as CD) or semiconductor medium (such as solid state disk (solid-state drive, Various non-transitory (non-transitory) machine readable medias that can store program code such as SSD)).
It should be noted that embodiment provided herein is only schematical.Those skilled in the art can To be well understood, for convenience of description and succinctly, in the above-described embodiments, all respectively there is side to the description of each embodiment It is heavy, there is no the part being described in detail in some embodiment, may refer to the associated description of other embodiment.In the embodiment of the present application and The feature disclosed in attached drawing, which can be individually present, can also combine presence.The spy described in the form of hardware in the embodiment of the present application Sign can be executed by software, and vice versa.It does not limit herein.

Claims (23)

1. a kind of message forwarding method, which is characterized in that the method is applied in message forwarding system, message forwarding system System includes virtual switch and at least one virtual machine, and the virtual switch includes integrated bridge, interior network bridge and outer net net Bridge, each virtual machine are connect with the integrated bridge, and default flow table is stored in the interior network bridge;The method includes:
The interior network bridge receives the message that the integrated bridge is sent;
The interior network bridge forwards the message according to the default flow table.
2. according to the method described in claim 1, it is characterized in that, carry type identification in the message, the type mark Know the destination network segment for being used to indicate the message;The interior network bridge forwards the report according to the message and the default flow table Text, including:
The interior network bridge presses each flow table item in the message and the default flow table according to the type identification of the message Preset order is matched, until determining and matched first flow table item of the message;Type identification in the message and institute The type identification stated in the first flow table item is identical;
The interior network bridge forwards the message according to first flow table item.
3. according to the method described in claim 1, it is characterized in that, carry type identification in the message, the type mark Know the destination network segment for being used to indicate the message;The interior network bridge forwards the message according to the default flow table, including:
The interior network bridge, will be each in the message and the default flow table according to the type identification and metadata of the message Flow table item is matched by preset order, until determining and matched second flow table item of the message;Type in the message Mark is identical with the type identification in second flow table item;
The interior network bridge changes the metadata of the message according to second flow table item, obtains modified message;
The interior network bridge is according to the type identification and metadata of the modified message, by the modified message and institute Each flow table item stated in default flow table is matched by preset order, until determining and the matched third flow table of modified message ;
The interior network bridge forwards the message according to the third flow table item.
4. according to the method described in claim 2, it is characterized in that, when the type identification indicates the destination network segment of the message For the Intranet network segment when, the message output port indicated by first flow table item is integrated bridge port;
The interior network bridge forwards the message according to first flow table item, including:
The message by the integrated bridge port, is forwarded to the integrated bridge by the interior network bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
5. according to the method described in claim 2, it is characterized in that, when the type identification indicates the destination network segment of the message For the outer net network segment when, the message output port indicated by first flow table item is outer net bridge port;
The interior network bridge forwards the message according to first flow table item, including:
The message by the outer net bridge port, is forwarded to the outer network bridge by the interior network bridge.
6. according to the method described in claim 2, it is characterized in that, when the type identification indicates the destination network segment of the message When to preset the network segment, the message output port indicated by first flow table item is the mesh indicated by the destination address of the message Equipment default port;
The interior network bridge forwards the message according to first flow table item, including:
The message by the default port, is forwarded to the mesh indicated by the destination address of the message by the interior network bridge Equipment.
7. according to any one of claim 1 to 6 the method, which is characterized in that the interior network bridge receives the collection networking Before the message that bridge is sent, the method further includes:
The virtual machine bridge receives the message that virtual machine is sent;
The virtual machine bridge determines the type identification of the message according to the destination network segment of the message, in the message Increase the type identification;
The message for carrying type identification is forwarded to integrated bridge by the virtual machine bridge.
8. method according to claim 7, which is characterized in that the interior network bridge receives the message that the integrated bridge is sent Before, the method further includes:
The integrated bridge receives the message that the virtual machine bridge is sent;
The message is forwarded to the interior network bridge by the integrated bridge.
9. according to the method described in claim 8, it is characterized in that, the message is forwarded to interior network bridge by the integrated bridge Before, the method further includes:
The integrated bridge determines that the message is three-tier message according to the purpose MAC address of the message.
10. according to the method described in claim 9, it is characterized in that, the method further includes:
It is if the integrated bridge according to the target MAC (Media Access Control) address of the message, determines that the message is two layer message, then described integrated The message is forwarded to the target MAC (Media Access Control) address by bridge.
11. according to the method described in claim 5, it is characterized in that, the method further includes:
The outer network bridge receives the message that the interior network bridge is sent, and the target MAC (Media Access Control) address of the message is revised as outer net The MAC Address of gateway obtains outer network packet;
The outer network packet is forwarded to the integrated bridge by the outer network bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
12. a kind of apparatus for forwarding message, which is characterized in that including integrated bridge, interior network bridge and outer network bridge, the Intranet net Default flow table is stored in bridge;The interior network bridge is used for,
Receive the message that the integrated bridge is sent;
The message is forwarded according to the default flow table.
13. apparatus for forwarding message according to claim 12, which is characterized in that type identification is carried in the message, The type identification is used to indicate the destination network segment of the message;
The interior network bridge is specifically used for, will be in the message and the default flow table according to the type identification of the message Each flow table item is matched by preset order, until determining and matched first flow table item of the message;Wherein, in the message Type identification it is identical with the type identification in first flow table item;The message is forwarded according to the forwarding flow table item.
14. apparatus for forwarding message according to claim 12, which is characterized in that the interior network bridge is specifically used for,
According to the type identification and metadata of the message, by each flow table item in the message and the default flow table by default Sequence is matched, until determining and matched second flow table item of the message;Type identification in the message and described Type identification in two flow table items is identical;
The interior network bridge changes the metadata of the message according to second flow table item, obtains modified message;
The interior network bridge is according to the type identification and metadata of the modified message, by the modified message and institute Each flow table item stated in default flow table is matched by preset order, until determining and the matched third flow table of modified message ;
The message is forwarded according to the third flow table item.
15. apparatus for forwarding message according to claim 13, which is characterized in that when the type identification indicates the message Destination network segment when being the Intranet network segment, the message output port indicated by the forwarding flow table item is integrated bridge port;
The interior network bridge is specifically used for, and by the message by the integrated bridge port, is forwarded to the integrated bridge;
The integrated bridge is additionally operable to, and after receiving the message that interior network bridge is sent, the message is forwarded to described The destination address of message.
16. apparatus for forwarding message according to claim 13, which is characterized in that when the type identification indicates the message Destination network segment be the outer net network segment when, it is described forwarding flow table item indicated by message output port be outer net bridge port;
The interior network bridge is specifically used for, and by the message by the outer net bridge port, is forwarded to the outer network bridge.
17. apparatus for forwarding message according to claim 13, which is characterized in that when the type identification indicates the message Destination network segment when being the default network segment, the message output port indicated by the forwarding flow table item is the destination address of the message The default port of indicated purpose equipment;
The interior network bridge is specifically used for, and by the message by the default port, is forwarded to the destination address of the message Indicated purpose equipment.
18. the apparatus for forwarding message according to any one of claim 12 to 17, which is characterized in that the integrated bridge is used In, the message that reception virtual machine is sent by virtual machine bridge, and the message is forwarded to the interior network bridge.
19. apparatus for forwarding message according to claim 18, which is characterized in that the integrated bridge is additionally operable to, by institute It states message to be forwarded to before interior network bridge, according to the target MAC (Media Access Control) address of the message, determines that the message is three-tier message.
20. apparatus for forwarding message according to claim 19, which is characterized in that the integrated bridge is additionally operable to, if according to The target MAC (Media Access Control) address of the message determines that the message is two layer message, then with being forwarded to the purpose MAC by the message Location.
21. apparatus for forwarding message according to claim 16, which is characterized in that the outer network bridge is used for, described in reception The target MAC (Media Access Control) address of the message, is revised as the MAC Address of outer net gateway, obtains outer net report by the message that interior network bridge is sent Text;The outer network packet is forwarded to the integrated bridge;
The message is forwarded to the destination address of the message by the integrated bridge.
22. a kind of message forwarding system, which is characterized in that the message forwarding system includes as any in claim 12 to 21 Apparatus for forwarding message described in and at least one virtual machine, each virtual machine pass through the corresponding virtual machine of each virtual machine Bridge is connect with the integrated bridge;The virtual machine bridge is used for,
Receive the message that virtual machine is sent;
According to the destination network segment of the message, the type identification of the message is determined, increase the type mark in the message Know;
The message for carrying type identification is forwarded to the integrated bridge.
23. a kind of host, which is characterized in that the processor, described including processor, memory, communication interface and bus Mutual communication is connected and completed between memory and the communication interface by the bus, is used to deposit in the memory Store up computer executed instructions, when host operation, the processor execute the computer executed instructions in the memory with The operating procedure of any the method in 1 to 11 is required using the hardware resource perform claim in the host.
CN201810130678.XA 2018-02-08 2018-02-08 Message forwarding method, device and system Active CN108471383B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810130678.XA CN108471383B (en) 2018-02-08 2018-02-08 Message forwarding method, device and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810130678.XA CN108471383B (en) 2018-02-08 2018-02-08 Message forwarding method, device and system

Publications (2)

Publication Number Publication Date
CN108471383A true CN108471383A (en) 2018-08-31
CN108471383B CN108471383B (en) 2021-02-12

Family

ID=63266334

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810130678.XA Active CN108471383B (en) 2018-02-08 2018-02-08 Message forwarding method, device and system

Country Status (1)

Country Link
CN (1) CN108471383B (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108989176A (en) * 2018-08-13 2018-12-11 郑州云海信息技术有限公司 A kind of virtual machine exchange visit methods, devices and systems
CN109040125A (en) * 2018-09-18 2018-12-18 郑州云海信息技术有限公司 Message filtering method and device in virtual machine
CN109587063A (en) * 2018-12-29 2019-04-05 北京奇安信科技有限公司 A kind of drainage method and device of data
CN109639488A (en) * 2018-12-18 2019-04-16 无锡华云数据技术服务有限公司 A kind of more outer nets shunt accelerated method and system
CN110213181A (en) * 2019-04-28 2019-09-06 华为技术有限公司 Data drainage device and data drainage method in virtual network
CN110990123A (en) * 2019-12-05 2020-04-10 北京京东尚科信息技术有限公司 Method and device for constructing virtual machine network system
CN111970199A (en) * 2020-08-24 2020-11-20 浪潮云信息技术股份公司 Implementation method for improving virtual machine network performance in openstack dvr mode
CN113630301A (en) * 2021-08-19 2021-11-09 平安科技(深圳)有限公司 Data transmission method, device and equipment based on intelligent decision and storage medium
CN115834291A (en) * 2022-11-16 2023-03-21 中国联合网络通信集团有限公司 Distributed intranet service data acquisition method, device, equipment and storage medium
WO2024067255A1 (en) * 2022-09-30 2024-04-04 华为技术有限公司 Data transmission system, data transmission method and networking device

Citations (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080240129A1 (en) * 2007-04-02 2008-10-02 Khaled Elmeleegy System and method for preventing count-to-infinity problems in ethernet networks
WO2008120960A1 (en) * 2007-04-03 2008-10-09 Samsung Electronics Co., Ltd. Network bridge apparatus and communication method using the same
CN103391250A (en) * 2012-05-09 2013-11-13 国际商业机器公司 Method and system for static trill routing
CN103825796A (en) * 2014-02-28 2014-05-28 神州数码网络(北京)有限公司 Message interactive method, terminal station and network bridge
CN104202300A (en) * 2014-08-06 2014-12-10 广东电网公司电力科学研究院 Data communication method and device based on network isolating device
CN104468746A (en) * 2014-11-23 2015-03-25 国云科技股份有限公司 Method for realizing distributed virtual networks applicable to cloud platform
CN104468775A (en) * 2014-12-05 2015-03-25 国云科技股份有限公司 Distributed router obtaining method suitable for cloud computing
CN104506408A (en) * 2014-12-31 2015-04-08 杭州华三通信技术有限公司 Data transmission method and device based on SDN
CN105227466A (en) * 2015-08-20 2016-01-06 北京百度网讯科技有限公司 Communication processing method and device
CN105915470A (en) * 2016-01-27 2016-08-31 无锡华云数据技术服务有限公司 Flexible bandwidth configuration method based on Linux flow control
CN106936777A (en) * 2015-12-29 2017-07-07 中移(苏州)软件技术有限公司 Cloud computing distributed network implementation method based on OpenFlow, system
CN106953788A (en) * 2017-02-16 2017-07-14 北京西普阳光教育科技股份有限公司 A kind of Virtual Network Controller and control method
CN107276800A (en) * 2017-06-12 2017-10-20 郑州云海信息技术有限公司 A kind of network traffics method for tracing and device for cloud data center
CN107547334A (en) * 2016-06-28 2018-01-05 新华三技术有限公司 A kind of message forwarding method and device
CN107547439A (en) * 2017-09-08 2018-01-05 中国银联股份有限公司 A kind of method for controlling network flow and calculate node

Patent Citations (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080240129A1 (en) * 2007-04-02 2008-10-02 Khaled Elmeleegy System and method for preventing count-to-infinity problems in ethernet networks
WO2008120960A1 (en) * 2007-04-03 2008-10-09 Samsung Electronics Co., Ltd. Network bridge apparatus and communication method using the same
CN103391250A (en) * 2012-05-09 2013-11-13 国际商业机器公司 Method and system for static trill routing
CN103825796A (en) * 2014-02-28 2014-05-28 神州数码网络(北京)有限公司 Message interactive method, terminal station and network bridge
CN104202300A (en) * 2014-08-06 2014-12-10 广东电网公司电力科学研究院 Data communication method and device based on network isolating device
CN104468746A (en) * 2014-11-23 2015-03-25 国云科技股份有限公司 Method for realizing distributed virtual networks applicable to cloud platform
CN104468775A (en) * 2014-12-05 2015-03-25 国云科技股份有限公司 Distributed router obtaining method suitable for cloud computing
CN104506408A (en) * 2014-12-31 2015-04-08 杭州华三通信技术有限公司 Data transmission method and device based on SDN
CN105227466A (en) * 2015-08-20 2016-01-06 北京百度网讯科技有限公司 Communication processing method and device
CN106936777A (en) * 2015-12-29 2017-07-07 中移(苏州)软件技术有限公司 Cloud computing distributed network implementation method based on OpenFlow, system
CN105915470A (en) * 2016-01-27 2016-08-31 无锡华云数据技术服务有限公司 Flexible bandwidth configuration method based on Linux flow control
CN107547334A (en) * 2016-06-28 2018-01-05 新华三技术有限公司 A kind of message forwarding method and device
CN106953788A (en) * 2017-02-16 2017-07-14 北京西普阳光教育科技股份有限公司 A kind of Virtual Network Controller and control method
CN107276800A (en) * 2017-06-12 2017-10-20 郑州云海信息技术有限公司 A kind of network traffics method for tracing and device for cloud data center
CN107547439A (en) * 2017-09-08 2018-01-05 中国银联股份有限公司 A kind of method for controlling network flow and calculate node

Cited By (16)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108989176A (en) * 2018-08-13 2018-12-11 郑州云海信息技术有限公司 A kind of virtual machine exchange visit methods, devices and systems
CN109040125A (en) * 2018-09-18 2018-12-18 郑州云海信息技术有限公司 Message filtering method and device in virtual machine
CN109639488A (en) * 2018-12-18 2019-04-16 无锡华云数据技术服务有限公司 A kind of more outer nets shunt accelerated method and system
CN109587063B (en) * 2018-12-29 2021-08-31 奇安信科技集团股份有限公司 Data drainage method and device
CN109587063A (en) * 2018-12-29 2019-04-05 北京奇安信科技有限公司 A kind of drainage method and device of data
CN110213181A (en) * 2019-04-28 2019-09-06 华为技术有限公司 Data drainage device and data drainage method in virtual network
WO2020220977A1 (en) * 2019-04-28 2020-11-05 华为技术有限公司 Data flow guiding apparatus and data flow guiding method in virtual network
CN110990123A (en) * 2019-12-05 2020-04-10 北京京东尚科信息技术有限公司 Method and device for constructing virtual machine network system
CN110990123B (en) * 2019-12-05 2023-11-03 北京京东尚科信息技术有限公司 Method and device for constructing virtual machine network system
CN111970199A (en) * 2020-08-24 2020-11-20 浪潮云信息技术股份公司 Implementation method for improving virtual machine network performance in openstack dvr mode
CN113630301A (en) * 2021-08-19 2021-11-09 平安科技(深圳)有限公司 Data transmission method, device and equipment based on intelligent decision and storage medium
CN113630301B (en) * 2021-08-19 2022-11-08 平安科技(深圳)有限公司 Data transmission method, device and equipment based on intelligent decision and storage medium
WO2023019876A1 (en) * 2021-08-19 2023-02-23 平安科技(深圳)有限公司 Intelligent decision-based data transmission method, apparatus, and device, and storage medium
WO2024067255A1 (en) * 2022-09-30 2024-04-04 华为技术有限公司 Data transmission system, data transmission method and networking device
CN115834291A (en) * 2022-11-16 2023-03-21 中国联合网络通信集团有限公司 Distributed intranet service data acquisition method, device, equipment and storage medium
CN115834291B (en) * 2022-11-16 2024-04-09 中国联合网络通信集团有限公司 Distributed intranet service data acquisition method, device, equipment and storage medium

Also Published As

Publication number Publication date
CN108471383B (en) 2021-02-12

Similar Documents

Publication Publication Date Title
CN108471383A (en) Message forwarding method, device and system
US10511508B2 (en) Network packet forwarding systems and methods to push packet pre-processing tasks to network tap devices
CN108400934B (en) Software defined network controller, service function chain system and path tracking method
TWI520527B (en) Switch system, switch control method, and non-transitory computer readable storage medium
US10693790B1 (en) Load balancing for multipath group routed flows by re-routing the congested route
TWI548239B (en) Openflow switch and method for packet exchanging thereof, sdn controller and data flow control method thereof
US10778588B1 (en) Load balancing for multipath groups routed flows by re-associating routes to multipath groups
US9008080B1 (en) Systems and methods for controlling switches to monitor network traffic
KR20130125826A (en) Network system and method for acquiring vlan tag information
CN101789949B (en) Method and router equipment for realizing load sharing
CN102334112A (en) Method and system for virtual machine networking
US20200403849A1 (en) Service fault locating method and apparatus
CN107078974A (en) Multicast advertisements message for the network switch in storage area network
US9800508B2 (en) System and method of flow shaping to reduce impact of incast communications
US7738371B1 (en) Method and system for routing network packets
JP2015533045A (en) Communication system, communication method, information processing apparatus, communication control method, and program
CN114172854A (en) Message mirror image, mirror image configuration method, virtual switch and mirror image configuration device
EP3183587A1 (en) Diagnostic routing system and method for a link access group
US20200028779A1 (en) Packet processing method and apparatus
WO2016074126A1 (en) Controller, serving node and data packet forwarding method
US20180198704A1 (en) Pre-processing of data packets with network switch application -specific integrated circuit
WO2022052800A1 (en) Communication system, data processing method and related device
KR101729945B1 (en) Method for supporting multi tunant by network system based on sdn
CN112840623B (en) Data message transmission method and node
JP6287443B2 (en) Control device and table creation method thereof

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
TR01 Transfer of patent right

Effective date of registration: 20220209

Address after: 550025 Huawei cloud data center, jiaoxinggong Road, Qianzhong Avenue, Gui'an New District, Guiyang City, Guizhou Province

Patentee after: Huawei Cloud Computing Technologies Co.,Ltd.

Address before: 518129 Bantian HUAWEI headquarters office building, Longgang District, Guangdong, Shenzhen

Patentee before: HUAWEI TECHNOLOGIES Co.,Ltd.

TR01 Transfer of patent right