CN109981463A - Information processing method, device, gateway and storage medium - Google Patents
Information processing method, device, gateway and storage medium Download PDFInfo
- Publication number
- CN109981463A CN109981463A CN201910137519.7A CN201910137519A CN109981463A CN 109981463 A CN109981463 A CN 109981463A CN 201910137519 A CN201910137519 A CN 201910137519A CN 109981463 A CN109981463 A CN 109981463A
- Authority
- CN
- China
- Prior art keywords
- messages
- information
- gateway
- equipment
- flow table
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/66—Arrangements for connecting between networks having differing types of switching systems, e.g. gateways
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L45/00—Routing or path finding of packets in data switching networks
- H04L45/74—Address processing for routing
- H04L45/745—Address table lookup; Address filtering
- H04L45/7453—Address table lookup; Address filtering using hashing
Abstract
The application provides a kind of information processing method, device, gateway and storage medium, this method can include: receive the first information stream received and sent messages including the first data packet and first that the first equipment is sent, the cryptographic Hash received and sent messages according to first, it determines that cryptographic Hash that first receives and sends messages is corresponding to receive and send messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages;To second be received and sent messages to second the first data packet of device forwards according to this.The application can reduce the occupancy resource of flow table in gateway.
Description
Technical field
This application involves network technique field more particularly to a kind of information processing method, device, gateway and storage mediums.
Background technique
Gateway can be belonging respectively to different networks as internetwork interconnection equipment, the equipment at both ends.
Gateway can need to carry out network to the data packet in the case where data packet that the equipment for receiving side network is sent
Address conversion then carries out the forwarding of data packet to obtain receiving and sending messages for other side network.Wherein, gateway is generally according to this
The cryptographic Hash of side network received and sent messages carries out flow table inquiry.To determine flow table corresponding to the information flow of the side network
Entry.Since two internetwork transmission are generally bi-directional, then at least needing two networks of storage in the flow table of the gateway
Flow table entry corresponding to the cryptographic Hash received and sent messages, i.e., flow table entry corresponding to the cryptographic Hash of two different directions.
That is, the corresponding flow table entry of the cryptographic Hash for storing both direction in the flow table of current gateway, i.e., double
To the corresponding flow table entry of cryptographic Hash, this makes the occupancy resource of flow table in gateway more.
Summary of the invention
The application provides a kind of information processing method, device, gateway and storage medium, occupies money to reduce the flow table of gateway
Source.
In a first aspect, the application provides a kind of information processing method, which comprises
The first information stream of the first equipment transmission is received, the first information stream includes: the first data packet and the first transmitting-receiving
Information, it includes: the address information of the address information and gateway of first equipment in first network that described first, which receives and sends messages,;
The cryptographic Hash received and sent messages according to described first determines the corresponding transmitting-receiving letter of cryptographic Hash that described first receives and sends messages
Breath, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and receives and sends messages, wherein described second
Receive and send messages include: gateway address information in the second network and the second equipment address information;
It receives and sends messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
Second aspect, the application provide a kind of information processing unit, comprising:
Receiving module, for receiving the first information stream of the first equipment transmission, the first information stream includes: the first data
It packet and first receives and sends messages, described first receives and sends messages the address information for including: first equipment and gateway in first network
In address information;
Processing module, the cryptographic Hash for receiving and sending messages according to described first determine the described first Hash received and sent messages
Be worth it is corresponding receive and send messages, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as the second transmitting-receiving letter
Breath, wherein described second receives and sends messages include: gateway address information in the second network and the second equipment address letter
Breath;
Sending module, for receiving and sending messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
The third aspect, the application also provide a kind of gateway, comprising: memory and processor;The memory and the place
Manage device connection;
The memory, for storing program instruction;
The processor realizes the information processing method of above-mentioned first aspect for being performed in program instruction.
A kind of computer readable storage medium can also be provided in fourth aspect, the application, is stored thereon with computer program, institute
It states and realizes that power realizes the information processing method of above-mentioned first aspect when computer program is executed by processor.
The application provides a kind of information processing method, device, gateway and storage medium, can pass through and receive the first equipment and send
Include the first data packet and the first first information stream for receiving and sending messages, this first receive and send messages include: first equipment ground
The address information of location information and gateway in first network determines first transmitting-receiving according to first cryptographic Hash received and sent messages
The cryptographic Hash of information is corresponding to receive and send messages, and first corresponding receive and send messages of cryptographic Hash received and sent messages is determined as second
It receives and sends messages, then second is received and sent messages according to this, to second device forwards, first data packet, wherein second transmitting-receiving
Information includes: the address information of gateway address information in the second network and the second equipment.In this method, gateway be not necessarily into
The inquiry of row flow table can determine that second receives and sends messages according to the first cryptographic Hash received and sent messages in the information flow received,
Then the forwarding of data packet is carried out, therefore is subtracted in flow table without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages
The occupancy resource of flow table in gateway is lacked.
Detailed description of the invention
In order to illustrate the technical solutions in the embodiments of the present application or in the prior art more clearly, to embodiment or will show below
There is attached drawing needed in technical description to do one simply to introduce, it should be apparent that, the accompanying drawings in the following description is this Shen
Some embodiments please for those of ordinary skill in the art without creative efforts, can be with root
Other attached drawings are obtained according to these attached drawings.
Fig. 1 is by a kind of schematic diagram for the network system that information processing method is applicable provided by the embodiments of the present application;
Fig. 2 is a kind of flow chart of information processing method provided by the embodiments of the present application;
Fig. 3 is the flow chart of another information processing method provided by the embodiments of the present application;.
Fig. 4 is the flow chart of another information processing method provided by the embodiments of the present application;
Fig. 5 is the flow chart of another information processing method provided by the embodiments of the present application;
Fig. 6 is the structural schematic diagram of information processing unit provided by the embodiments of the present application;
Fig. 7 is a kind of structural schematic diagram for gateway that this hair applies for that embodiment provides.
Specific embodiment
To keep the purposes, technical schemes and advantages of the embodiment of the present application clearer, below in conjunction with the embodiment of the present application
In attached drawing, the technical scheme in the embodiment of the application is clearly and completely described, it is clear that described embodiment is
Some embodiments of the present application, instead of all the embodiments.Based on the embodiment in the application, those of ordinary skill in the art
Every other embodiment obtained without making creative work, shall fall in the protection scope of this application.
It should be noted that term " first ", " second " and " third " etc. in the embodiment of the present application each section and attached drawing
It is to be used to distinguish similar objects, without being used to describe a particular order or precedence order.It should be understood that the number used in this way
According to being interchangeable under appropriate circumstances, so that embodiments herein described herein can be in addition to illustrating herein or describing
Those of other than sequence implement.In addition, term " includes " and " having " and their any deformation, it is intended that covering is not
Exclusive includes, for example, the process, method, system, product or equipment for containing a series of steps or units be not necessarily limited to it is clear
Step or unit those of is listed on ground, but is not clearly listed or for these process, methods, product or is set
Standby intrinsic other step or units.
Method flow diagram involved in the following embodiments of the application is merely illustrative, it is not necessary in all
Appearance and step, nor is it necessary that and execute in the described sequence.For example, some steps can also decompose, and some steps can
To merge or partially merge, therefore, the sequence actually executed can change according to the actual situation.
Functional module in block diagram involved in the following embodiments of the application is only functional entity, not necessarily must be with
Physically separate entity is corresponding.I.e., it is possible to realize these functional entitys using software form, or in one or more hardware
It is realized in module or integrated circuit in these functional entitys or heterogeneous networks and/or processor and/or microcontroller and realizes this
A little functional entitys.
First the network system that the embodiment of the present application is applicable in is illustrated as follows.Fig. 1 is provided by the embodiments of the present application
A kind of schematic diagram for the network system that information processing method is applicable in.As shown in Figure 1, at information provided by the embodiment of the present application
The network system that reason method is applicable in can include: client device, gateway and server etc..Client device can be to be equipped with
The terminal device of default application program, which for example can be desktop computer, notebook, personal digital assistant
Any appliances such as (Personal Digital Assistant, abbreviation PDA), smart phone, tablet computer.The server can be with
For the server for presetting application program.Client device establishes connection with server by gateway.In Fig. 1, it is connect with gateway
Server and client side's equipment is located at different networks, and interconnection equipment of the gateway as two networks can both be located at clothes
Network where business device, may be alternatively located at the network where client device.Network where server can be first network, visitor
Network where the end equipment of family can be described as the second network, then the gateway shown in FIG. 1 can both be located at first network equipment, can also position
In second network.
The information processing method that the following each embodiments of the application provide can gateway as shown in Figure 1 by software and/or
The mode of hardware realizes that the gateway for example can be network address translation (Network Address Translation, NAT)
Gateway, or complete network address translation (Full Network Address Translation, Full NAT) gateway.
The gateway can also be other gateways with nat feature, and details are not described herein.
Combine multiple examples to information processing method provided by the embodiments of the present application, device, equipment and storage medium as follows
It is illustrated.
Fig. 2 is a kind of flow chart of information processing method provided by the embodiments of the present application.The method shown in Fig. 2, can be by
Above-mentioned gateway shown in FIG. 1 interacts execution with client device or server.It should be noted that information provided herein
Processing method also can be applicable in other scenes, such as can be held by load-balancing device or other data distributions that are related to
Row, certainly, first equipment and the second equipment are also not necessarily limited to above-mentioned client device or server.For load-balancing device or
Information processing method performed by other equipment for being related to data distribution, specific implementation procedure can refer to the letter that following gateways execute
Processing method is ceased, the application repeats no more.
As shown in Fig. 2, information processing method shown in the present embodiment may include as follows:
S201, gateway receive the first information stream that the first equipment is sent, which includes: the first data packet and the
One receives and sends messages.
This first receive and send messages include: first equipment address information and the gateway in first network address letter
Breath.The first network is the network where the first equipment.First data packet can be any data packet from the first equipment,
Or any data packet after first data packet from first equipment.
First equipment can be server, can also be with client device.If first equipment can be server, should
First network is the Intranet of gateway, which is intranet data packet.If first equipment can set for client
Standby, then the first network can be the outer net of gateway, which is outer net data packet.
This first receives and sends messages and can be used for characterizing the transmission direction of the first information stream, this first is received and sent messages, should
The source that the address information of first equipment can be used for characterizing the first information stream is first equipment, this first is received and sent messages
Address information of the gateway in the first network, the transmission purpose that can be used for characterizing the first information stream is in the first network
The gateway.
In this embodiment, which can be the information flow from the first equipment, be surrounded by and set from first
Standby data packet i.e. first data packet and this first receive and send messages.The gateway is the case where receiving the first information stream
Under, which need to be handled, be received and sent messages with obtaining second, to carry out the forwarding of data packet.
S202, gateway determine that first cryptographic Hash received and sent messages is corresponding according to first cryptographic Hash received and sent messages
It receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages.
This second receive and send messages include: gateway address information in the second network and the second equipment address information.
The gateway for example can determine first transmitting-receiving according to first cryptographic Hash received and sent messages, using preset Hash decision making algorithm
The cryptographic Hash of information is corresponding to receive and send messages.The Hash decision making algorithm is for example can include: preset cryptographic Hash with receive and send messages
Corresponding relationship.
Second network is the network where the second equipment.This second is received and sent messages and can be used for characterizing the first information stream
Transmission direction, this second is received and sent messages, and the address information of second equipment can be used for characterizing the transmission of the first information stream
Purpose is second equipment.
The gateway can receive and send messages i.e. in the case where receiving the first information stream to included by the first information stream
This first is received and sent messages and carries out Hash operation, determine first cryptographic Hash received and sent messages, and first is received and sent messages according to this
Cryptographic Hash determines this first cryptographic Hash for receiving and sending messages is corresponding and receives and sends messages.
In the embodiment, which, which can carry out calculating according to first cryptographic Hash received and sent messages, can determine second receipts
Photos and sending messages, without inquiring flow table, therefore without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in flow table.
S203, gateway second are received and sent messages according to this, to second device forwards, first data packet.
Gateway be calculated this second receive and send messages in the case where, can to the second equipment send include first data
Packet and second information flow received and sent messages, are forwarded to second equipment for first data packet.
It can include the first data by receive the transmission of the first equipment in information processing method provided by the embodiments of the present application
Packet and the first first information stream received and sent messages, this first receives and sends messages the address information for including: first equipment and gateway exists
Address information in first network determines first cryptographic Hash pair received and sent messages according to first cryptographic Hash received and sent messages
That answers receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and is received and sent messages, then
It second is received and sent messages according to this, to second device forwards, first data packet, wherein second to receive and send messages include: the net for this
Close the address information of address information and the second equipment in the second network.In this method, gateway is not necessarily to carry out the inquiry of flow table,
It can determine that second receives and sends messages according to the first cryptographic Hash received and sent messages in the information flow received, then carry out data
The forwarding of packet, therefore reduce in gateway and flow without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in flow table
The occupancy resource of table.
May include multiple gateways in the network system applied by each embodiment of the application, if gateway break down or
When going offline, for the transmission for guaranteeing information flow, the transmission of the first equipment and the second equipment room need to switch to the i.e. spare net of another gateway
It closes.
If another gateway online i.e. another gateway and the first equipment and the second equipment after switching establish the feelings of connection
Under condition, the information flow of the first equipment transmission is received, it can be based in information flow transmitted by received first equipment
First cryptographic Hash received and sent messages is into determining that second receives and sends messages, then carry out the forwarding of data packet, therefore it does not need flow table
Also it can proceed with the transmission of stream.
If another gateway online i.e. another gateway and the first equipment and the second equipment after switching establish the feelings of connection
Under condition, the information flow of the second equipment transmission is received, can will be abandoned from the information flow of second equipment, based on transmission control
The stream retransmission mechanism of agreement (Transmission Control Protocol, TCP), if the first equipment is not received from
The data of two equipment will trigger retransmission mechanism, to retransmit information flow to gateway, realize the first equipment and the second equipment
Between stream transmission channel reconstruction.
Therefore, it is based on information processing method provided by the embodiments of the present application, it can be without carrying out the flow table between two gateways
It is synchronous, can guarantee to spread it is defeated do not interrupt, avoid the synchronous bring great expense incurred of flow table.
On the basis of above-mentioned information processing method shown in Fig. 2, a kind of information processing is can also be provided in the embodiment of the present application
Method, Fig. 3 are the flow chart of another information processing method provided by the embodiments of the present application.As shown in figure 3, this method can also wrap
It includes:
S301, gateway receive the second information flow that the second equipment is sent, which includes: the second data packet and should
Second receives and sends messages.
Second data packet can be any data packet from the second equipment.Second data packet for example can for this second
Equipment is in the data packet for receiving above-mentioned first data packet and being returned.
Second equipment can be server, can also be with client device.If second equipment can be server, should
Second network is the Intranet of gateway, which is intranet data packet.If second equipment can set for client
Standby, then second network can be the outer net of gateway, which is outer net data packet.
This second receives and sends messages and can be used for characterizing the transmission direction of second information flow, this second is received and sent messages, should
The source that the address information of second equipment can be used for characterizing second information flow is second equipment, this second is received and sent messages
Address information of the gateway in second network, the transmission purpose that can be used for characterizing second information flow is in second network
The gateway.
In this embodiment, which can be the information flow from the second equipment, be surrounded by and set from second
Standby data packet i.e. second data packet and this second receive and send messages.The gateway is the case where receiving second information flow
Under, which need to be handled, be received and sent messages with obtaining first, to carry out the forwarding of data packet.
S302, gateway are inquired in flow table according to second cryptographic Hash received and sent messages, to determine second transmitting-receiving
The corresponding flow table entry of the cryptographic Hash of information is the flow table entry of second information flow.
In the flow table, the flow table entry for carrying out information transmission for first equipment and second equipment only include: this
The two corresponding flow table entries of cryptographic Hash received and sent messages.
The flow table can be stored at least one flow table entry, and each flow table entry can be the flow table entry of one group of equipment,
I.e. for carrying out the flow table entry of information transmission between one group of equipment.Each flow table entry can be corresponding with a cryptographic Hash,
One cryptographic Hash can be second cryptographic Hash received and sent messages.In the flow table, for first equipment and second equipment
It only include the second corresponding flow table entry of cryptographic Hash received and sent messages, without including in the flow table entry for carrying out information transmission
The first corresponding flow table entry of cryptographic Hash received and sent messages.I.e. in the present embodiment, the flow table entry stored in flow table is practical
For one-way flow table clause.
The gateway can be inquired in flow table according to second cryptographic Hash received and sent messages, to determine from the flow table
The second corresponding flow table entry of cryptographic Hash received and sent messages is the flow table entry of second information flow.
S303, gateway carry out network address transmission to second information flow, obtain according to the flow table entry of second information flow
It first receives and sends messages to this.
S304, gateway first are received and sent messages according to this, to first device forwards, second data packet.
Gateway by inquiry obtain flow table entry then obtain this first receive and send messages in the case where, can be set to first
It includes second data packet and first information flow received and sent messages that preparation, which is sent, by second data packet be forwarded to this first
Equipment.
Information transferring method provided by the embodiments of the present application, gateway can be according in the second information flows of the second equipment
Second cryptographic Hash received and sent messages is searched in flow table to determine the second corresponding flow table item of cryptographic Hash received and sent messages
Mesh is the flow table entry of second information flow, and carries out network address translation according to the flow table entry of second information flow, is obtained
This first is received and sent messages, and the forwarding of the second data packet is then carried out.In the embodiment, due to being used for first equipment in flow table
It only include: the corresponding flow table item of second cryptographic Hash received and sent messages with the flow table entry that second equipment carries out information transmission
Mesh can effectively reduce the occupancy of flow table in gateway without including the first corresponding flow table entry of cryptographic Hash received and sent messages
Resource.
Optionally, on the basis of above- mentioned information processing method, a kind of information processing side is can also be provided in the embodiment of the present application
Method.First data packet as shown above can be any data packet from the first equipment, if first data packet is from this
First data packet of the first equipment, after which can establish connection by the gateway and server for first equipment
First data packet.Fig. 4 is the flow chart of another information processing method provided by the embodiments of the present application.As shown in figure 4, should
First data packet is the first data packet from first equipment, then gateway receives the second equipment hair in S301 in above-mentioned Fig. 3
Before the second information flow sent, this method may also include that
It is corresponding to generate second cryptographic Hash received and sent messages according to second cryptographic Hash received and sent messages for S401, gateway
Flow table entry.
S402, gateway store the second corresponding flow table entry of cryptographic Hash received and sent messages into the flow table.
If first data packet is first data packet from first equipment, which can pass through decision making algorithm
Obtain this second receive and send messages in the case where, just second receive and send messages to this and carry out Hash operation, obtain this and second receive and send messages
Cryptographic Hash, and according to second cryptographic Hash received and sent messages and this first the parameters such as receive and send messages, generate second transmitting-receiving
The corresponding flow table entry of the cryptographic Hash of information.Specifically, the gateway can according to second cryptographic Hash received and sent messages and this first
The parameters such as receive and send messages generate the first corresponding stream of cryptographic Hash received and sent messages using preset flow table entry generating algorithm
Table clause.
That is, the gateway can held if first data packet is first data packet from first equipment
After the above-mentioned S202 of row, the method for execution the present embodiment Fig. 4.
The gateway also second receives this in the case where generating the corresponding flow table entry of second cryptographic Hash received and sent messages
The corresponding flow table entry of the cryptographic Hash of photos and sending messages is stored into flow table.
In method provided by the embodiments of the present application, gateway can the first cryptographic Hash for receiving and sending messages be corresponding receives and sends messages by this
It is determined as this second to receive and send messages, and second is received and sent messages according to this, generates the second corresponding stream of cryptographic Hash received and sent messages
Table clause, and store it in flow table, it, can be direct convenient for gateway in the case where receiving the information flow of the second equipment transmission
Flow table inquiry is carried out, network address translation is then carried out based on the flow table entry inquired, to realize data packet in information flow
Forwarding.It in this method, may make in the flow table of gateway, the information flow from first equipment and the letter from second equipment
Breath stream can share the flow table entry an of cryptographic Hash, the i.e. second corresponding flow table entry of cryptographic Hash received and sent messages, and effectively subtract
The occupancy resource of flow table in gateway is lacked.
Optionally, in the method as shown in any in figure 2 above-Fig. 4, the address information of first equipment includes: that client is mutual
The address networking protocol (Client Internet Protocol, CIP), and/or, client port (Client Port,
CPort).The gateway is in virtual IP (the Virtual Internet that the address information of first network includes: the gateway
Protocol, VIP) address, and/or, the virtual port (Virtual Port, VPORT) of the gateway.
The address information of second equipment can include: the IP address of server, i.e., true Internet protocol (Real
Internet Protocol, RIP) address, and/or, port, that is, real ports (Real Port, RPort) of server.The net
Close the second network address information include: the gateway local address (Local Address, LAddr), and/or, the gateway
Local port (Local Port, LPort).
Optionally, this first is received and sent messages and this second is received and sent messages and may also include that protocol type respectively.
On the basis of any of the above-described method, the embodiment of the present application can also following examples be specifically described.Fig. 5 is this Shen
Please embodiment provide another information processing method flow chart.The method shown in fig. 5, can be by gateway, client device
It is executed with server interaction.As shown in figure 5, information processing method shown in the present embodiment may include as follows:
S501, gateway receive client device send first information stream, the first information stream include: the first data packet and
First receives and sends messages.
First data packet is also referred to as outer net data packet or external data packet.First to receive and send messages can be outer net five for this
Tuple or external five-tuple, can include: the address CIP, CPORT, the address VIP of the gateway, the gateway VPORT and protocol class
Type.
S502, gateway determine that first cryptographic Hash received and sent messages is corresponding according to first cryptographic Hash received and sent messages
It receives and sends messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages.
This this second to receive and send messages can be Intranet five-tuple or internal five-tuple, can include: the LAddr of the gateway,
The address LPort, RIP, RPORT and the protocol address of the gateway.
S503, gateway second are received and sent messages according to this, forward first data packet to server.
Optionally, this method may also include that
If S504, first data packet are first data packet from the first equipment, gateway is according to second transmitting-receiving
The cryptographic Hash of information, generates the second corresponding flow table entry of cryptographic Hash received and sent messages, and by second Kazakhstan received and sent messages
The uncommon corresponding flow table entry of value is stored into the flow table.
It should be noted that the S503 can be performed simultaneously with above-mentioned S504, can also successively it execute, the application is not to this progress
Limitation.
Optionally, this method may also include that
S505, gateway receive the second information flow that server is sent, second information flow include: the second data packet and this
Two receive and send messages.
Second data packet can be intranet data packet or internal data packet.
S506, gateway are inquired in flow table according to second cryptographic Hash received and sent messages, to determine second transmitting-receiving
The corresponding flow table entry of the cryptographic Hash of information is the flow table entry of second information flow.
In the flow table, the flow table entry for carrying out information transmission for client device and server only includes: second receipts
The corresponding flow table entry of the cryptographic Hash of photos and sending messages.
S507, gateway carry out network address transmission to second information flow, obtain according to the flow table entry of second information flow
It first receives and sends messages to this.
S508, gateway first are received and sent messages according to this, to client device forwards second data packet.
In this method, for the information flow from client device, gateway is not necessarily to carry out the inquiry of flow table, can be according to connecing
The first cryptographic Hash received and sent messages in the information flow received determines that second receives and sends messages, and then carries out the forwarding of data packet, because
Without storing the corresponding flow table entry of cryptographic Hash that first receives and sends messages in this flow table, reduce the occupancy money of flow table in gateway
Source.
For the information flow from server, gateway can carry out the inquiry of flow table, to determine flow table entry, then carry out net
Network address conversion realizes the forwarding of data packet, carries out the flow table of information transmission in flow table for the client device and server
Entry only includes: the second corresponding flow table entry of cryptographic Hash received and sent messages, without including first Hash received and sent messages
It is worth corresponding flow table entry, the occupancy resource of flow table in gateway can be effectively reduced.
Also, using the method for the embodiment of the present application, may make without the synchronization for carrying out flow table between active/standby gateway, it can also
Guarantee spread it is defeated do not interrupt, avoid the synchronous bring great expense incurred of flow table.
Following is the application Installation practice, can be used for executing the application above method embodiment, realization principle and
Technical effect is similar.
Fig. 6 is the structural schematic diagram of information processing unit provided by the embodiments of the present application.The information processing unit can pass through
The mode of software and/or hardware is integrated in gateway, load-balancing device or other equipment for being related to data distribution and realizes.Such as figure
Shown in 6, the information processing unit 60 of the present embodiment may include:
Receiving module 61, for receiving the first information stream of the first equipment transmission, which includes: the first data
It packet and first receives and sends messages, this first receives and sends messages the address information for including: first equipment and gateway in first network
Address information.
Processing module 62, for determining first cryptographic Hash received and sent messages according to first cryptographic Hash received and sent messages
It is corresponding to receive and send messages, and corresponding receive and send messages of first cryptographic Hash received and sent messages is determined as second and receives and sends messages,
In, this second receive and send messages include: gateway address information in the second network and the second equipment address information.
Sending module 63, for second being received and sent messages according to this, to second device forwards, first data packet.
Optionally, receiving module 61 are also used to receive the second information flow of second equipment transmission, the second information flow packet
Include: the second data packet and this second receive and send messages.
Processing module 62 is also used to be inquired in flow table according to second cryptographic Hash received and sent messages, and is somebody's turn to do with determining
The second corresponding flow table entry of cryptographic Hash received and sent messages is the flow table entry of second information flow;It is also used to according to second letter
The flow table entry for ceasing stream carries out network address transmission to second information flow, obtains this and first receive and send messages;In the flow table, use
Carrying out the flow table entry of information transmission in first equipment and second equipment only includes: second cryptographic Hash pair received and sent messages
The flow table entry answered.
Sending module 63 is also used to first be received and sent messages according to this, to first device forwards, second data packet.
Optionally, processing module 62, if being also used to first data packet is first data packet from first equipment,
Then according to second cryptographic Hash received and sent messages, the second corresponding flow table entry of cryptographic Hash received and sent messages is generated;Storage should
The second corresponding flow table entry of cryptographic Hash received and sent messages is into the flow table.
Optionally, which is client device, which is server.
Optionally, which includes: the virtual IP address of the gateway in the address information of first network, and/
Or, the virtual port of the gateway;The address information of first equipment includes: client Internet protocol address, and/or, client
Hold port;
The address information of second equipment includes: the Internet protocol address of the server, and/or, the server
Port;The gateway in the local address that the address information of the second network includes: the gateway, and/or, the local side of the gateway
Mouthful.
Optionally, this first is received and sent messages and this second is received and sent messages difference further include: protocol type.
Optionally, information processing unit 60 can also carry out other functions of gateway in any one of above-mentioned Fig. 2-Fig. 5, tool
Body participation is above-mentioned, and details are not described herein
Fig. 7 is a kind of structural schematic diagram for gateway that this hair applies for that embodiment provides.As shown in fig. 7, the net of the present embodiment
Closing 70 includes: memory 71 and processor 72.Wherein, memory 71 is connect by bus with processor 72.
Memory 71, for storing program instruction.
Processor 72 executes what gateway in any one of above-mentioned Fig. 2-Fig. 5 executed for being performed in program instruction
Information processing method.
The embodiment of the present application also provides a kind of computer readable storage medium, is stored thereon with computer program, the calculating
Machine program can the processor 72 described in above-mentioned Fig. 7 execute the information processing method for realizing that above-mentioned gateway executes.
Information processing unit, router and computer readable storage medium provided by the embodiments of the present application, can be performed above-mentioned
The information processing method that gateway executes in any one of Fig. 2-Fig. 5, specific implementation and effective effect, reference can be made to it is above-mentioned,
This is repeated no more.
It should be pointed out that a kind of load-balancing device or data distribution can also be provided in the embodiment of the present application, this is negative
The structure for carrying equalizing equipment or data distribution can be similar with gateway shown in Fig. 7, performed by information processing method with
And its advantages can be found in above-mentioned, details are not described herein.
Those of ordinary skill in the art will appreciate that: realize that all or part of the steps of above-mentioned each method embodiment can lead to
The relevant hardware of program instruction is crossed to complete.Computer program above-mentioned can store in a computer-readable storage medium
In.When being executed, execution includes the steps that above-mentioned each method embodiment to the program;And storage medium above-mentioned includes: in read-only
Deposit (Read-Only Memory, ROM), random access memory (Random Access Memory, RAM), magnetic disk or light
The various media that can store program code such as disk.
Finally, it should be noted that the above various embodiments is only to illustrate the technical solution of the application, rather than its limitations;To the greatest extent
Pipe is described in detail the application referring to foregoing embodiments, those skilled in the art should understand that: its according to
So be possible to modify the technical solutions described in the foregoing embodiments, or to some or all of the technical features into
Row equivalent replacement;And these are modified or replaceed, each embodiment technology of the application that it does not separate the essence of the corresponding technical solution
The range of scheme.
Claims (10)
1. a kind of information processing method characterized by comprising
The first information stream of the first equipment transmission is received, the first information stream includes: that the first data packet and first are received and sent messages,
It includes: the address information of the address information and gateway of first equipment in first network that described first, which receives and sends messages,;
The cryptographic Hash received and sent messages according to described first determines that cryptographic Hash that described first receives and sends messages is corresponding and receives and sends messages,
And corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and received and sent messages, wherein described second receives
Photos and sending messages include: the address information of gateway address information in the second network and the second equipment;
It receives and sends messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
2. the method according to claim 1, wherein the method also includes:
The second information flow that second equipment is sent is received, second information flow includes: the second data packet and described second
It receives and sends messages;
The cryptographic Hash received and sent messages according to described second, is inquired in flow table, the Kazakhstan received and sent messages with determination described second
It is uncommon to be worth the flow table entry that corresponding flow table entry is second information flow;In the flow table, it to be used for first equipment and institute
Stating the second equipment and carrying out the flow table entry of information transmission only includes: the described second corresponding flow table item of cryptographic Hash received and sent messages
Mesh;
According to the flow table entry of second information flow, network address transmission is carried out to second information flow, obtains described the
One receives and sends messages;
It receives and sends messages according to described first, the second data packet described in the first device forwards of Xiang Suoshu.
3. according to the method described in claim 2, it is characterized in that, second information flow for receiving second equipment and sending
Before, the method also includes:
If first data packet is first data packet from first equipment, receive and send messages according to described second
Cryptographic Hash generates the described second corresponding flow table entry of cryptographic Hash received and sent messages;
The corresponding flow table entry of cryptographic Hash that described second receives and sends messages is stored into the flow table.
4. described second sets the method according to claim 1, wherein first equipment is client device
Standby is server.
5. according to the method described in claim 4, it is characterized in that, the gateway in the address information of first network includes: institute
The virtual IP address of gateway is stated, and/or, the virtual port of the gateway;The address information packet of first equipment
It includes: client Internet protocol address, and/or, client port;
The address information of second equipment includes: the Internet protocol address of the server, and/or, the server
Port;The gateway in the local address that the address information of the second network includes: the gateway, and/or, the local of the gateway
Port.
6. method according to any one of claims 1-5, which is characterized in that described first receives and sends messages and described second
It receives and sends messages difference further include: protocol type.
7. a kind of information processing unit characterized by comprising
Receiving module, for receive the first equipment transmission first information stream, the first information stream include: the first data packet and
First receives and sends messages, and described first receives and sends messages the address information for including: first equipment and gateway in first network
Address information;
Processing module, the cryptographic Hash for receiving and sending messages according to described first determine the described first cryptographic Hash pair received and sent messages
That answers receives and sends messages, and corresponding receive and send messages of cryptographic Hash that described first receives and sends messages is determined as second and is received and sent messages,
In, described second receives and sends messages include: gateway address information in the second network and the second equipment address information;
Sending module, for receiving and sending messages according to described second, the first data packet described in the second device forwards of Xiang Suoshu.
8. device according to claim 7, which is characterized in that
The receiving module, is also used to receive the second information flow that second equipment is sent, and second information flow includes: the
Two data packets and described second are received and sent messages;
The processing module is also used to the cryptographic Hash received and sent messages according to described second, is inquired in flow table, to determine
State the flow table entry that the corresponding flow table entry of cryptographic Hash that second receives and sends messages is second information flow;It is also used to according to
The flow table entry of second information flow carries out network address transmission to second information flow, obtains described first and receive and send messages;Institute
It states in flow table, carrying out the flow table entry of information transmission for first equipment and second equipment only includes: described second
The corresponding flow table entry of the cryptographic Hash received and sent messages;
The sending module is also used to receive and send messages according to described first, the second data packet described in the first device forwards of Xiang Suoshu.
9. a kind of gateway characterized by comprising memory and processor;The memory is connected to the processor;
The memory, for storing program instruction;
The processor realizes information processing side of any of claims 1-6 for being performed in program instruction
Method.
10. a kind of computer readable storage medium, is stored thereon with computer program, which is characterized in that the computer program
Information processing method of any of claims 1-6 is realized when being executed by processor.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201910137519.7A CN109981463B (en) | 2019-02-25 | 2019-02-25 | Information processing method, device, gateway and storage medium |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201910137519.7A CN109981463B (en) | 2019-02-25 | 2019-02-25 | Information processing method, device, gateway and storage medium |
Publications (2)
Publication Number | Publication Date |
---|---|
CN109981463A true CN109981463A (en) | 2019-07-05 |
CN109981463B CN109981463B (en) | 2021-07-27 |
Family
ID=67077363
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201910137519.7A Active CN109981463B (en) | 2019-02-25 | 2019-02-25 | Information processing method, device, gateway and storage medium |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN109981463B (en) |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN113132242A (en) * | 2021-03-19 | 2021-07-16 | 翱捷科技股份有限公司 | Network equipment and method for sharing sending and receiving cache |
Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101572670A (en) * | 2009-05-07 | 2009-11-04 | 成都市华为赛门铁克科技有限公司 | Data packet processing method based on flow table, device and network system |
CN102025643A (en) * | 2010-12-30 | 2011-04-20 | 华为技术有限公司 | Flow table search method and device |
US9525661B2 (en) * | 2014-09-05 | 2016-12-20 | Alcatel Lucent | Efficient method of NAT without reassemling IPV4 fragments |
CN106411924A (en) * | 2016-10-24 | 2017-02-15 | 杭州迪普科技有限公司 | Method of building session forwarding entry, and method and device for forwarding message |
CN107172120A (en) * | 2017-03-27 | 2017-09-15 | 联想(北京)有限公司 | Information processing method, processing node and network node |
CN107547666A (en) * | 2016-06-24 | 2018-01-05 | 迈普通信技术股份有限公司 | The implementation method and device of network address translation |
CN107800626A (en) * | 2016-08-31 | 2018-03-13 | 阿里巴巴集团控股有限公司 | Processing method, device and the equipment of data message |
CN109218205A (en) * | 2018-09-26 | 2019-01-15 | 新华三信息安全技术有限公司 | A kind of message forwarding method and device |
-
2019
- 2019-02-25 CN CN201910137519.7A patent/CN109981463B/en active Active
Patent Citations (8)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101572670A (en) * | 2009-05-07 | 2009-11-04 | 成都市华为赛门铁克科技有限公司 | Data packet processing method based on flow table, device and network system |
CN102025643A (en) * | 2010-12-30 | 2011-04-20 | 华为技术有限公司 | Flow table search method and device |
US9525661B2 (en) * | 2014-09-05 | 2016-12-20 | Alcatel Lucent | Efficient method of NAT without reassemling IPV4 fragments |
CN107547666A (en) * | 2016-06-24 | 2018-01-05 | 迈普通信技术股份有限公司 | The implementation method and device of network address translation |
CN107800626A (en) * | 2016-08-31 | 2018-03-13 | 阿里巴巴集团控股有限公司 | Processing method, device and the equipment of data message |
CN106411924A (en) * | 2016-10-24 | 2017-02-15 | 杭州迪普科技有限公司 | Method of building session forwarding entry, and method and device for forwarding message |
CN107172120A (en) * | 2017-03-27 | 2017-09-15 | 联想(北京)有限公司 | Information processing method, processing node and network node |
CN109218205A (en) * | 2018-09-26 | 2019-01-15 | 新华三信息安全技术有限公司 | A kind of message forwarding method and device |
Cited By (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN113132242A (en) * | 2021-03-19 | 2021-07-16 | 翱捷科技股份有限公司 | Network equipment and method for sharing sending and receiving cache |
Also Published As
Publication number | Publication date |
---|---|
CN109981463B (en) | 2021-07-27 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US11240066B2 (en) | System and method for distributed flow state P2P setup in virtual networks | |
US11070447B2 (en) | System and method for implementing and managing virtual networks | |
JP4902635B2 (en) | Connection forwarding | |
US10749794B2 (en) | Enhanced error signaling and error handling in a network environment with segment routing | |
CN107948076B (en) | Method and device for forwarding message | |
US8059562B2 (en) | Listener mechanism in a distributed network system | |
JP4593484B2 (en) | Data communication system and method | |
US20210036953A1 (en) | Flow modification including shared context | |
US9571382B2 (en) | Method, controller, and system for processing data packet | |
US20070165622A1 (en) | Techniques for load balancing over a cluster of subscriber-aware application servers | |
US10091099B2 (en) | Session continuity in the presence of network address translation | |
WO2018094743A1 (en) | Method for processing packet, and computer device | |
CN102148767A (en) | Network address translation (NAT)-based data routing method and device | |
WO2014007985A2 (en) | Multiplexer load balancer for session initiation protocol traffic | |
JP2017069951A (en) | System and method for stateless information centric network | |
WO2017204969A1 (en) | Apparatus and method of securing network communications | |
CN105162883A (en) | Network load balancing processing system, methods and devices | |
JP5364187B2 (en) | Edge device | |
CN106411924A (en) | Method of building session forwarding entry, and method and device for forwarding message | |
EP3166263B1 (en) | Routing calculation method and device for trill isis | |
JP2005039832A (en) | Virtual connectivity with subscribe-notify service | |
CN106941460A (en) | File transmitting method and device | |
CN109981463A (en) | Information processing method, device, gateway and storage medium | |
US20120294310A1 (en) | Wide Area Network Interface Selection Method and Wide Area Network System Using the Same | |
CN106131039A (en) | The processing method and processing device of SYN flood attack |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |