Data distributing method, device and electronic equipment under a kind of isolation network environment
Technical field
The present invention relates to the data distributions under computer scheduling administrative skill field more particularly to a kind of isolation network environment
Method, apparatus and electronic equipment.
Background technique
Currently, under isolation network environment, such as between multiple computer rooms or the isolation network region of multiple public clouds formation,
Data distribution on one or more any node device on the node device into other network areas, is needed to do a text
Data are uploaded to the server by part download server, by way of network agent, make each region that can access this article
Part download server, and the node device in other network areas is notified to download by way of sending instructions under from the server
Required data.
In the implementation of the present invention, inventor has found that this kind realizes the process of data distribution under isolation network environment
It is relatively complicated.
Summary of the invention
In view of this, the embodiment of the present invention provides data distributing method, device and the electronics under a kind of isolation network environment
Equipment can make the data dissemination process between the node device under different network environments by a relatively simple.
In a first aspect, the embodiment of the present invention provides the data distributing method under a kind of isolation network environment, comprising:
Obtain the data to be distributed in the first node equipment in first network region and the access control of the second network area
Entrance processed;
The data to be distributed are sent to the Ingress node equipment in the second network area, to pass through the second network area
In Ingress node equipment the data to be distributed are sent on other node devices in the second network area.
With reference to first aspect, in the first embodiment of first aspect, in the acquisition first network region
Before data to be distributed in first node equipment, which comprises
Open the entrance access control right of the Ingress node equipment in first network region and the second network area;
The network segment of the Ingress node equipment in first network region and first network region is associated, by the second network area
The Ingress node equipment in domain and the network segment of the second network area are associated.
With reference to first aspect, the first embodiment of first aspect, in second of embodiment of first aspect, institute
State obtain first network region in first node equipment on data to be distributed after, which comprises
Obtain the related information of the Ingress node equipment in first network region and the network segment in first network region;
According to the related information, other peer node equipment in first network region are determined, so that first node is set
Point-to-Point Data Transmission is carried out between other node devices in standby upper data to be distributed and first network region.
With reference to first aspect, the first embodiment of first aspect, in the third embodiment of first aspect, institute
Before stating the Ingress node equipment being sent to the data to be distributed in second network area, which comprises
Obtain the access control right of the Ingress node equipment in the second network area.
The third embodiment with reference to first aspect, in the 4th kind of embodiment of first aspect, it is described will be described
Data to be distributed are sent to the Ingress node equipment in the second network area, so that the Ingress node equipment in the second network area
By other node devices of the data distribution to be distributed into the second network area, comprising:
Obtain the related information of the Ingress node equipment in the second network area and the network segment of the second network area;
According to the related information, other peer node equipment under the network segment of second network area are determined;
The data to be distributed are sent to the Ingress node equipment in the second network area, to set by the Ingress node
It is standby to be sent in the second node equipment in other peer node equipment, so that other peer-to-peer network sections in the second network area
Third node device in point device obtains data from the second node equipment in a manner of Point-to-Point Data Transmission.
With reference to first aspect, in the 5th kind of embodiment of first aspect, the obtained in first network region
On one node device after data to be distributed, the method also includes:
It sends data buffer storage to instruct in the Ingress node equipment into first network region, so that in first network region
Ingress node equipment is by the data buffer storage to be distributed to being locally stored in position.
With reference to first aspect, described to pass through entering in the second network area in the 6th kind of embodiment of first aspect
After the data to be distributed are sent on other node devices in the second network area by mouth node device, the method is also
Include:
Receive the shell Shell of the node device rebound in the second network area;
The node device in second network area is manipulated by the shell Shell;
With reference to first aspect, described to open first network region and second in the 7th kind of embodiment of first aspect
After the entrance access control right of Ingress node equipment in network area, the method also includes:
Task is sent to the Ingress node equipment in first network region, so that the Ingress node in first network region
Task is sent to other node devices in first network region and executed by equipment;
Receive that the Ingress node equipment in first network region sends by returning after other node device execution tasks
Implementing result.
Second aspect, the embodiment of the present invention provide the data delivery device under a kind of isolation network environment, comprising:
First obtains module, for obtaining the data to be distributed in the first node equipment in first network region;
Distribution module, for the data to be distributed to be sent to the Ingress node equipment in the second network area, with logical
The data to be distributed are sent to the node device in the second network area by the Ingress node equipment crossed in the second network area
On.
In conjunction with second aspect, in the first embodiment of second aspect, described device further include: access authority is open-minded
Module, for opening the entrance access control right of the Ingress node equipment in first network region and the second network area;It closes
Gang mould block, for closing the network segment of the Ingress node equipment in first network region and the network area in first network region
Connection, the network segment of the Ingress node equipment of the second network area and the second network area is associated.
In conjunction with the first embodiment of second aspect, in second of embodiment of second aspect, described device is also
It include: the second acquisition module, for obtaining the Ingress node equipment in first network region and the network segment in first network region
Related information;First determining module, for determining that other peer nodes in first network region are set according to the related information
It is standby, so as to be carried out between other node devices in the data to be distributed in first node equipment and first network region point-to-point
Data transmission.
In conjunction with the first embodiment of second aspect, in the third embodiment of second aspect, the distribution mould
Block includes: access authority acquiring unit, for obtaining the access control right of the Ingress node equipment in the second network area.
In conjunction with the third embodiment of second aspect, in the 4th kind of embodiment of second aspect, the data point
Bill member, is specifically also used to: obtaining being associated with for Ingress node equipment and the network segment of the second network area in the second network area
Information;According to the related information, other peer node equipment under the network segment of second network area are determined;Will it is described to
Distribution data are sent to the Ingress node equipment in the second network area, to be sent to other equities by the Ingress node equipment
In second node equipment in node device, so that the third section in other peer-to-peer network node equipment in the second network area
Point device obtains data from the second node equipment in a manner of Point-to-Point Data Transmission.
In conjunction with second aspect, in the 5th kind of embodiment of second aspect, described device further include: data buffer storage instruction
Module is issued, the Ingress node equipment into first network region is instructed for sending data buffer storage, so that first network area
Ingress node equipment in domain is by the data buffer storage to be distributed to being locally stored in position.
In conjunction with second aspect, in the 6th kind of embodiment of second aspect, described device further include: first receives mould
Block, for receiving the shell Shell of the rebound of the node device in the second network area;First operational module, for passing through the shell
Shell manipulates the node device in second network area.
In conjunction with the first embodiment of second aspect, in the 7th kind of embodiment of second aspect, described device is also
It include: task sending module, the Ingress node equipment for being sent to task in first network region, so that first network area
Task is sent to other node devices in first network region and executed by the Ingress node equipment in domain;Second receiving module,
Receive that the Ingress node equipment in first network region sends by the implementing result that is returned after other node device execution tasks.
The third aspect, the embodiment of the present invention provide a kind of electronic equipment, comprising: shell, processor, memory, circuit board
And power circuit, wherein circuit board is placed in the space interior that shell surrounds, and processor and memory setting are on circuit boards;
Power circuit, for each circuit or the device power supply for above-mentioned electronic equipment;Memory is for storing executable program code;
Processor runs program corresponding with executable program code by reading the executable program code stored in memory, uses
The method described in execution first aspect any embodiment.
Fourth aspect, the embodiment of the present invention provide a kind of computer readable storage medium, the computer-readable storage medium
Matter is stored with one or more program, and one or more of programs can be executed by one or more processor, with reality
Method described in existing first aspect any embodiment.
Data distributing method, device and electronic equipment under a kind of isolation network environment provided in an embodiment of the present invention lead to
Cross the data to be distributed obtained in the first node equipment in first network region;The data to be distributed are sent to the second net
Ingress node equipment in network region, to be sent the data to be distributed by the Ingress node equipment in the second network area
On node device into the second network area.Without downloading file server and manually upload and down operation process
It realizes and distributes data on the node device into different network areas, make between the node device under different network environments
Data dissemination process it is by a relatively simple.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below
There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this
Some embodiments of invention for those of ordinary skill in the art without creative efforts, can be with
Other attached drawings are obtained according to these attached drawings.
Fig. 1 is the one embodiment flow diagram of data distributing method under isolation network environment of the present invention;
Fig. 2 is another embodiment flow diagram of data distributing method under isolation network environment of the present invention;
Fig. 3 is the another embodiment flow diagram of data distributing method under isolation network environment of the present invention;
Fig. 4 is the another embodiment flow diagram of data distributing method under isolation network environment of the present invention;
Fig. 5 is the data distributing method another embodiment flow diagram under isolation network environment of the present invention;
Fig. 6 is the one embodiment flow diagram of data delivery device under isolation network environment of the present invention;
Fig. 7 is the one embodiment flow diagram of data delivery device under isolation network environment of the present invention;
Fig. 8 is the another embodiment flow diagram of data delivery device under isolation network environment of the present invention;
Fig. 9 is the data delivery device another embodiment flow diagram under isolation network environment of the present invention;
Figure 10 is the data delivery device another embodiment flow diagram under isolation network environment of the present invention;
Figure 11 is the structural schematic diagram of electronic equipment one embodiment of the present invention.
Specific embodiment
The embodiment of the present invention is described in detail with reference to the accompanying drawing.
It will be appreciated that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.Base
Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts it is all its
Its embodiment, shall fall within the protection scope of the present invention.
Embodiment one
The embodiment of the present invention provides the data distributing method under a kind of isolation network environment, can make to be in heterogeneous networks ring
The data dissemination process between node device under border is relatively simple, is suitable under isolation network environment, to heterogeneous networks region
The management and running of data on segmentum intercalaris point device apply also for the batch manipulation to the node device in heterogeneous networks region.
Fig. 1 is the one embodiment flow diagram of data distributing method under isolation network environment of the present invention, as shown in Figure 1,
The method of the present embodiment may include:
Step 101, the data to be distributed in the first node equipment in first network region are obtained.
In the present embodiment, the node device mainly includes computer and mobile terminal device, the mobile terminal device
Including smart phone, tablet computer.The specific method for obtaining the data to be distributed in first node equipment can be using reception
Or the mode monitored, for example, the monitoring programmes such as Agent are installed on node device, it is dynamic for monitoring the data on node device
State obtains the data on a certain node device by the monitoring programme.Alternatively, when data are in enterprises heterogeneous networks area
When being issued between domain, if to distribute data, just it is known that there are data on a certain node device before scheduling starts, receive
It is scheduled after the data that the node device is sent.
The Access Control Entry can be a data port, or computer etc. has data-handling capacity
Electronic equipment.
The data to be distributed are sent to the Ingress node equipment in the second network area by step 102, to pass through second
The data to be distributed are sent to the node device in the second network area by the Ingress node equipment in network area.
In the present embodiment, it is to be understood that the access control of the Ingress node equipment of the second network area of acquisition can be passed through
Entrance processed directly can carry out pipe by disengaging data of the Access Control Entry to port after getting data to be distributed
Reason.
It should be noted that the embodiment executing subject can be middle control machine, the middle control machine is to be responsible for data dispatch point
The electronic equipment with data-handling capacity of hair, such as computer.
Data distributing method under a kind of isolation network environment of the present embodiment, by obtaining first in first network region
Data to be distributed on node device;The data to be distributed are sent to the Ingress node equipment in the second network area, with
The node that the data to be distributed are sent in the second network area is set by the Ingress node equipment in the second network area
It is standby upper.In this way, can be realized without downloading file server and uploading and download manipulation process manually to different network areas
In node device on distribute data, the data dissemination process phase between the node device under the different network environments can be made
To relatively simple.
Data distributing method under existing isolation network environment is usually to dispose a file server, so as to be distributed in
The more node devices in heterogeneous networks region are from its download data, and due to all downloading from this document server, data volume is big,
The file server pressure potential must be bigger, it is possible that the case where server crash, in addition, since channel is crowded
Influence whether data download efficiency.
Data to be distributed are then carried out the distribution of data by the present embodiment by the Ingress node equipment of each network area, are in
Other node devices in consolidated network region can obtain data from Ingress node equipment, to avoid the section in heterogeneous networks region
Point device problem all crowded from server crash caused by same file server download data or channel, so as to
Improve the distribution efficiency of data.That is, the data distributing method under the present embodiment isolation network environment, can make different nets
What the interregional data distribution of network became is simple and efficient.
Referring to shown in Fig. 2, in order to make Ingress node equipment as transfer machine to network area where Ingress node equipment
Other node devices manipulation in domain improves data distribution efficiency and obtains as an alternative embodiment described to realize data distribution
Before taking the data (step 101) to be distributed in the first node equipment in first network region, the method may include step:
1011, the entrance access control power of the Ingress node equipment in first network region and the second network area is opened
Limit.
Any node device in the present embodiment, where the Ingress node equipment can be it in network area.
The Ingress node equipment of respective numbers can be set according to the quantity of the network segment of a certain network area, if the network segment of a network area
Only one network segment, then a settable Ingress node equipment;If there are two network segments for the network segment of a network area, can be set
Two entrances node device, to be manipulated respectively to the node device under corresponding network segment, to improve the efficiency of data distribution.?
There are multiple network segments to can be regarded as being isolated into multiple sub-network regions in the network area again in one network area.The entrance is set
It is standby to be used as Access Control Entry, it to realize the manipulation to each nodes of network area equipment, need to obtain and enter as each network area
The access control right of mouth node device.The access control right of opening can be by (the Access in accesses control list
Control List, ACL) it is manually opened, it can also be by way of automatic opening.
1012, Ingress node equipment and the network segment of the network area where it are associated.
In this step, Ingress node equipment and the network segment of the network area where it are associated, specifically, by first
The Ingress node equipment of network area and the network segment in first network region are associated, and the Ingress node of the second network area is set
The standby network segment with the second network area is associated.
In the present embodiment, associated content can be stored as to a relationship maps table, middle control machine get it is a certain enter
When mouthful node device, can determine by inquiring the mapping table i.e. the node device it is corresponding be which network area which net
Section.
The present embodiment is provided by the way that the Ingress node equipment and the network segment of the network area where it to be associated
Whether a kind of determining node device is in the concrete scheme in the network area, after association, Ingress node equipment
Other node devices are manipulated according to the related information or in other node devices distribution data in network area.
Due to manipulating other node devices or distribution data by Ingress node equipment, respectively in consolidated network region
It is transmitted as the transmission of peer-to-peer network data between node device, can be transmitted by i.e. point-to-point between any two, transmission effect
Rate can be faster.
As an alternative embodiment, it is described obtain first network region in first node equipment on data to be distributed it
Afterwards, the method can include: obtain being associated with for Ingress node equipment and the network segment in first network region in first network region
Information.
In the present embodiment, the related information includes the net of the IP address of Ingress node equipment and its a network segment of mapping
Network number;According to the related information, other peer node equipment in first network region are determined, so that in first node equipment
Data to be distributed and first network region in other node devices between carry out Point-to-Point Data Transmission.
Specifically, the method that other peer node equipment in first network region are determined according to related information can be,
It is identical to judge that the network number of IP address identifies whether, if identical, it is determined that the node device is in consolidated network region
Node device.
Determine the judgment method for being in the equipment in consolidated network region in other network areas with Ingress node equipment
Embodiment can also use this method.
In the present embodiment, there is the node device of data requirements to be also possible to inside consolidated network region, for example, when determining
When other node devices also have data to download demand in first network region, middle control chance obtains the entrance in first network region
Node device, so that it directly manipulates other node devices in first network region, so that other node devices are preferentially
Data transmission downloading is realized between one network area inside, across a network regional access to data is avoided, to improve data distribution efficiency.
Similarly, as another alternative embodiment, the specific distribution data of one kind are present embodiments provided to the second network
The technical solution on other node devices in region, the Ingress node equipment that passes through in the second network area will it is described to
Distribution data are sent to the node device in the second network area, it may include:
Obtain the access control right of the Ingress node equipment in the second network area;The data to be distributed are sent to
Ingress node equipment in second network area, so that Ingress node equipment in the second network area is by the data to be distributed
It is distributed on other node devices in the second network area.
In the present embodiment, in order to sufficiently disclose the present embodiment technical solution, now it is illustrated below:
Some big companies, due to using the personnel of computer more, in inside equipped with multiple network computer rooms, and
It is somewhere equipped with a middle control machine as scheduling, one of effect is exactly to be managed collectively in the equipment of multiple network areas
Data.
Such as set there are three network computer room, respectively A, B and C, it is equipped with an interchanger in each computer room, is equivalent to and is equipped with
Three mutually isolated network areas, two network computer rooms of A and B provide network services to three computers respectively, and C computer room is to two
Platform computer provides network service.
Assuming that: three computers under the network environment that A computer room provides are respectively A1, A2 and A3, the network that B computer room provides
Three computers under environment are respectively B1, B2 and B3, two computers under the network environment that C computer room provides be respectively C1 and
C2;Wherein, there are data on A1 computer, the data are also required on other computers, at this moment just need to carry out the scheduling of data.
Data dispatch is carried out if it is using the prior art, needs uniformly to do a file server, passes through network agent
Mode allow three regions that can access this document server by various cumbersome settings, A1 computer is needed in data
It passes on the file server, while also needing with the various modes that can notify other node devices, such as issue logical
Know instruction, allow other node devices from this document server download data, still, since node device is in different networks
In environment, issuing for instruction may need repeatedly could notify each node device, so that data are at interregional point of heterogeneous networks
The mode process of hair is comparatively cumbersome.Moreover, because all downloading from the same node, in the case that data volume is big, channel is gathered around
It squeezes, file server pressure can be bigger, and data download efficiency is lower.
If only needing in each network area an optional computer as entrance section using the present embodiment technical solution
B1 is selected in point device, such as B area, selects C2 as access device in the region C, is opened in each network area in ACL
The access control right of corresponding access device, B1 is associated with the network segment of place network area respectively with C2, is associated with rear entrance section
Point device can determine there is which equipment in the network area according to the related information, to realize the manipulation to other equipment.
Later, middle control machine can obtain the data on A1 computer by way of monitoring, with send the data to B and
B1 and C2 under C, B1 and C2 determine the node device that the data are needed in present networks region according to previous related information,
Other computers of network area where B1 and C2 manipulation, that is, B1 manipulates B2 and B3, and C2 manipulates C1, in B and C network environment
Portion carries out data transmission, and entire data dissemination process uploads number without A1 without specially one file server of setting manually
According to file server is arrived, so that the data dissemination process in heterogeneous networks region is simpler.
In the embodiment, by entrance computer by data distribution to other computers, due to entrance computer with it is same
It is peer-to-peer network node between other computers in network area, data can be carried out by Point-to-Point Data Transmission mode
Transmission, efficiency of transmission faster, thus realize heterogeneous networks area efficient distribute data.
It is calculated in addition, middle control machine when having data on listening to the A1 in a-quadrant, can directly select A1 as entrance
Machine allows A1 to manipulate A2 and A3, realizes Point-to-Point Data Transmission inside it, can be reasonable without sending data to a-quadrant again
Realize the interregional data dispatch of heterogeneous networks.
It is described that the data to be distributed are sent in the second network area as an alternative embodiment in the present embodiment
Ingress node equipment so that Ingress node equipment in the second network area is by the data distribution to be distributed to the second network
Other node devices in region, it may include: obtain the Ingress node equipment in the second network area and the second network area
The related information of network segment;According to the related information, determine that other peer nodes under the network segment of second network area are set
It is standby;The data to be distributed are sent to the Ingress node equipment in the second network area, to send out by the Ingress node equipment
It send in the second node equipment into other peer node equipment, so that in other peer node equipment in the second network area
Third node device data are obtained in a manner of Point-to-Point Data Transmission from the second node equipment.
By the Ingress node equipment being sent to data to be distributed in second network area, Ingress node equipment will distribute
Data are sent in the second node equipment in consolidated network region, other node devices can be from second node equipment with point
Data are transmitted to the mode of point, due to transmitting data in Intranet, and is the point-to-point transmission mode used, can effectively improve
The distribution efficiency of data.
In the present embodiment, as an alternative embodiment, institute in the first node equipment obtained in first network region
After stating data to be distributed, the method may also include that
It sends data buffer storage to instruct in the Ingress node equipment into first network region, so that in first network region
Ingress node equipment is by the data buffer storage to be distributed to being locally stored in position.
It is understood that by by data buffer storage to be distributed in Ingress node equipment into first network region, when
When needing data there are also other node devices in the network area, then issued a command in first network region under can directly passing through
Ingress node equipment so that Ingress node equipment in first network region distributes number in first network region internal schedule
According to, no longer need to reacquire data.The data to be distributed can also be cached to the cloud server of first node equipment.
In order to sufficiently disclose the embodiment of the present invention, now it is described as follows in conjunction with an application scenario:
It is mounted with AGENT program, on the computer under A, B and C network environment for realizing the monitoring to each computer
With manipulation, listening port 65111.In order to make any one computer can be used as access device, installation is the same on each machine
AGENT program, can not have to distinguish whether be entrance computer.
It is understood that can have multiple network segments in identical network area, an optional calculating in each area
Machine is as entrance computer, it is assumed that the IP of the entrance computer A1 of the network area A is 139.199.1.10, in the network area B
The IP of entrance computer B2 is 120.92.1.11, and the IP of the entrance computer C1 in the network area C is 192.168.1.10, is opened
Access authority of the control machine to 65111 ports of each entrance computer in logical.
Entrance computer A1 in the network area A is associated with the network segment 10.47.0.0/16 in the network area A, B net
Entrance computer B2 in network region is associated with the network segment 10.41.0.0/16 of the network area B, by the entrance meter in the network area C
Calculation machine C1 is associated with the network segment 10.22.0.0/16 of the network area C, and after association, each entrance computer can manipulate institute and be closed
The computer for section of networking, can also store associated information to middle control machine.
If there is a data X on the computer 10.47.0.1 in the network area A, the computer in the network area B and C is needed
Will the data, then into the network area B and C computer distribution data scheme can are as follows:
Middle control machine pulling data X from the network area A, it is each to distribute a entering to the B area entrance region computer B2 and C
Mouth computer C1;
Middle control machine sends manipulation instruction respectively and gives entrance computer B2 and C1, and according to the manipulation instruction, B2 synchronizes portion
Data are to any one in 10.41.0.1-100, later according to related information, determine other sections under the associated network segment of B2
Point device manipulates the computer under the network segment and carries out point-to-point (p2p) transmission, can effectively improve efficiency of transmission.Similarly, C
The transmission of data is realized with above-mentioned same method in network area;Middle control machine by each network area inlet porting computer,
And by obtaining entrance computer access control right, that is, realize the data distribution being simple and efficient to heterogeneous networks region.
When the computer 10.47.0.100-200 under the network segment 10.47.0.0/16 in the network area A needs the data,
Middle control machine, which obtains the network area A inner computer 10.47.0.1 by monitored program, data X, will be calculated by entrance
Machine A1 is manipulated and is realized Point-to-Point Data Transmission between the computer under the network segment.
When having request of data for the computer under other network segments inside consolidated network region, entrance computer can be straight
Distribution data are connect to the computer needed, in middle control chance caching portion data to Ingress node equipment, in order to avoid needs when
It waits and reacquires data.
The node device in some network area is carried out to continue manipulation in order to realize, it usually needs use the side of agency
Formula logs on the node device and manipulates to it.But this implementation method is because needs build agency, realize process compared with
It is cumbersome;And the later period also needs to safeguard agency, can accordingly generate maintenance cost.
It is shown referring to Fig. 3 in order to simplify the above-mentioned operating process for continuing manipulated nodes equipment, in the present embodiment, as one
The data to be distributed are sent to the second network by alternative embodiment, the Ingress node equipment passed through in the second network area
On other node devices in region after (step 102), the method may further comprise the step of:
103, the shell Shell of the node device rebound (reverse) in the second network area is received.
In computer science, Shell is commonly called as shell, refers to the software or journey of " providing the user interface interacted with machine "
Sequence, as one between user and operating system, such as the kernel program (kernel) of UNIX/linux operating system
Interface explains order, may also be referred to as command analysis device.Different operating system is corresponding with different Shell, example
Such as, under DOS system, Shell is similar to command.com;Under Windows system, Shell is similar to cmd.exe.It can connect
User command is received, calls corresponding application program later.
104, the node device in second network area is manipulated by the shell Shell.
For the present embodiment when needing persistently to manipulate computer, manipulation instruction reaches the calculating to be manipulated by entrance computer
Machine.The computer to be manipulated returns to local Shell on the port of middle control machine, so that middle control function takes the meter to be manipulated
The Shell of calculation machine.The manipulation computer that can be continued by the Shell.As it can be seen that the present embodiment does not need additional build
Agency can get the Shell of computer, manipulate to can realize to it.Further, due to not needing to build agency,
Also later maintenance cost would not be generated.
Illustratively, in aforementioned citing, when the network area A manipulates computer 10.47.0.100, what middle control machine issued
Manipulation instruction is communicated to 10.47.0.100 by entrance computer 139.199.1.10, and the information of reception and registration is attached to middle control machine
Information.10.47.0.100 computer rebounds Shell to middle control machine, and middle control machine has got the Shell of 10.47.0.100, leads to
Can persistently the computer be manipulated by crossing the Shell, without additionally building agency.
Under public network environment, when manipulation is distributed in the computer disposal task under multiple isolation network environment simultaneously, by
It is mutually isolated between network, to manipulate the computer under multiple isolation network environment simultaneously, need to allow by building proxy machine
Network central control machine accesses the computer to be manipulated by the proxy machine, during realizing manipulation, each network area
Computer require to establish TCP connection with proxy machine, realize process it is relatively complicated, to affect manipulation efficiency.
It,, can as one in the present embodiment referring to shown in Fig. 4 in order to improve the efficiency that batch manipulates computer disposal task
Embodiment is selected, in the entrance access control right for opening the Ingress node equipment in first network region and the second network area
After (step 1011), the method may further comprise the step of:
201, task is sent to the Ingress node equipment in first network region, so that the entrance in first network region
Task is sent to other node devices in first network region and executed by node device;
202, receive first network region in Ingress node equipment send by being returned after other node device execution tasks
The implementing result returned.
By the Ingress node equipment being sent to task in first network region, by the entrance section in first network region
Task is distributed to other node devices and executed by point device (i.e. Intranet) in first network region, controls machine in the middle and batch is needed to grasp
When controlling computer disposal task, it is only necessary to the connection of TCP of middle control machine and the progress of Ingress node equipment, so that it may pass through entrance
Node manipulates other computer disposal tasks.So there is no need to manipulate a node device every time to require to establish with proxy machine
The connection of TCP simplifies batch and manipulates the process of computer disposal task, so that batch manipulation computer disposal can be improved
The efficiency of task.
In the present embodiment, when batch manipulates computer disposal task, the meter in multiple network areas can be manipulated simultaneously
Calculation machine handles task, more efficiently to handle task.For example, manipulating the computer disposal of two network areas simultaneously
Task.As an alternative embodiment, referring to shown in Fig. 5, after step 1011 further include:
It 2011, is the first subtask and the second subtask by task cutting according to network area.
2021, the first subtask is sent to the Ingress node equipment in first network region, so that first network region
In Ingress node equipment manipulation first network region in other node devices execute the first subtask;
2031, the second subtask is sent to the Ingress node equipment in the second network area, so that the second network area
In Ingress node equipment manipulate the second network area in other node devices execute the second subtask;
2041, the first son of the return that the Ingress node equipment in first network region and the second network area is sent is received
Task and the execution result information of the second subtask.
The execution result information may include whether the first subtask and the second subtask are finished.
In the present embodiment, if the first subtask and the second subtask have not been executed, in the execution result information also
It can show the progress of execution and to the remaining time that is finished.
When needing to handle a task, for example, need to obtain computer in two network areas A and B with confidence
Breath, if according to the way of existing batch manipulation computer disposal task, in middle control confidential batch manipulation two regions A, B
Computer executes configuration information and reads this task, needs to build proxy machine, every one manipulated in above-mentioned two region of middle control machine
Platform computer requires the connection that TCP is established with the proxy machine, logs in corresponding computer and is manipulated to it to execute reading
Take the task of configuration information.
In the present embodiment, task is divided into two subtasks, the respectively computer profile and B in acquisition a-quadrant
Computer profile in region, by selecting a computer to calculate as entrance respectively in two network areas A and B
Machine, middle control machine only need to establish a TCP connection with the entrance computer of A and B area respectively, so that it may pass through entrance computer
Other computers are manipulated in net to execute the task.Finally by the task execution result information of return, that is, the calculating that obtains
Machine configuration information is sent to middle control machine by Ingress node equipment.
Illustratively, in aforementioned applications scene, when needing batch manipulation computer to complete some task, such as simultaneously
Ls order is executed on a-quadrant 10.47.0.100-200, the region C 10.41.0.1-100 machine.Middle control chance is divided into task
Two small tasks, a task can pass on entrance computer 139.199.1.10, and the computer of manipulation is 10.47.0.100-
200, another task can pass on entrance computer 192.168.10, and the computer of manipulation is 10.41.0.1-100.Deng two
After the completion of subtask, middle control machine summarizes result together entrance computer, and batch manipulation is completed.
In the present embodiment, when batch manipulates computer, the computer of multiple regions, manipulation tasks are such as manipulated simultaneously
Multiple small tasks can be formed the task of manipulation according to region cutting, small task by each region entrance computer operating institute
Other computers in region execute respectively, are aggregated into middle control machine after the completion.Multiple regions computer disposal task is manipulated simultaneously
In the case where, a TCP (Transmission Control Protocol transmission control is only needed to the manipulation in each region
Agreement processed) connection, the i.e. TCP connection of entrance computer and middle control machine, improve the efficiency that batch manipulates computer disposal task.
The present invention can be solved the problems, such as effectively under isolation network environment to the distribution of data and computer operating.It can be
In the case where opening least referenced control authority, complete to carry out the data on the computer in the environment for being distributed in multiple isolation
Quickly transmission, and the batch of computer is manipulated and controlled.Simultaneously regardless of computer is in the distribution situation of network, for data
Distribution and batch manipulation computer disposal task all only need in control machine issue a dispatch command and give entrance node device
It realizes, implementation is simple and efficient.
Embodiment two
Referring to shown in Fig. 6, the embodiment of the present invention provides the data delivery device under a kind of isolation network environment, including first
Obtain module 21 and distribution module 22.Wherein, described first module 21 is obtained, for obtaining the first segment in first network region
Data to be distributed on point device;The distribution module, for the data to be distributed to be sent in the second network area
Ingress node equipment, the data to be distributed are sent to the second network by the Ingress node equipment in the second network area
Other node devices in region.
Wherein, the first acquisition module 21 and distribution module 22 can integrate in middle control machine.
Data delivery device under a kind of isolation network environment of the embodiment of the present invention, including the first acquisition module 21 and distribution
Module 22 is respectively used to obtain the data to be distributed in the first node equipment in first network region, will be described to be distributed
Data are sent to the Ingress node equipment in the second network area, to pass through the Ingress node equipment in the second network area for institute
It states on the node device that data to be distributed are sent in the second network area.In this way, without download file server and manually on
Biography and down operation process, can be realized and distribute data on the node device into heterogeneous networks region, make in heterogeneous networks
Data dissemination process between node device under environment becomes by a relatively simple.
In data dissemination techniques under existing isolation network environment, a file server is usually disposed, so that point
The node device in heterogeneous networks region is distributed in from its download data, due to all from this document server download data, data
Amount is big, and the file server pressure is bigger, it is possible that the case where server crash;In addition, since channel is crowded
Influence whether data download efficiency.
The present embodiment then passes through setting first and obtains module and distribution module, and the Ingress node for obtaining the second network area is set
It is standby, other nodes that data to be distributed are sent to the second network area are set by the Ingress node equipment in the second network area
It is standby, it can allow other node devices in the second network area from the Ingress node equipment in the second network area in this way
Data are obtained, the node device for avoiding heterogeneous networks region is downloaded caused server all from same file server and collapsed
Routed or crowded channel problem, so that the distribution efficiency of data can be improved.
Referring to shown in Fig. 7, in the present embodiment, as one, optionally embodiment, described device may also include that
Access authority opens module 210, sets for opening the Ingress node in first network region and the second network area
Standby entrance access control right;The Ingress node equipment is any one node device in each network area;
Relating module 211, for by the network area of the Ingress node equipment in first network region and first network region
Network segment be associated, the network segment of the Ingress node equipment of the second network area and the second network area is associated.
In the present embodiment, as another alternative embodiment, described device may also include that
Second obtains module, for obtaining the network segment of the Ingress node equipment in first network region Yu first network region
Related information;
First determining module, for determining that other peer nodes in first network region are set according to the related information
It is standby, so as to be carried out between other node devices in the data to be distributed in first node equipment and first network region point-to-point
Data transmission.
In the present embodiment, as an alternative embodiment, the distribution module 22 includes:
Access authority acquiring unit, for obtaining the access control right of the Ingress node equipment in the second network area.
In the present embodiment, as another alternative embodiment, the file distributing unit is specifically also used to:
Obtain the related information of the Ingress node equipment in the second network area and the network segment of the second network area;
According to the related information, other peer-to-peer network node equipment under the network segment of second network area are determined;
The data to be distributed are sent to the Ingress node equipment in the second network area, to set by the Ingress node
It is standby to be sent in the second node equipment in other peer node equipment, so that other peer nodes in the second network area are set
Third node device in standby obtains data from the second node equipment in a manner of Point-to-Point Data Transmission.
In the present embodiment, as another alternative embodiment, described device further include:
Data buffer storage instruction issues module, instructs the Ingress node into first network region to set for sending data buffer storage
It is standby upper, so that Ingress node equipment in first network region is by the data buffer storage to be distributed to being locally stored in position.
Referring to shown in Fig. 8, in the present embodiment, as another alternative embodiment, described device may also include that
First receiving module 23, for receiving the shell Shell of the rebound of the node device in the second network area;
First operation module 24, for being manipulated by the shell Shell to the node device in the second network area.
Referring to shown in Fig. 9, in the present embodiment, as another alternative embodiment, described device may also include that
Task sending module 31, the Ingress node equipment for being sent to task in first network region, so that first
Task is sent to other node devices in first network region and executed by the Ingress node equipment in network area;
Second receiving module 32 receives being held by other node devices for the Ingress node equipment transmission in first network region
The implementing result returned after row task.
Referring to shown in Figure 10, in the present embodiment, as another alternative embodiment, described device further include: task dividing die
Block 311 is used to according to network area be the first subtask and the second subtask by task cutting;
Subtask sending module 321, the Ingress node equipment for being sent to the first subtask in first network region,
So that the Ingress node equipment in first network region manipulates other node devices in first network region and executes the first son times
Business;Be also used to the Ingress node equipment the second subtask being sent in the second network area, so that in the second network area
Ingress node equipment manipulates other node devices in the second network area and executes the second subtask;
Second receiving module 331 is set for receiving the Ingress node in reception first network region and the second network area
First subtask of the return that preparation is sent and the execution result information of the second subtask, the execution result information include the first son
Whether task and the second subtask are finished.
The device of the present embodiment can be used for executing the technical solution of embodiment of the method described in embodiment one, realize
Principle is similar with technical effect, and details are not described herein again.
It should be noted that for simple description, it is all expressed as one for each method above-mentioned or Installation practice
The combination of actions of series, according to an embodiment of the present invention or by reasonable reasoning from logic, certain steps can also be suitable using other
Sequence carries out simultaneously, and the record in specification should not be understood as exclusiveness restriction, and described embodiment belongs to preferred reality
Apply example.In addition, associated section can be with cross-reference since the emphasis of each embodiment description is different.
Embodiment three
The embodiment of the present invention also provides a kind of electronic equipment, and the electronic equipment includes dress described in aforementioned any embodiment
It sets.
Figure 11 is the structural schematic diagram of electronic equipment one embodiment of the present invention, may be implemented to implement shown in Fig. 1 of the present invention
The process of example, as shown in figure 11, above-mentioned electronic equipment may include: shell 41, processor 42, memory 43,44 and of circuit board
Power circuit 45, wherein circuit board 44 is placed in the space interior that shell 41 surrounds, and processor 42 and memory 43 are arranged in electricity
On road plate 44;Power circuit 45, for each circuit or the device power supply for above-mentioned electronic equipment;Memory 43 can for storing
Execute program code;Processor 42 is run by reading the executable program code stored in memory 43 and executable program
The corresponding program of code, for executing data distributing method described in aforementioned any embodiment.
Processor 42 to the specific implementation procedures of above-mentioned steps and processor 42 by operation executable program code come
The step of further executing may refer to the description of the embodiment of the present invention one, and details are not described herein.
The electronic equipment exists in a variety of forms, including but not limited to:
(1) mobile communication equipment: the characteristics of this kind of equipment is that have mobile communication function, and to provide speech, data
Communication is main target.This Terminal Type includes: smart phone (such as iPhone), multimedia handset, functional mobile phone and low
Hold mobile phone etc..
(2) super mobile personal computer equipment: this kind of equipment belongs to the scope of personal computer, there is calculating and processing function
Can, generally also have mobile Internet access characteristic.This Terminal Type includes: PDA, MID and UMPC equipment etc., such as iPad.
(3) portable entertainment device: this kind of equipment can show and play multimedia content.Such equipment include: audio,
Video player (such as iPod), handheld device, e-book and intelligent toy and portable car-mounted navigation equipment.
(4) server: providing the equipment of the service of calculating, and the composition of server includes that processor, hard disk, memory, system are total
Line etc., server is similar with general computer architecture, but due to needing to provide highly reliable service, in processing energy
Power, stability, reliability, safety, scalability, manageability etc. are more demanding.
(5) other electronic equipments with data interaction function.
The embodiment of the invention also provides a kind of computer readable storage medium, the computer-readable recording medium storage
There is one or more program, one or more of programs can be executed by one or more processor, aforementioned to realize
Method described in embodiment one.
Those skilled in the art are understood that realize all or part of step that above-described embodiment method carries
It suddenly is that relevant hardware can be instructed to complete by program, the program can store in a kind of computer-readable storage medium
In matter, which when being executed, includes the steps that one or a combination set of embodiment of the method.
For convenience of description, description apparatus above is to be divided into various units/modules with function to describe respectively.Certainly, exist
Implement to realize each unit/module function in the same or multiple software and or hardware when the present invention.
As seen through the above description of the embodiments, those skilled in the art can be understood that the present invention can
It realizes by means of software and necessary general hardware platform.Based on this understanding, technical solution of the present invention is substantially
The part that contributes to existing technology can be embodied in the form of software products in other words, which can
To be stored in a storage medium, such as ROM/RAM, magnetic disk, CD, including some instructions use is so that a computer equipment
(can be personal computer, server or the network equipment etc.) executes the certain of each embodiment or embodiment of the invention
Method described in part.
The above, the only specific embodiment of the invention, but the scope of the present invention is not limited thereto, it is any to be familiar with
In the technical scope disclosed by the present invention, any changes or substitutions that can be easily thought of by those skilled in the art, should all cover
Within that scope of the present invention.Therefore, the scope of the present invention should be subject to the protection scope in claims.