CN109981463A - Information processing method, device, gateway and storage medium - Google Patents

Information processing method, device, gateway and storage medium Download PDF

Info

Publication number
CN109981463A
CN109981463A CN201910137519.7A CN201910137519A CN109981463A CN 109981463 A CN109981463 A CN 109981463A CN 201910137519 A CN201910137519 A CN 201910137519A CN 109981463 A CN109981463 A CN 109981463A
Authority
CN
China
Prior art keywords
messages
information
gateway
equipment
flow table
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201910137519.7A
Other languages
Chinese (zh)
Other versions
CN109981463B (en
Inventor
刘京洋
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Netease Hangzhou Network Co Ltd
Original Assignee
Netease Hangzhou Network Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Netease Hangzhou Network Co Ltd filed Critical Netease Hangzhou Network Co Ltd
Priority to CN201910137519.7A priority Critical patent/CN109981463B/en
Publication of CN109981463A publication Critical patent/CN109981463A/en
Application granted granted Critical
Publication of CN109981463B publication Critical patent/CN109981463B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/66Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/74Address processing for routing
    • H04L45/745Address table lookup; Address filtering
    • H04L45/7453Address table lookup; Address filtering using hashing

Abstract

The application provides a kind of information processing method, device, gateway and storage medium, this method can include: receive the first information stream received and sent messages including the first data packet and first that the first equipment is sent, the cryptographic Hash received and sent messages according to first, it determines that cryptographic Hash that first receives and sends messages is corresponding to receive and send messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages;To second be received and sent messages to second the first data packet of device forwards according to this.The application can reduce the occupancy resource of flow table in gateway.

Description

Information processing method, device, gateway and storage medium
Technical field
This application involves network technique field more particularly to a kind of information processing method, device, gateway and storage mediums.
Background technique
Gateway can be belonging respectively to different networks as internetwork interconnection equipment, the equipment at both ends.
Gateway can need to carry out network to the data packet in the case where data packet that the equipment for receiving side network is sent Address conversion then carries out the forwarding of data packet to obtain receiving and sending messages for other side network.Wherein, gateway is generally according to this The cryptographic Hash of side network received and sent messages carries out flow table inquiry.To determine flow table corresponding to the information flow of the side network Entry.Since two internetwork transmission are generally bi-directional, then at least needing two networks of storage in the flow table of the gateway Flow table entry corresponding to the cryptographic Hash received and sent messages, i.e., flow table entry corresponding to the cryptographic Hash of two different directions.
That is, the corresponding flow table entry of the cryptographic Hash for storing both direction in the flow table of current gateway, i.e., double To the corresponding flow table entry of cryptographic Hash, this makes the occupancy resource of flow table in gateway more.
Summary of the invention
The application provides a kind of information processing method, device, gateway and storage medium, occupies money to reduce the flow table of gateway Source.
In a first aspect, the application provides a kind of information processing method, which comprises
The first information stream of the first equipment transmission is received, the first information stream includes: the first data packet and the first transmitting-receiving Information, it includes: the address information of the address information and gateway of first equipment in first network that described first, which receives and sends messages,;
The cryptographic Hash received and sent messages according to described first determines the corresponding transmitting-receiving letter of cryptographic Hash that described first receives and sends messages Breath, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and receives and sends messages, wherein described second Receive and send messages include: gateway address information in the second network and the second equipment address information;
It receives and sends messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
Second aspect, the application provide a kind of information processing unit, comprising:
Receiving module, for receiving the first information stream of the first equipment transmission, the first information stream includes: the first data It packet and first receives and sends messages, described first receives and sends messages the address information for including: first equipment and gateway in first network In address information;
Processing module, the cryptographic Hash for receiving and sending messages according to described first determine the described first Hash received and sent messages Be worth it is corresponding receive and send messages, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as the second transmitting-receiving letter Breath, wherein described second receives and sends messages include: gateway address information in the second network and the second equipment address letter Breath;
Sending module, for receiving and sending messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
The third aspect, the application also provide a kind of gateway, comprising: memory and processor;The memory and the place Manage device connection;
The memory, for storing program instruction;
The processor realizes the information processing method of above-mentioned first aspect for being performed in program instruction.
A kind of computer readable storage medium can also be provided in fourth aspect, the application, is stored thereon with computer program, institute It states and realizes that power realizes the information processing method of above-mentioned first aspect when computer program is executed by processor.
The application provides a kind of information processing method, device, gateway and storage medium, can pass through and receive the first equipment and send Include the first data packet and the first first information stream for receiving and sending messages, this first receive and send messages include: first equipment ground The address information of location information and gateway in first network determines first transmitting-receiving according to first cryptographic Hash received and sent messages The cryptographic Hash of information is corresponding to receive and send messages, and first corresponding receive and send messages of cryptographic Hash received and sent messages is determined as second It receives and sends messages, then second is received and sent messages according to this, to second device forwards, first data packet, wherein second transmitting-receiving Information includes: the address information of gateway address information in the second network and the second equipment.In this method, gateway be not necessarily into The inquiry of row flow table can determine that second receives and sends messages according to the first cryptographic Hash received and sent messages in the information flow received, Then the forwarding of data packet is carried out, therefore is subtracted in flow table without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages The occupancy resource of flow table in gateway is lacked.
Detailed description of the invention
In order to illustrate the technical solutions in the embodiments of the present application or in the prior art more clearly, to embodiment or will show below There is attached drawing needed in technical description to do one simply to introduce, it should be apparent that, the accompanying drawings in the following description is this Shen Some embodiments please for those of ordinary skill in the art without creative efforts, can be with root Other attached drawings are obtained according to these attached drawings.
Fig. 1 is by a kind of schematic diagram for the network system that information processing method is applicable provided by the embodiments of the present application;
Fig. 2 is a kind of flow chart of information processing method provided by the embodiments of the present application;
Fig. 3 is the flow chart of another information processing method provided by the embodiments of the present application;.
Fig. 4 is the flow chart of another information processing method provided by the embodiments of the present application;
Fig. 5 is the flow chart of another information processing method provided by the embodiments of the present application;
Fig. 6 is the structural schematic diagram of information processing unit provided by the embodiments of the present application;
Fig. 7 is a kind of structural schematic diagram for gateway that this hair applies for that embodiment provides.
Specific embodiment
To keep the purposes, technical schemes and advantages of the embodiment of the present application clearer, below in conjunction with the embodiment of the present application In attached drawing, the technical scheme in the embodiment of the application is clearly and completely described, it is clear that described embodiment is Some embodiments of the present application, instead of all the embodiments.Based on the embodiment in the application, those of ordinary skill in the art Every other embodiment obtained without making creative work, shall fall in the protection scope of this application.
It should be noted that term " first ", " second " and " third " etc. in the embodiment of the present application each section and attached drawing It is to be used to distinguish similar objects, without being used to describe a particular order or precedence order.It should be understood that the number used in this way According to being interchangeable under appropriate circumstances, so that embodiments herein described herein can be in addition to illustrating herein or describing Those of other than sequence implement.In addition, term " includes " and " having " and their any deformation, it is intended that covering is not Exclusive includes, for example, the process, method, system, product or equipment for containing a series of steps or units be not necessarily limited to it is clear Step or unit those of is listed on ground, but is not clearly listed or for these process, methods, product or is set Standby intrinsic other step or units.
Method flow diagram involved in the following embodiments of the application is merely illustrative, it is not necessary in all Appearance and step, nor is it necessary that and execute in the described sequence.For example, some steps can also decompose, and some steps can To merge or partially merge, therefore, the sequence actually executed can change according to the actual situation.
Functional module in block diagram involved in the following embodiments of the application is only functional entity, not necessarily must be with Physically separate entity is corresponding.I.e., it is possible to realize these functional entitys using software form, or in one or more hardware It is realized in module or integrated circuit in these functional entitys or heterogeneous networks and/or processor and/or microcontroller and realizes this A little functional entitys.
First the network system that the embodiment of the present application is applicable in is illustrated as follows.Fig. 1 is provided by the embodiments of the present application A kind of schematic diagram for the network system that information processing method is applicable in.As shown in Figure 1, at information provided by the embodiment of the present application The network system that reason method is applicable in can include: client device, gateway and server etc..Client device can be to be equipped with The terminal device of default application program, which for example can be desktop computer, notebook, personal digital assistant Any appliances such as (Personal Digital Assistant, abbreviation PDA), smart phone, tablet computer.The server can be with For the server for presetting application program.Client device establishes connection with server by gateway.In Fig. 1, it is connect with gateway Server and client side's equipment is located at different networks, and interconnection equipment of the gateway as two networks can both be located at clothes Network where business device, may be alternatively located at the network where client device.Network where server can be first network, visitor Network where the end equipment of family can be described as the second network, then the gateway shown in FIG. 1 can both be located at first network equipment, can also position In second network.
The information processing method that the following each embodiments of the application provide can gateway as shown in Figure 1 by software and/or The mode of hardware realizes that the gateway for example can be network address translation (Network Address Translation, NAT) Gateway, or complete network address translation (Full Network Address Translation, Full NAT) gateway. The gateway can also be other gateways with nat feature, and details are not described herein.
Combine multiple examples to information processing method provided by the embodiments of the present application, device, equipment and storage medium as follows It is illustrated.
Fig. 2 is a kind of flow chart of information processing method provided by the embodiments of the present application.The method shown in Fig. 2, can be by Above-mentioned gateway shown in FIG. 1 interacts execution with client device or server.It should be noted that information provided herein Processing method also can be applicable in other scenes, such as can be held by load-balancing device or other data distributions that are related to Row, certainly, first equipment and the second equipment are also not necessarily limited to above-mentioned client device or server.For load-balancing device or Information processing method performed by other equipment for being related to data distribution, specific implementation procedure can refer to the letter that following gateways execute Processing method is ceased, the application repeats no more.
As shown in Fig. 2, information processing method shown in the present embodiment may include as follows:
S201, gateway receive the first information stream that the first equipment is sent, which includes: the first data packet and the One receives and sends messages.
This first receive and send messages include: first equipment address information and the gateway in first network address letter Breath.The first network is the network where the first equipment.First data packet can be any data packet from the first equipment, Or any data packet after first data packet from first equipment.
First equipment can be server, can also be with client device.If first equipment can be server, should First network is the Intranet of gateway, which is intranet data packet.If first equipment can set for client Standby, then the first network can be the outer net of gateway, which is outer net data packet.
This first receives and sends messages and can be used for characterizing the transmission direction of the first information stream, this first is received and sent messages, should The source that the address information of first equipment can be used for characterizing the first information stream is first equipment, this first is received and sent messages Address information of the gateway in the first network, the transmission purpose that can be used for characterizing the first information stream is in the first network The gateway.
In this embodiment, which can be the information flow from the first equipment, be surrounded by and set from first Standby data packet i.e. first data packet and this first receive and send messages.The gateway is the case where receiving the first information stream Under, which need to be handled, be received and sent messages with obtaining second, to carry out the forwarding of data packet.
S202, gateway determine that first cryptographic Hash received and sent messages is corresponding according to first cryptographic Hash received and sent messages It receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages.
This second receive and send messages include: gateway address information in the second network and the second equipment address information. The gateway for example can determine first transmitting-receiving according to first cryptographic Hash received and sent messages, using preset Hash decision making algorithm The cryptographic Hash of information is corresponding to receive and send messages.The Hash decision making algorithm is for example can include: preset cryptographic Hash with receive and send messages Corresponding relationship.
Second network is the network where the second equipment.This second is received and sent messages and can be used for characterizing the first information stream Transmission direction, this second is received and sent messages, and the address information of second equipment can be used for characterizing the transmission of the first information stream Purpose is second equipment.
The gateway can receive and send messages i.e. in the case where receiving the first information stream to included by the first information stream This first is received and sent messages and carries out Hash operation, determine first cryptographic Hash received and sent messages, and first is received and sent messages according to this Cryptographic Hash determines this first cryptographic Hash for receiving and sending messages is corresponding and receives and sends messages.
In the embodiment, which, which can carry out calculating according to first cryptographic Hash received and sent messages, can determine second receipts Photos and sending messages, without inquiring flow table, therefore without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in flow table.
S203, gateway second are received and sent messages according to this, to second device forwards, first data packet.
Gateway be calculated this second receive and send messages in the case where, can to the second equipment send include first data Packet and second information flow received and sent messages, are forwarded to second equipment for first data packet.
It can include the first data by receive the transmission of the first equipment in information processing method provided by the embodiments of the present application Packet and the first first information stream received and sent messages, this first receives and sends messages the address information for including: first equipment and gateway exists Address information in first network determines first cryptographic Hash pair received and sent messages according to first cryptographic Hash received and sent messages That answers receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and is received and sent messages, then It second is received and sent messages according to this, to second device forwards, first data packet, wherein second to receive and send messages include: the net for this Close the address information of address information and the second equipment in the second network.In this method, gateway is not necessarily to carry out the inquiry of flow table, It can determine that second receives and sends messages according to the first cryptographic Hash received and sent messages in the information flow received, then carry out data The forwarding of packet, therefore reduce in gateway and flow without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in flow table The occupancy resource of table.
May include multiple gateways in the network system applied by each embodiment of the application, if gateway break down or When going offline, for the transmission for guaranteeing information flow, the transmission of the first equipment and the second equipment room need to switch to the i.e. spare net of another gateway It closes.
If another gateway online i.e. another gateway and the first equipment and the second equipment after switching establish the feelings of connection Under condition, the information flow of the first equipment transmission is received, it can be based in information flow transmitted by received first equipment First cryptographic Hash received and sent messages is into determining that second receives and sends messages, then carry out the forwarding of data packet, therefore it does not need flow table Also it can proceed with the transmission of stream.
If another gateway online i.e. another gateway and the first equipment and the second equipment after switching establish the feelings of connection Under condition, the information flow of the second equipment transmission is received, can will be abandoned from the information flow of second equipment, based on transmission control The stream retransmission mechanism of agreement (Transmission Control Protocol, TCP), if the first equipment is not received from The data of two equipment will trigger retransmission mechanism, to retransmit information flow to gateway, realize the first equipment and the second equipment Between stream transmission channel reconstruction.
Therefore, it is based on information processing method provided by the embodiments of the present application, it can be without carrying out the flow table between two gateways It is synchronous, can guarantee to spread it is defeated do not interrupt, avoid the synchronous bring great expense incurred of flow table.
On the basis of above-mentioned information processing method shown in Fig. 2, a kind of information processing is can also be provided in the embodiment of the present application Method, Fig. 3 are the flow chart of another information processing method provided by the embodiments of the present application.As shown in figure 3, this method can also wrap It includes:
S301, gateway receive the second information flow that the second equipment is sent, which includes: the second data packet and should Second receives and sends messages.
Second data packet can be any data packet from the second equipment.Second data packet for example can for this second Equipment is in the data packet for receiving above-mentioned first data packet and being returned.
Second equipment can be server, can also be with client device.If second equipment can be server, should Second network is the Intranet of gateway, which is intranet data packet.If second equipment can set for client Standby, then second network can be the outer net of gateway, which is outer net data packet.
This second receives and sends messages and can be used for characterizing the transmission direction of second information flow, this second is received and sent messages, should The source that the address information of second equipment can be used for characterizing second information flow is second equipment, this second is received and sent messages Address information of the gateway in second network, the transmission purpose that can be used for characterizing second information flow is in second network The gateway.
In this embodiment, which can be the information flow from the second equipment, be surrounded by and set from second Standby data packet i.e. second data packet and this second receive and send messages.The gateway is the case where receiving second information flow Under, which need to be handled, be received and sent messages with obtaining first, to carry out the forwarding of data packet.
S302, gateway are inquired in flow table according to second cryptographic Hash received and sent messages, to determine second transmitting-receiving The corresponding flow table entry of the cryptographic Hash of information is the flow table entry of second information flow.
In the flow table, the flow table entry for carrying out information transmission for first equipment and second equipment only include: this The two corresponding flow table entries of cryptographic Hash received and sent messages.
The flow table can be stored at least one flow table entry, and each flow table entry can be the flow table entry of one group of equipment, I.e. for carrying out the flow table entry of information transmission between one group of equipment.Each flow table entry can be corresponding with a cryptographic Hash, One cryptographic Hash can be second cryptographic Hash received and sent messages.In the flow table, for first equipment and second equipment It only include the second corresponding flow table entry of cryptographic Hash received and sent messages, without including in the flow table entry for carrying out information transmission The first corresponding flow table entry of cryptographic Hash received and sent messages.I.e. in the present embodiment, the flow table entry stored in flow table is practical For one-way flow table clause.
The gateway can be inquired in flow table according to second cryptographic Hash received and sent messages, to determine from the flow table The second corresponding flow table entry of cryptographic Hash received and sent messages is the flow table entry of second information flow.
S303, gateway carry out network address transmission to second information flow, obtain according to the flow table entry of second information flow It first receives and sends messages to this.
S304, gateway first are received and sent messages according to this, to first device forwards, second data packet.
Gateway by inquiry obtain flow table entry then obtain this first receive and send messages in the case where, can be set to first It includes second data packet and first information flow received and sent messages that preparation, which is sent, by second data packet be forwarded to this first Equipment.
Information transferring method provided by the embodiments of the present application, gateway can be according in the second information flows of the second equipment Second cryptographic Hash received and sent messages is searched in flow table to determine the second corresponding flow table item of cryptographic Hash received and sent messages Mesh is the flow table entry of second information flow, and carries out network address translation according to the flow table entry of second information flow, is obtained This first is received and sent messages, and the forwarding of the second data packet is then carried out.In the embodiment, due to being used for first equipment in flow table It only include: the corresponding flow table item of second cryptographic Hash received and sent messages with the flow table entry that second equipment carries out information transmission Mesh can effectively reduce the occupancy of flow table in gateway without including the first corresponding flow table entry of cryptographic Hash received and sent messages Resource.
Optionally, on the basis of above- mentioned information processing method, a kind of information processing side is can also be provided in the embodiment of the present application Method.First data packet as shown above can be any data packet from the first equipment, if first data packet is from this First data packet of the first equipment, after which can establish connection by the gateway and server for first equipment First data packet.Fig. 4 is the flow chart of another information processing method provided by the embodiments of the present application.As shown in figure 4, should First data packet is the first data packet from first equipment, then gateway receives the second equipment hair in S301 in above-mentioned Fig. 3 Before the second information flow sent, this method may also include that
It is corresponding to generate second cryptographic Hash received and sent messages according to second cryptographic Hash received and sent messages for S401, gateway Flow table entry.
S402, gateway store the second corresponding flow table entry of cryptographic Hash received and sent messages into the flow table.
If first data packet is first data packet from first equipment, which can pass through decision making algorithm Obtain this second receive and send messages in the case where, just second receive and send messages to this and carry out Hash operation, obtain this and second receive and send messages Cryptographic Hash, and according to second cryptographic Hash received and sent messages and this first the parameters such as receive and send messages, generate second transmitting-receiving The corresponding flow table entry of the cryptographic Hash of information.Specifically, the gateway can according to second cryptographic Hash received and sent messages and this first The parameters such as receive and send messages generate the first corresponding stream of cryptographic Hash received and sent messages using preset flow table entry generating algorithm Table clause.
That is, the gateway can held if first data packet is first data packet from first equipment After the above-mentioned S202 of row, the method for execution the present embodiment Fig. 4.
The gateway also second receives this in the case where generating the corresponding flow table entry of second cryptographic Hash received and sent messages The corresponding flow table entry of the cryptographic Hash of photos and sending messages is stored into flow table.
In method provided by the embodiments of the present application, gateway can the first cryptographic Hash for receiving and sending messages be corresponding receives and sends messages by this It is determined as this second to receive and send messages, and second is received and sent messages according to this, generates the second corresponding stream of cryptographic Hash received and sent messages Table clause, and store it in flow table, it, can be direct convenient for gateway in the case where receiving the information flow of the second equipment transmission Flow table inquiry is carried out, network address translation is then carried out based on the flow table entry inquired, to realize data packet in information flow Forwarding.It in this method, may make in the flow table of gateway, the information flow from first equipment and the letter from second equipment Breath stream can share the flow table entry an of cryptographic Hash, the i.e. second corresponding flow table entry of cryptographic Hash received and sent messages, and effectively subtract The occupancy resource of flow table in gateway is lacked.
Optionally, in the method as shown in any in figure 2 above-Fig. 4, the address information of first equipment includes: that client is mutual The address networking protocol (Client Internet Protocol, CIP), and/or, client port (Client Port, CPort).The gateway is in virtual IP (the Virtual Internet that the address information of first network includes: the gateway Protocol, VIP) address, and/or, the virtual port (Virtual Port, VPORT) of the gateway.
The address information of second equipment can include: the IP address of server, i.e., true Internet protocol (Real Internet Protocol, RIP) address, and/or, port, that is, real ports (Real Port, RPort) of server.The net Close the second network address information include: the gateway local address (Local Address, LAddr), and/or, the gateway Local port (Local Port, LPort).
Optionally, this first is received and sent messages and this second is received and sent messages and may also include that protocol type respectively.
On the basis of any of the above-described method, the embodiment of the present application can also following examples be specifically described.Fig. 5 is this Shen Please embodiment provide another information processing method flow chart.The method shown in fig. 5, can be by gateway, client device It is executed with server interaction.As shown in figure 5, information processing method shown in the present embodiment may include as follows:
S501, gateway receive client device send first information stream, the first information stream include: the first data packet and First receives and sends messages.
First data packet is also referred to as outer net data packet or external data packet.First to receive and send messages can be outer net five for this Tuple or external five-tuple, can include: the address CIP, CPORT, the address VIP of the gateway, the gateway VPORT and protocol class Type.
S502, gateway determine that first cryptographic Hash received and sent messages is corresponding according to first cryptographic Hash received and sent messages It receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages.
This this second to receive and send messages can be Intranet five-tuple or internal five-tuple, can include: the LAddr of the gateway, The address LPort, RIP, RPORT and the protocol address of the gateway.
S503, gateway second are received and sent messages according to this, forward first data packet to server.
Optionally, this method may also include that
If S504, first data packet are first data packet from the first equipment, gateway is according to second transmitting-receiving The cryptographic Hash of information, generates the second corresponding flow table entry of cryptographic Hash received and sent messages, and by second Kazakhstan received and sent messages The uncommon corresponding flow table entry of value is stored into the flow table.
It should be noted that the S503 can be performed simultaneously with above-mentioned S504, can also successively it execute, the application is not to this progress Limitation.
Optionally, this method may also include that
S505, gateway receive the second information flow that server is sent, second information flow include: the second data packet and this Two receive and send messages.
Second data packet can be intranet data packet or internal data packet.
S506, gateway are inquired in flow table according to second cryptographic Hash received and sent messages, to determine second transmitting-receiving The corresponding flow table entry of the cryptographic Hash of information is the flow table entry of second information flow.
In the flow table, the flow table entry for carrying out information transmission for client device and server only includes: second receipts The corresponding flow table entry of the cryptographic Hash of photos and sending messages.
S507, gateway carry out network address transmission to second information flow, obtain according to the flow table entry of second information flow It first receives and sends messages to this.
S508, gateway first are received and sent messages according to this, to client device forwards second data packet.
In this method, for the information flow from client device, gateway is not necessarily to carry out the inquiry of flow table, can be according to connecing The first cryptographic Hash received and sent messages in the information flow received determines that second receives and sends messages, and then carries out the forwarding of data packet, because Without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in this flow table, reduce the occupancy money of flow table in gateway Source.
For the information flow from server, gateway can carry out the inquiry of flow table, to determine flow table entry, then carry out net Network address conversion realizes the forwarding of data packet, carries out the flow table of information transmission in flow table for the client device and server Entry only includes: the second corresponding flow table entry of cryptographic Hash received and sent messages, without including first Hash received and sent messages It is worth corresponding flow table entry, the occupancy resource of flow table in gateway can be effectively reduced.
Also, using the method for the embodiment of the present application, may make without the synchronization for carrying out flow table between active/standby gateway, it can also Guarantee spread it is defeated do not interrupt, avoid the synchronous bring great expense incurred of flow table.
Following is the application Installation practice, can be used for executing the application above method embodiment, realization principle and Technical effect is similar.
Fig. 6 is the structural schematic diagram of information processing unit provided by the embodiments of the present application.The information processing unit can pass through The mode of software and/or hardware is integrated in gateway, load-balancing device or other equipment for being related to data distribution and realizes.Such as figure Shown in 6, the information processing unit 60 of the present embodiment may include:
Receiving module 61, for receiving the first information stream of the first equipment transmission, which includes: the first data It packet and first receives and sends messages, this first receives and sends messages the address information for including: first equipment and gateway in first network Address information.
Processing module 62, for determining first cryptographic Hash received and sent messages according to first cryptographic Hash received and sent messages It is corresponding to receive and send messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages, In, this second receive and send messages include: gateway address information in the second network and the second equipment address information.
Sending module 63, for second being received and sent messages according to this, to second device forwards, first data packet.
Optionally, receiving module 61 are also used to receive the second information flow of second equipment transmission, the second information flow packet Include: the second data packet and this second receive and send messages.
Processing module 62 is also used to be inquired in flow table according to second cryptographic Hash received and sent messages, and is somebody's turn to do with determining The second corresponding flow table entry of cryptographic Hash received and sent messages is the flow table entry of second information flow;It is also used to according to second letter The flow table entry for ceasing stream carries out network address transmission to second information flow, obtains this and first receive and send messages;In the flow table, use Carrying out the flow table entry of information transmission in first equipment and second equipment only includes: second cryptographic Hash pair received and sent messages The flow table entry answered.
Sending module 63 is also used to first be received and sent messages according to this, to first device forwards, second data packet.
Optionally, processing module 62, if being also used to first data packet is first data packet from first equipment, Then according to second cryptographic Hash received and sent messages, the second corresponding flow table entry of cryptographic Hash received and sent messages is generated;Storage should The second corresponding flow table entry of cryptographic Hash received and sent messages is into the flow table.
Optionally, which is client device, which is server.
Optionally, which includes: the virtual IP address of the gateway in the address information of first network, and/ Or, the virtual port of the gateway;The address information of first equipment includes: client Internet protocol address, and/or, client Hold port;
The address information of second equipment includes: the Internet protocol address of the server, and/or, the server Port;The gateway in the local address that the address information of the second network includes: the gateway, and/or, the local side of the gateway Mouthful.
Optionally, this first is received and sent messages and this second is received and sent messages difference further include: protocol type.
Optionally, information processing unit 60 can also carry out other functions of gateway in any one of above-mentioned Fig. 2-Fig. 5, tool Body participation is above-mentioned, and details are not described herein
Fig. 7 is a kind of structural schematic diagram for gateway that this hair applies for that embodiment provides.As shown in fig. 7, the net of the present embodiment Closing 70 includes: memory 71 and processor 72.Wherein, memory 71 is connect by bus with processor 72.
Memory 71, for storing program instruction.
Processor 72 executes what gateway in any one of above-mentioned Fig. 2-Fig. 5 executed for being performed in program instruction Information processing method.
The embodiment of the present application also provides a kind of computer readable storage medium, is stored thereon with computer program, the calculating Machine program can the processor 72 described in above-mentioned Fig. 7 execute the information processing method for realizing that above-mentioned gateway executes.
Information processing unit, router and computer readable storage medium provided by the embodiments of the present application, can be performed above-mentioned The information processing method that gateway executes in any one of Fig. 2-Fig. 5, specific implementation and effective effect, reference can be made to it is above-mentioned, This is repeated no more.
It should be pointed out that a kind of load-balancing device or data distribution can also be provided in the embodiment of the present application, this is negative The structure for carrying equalizing equipment or data distribution can be similar with gateway shown in Fig. 7, performed by information processing method with And its advantages can be found in above-mentioned, details are not described herein.
Those of ordinary skill in the art will appreciate that: realize that all or part of the steps of above-mentioned each method embodiment can lead to The relevant hardware of program instruction is crossed to complete.Computer program above-mentioned can store in a computer-readable storage medium In.When being executed, execution includes the steps that above-mentioned each method embodiment to the program;And storage medium above-mentioned includes: in read-only Deposit (Read-Only Memory, ROM), random access memory (Random Access Memory, RAM), magnetic disk or light The various media that can store program code such as disk.
Finally, it should be noted that the above various embodiments is only to illustrate the technical solution of the application, rather than its limitations;To the greatest extent Pipe is described in detail the application referring to foregoing embodiments, those skilled in the art should understand that: its according to So be possible to modify the technical solutions described in the foregoing embodiments, or to some or all of the technical features into Row equivalent replacement;And these are modified or replaceed, each embodiment technology of the application that it does not separate the essence of the corresponding technical solution The range of scheme.

Claims (10)

1. a kind of information processing method characterized by comprising
The first information stream of the first equipment transmission is received, the first information stream includes: that the first data packet and first are received and sent messages, It includes: the address information of the address information and gateway of first equipment in first network that described first, which receives and sends messages,;
The cryptographic Hash received and sent messages according to described first determines that cryptographic Hash that described first receives and sends messages is corresponding and receives and sends messages, And corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and received and sent messages, wherein described second receives Photos and sending messages include: the address information of gateway address information in the second network and the second equipment;
It receives and sends messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
2. the method according to claim 1, wherein the method also includes:
The second information flow that second equipment is sent is received, second information flow includes: the second data packet and described second It receives and sends messages;
The cryptographic Hash received and sent messages according to described second, is inquired in flow table, the Kazakhstan received and sent messages with determination described second It is uncommon to be worth the flow table entry that corresponding flow table entry is second information flow;In the flow table, it to be used for first equipment and institute Stating the second equipment and carrying out the flow table entry of information transmission only includes: the described second corresponding flow table item of cryptographic Hash received and sent messages Mesh;
According to the flow table entry of second information flow, network address transmission is carried out to second information flow, obtains described the One receives and sends messages;
It receives and sends messages according to described first, the second data packet described in the first device forwards of Xiang Suoshu.
3. according to the method described in claim 2, it is characterized in that, second information flow for receiving second equipment and sending Before, the method also includes:
If first data packet is first data packet from first equipment, receive and send messages according to described second Cryptographic Hash generates the described second corresponding flow table entry of cryptographic Hash received and sent messages;
The corresponding flow table entry of cryptographic Hash that described second receives and sends messages is stored into the flow table.
4. described second sets the method according to claim 1, wherein first equipment is client device Standby is server.
5. according to the method described in claim 4, it is characterized in that, the gateway in the address information of first network includes: institute The virtual IP address of gateway is stated, and/or, the virtual port of the gateway;The address information packet of first equipment It includes: client Internet protocol address, and/or, client port;
The address information of second equipment includes: the Internet protocol address of the server, and/or, the server Port;The gateway in the local address that the address information of the second network includes: the gateway, and/or, the local of the gateway Port.
6. method according to any one of claims 1-5, which is characterized in that described first receives and sends messages and described second It receives and sends messages difference further include: protocol type.
7. a kind of information processing unit characterized by comprising
Receiving module, for receive the first equipment transmission first information stream, the first information stream include: the first data packet and First receives and sends messages, and described first receives and sends messages the address information for including: first equipment and gateway in first network Address information;
Processing module, the cryptographic Hash for receiving and sending messages according to described first determine the described first cryptographic Hash pair received and sent messages That answers receives and sends messages, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and is received and sent messages, In, described second receives and sends messages include: gateway address information in the second network and the second equipment address information;
Sending module, for receiving and sending messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
8. device according to claim 7, which is characterized in that
The receiving module, is also used to receive the second information flow that second equipment is sent, and second information flow includes: the Two data packets and described second are received and sent messages;
The processing module is also used to the cryptographic Hash received and sent messages according to described second, is inquired in flow table, to determine State the flow table entry that the corresponding flow table entry of cryptographic Hash that second receives and sends messages is second information flow;It is also used to according to The flow table entry of second information flow carries out network address transmission to second information flow, obtains described first and receive and send messages;Institute It states in flow table, carrying out the flow table entry of information transmission for first equipment and second equipment only includes: described second The corresponding flow table entry of the cryptographic Hash received and sent messages;
The sending module is also used to receive and send messages according to described first, the second data packet described in the first device forwards of Xiang Suoshu.
9. a kind of gateway characterized by comprising memory and processor;The memory is connected to the processor;
The memory, for storing program instruction;
The processor realizes information processing side of any of claims 1-6 for being performed in program instruction Method.
10. a kind of computer readable storage medium, is stored thereon with computer program, which is characterized in that the computer program Information processing method of any of claims 1-6 is realized when being executed by processor.
CN201910137519.7A 2019-02-25 2019-02-25 Information processing method, device, gateway and storage medium Active CN109981463B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201910137519.7A CN109981463B (en) 2019-02-25 2019-02-25 Information processing method, device, gateway and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201910137519.7A CN109981463B (en) 2019-02-25 2019-02-25 Information processing method, device, gateway and storage medium

Publications (2)

Publication Number Publication Date
CN109981463A true CN109981463A (en) 2019-07-05
CN109981463B CN109981463B (en) 2021-07-27

Family

ID=67077363

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201910137519.7A Active CN109981463B (en) 2019-02-25 2019-02-25 Information processing method, device, gateway and storage medium

Country Status (1)

Country Link
CN (1) CN109981463B (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113132242A (en) * 2021-03-19 2021-07-16 翱捷科技股份有限公司 Network equipment and method for sharing sending and receiving cache

Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101572670A (en) * 2009-05-07 2009-11-04 成都市华为赛门铁克科技有限公司 Data packet processing method based on flow table, device and network system
CN102025643A (en) * 2010-12-30 2011-04-20 华为技术有限公司 Flow table search method and device
US9525661B2 (en) * 2014-09-05 2016-12-20 Alcatel Lucent Efficient method of NAT without reassemling IPV4 fragments
CN106411924A (en) * 2016-10-24 2017-02-15 杭州迪普科技有限公司 Method of building session forwarding entry, and method and device for forwarding message
CN107172120A (en) * 2017-03-27 2017-09-15 联想(北京)有限公司 Information processing method, processing node and network node
CN107547666A (en) * 2016-06-24 2018-01-05 迈普通信技术股份有限公司 The implementation method and device of network address translation
CN107800626A (en) * 2016-08-31 2018-03-13 阿里巴巴集团控股有限公司 Processing method, device and the equipment of data message
CN109218205A (en) * 2018-09-26 2019-01-15 新华三信息安全技术有限公司 A kind of message forwarding method and device

Patent Citations (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101572670A (en) * 2009-05-07 2009-11-04 成都市华为赛门铁克科技有限公司 Data packet processing method based on flow table, device and network system
CN102025643A (en) * 2010-12-30 2011-04-20 华为技术有限公司 Flow table search method and device
US9525661B2 (en) * 2014-09-05 2016-12-20 Alcatel Lucent Efficient method of NAT without reassemling IPV4 fragments
CN107547666A (en) * 2016-06-24 2018-01-05 迈普通信技术股份有限公司 The implementation method and device of network address translation
CN107800626A (en) * 2016-08-31 2018-03-13 阿里巴巴集团控股有限公司 Processing method, device and the equipment of data message
CN106411924A (en) * 2016-10-24 2017-02-15 杭州迪普科技有限公司 Method of building session forwarding entry, and method and device for forwarding message
CN107172120A (en) * 2017-03-27 2017-09-15 联想(北京)有限公司 Information processing method, processing node and network node
CN109218205A (en) * 2018-09-26 2019-01-15 新华三信息安全技术有限公司 A kind of message forwarding method and device

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113132242A (en) * 2021-03-19 2021-07-16 翱捷科技股份有限公司 Network equipment and method for sharing sending and receiving cache

Also Published As

Publication number Publication date
CN109981463B (en) 2021-07-27

Similar Documents

Publication Publication Date Title
US11240066B2 (en) System and method for distributed flow state P2P setup in virtual networks
US11070447B2 (en) System and method for implementing and managing virtual networks
JP4902635B2 (en) Connection forwarding
US10749794B2 (en) Enhanced error signaling and error handling in a network environment with segment routing
CN107948076B (en) Method and device for forwarding message
US8059562B2 (en) Listener mechanism in a distributed network system
JP4593484B2 (en) Data communication system and method
US20210036953A1 (en) Flow modification including shared context
US9571382B2 (en) Method, controller, and system for processing data packet
US20070165622A1 (en) Techniques for load balancing over a cluster of subscriber-aware application servers
US10091099B2 (en) Session continuity in the presence of network address translation
WO2018094743A1 (en) Method for processing packet, and computer device
CN102148767A (en) Network address translation (NAT)-based data routing method and device
WO2014007985A2 (en) Multiplexer load balancer for session initiation protocol traffic
JP2017069951A (en) System and method for stateless information centric network
WO2017204969A1 (en) Apparatus and method of securing network communications
CN105162883A (en) Network load balancing processing system, methods and devices
JP5364187B2 (en) Edge device
CN106411924A (en) Method of building session forwarding entry, and method and device for forwarding message
EP3166263B1 (en) Routing calculation method and device for trill isis
JP2005039832A (en) Virtual connectivity with subscribe-notify service
CN106941460A (en) File transmitting method and device
CN109981463A (en) Information processing method, device, gateway and storage medium
US20120294310A1 (en) Wide Area Network Interface Selection Method and Wide Area Network System Using the Same
CN106131039A (en) The processing method and processing device of SYN flood attack

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant