CN108809795A - Transparent shunt method and device in a kind of LAN environment - Google Patents

Transparent shunt method and device in a kind of LAN environment Download PDF

Info

Publication number
CN108809795A
CN108809795A CN201810353146.2A CN201810353146A CN108809795A CN 108809795 A CN108809795 A CN 108809795A CN 201810353146 A CN201810353146 A CN 201810353146A CN 108809795 A CN108809795 A CN 108809795A
Authority
CN
China
Prior art keywords
address
lan
rule
flow arrangement
part flow
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201810353146.2A
Other languages
Chinese (zh)
Other versions
CN108809795B (en
Inventor
覃毅芳
周旭
范鹏飞
任勇毛
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Computer Network Information Center of CAS
Original Assignee
Computer Network Information Center of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Computer Network Information Center of CAS filed Critical Computer Network Information Center of CAS
Priority to CN201810353146.2A priority Critical patent/CN108809795B/en
Publication of CN108809795A publication Critical patent/CN108809795A/en
Application granted granted Critical
Publication of CN108809795B publication Critical patent/CN108809795B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4604LAN interconnection over a backbone network, e.g. Internet, Frame Relay
    • H04L12/462LAN interconnection over a bridge based backbone
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/10Mapping addresses of different types
    • H04L61/103Mapping addresses of different types across network layers, e.g. resolution of network layer into physical layer addresses or address resolution protocol [ARP]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)

Abstract

The present invention discloses transparent shunt method and device in a kind of LAN environment.This method is:Part flow arrangement is deployed between the gateway of LAN and LAN;All available LAN subscriber IP address in LAN are calculated according to the LAN Information of configuration in part flow arrangement, then actively send an ARP address lookup messages;Then according to the mapping relations of IP address and MAC Address in ARP inquiry response messages, the mapping table of IP address and MAC Address is built;Then L2 address transformation rule generated according to mapping table, generate three layers of flow shunt rule according to shunting address list, generate two laminar flow amount extracting rules according to streaming protocol type;The internet access flow of equipment in LAN, send by part flow arrangement, gateway to internet target server;The response traffic that destination server returns is transmitted to corresponding equipment in target LAN by gateway by part flow arrangement.The present invention can improve Internet usage efficiency.

Description

Transparent shunt method and device in a kind of LAN environment
Technical field
The present invention relates to network flow quantity shunting, monitoring and optimization fields, specifically, the present invention relates to a kind of LAN rings The method and apparatus of transparent shunting in border.
Background technology
After decades of development, internet has formed communication network infrastructure covering the whole world.Meanwhile with IP The continuous growth of network application environment and user demand, the application of more and more new networks are gradually risen, promote network size, Network flow, userbase, networking host (equipment) quantity etc. continue exponentially to increase.Traditional internet is in design Just, the whole world application of such scale is not considered;Therefore, unordered network structure and dynamic routing lead to unordered net Network behavior and unordered network flow, Internet resources, which are unable to get, fully to be efficiently used.If can be generated in network flow Start, network flow is effectively shunted, it will provides strong guarantor for the orderly scheduling of network flow and transmission optimization Barrier, and then Internet usage efficiency can be improved, network service quality is promoted, while improving user's satisfaction of network service Degree.
Network flow is effectively shunted from the source that network flow generates, usually, most suitable place is just It is LAN.Then, the even rare flow shunt for being related to LAN of existing work, and for being divided using transparent mode The work of stream is even more fewer and fewer.Transparent shunting in a kind of LAN environment that patent of the present invention is proposed aiming at this scene Method and apparatus.
Invention content
In view of the above problems, it is proposed that the present invention is in order to provide saturating in a kind of a kind of LAN environment to solve the above problems The method and apparatus of bright shunting.
One side according to the present invention provides a kind of device of transparent shunting in LAN environment, and the device is in office Deployment topologies figure in the net of domain is as shown in Figure 1.
Part flow arrangement is deployed in the rear end of LAN gateway, is realized in access to LAN using network bridge mode, original local Network topology structure, node configuration are not necessarily to any change.The internet access flow of equipment in LAN, by part flow arrangement Afterwards, it is transmitted to gateway, and is sent to internet target server via gateway;The response traffic that internet target server returns, It sends back to come from gateway, after part flow arrangement, then is transmitted to lan device.Since part flow arrangement works in bridge mould Formula, therefore, network flow transparent can be transmitted, all node unawares in LAN.
The functional block diagram of part flow arrangement is as shown in Figure 2.
The function of modules is described as follows:
UI management modules:For receiving and providing LAN Information, shunting address list, the streaming protocol class of user configuration The editting function of the information such as type, while checking the legitimacy of user configuration information;
Configuration management module:It is responsible for the information formatted and persistent storage UI management modules configure;
LAN MAC Address management module:It is responsible for obtaining in this LAN periodically through the mode of Active Learning and owns The IP address of node and MAC Address map information;
Rule process module:It is responsible for according to the information acquired in configuration management module and LAN MAC Address management module, It converts the information into as system configuration rule, the two laminar flow amounts extraction of kernel state, three layers of flow shunt, bypass flow are handled, L2 address conversion etc. is configured into line discipline.
Other side according to the present invention additionally provides transparent shunt method in a kind of LAN environment, includes mainly Following steps:
1) UI management modules receive the information such as the LAN Information, streaming protocol type, shunting address list of user configuration;
2) information of user configuration is formatted by configuration management module, and persistent storage;
3) LAN MAC Address management module is according to LAN Information input by user, including LAN gateway IP, local All available LAN subscriber IP address in this LAN are calculated in the information such as net subnet mask;Later, which starts Data packet watcher thread waits ARP inquiry responses message to be received;Later, which actively sends ARP address lookup messages, looks into It askes sender's IP address in message and fills in gateway ip address, target person's IP address then fills in certain in IP available set in LAN A IP address.Module is by the way of traversal, according to the number of LAN subscriber IP address, determines to send how many a addresses ARP Query message;It is sent, after module waits for 5s, stops the watcher thread of ARP inquiry response messages, and the ARP that will be captured Inquiry response message is parsed, and the mapping relations of IP address and MAC Address in message are obtained, and builds IP address with MAC The mapping table of location.
Since the sender address of the ARP query messages of part flow arrangement transmission is gateway ip address, it is all to receive The lan device of ARP query messages, the response message destination address of transmission are all the IP address of gateway device.Therefore, own Response message can all flow through shunting device, and can be split equipment and capture.
4) map information that rule process module is periodically obtained according to LAN MAC Address management module generates two Layer address transformation rule, and be configured in the system kernel module of part flow arrangement;If it was found that having configuration rule and newly-generated Rule has conflict, then deletes and have configuration rule, reconfigure newly-generated rule;
5) rule process module generates three layers of flow shunt rule according to the shunting address information obtained in configuration management module Then, it and is configured in system kernel module;
6) rule process module generates two laminar flow amounts extraction rule according to the streaming protocol type obtained in configuration management module Then, it and is configured in system kernel module.
In this way, the whole process of transparent shunting in LAN environment can be completed.Technical staff is it is recognised that due to device Network bridge mode is worked in, when flowing into the flow of bridge by from after extracting three layers for two layers of network protocol stack, in data message Two layers of information (i.e. mac address information) will lose.And when message is after three layers of shunting, the flow not shunted will be direct It send to two layers of protocol stack, the recovery of original message source address is completed via the L2 address conversion function configured, thus not shadow Ring the normal processing and transmission of legacy data message.
Optionally, user can be generated more by extending UI management modules, configuration management module, rule process module Bypass flow processing rule, to realize more diverter functions, such as local cache, traffic filtering, traffic statistics etc..
Compared with prior art, the positive effect of the present invention is:
The present invention realizes the transparent shunting of flow in LAN environment, and supports to carry out rule-based behaviour to flow Make, so as to realize the controllable processing of flow from the source that is generated from network flow, it will be the orderly scheduling of network flow Sound assurance is provided with transmission optimization, and then Internet usage efficiency can be improved, network service quality is promoted, carries simultaneously The user satisfaction of high network service.
Description of the drawings
Fig. 1 is LAN part flow arrangement deployment diagram;
Fig. 2 is apparatus function module map;Wherein, dotted line is regular flow, solid line is data flow.
Specific implementation mode
Below with reference to the exemplary embodiment described above that the disclosure is more fully described.Although present embodiment shows that The exemplary embodiment of the disclosure, it being understood, however, that may be realized in various forms the disclosure without that should be illustrated here Embodiment is limited.On the contrary, these embodiments are provided to facilitate a more thoroughly understanding of the present invention, and can be by the disclosure Range be completely communicated to those skilled in the art.
Transparent shunt method and device in a kind of LAN of present invention design, this method and device can be real in a local network The transparent shunting for revealing net flow can set and for the flow flowed through handle by the shunting of rule, and non-bypass flow is then Transparent transmission.Specifically, specific embodiments of the present invention, are based on the research and development under (SuSE) Linux OS.
First, it before the transparent part flow arrangement of LAN of the invention starts, needs in the (SuSE) Linux OS of part flow arrangement Built-in Netfilter kernel modules, and iptables, ebtables user configuration module are installed.Linux behaviour used herein Concept and the operation principle for making Netfilter, iptables, ebtables in system are as follows:
Netfilter is the subsystem that Linux 2.4.x kernels introduce, its frame general as one, abstract Frame can provide a whole set of hook function pipe in linux kernel state for several positions of whole network data packet transmission stream journey Reason mechanism, to realize the operations such as Packet Filtering, connection tracking, address conversion.
Iptables is operate on a tool assembly of user's space, is used for definition rule, and defined rule can be with It allows the Netfilter of kernel spacing to read, and realizes the processing for specific data message.Iptables is allowed users to It is readily inserted into, the rule of modification and deletion kernel spacing processing data packets.Iptables is mainly used for realizing three layer data packets Handle the edit operation of rule.
Ebtables is similar with iptables, is all the configuration tool of linux system lower network Packet Filtering. The rule of ebtables main users configuration data link layers, the i.e. rule of two layers of network.
In addition, (SuSE) Linux OS needs built-in bridge-utils tools, the tool that user can be allowed to be grasped in Linux Make to generate bridge Microsoft Loopback Adapter in system.
For convenience of description, this embodiment assumes that LAN gateway IP address is 192.168.1.1, subnet mask is 255.255.255.0.User is set for IP address by UI management modules as the host of 192.168.1.100, is accessed outer The flow of 80 port of net carries out local shunting.Furthermore, it is assumed that the inside bridge network card configuration IP address of part flow arrangement is 192.168.1.2。
Described according to the present invention the step of, the concrete operations of the present embodiment are as follows:
1) for user by UI management modules, set information is as follows:
LAN Information:
Gateway address:192.168.1.1
Subnet mask:255.255.255.0
Shunt address list:
Address:192.168.1.100
Streaming protocol:
Protocol type:TCP
Protocol port:80
2) configuration management module receives information, is formatted persistent storage:
[network]
Network_mode=" 1 "
Bridge_ip=" 192.168.1.2 "
Bridge_mask=" 255.255.255.0 "
Bridge_gateway=" 192.168.1.1 "
Target_ip=" 192.168.1.100 "
Target_proto=" tcp "
Target_dport=" 80 "
3) LAN MAC address learning module starts to learn MAC Address and IP address corresponding informance in this LAN, pseudo- Code is as follows:
LAN MAC address learning module periodically executes the above code (per minor tick 10s), and analysis result is protected It is stored in a text file.The content of text file is as follows:
192.168.1.3,4C:CC:6A:DC:91:60
192.168.1.4,4C:CC:6A:FE:81:34
192.168.1.254,D4:EE:07:3F:F9:0D
4) map information that rule process module is periodically obtained according to LAN MAC Address management module generates two Layer address transformation rule, and be configured in system kernel module.
ebtables-t nat-A POSTROUTING-p ipv4--ip-src 192.168.1.3-j snat--to- src 4C:CC:6A:DC:91:60--snat-target ACCEPT
ebtables-t nat-A POSTROUTING-p ipv4--ip-src 192.168.1.4-j snat--to- src 4C:CC:6A:FE:81:34--snat-target ACCEPT
ebtables-t nat-A POSTROUTING-p ipv4--ip-src 192.168.1.254-j snat--to- src D4:EE:07:3F:F9:0D--snat-target ACCEPT
If it was found that having configuration rule and newly-generated rule has conflict, deletes and have configuration rule.
ebtables-t nat-D POSTROUTING-p ipv4--ip-src 192.168.1.254-j snat--to- src D4:EE:08:23:F9:D5--snat-target ACCEPT
5) rule process module generates three laminar flow amounts point according to the shunting address list information obtained in configuration management module Stream rule, and be configured in system kernel module.In this embodiment, the addresses 192.168.1.100IP host will be come to access The flow of 80 port of outer net, by the way of locally shunting (specifically, using network address translation NAT), guiding to local Server is responded.
iptables-t nat-D PREROUTING-p tcp--dport 80-s 192.168.1.100-j DNAT-- to 127.0.0.1:80
6) rule process module generates two laminar flow amounts extraction rule according to the streaming protocol type obtained in configuration management module Then, it and is configured in system kernel module.
ebtables-t broute-A BROUTING-p ipv4--logical-in br0--ip-src 192.168.1.100-j redirect
ebtables-t broute-A BROUTING-p ipv4--logical-in br0--ip-dst 192.168.1.100-j redirect
It is emphasized that the 192.168.0.0/16 network segment addresses used in example of the present invention, are not intended as local The IP address of net environment uses restriction.Those skilled in the art it is recognised that any deployment way of part flow arrangement have as It is all in signified LAN environment of the invention in attached broadcast domain shown in FIG. 1.
It should be noted that:
Algorithm and display be not inherently related to any certain computer, virtual bench or miscellaneous equipment provided herein. Various fexible units can also be used together with teaching based on this.As described above, it constructs required by this kind of device Structure be obvious.In addition, the present invention is not also directed to any specific programming language.It should be understood that can be based on Various operating systems simultaneously using various programming languages realize invention described herein content, and above to language-specific, be The preferred forms that the description that the calling of system function module is done is invented just for the sake of disclosure.
In the instructions provided here, a large amount of detail is illustrated.It is to be appreciated, however, that the reality of the present invention Applying example can complete to realize without these specific details.In some instances, well known side is not been shown in detail Method, structure and technology, so as not to obscure the understanding of this description.
Obviously, various changes and modifications can be made to the invention without departing from essence of the invention by those skilled in the art God and range.In this way, if belonging to right of the present invention to these modifications and changes of the present invention will go and its model of equivalent technology Within enclosing, then the present invention is also intended to include these modifications and variations.

Claims (9)

1. transparent shunt method, step are in a kind of LAN environment:
1) part flow arrangement is deployed between the gateway of LAN and LAN;The part flow arrangement includes a UI management modules, LAN Information, streaming protocol type and shunting address list for receiving user configuration;
2) part flow arrangement is calculated all available LANs in the LAN according to the LAN Information of configuration and uses Family IP address;Then an ARP address lookup messages are actively sent for each available LAN subscriber IP address, and waited waiting Receive ARP inquiry response messages;Then the ARP inquiry response messages received are parsed, obtains IP in ARP inquiry response messages The mapping relations of address and MAC Address, and build IP address and the mapping table of MAC Address;Then it is closed according to the mapping It is that table generates L2 address transformation rule, generates three layers of flow shunt rule according to shunting address list, according to described point Stream protocol type generates two laminar flow amount extracting rules;
3) in the LAN equipment internet access flow, the net of the LAN is transmitted to by the part flow arrangement It closes, and is sent to internet target server via the gateway;The response traffic that the gateway returns to internet target server, warp It crosses the part flow arrangement and is transmitted to corresponding equipment in the target LAN;Wherein, flow of the part flow arrangement to input It is exported after being shunted successively according to the two laminar flows amount extracting rule, three layers of flow shunt rule;For three layers of flow shunt The flow that rule does not shunt, exports after the L2 address transformation rule completes the recovery of original message source address.
2. the method as described in claim 1, which is characterized in that the shunting transposition is realized using network bridge mode accesses the office In the net of domain.
3. method as claimed in claim 1 or 2, which is characterized in that sender's IP address is gateway IP in the query message Address, target person's IP address are the IP address in IP available set in LAN.
4. method as claimed in claim 1 or 2, which is characterized in that the part flow arrangement further includes a configuration management module, is used In the information formatted and persistent storage UI management modules configure.
5. the method as described in claim 1, which is characterized in that the part flow arrangement converts rule for newly-generated L2 address Then, if it conflicts with existing configuration rule, corresponding existing configuration rule is deleted.
6. transparent part flow arrangement in a kind of LAN environment, which is characterized in that including;The part flow arrangement includes UI management moulds Block, LAN MAC Address management module and rule process module;Wherein,
UI management modules, LAN Information, streaming protocol type and shunting address list for receiving user configuration;
LAN MAC Address management module, for according to the LAN Information of configuration be calculated it is all in the LAN can LAN subscriber IP address;Then an ARP address lookups are actively sent for each available LAN subscriber IP address Message, and wait ARP inquiry responses message to be received;Then the ARP inquiry response messages received are parsed, obtains ARP and looks into The mapping relations of IP address and MAC Address in response message are ask, and build IP address and the mapping table of MAC Address;
Rule process module, for generating L2 address transformation rule, according to the shunting address according to the mapping table List generates three layers of flow shunt rule, generates two laminar flow amount extracting rules according to the streaming protocol type.
7. part flow arrangement as claimed in claim 6, which is characterized in that the shunting transposition realizes access institute using network bridge mode It states in LAN.
8. part flow arrangement as claimed in claim 6, which is characterized in that further include a configuration management module, for format and The information of persistent storage UI management modules configuration.
9. part flow arrangement as claimed in claim 6, which is characterized in that the part flow arrangement turns newly-generated L2 address Rule is changed, if it conflicts with existing configuration rule, deletes corresponding existing configuration rule.
CN201810353146.2A 2018-04-19 2018-04-19 Transparent shunting method and device in local area network environment Active CN108809795B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810353146.2A CN108809795B (en) 2018-04-19 2018-04-19 Transparent shunting method and device in local area network environment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810353146.2A CN108809795B (en) 2018-04-19 2018-04-19 Transparent shunting method and device in local area network environment

Publications (2)

Publication Number Publication Date
CN108809795A true CN108809795A (en) 2018-11-13
CN108809795B CN108809795B (en) 2021-10-15

Family

ID=64095662

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810353146.2A Active CN108809795B (en) 2018-04-19 2018-04-19 Transparent shunting method and device in local area network environment

Country Status (1)

Country Link
CN (1) CN108809795B (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110661684A (en) * 2019-09-29 2020-01-07 北京浪潮数据技术有限公司 Flow statistical method and device
CN111884916A (en) * 2020-07-24 2020-11-03 杭州希益丰新业科技有限公司 Proxy gateway system for realizing transparent transmission based on multi-network-port computer

Citations (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103051605A (en) * 2012-11-21 2013-04-17 国家计算机网络与信息安全管理中心 Data packet processing method, device and system
CN103166858A (en) * 2013-03-26 2013-06-19 杭州华三通信技术有限公司 Message transmission method and device
CN103763407A (en) * 2014-01-28 2014-04-30 上海斐讯数据通信技术有限公司 Method for achieving address resolution protocol proxy through two-layer virtual local area network and local area network system
US20150156183A1 (en) * 2013-12-03 2015-06-04 GateSecure S.A. System and method for filtering network communications
CN106161362A (en) * 2015-04-03 2016-11-23 阿里巴巴集团控股有限公司 A kind of network application means of defence and equipment
CN106230898A (en) * 2016-07-21 2016-12-14 网宿科技股份有限公司 The data processing method of network system, proxy server and application thereof and system
US20170070431A1 (en) * 2015-09-04 2017-03-09 Arista Networks, Inc. Software fib arp fec encoding
CN106790309A (en) * 2017-03-31 2017-05-31 山东超越数控电子有限公司 A kind of filtering module for being applied to multi-protocols security gateway system and its application
CN107147588A (en) * 2017-05-16 2017-09-08 网宿科技股份有限公司 Flow bootstrap technique and device

Patent Citations (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103051605A (en) * 2012-11-21 2013-04-17 国家计算机网络与信息安全管理中心 Data packet processing method, device and system
CN103166858A (en) * 2013-03-26 2013-06-19 杭州华三通信技术有限公司 Message transmission method and device
US20150156183A1 (en) * 2013-12-03 2015-06-04 GateSecure S.A. System and method for filtering network communications
CN103763407A (en) * 2014-01-28 2014-04-30 上海斐讯数据通信技术有限公司 Method for achieving address resolution protocol proxy through two-layer virtual local area network and local area network system
CN106161362A (en) * 2015-04-03 2016-11-23 阿里巴巴集团控股有限公司 A kind of network application means of defence and equipment
US20170070431A1 (en) * 2015-09-04 2017-03-09 Arista Networks, Inc. Software fib arp fec encoding
CN106230898A (en) * 2016-07-21 2016-12-14 网宿科技股份有限公司 The data processing method of network system, proxy server and application thereof and system
CN106790309A (en) * 2017-03-31 2017-05-31 山东超越数控电子有限公司 A kind of filtering module for being applied to multi-protocols security gateway system and its application
CN107147588A (en) * 2017-05-16 2017-09-08 网宿科技股份有限公司 Flow bootstrap technique and device

Non-Patent Citations (6)

* Cited by examiner, † Cited by third party
Title
FAGUI LIU: ""The Design and Application of Xen-based Host System Firewall and its Extension"", 《2009 INTERNATIONAL CONFERENCE ON ELECTRONIC COMPUTER TECHNOLOGY》 *
IUSTINA MELINTE等: ""Running KVM Virtual Machines in Batch Systems"", 《2013 19TH INTERNATIONAL CONFERENCE ON CONTROL SYSTEMS AND COMPUTER SCIENCE》 *
攻城狮DREAMER: ""ebtables和iptables与linux bridge的交互"", 《HTTPS://WWW.CNBLOGS.COM/BALANCE/P/8711264.HTML》 *
曹传东等: ""基于Linux 系统实现透明网桥式安全接入点"", 《科技资讯》 *
杨伟等: ""基于Linux的网桥防火墙的应用研究"", 《苏州大学学报(自然科学版)》 *
陈潇潇: ""基于Linux的虚拟主机信息监控系统的设计与实现"", 《中国优秀博硕士学位论文全文数据库——信息科技辑》 *

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110661684A (en) * 2019-09-29 2020-01-07 北京浪潮数据技术有限公司 Flow statistical method and device
CN110661684B (en) * 2019-09-29 2021-06-29 北京浪潮数据技术有限公司 Flow statistical method and device
CN111884916A (en) * 2020-07-24 2020-11-03 杭州希益丰新业科技有限公司 Proxy gateway system for realizing transparent transmission based on multi-network-port computer

Also Published As

Publication number Publication date
CN108809795B (en) 2021-10-15

Similar Documents

Publication Publication Date Title
CN105453492B (en) Switch cluster with third layer distribution router function
CN103997414B (en) Generate method and the network control unit of configuration information
US9065766B2 (en) Medium for storing packet conversion program, packet conversion apparatus and packet conversion method
US20160301603A1 (en) Integrated routing method based on software-defined network and system thereof
JP2008504777A (en) Virtual broadcast network for inter-domain communication
WO2020253631A1 (en) Configuration method, device, and system for ip address
CN109996307A (en) A kind of data routing method and terminal
WO2015143982A1 (en) Packet forwarding method and system
CN105187955B (en) Digital-to-analogue switch equipment, building conversational system and the method for realizing that simulation system is connected with digital display circuit
CN102546407B (en) File transmitting method and device
CN108429680A (en) A kind of method for configuring route, system, medium and equipment based on virtual private cloud
CN108289061B (en) Service chain topology system based on SDN
CN105122741A (en) Method and apparatus for controlling service chain of service flow
CN103685032B (en) Message forwarding method and network address translation services device
CN107820262A (en) Method for parameter configuration, apparatus and system
KR20130101618A (en) System and method for operating network based on network virtualization
CN109936490A (en) Virtual home network share method and system based on VXLAN and OpenFlow
CN110062060A (en) A kind of system and method for IP address distribution
CN101459532A (en) Method and apparatus for automatic networking by multi-port equipment
CN107360089A (en) A kind of method for routing foundation, business datum conversion method and device
CN108809795A (en) Transparent shunt method and device in a kind of LAN environment
KR101794719B1 (en) Method and system for ip address virtualization in sdn-based network virthalization platform
CN105933235A (en) Data communication method and data communication device
CN106533984B (en) A kind of cut-in method and device of social resources
CN210867778U (en) System capable of converting IPv4 and IPv6 addresses

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant