CN1254059C - Method of realizing special multiple-protocol label exchanging virtual network - Google Patents

Method of realizing special multiple-protocol label exchanging virtual network Download PDF

Info

Publication number
CN1254059C
CN1254059C CNB021552487A CN02155248A CN1254059C CN 1254059 C CN1254059 C CN 1254059C CN B021552487 A CNB021552487 A CN B021552487A CN 02155248 A CN02155248 A CN 02155248A CN 1254059 C CN1254059 C CN 1254059C
Authority
CN
China
Prior art keywords
vpn
message
mpls vpn
mpls
implementation method
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB021552487A
Other languages
Chinese (zh)
Other versions
CN1507230A (en
Inventor
曹学贵
马绍文
涂伯颜
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB021552487A priority Critical patent/CN1254059C/en
Publication of CN1507230A publication Critical patent/CN1507230A/en
Application granted granted Critical
Publication of CN1254059C publication Critical patent/CN1254059C/en
Anticipated expiration legal-status Critical
Expired - Fee Related legal-status Critical Current

Links

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The present invention relates to an implementation method for a virtual private network based on MPLS, which belongs to the technical field of data exchange. The present invention is characterized by comprising the following steps: policies are configured to the equipment; the VPN egress peripheral equipment (Egress PE) transmits the relevant information to the VPN ingress peripheral equipment (Ingress PE); the ingress peripheral equipment matches the received routing and policies, entering step 4 if the matching succeeds and discarding otherwise; a policy routing list item is established and stored in the policy routing; an outer layer tunnel is searched according to the policy and the message is transmitted to the egress peripheral equipment. The present invention can select tunnels according to business features and ensure the business service quality to meet the requirements of the customers; in addition, according to the need of the private network business, the present invention can dynamically establish an LSP of TE based on MPLS to meet users' need.

Description

A kind of implementation method of MPLS VPN
Technical field
The present invention relates to field of data exchange, relate in particular to a kind ofly in multiprotocol label switching, realize the method for Virtual Private Network.
Technical background
The prototype the earliest of MPLS is the IPSwitching agreement that the mid-90 is taken the lead in releasing by Ipsilon company, its purpose mainly is to solve ATM switch how to support IP better, this agreement makes ATM switch become a router, thereby have the high-performance of ATM switch, broken through the performance limitations of conventional router.The Cisco that continues releases Tag Switching, and IBM releases Aggregate Route-based IP Switch (ARIS) etc.Router producer realized that the purpose of label switched was in order to solve the problem that the IP route querying can not reach linear speed (because the IP route querying adopts is the mode of location coupling the most longways, software is searched and can be had any problem when router port speed reaches 155M or 622M) at that time.There is the intercommunication problem in the realization of the label exchange of these early stage different manufacturers, so set up the standardized working group of responsible label switched---MPLS working group at IETF in 1997.It is independent of each equipment and realizes producer.Existing MPLS related protocol and draft come from traffic engineering working group and the MPLS VPN working group that this working group and it were derived from afterwards basically.
Along with the network processing unit technology rapid development, the route linear speed of the port of 2.5G even 10G is searched all and is out of question, and MPLS uses and also progressively turns to MPLS traffic engineering and MPLS VPN etc.In IP network, MPLS traffic engineering technology becomes a kind of main managing network flow, it is congested to reduce, guarantee the important tool of IP network QoS to a certain extent.Solving enterprise's interconnection, various new business aspect is provided, MPLS VPN also more and more is had an optimistic view of by operator, becomes the important means that value-added service is provided in IP network operator! Adopt the MPLS VPN technologies to resolve into the network of isolating in logic to present networks, the application of this network of isolating in logic can be Protean: can be to be used in to solve that enterprise interconnects separately, government is identical/the independent interconnection of different working department, also can be used to provide new business---as opening up a VPN for IP telephone service specially, solving the IP network address deficiency, QoS guarantees and carry out application such as new business with this.
The initial scheme of MPLS VPN is to adopt LSP as outer layer tunnel carrying VPN private network information.Because the large-scale popularization of MPLS also needs the time, the up-to-date technology of some MPLS can utilize tunnels such as GRE, IPSEC that present internet on-line apparatus provides as outer layer tunnel now.Simultaneously because the technology maturation of MPLS TE can be set up the different attribute LSP of (mainly referring to bandwidth) between PE.Like this in multiple outer layer tunnel (comprising LSP, GRE etc.), and different LSP (TE can set up the different LSP of path difference/bandwidth between identical source and destination).Problem between these outer layer tunnel like this with regard to existing one how to select.
1.MPLS VPN comprises two kinds: BGP/MPLS VPN and L2VPN:
BGP (Border Gateway Protocol, Border Gateway Protocol)/MPLS VPN is that E.Rosen and Y.Rekhter proposed in 1999, forms RFC2547.It is the VPN (Provider Provide VPN is called for short PP VPN) that a kind of operator provides, and VPN equipment is positioned at network side, provides VPN service by operator for the user, and subscriber equipment does not need perception VPN, as long as be connected to the PE equipment that operator provides.
As shown in Figure 1, in the BGP/MPLS VPN model, comprise three component part: CE, PE and P router.
CE (Custom Edge) equipment: being a part in the user network, having interface directly to link to each other with the service provider, generally is router.CE " perception " is less than the existence of VPN.
PE (Provider Edge) router: i.e. provider edge router is the edge device of carrier network, directly links to each other with user's CE.In the MPLS network, all processing of VPN are all occurred on the pe router.
P (Provider) router: the P in the carrier network, discord CE directly links to each other.The P router need have the basic transfer capability of MPLS.
The division of CE and PE mainly is to divide from operator and user's range of management, and CE and PE are the borders of both range of managements.
Use E-BGP or IGP Routing Protocol exchanging routing information between CE and the PE, also can use static routing.CE needn't support MPLS or VPN is had perception.
1. by BGP issue VPN routing iinformation
Behind the routing iinformation of PE by acquisition CE, exchange route by the IBGP session.Ingress PE node is searched the tunnel that whether has from ingress PE to egress PE and is existed after receiving the VPN routing iinformation that egress PE sends (carrying the vpn label of private network), if having, then the forwarding item of this VPN route just can generate
2.VPN message forwarding
The VPN message is transmitted the two-layer label mode (this is with the situation of LSP as the tunnel, and GRE etc. is an outer layer tunnel, then only needs vpn label) of using.Ground floor (skin) label exchanges in backbone network inside, has represented a LSP from PE to opposite end PE, and the VPN message utilizes this layer label, just can arrive opposite end PE along LSP.Use the second layer (internal layer) label when opposite end PE arrives CE, vpn label has indicated message to arrive which Site, perhaps more more specifically, arrives which CE.Like this, according to vpn label, just can find the interface that E-Packets.
1.L2VPN
MPLS L2VPN has three kinds of implementation methods: CCC mode, Martini mode, Kompella mode, three kinds of modes respectively have its characteristics.
The CCC pattern:
CCC (Circuit Cross Connect) mode can be by webmaster or the transparent connection of order line configuration between two PE-CE connect.In this way, CE grouping in source can be sent among the purpose CE goes, and has only L2 address to be changed at most, and does not have other any processing.This mode message has only one deck label when transmitting, do not need the tunnel.
The Kompella pattern:
The two-layer VPN of this mode is very similar with three layers of BGP/MPLS VPN of RFC2547 definition, so for the personnel that get used to RFC2547, be readily appreciated that the two-layer VPN of this mode.
As BGP/MPLS VPN, by the IBGP session of foundation, can find each website of two-layer VPN automatically between each PE.When initial,, can calculate every automatically by special algorithm and connect needed label for each CE has distributed tag block.Two-layer VPN information is to propagate between PE by the BGP to expansion.In view of the above, realize transmitting by MPLS LSP
The Martini pattern:
This mode is followed draft draft-martini-12circuit-trans-mpls, uses LDP as the signaling of transmitting VC information.Relative Kompella mode, its disposes, realizes simple relatively, does not have the notion of VPN, only provides the connectivity of two layers of link, easy to understand.
In the Martini mode, will set up the remote session of LDP between the PE, PE is that every between the CE connects VC label of distribution.Two-layer VPN information will carried the VC label, be forwarded to the opposite end PE of remote session by the LSP of LDP foundation.So in fact, on common LSP, set up a VCLSP.
Summary of the invention
The purpose of this patent just provides a kind of method that realizes VPN in MPLS, can handle and transmit data message neatly, and effectively utilize the existing resource of system.
The implementation method of a kind of MPLS VPN is characterized in that may further comprise the steps:
A, with policy configurations to equipment;
B, outlet VPN edge side equipment (Egress PE) send to inlet VPN edge side equipment (Ingress PE) with relevant information;
C, Ingress PE mate route and the strategy of receiving, if success enters steps d, otherwise abandons;
D, set up tactful route table items and be saved in the tactful route;
E, search outer layer tunnel, and message is forwarded to Exgress PE side according to strategy.
Among the described step e,, also comprise driving the step that signaling is set up outer layer tunnel as required if search the outer layer tunnel failure.
Described MPLS VPN is BGP/MPLS VPN, and the strategy among the described step a is meant 5 tuple information according to the IP message, and IP priority of messages, the incoming interface information of message are classified to the data message and specific data is transmitted the rule of using outer layer tunnel.
Tactful route table items in the described steps d, be common factor, amended classifying rules and the corresponding outer layer tunnel selective rule generation strategy route that destination address with 5 tuple information in the classifying rules is revised as the destination address in IP message 5 tuple information in the destination address of route and the classifying rules.
Among the described step e, use LSP as outer layer tunnel.
Described forwarding is handled and is used two-layer label mode, and the ground floor label exchanges in backbone network inside, and second layer label exchanges between CE at opposite end PE.
Described MPLS VPN is L2VPN, the strategy among the described step a, and the information such as QOS field in incoming interface according to message, the link layer newspaper heading of being meant are classified by the data message and specific data is transmitted the rule of using outer layer tunnel.
Among the described step c, the content of coupling is that the configuration VC with incoming interface in the classifying rules and L2VPN mates.
Tactful route table items in the described steps d is the tactful route table items that generates with the rule in the former strategy.
Among the described step e, use GRE or IPSEC as outer layer tunnel.
During described forwarding is handled, set up the VPN message and transmit one deck label mode of using.
Adopted VPN implementation method of the present invention, because skin can have a lot of bars, the present invention can select the tunnel according to business features, guarantee that professional service quality can reach requirement of client, flow work simultaneously will be not limited only to the business of operator, can support client's business simultaneously, in addition can be according to the needs of private network business, set up the LSP of MPLS TE dynamically, satisfy user's needs.
Description of drawings
Fig. 1 is in the prior art, the BGP/MPLS model;
Fig. 2 is a flow chart of the present invention.
Embodiment
Below in conjunction with Figure of description the specific embodiment of the present invention is described.(please provide a concrete routing policy content, and the tactful routing table after foundation, only provide several symbolistic list items and get final product.)
Strategy route (PBR:Policy-Based Routing) is the feature (as incoming interface, the source address of message, destination address etc.) by matching message, specifies outgoing interface or next jumping of message.If the match is successful, this message will be sent out according to outgoing interface or next redirect of tactful route appointment this moment, no longer inquire about common routing table.The present invention utilizes this characteristic of tactful route, carries out the selection of outer layer tunnel.As shown in Figure 2, be a flow chart of the present invention, as can be seen from the figure, the present invention includes following steps:
A, by order line or webmaster etc. with policy configurations to equipment, this equipment can be equipment such as router in the communication equipment and LANSWITCH.To the strategy of BGP/MPLS VPN is 5 tuple information according to the IP message, the IP priority of messages, information such as the incoming interface of message are classified to message, to the strategy of L2VPN (two-layer VPN) is incoming interface according to message, qos field in the link layer message head (as the 802.1p position of Ethernet frame head), can also comprise VLAN ID, information such as PVC are classified to message, and every class message can define the rule of selecting outer layer tunnel.
Set up above-mentioned classification by difference is transmitted the message that requires, can use different business, increased the flexibility of system handles message at different business needs.
Can comprise following content such as a tactful route table items:
The message matching condition: the source address of message is 10.1.1.2
Transmit rule: the outgoing interface of specifying message is tunnell (tunnel interface that MPLS TE creates) etc.
B, Egress PE send to ingress PE with the information (is local VPN routing iinformation to BGP/MPLSVPN) of private network VPN (BGP/MPLS VPN or L2VPN) by BGP/LDP, mate during for data message forwarding.
C, ingress mate one by one to every information and all strategies of receiving.MPLSBGP/VPN is received relatively mainly whether the destination address of IP message 5 tuple information has common factor in the classifying rules of the destination address of route and strategy,, mate with the configuration VC of the VLAN ID/PVC in the classifying rules or incoming interface and L2VPN to L2VPN.
D, after the message of each VPN arrives PE, PE mates message and all tactful routes one by one.If the match is successful, then set up tactful route table items, and this list item is saved in the tactful route, to BGP/MPLS VPN, the destination address of 5 tuple information in the classifying rules is revised as the common factor of the destination address in IP message 5 tuple information in the destination address of route and the classifying rules, amended classifying rules and corresponding outer layer tunnel selective rule are generated special one by one tactful route table items, be kept in the tactful route.To L2VPN, then the rule in the strategy is not made the special one by one tactful route table items of generation of any modification, be kept in the tactful route.
E, search outer layer tunnel, and message be forwarded to Exgress PE side according to strategy,
If the match is successful, also whether the rule searching tunnel according to the classification results correspondence exists.
Do not exist if the result who searches is this outer layer tunnel, then can drive signaling and set up the tunnel as required.
This message is transmitted, to be that the forwarding of outer layer tunnel is handled with LSP (comprising the LSP that common LSP and TE set up): set up the VPN message and transmit the two-layer label mode of use.Ground floor (skin) label exchanges in backbone network inside, has represented a LSP from PE to opposite end PE, and the VPN message utilizes this layer label, just can arrive opposite end PE along LSP.Use the second layer (internal layer) label when opposite end PE arrives CE, vpn label has indicated message to arrive which Site, perhaps more more specifically, arrives which CE.Like this, according to vpn label, just can find the interface that E-Packets.
To being that the forwarding of outer layer tunnel is handled with (tunnels of non-LSP) such as GRE, IPSEC: set up the VPN message and transmit one deck label mode of only using.Owing to there has been the tunnel to exist between Ingress PE and the egress PE, the MPLS message that only needs to have stamped vpn label at ingress PE can reach egree PE by the tunnel interface transmission.Processing in the forwarding of egress PE is constant.
A typical application is, because speech business (VOIP) all has the requirement of comparison strictness to bandwidth and time delay, and present VPN will transmit same the tunnel that pass through that voice and common data message are not done differentiation, can't guarantee the service request of voice like this.And adopt VPN implementation method of the present invention, speech business can be transmitted by the LSP that has bandwidth and time delay to guarantee that TE sets up, and common data message can transmit by GRE or common LSP.The quality of service requirement of speech business just can be guaranteed.
Adopted VPN implementation method of the present invention, because skin can have a lot of bars, the present invention can select the tunnel according to business features, guarantee that professional service quality can reach requirement of client, flow work simultaneously will be not limited only to the business of operator, can support client's business simultaneously, in addition can be according to the needs of private network business, set up the LSP of MPLS TE dynamically, satisfy user's needs.
The above; only for the preferable embodiment of the present invention, but protection scope of the present invention is not limited thereto, and anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; the variation that can expect easily or replacement all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion with the protection range of claims.

Claims (10)

1, a kind of implementation method of MPLS VPN is characterized in that may further comprise the steps:
A, with policy configurations to inlet Virtual Private Network edge device VPN Ingress PE;
B, outlet Virtual Private Network edge side equipment VPN Egress PE send to inlet Virtual Private Network edge side equipment with local virtual private network information;
C, inlet Virtual Private Network edge side equipment mate route and the strategy of receiving, if success enters steps d, otherwise abandons;
D, set up tactful route table items and be saved in the tactful route;
E, search outer layer tunnel,,, then need to drive signaling and set up outer layer tunnel if do not find outer layer tunnel if success is forwarded to outlet Virtual Private Network edge side equipment side with message according to strategy.
2, the implementation method of a kind of MPLS VPN as claimed in claim 1, it is characterized in that described MPLS VPN is Border Gateway Protocol MPLS VPN BGP/MPLS VPN, strategy among the described step a, be meant 5 tuple information according to the IP message, IP priority of messages, the incoming interface information of message are classified to the data message and specific data is transmitted the rule of using outer layer tunnel.
3, the implementation method of a kind of MPLS VPN as claimed in claim 2, it is characterized in that the tactful route table items in the described steps d, be that destination address with 5 tuple information of IP message in the data message classifying rules is revised as in route destination address and the data message classifying rules common factor of destination address, amended data message classifying rules and corresponding outer layer tunnel selective rule generation strategy route in IP message 5 tuple information.
4, the implementation method of a kind of MPLS VPN as claimed in claim 3 is characterized in that among the described step e that usage flag switching path LSP is as outer layer tunnel.
5, the implementation method of a kind of MPLS VPN as claimed in claim 4, it is characterized in that the two-layer label mode of described forwarding processing use, the ground floor label exchanges in backbone network inside, and second layer label exchanges between user network edge router CE at opposite end backbone network edge router PE.
6, the implementation method of a kind of MPLS VPN as claimed in claim 1, it is characterized in that described MPLS VPN is Layer 2 virtual private network L2VPN, strategy among the described step a is meant that service quality QoS field information in incoming interface according to message, the link layer newspaper heading is classified to the data message and specific data is transmitted the rule of using outer layer tunnel.
7, the implementation method of a kind of MPLS VPN as claimed in claim 6 is characterized in that among the described step c, and the content of coupling is that the configuration virtual container VC with incoming interface in the classifying rules and Layer 2 virtual private network mates.
8, the implementation method of a kind of MPLS VPN as claimed in claim 7 is characterized in that tactful route table items in the described steps d, is the tactful route table items that generates with the rule in the step a strategy.
9, the implementation method of a kind of MPLS VPN as claimed in claim 8 is characterized in that among the described step e, uses generic route encapsulation GRE or IP Security Protocol IPSEC as outer layer tunnel.
10, the implementation method of a kind of MPLS VPN as claimed in claim 9 is characterized in that in the described forwarding processing, sets up the virtual private network packet and transmits one deck label mode of using.
CNB021552487A 2002-12-10 2002-12-10 Method of realizing special multiple-protocol label exchanging virtual network Expired - Fee Related CN1254059C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB021552487A CN1254059C (en) 2002-12-10 2002-12-10 Method of realizing special multiple-protocol label exchanging virtual network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB021552487A CN1254059C (en) 2002-12-10 2002-12-10 Method of realizing special multiple-protocol label exchanging virtual network

Publications (2)

Publication Number Publication Date
CN1507230A CN1507230A (en) 2004-06-23
CN1254059C true CN1254059C (en) 2006-04-26

Family

ID=34235819

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB021552487A Expired - Fee Related CN1254059C (en) 2002-12-10 2002-12-10 Method of realizing special multiple-protocol label exchanging virtual network

Country Status (1)

Country Link
CN (1) CN1254059C (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11497068B2 (en) 2015-12-18 2022-11-08 Cisco Technology, Inc. Establishing a private network using multi-uplink capable network devices
US11496294B2 (en) 2013-01-30 2022-11-08 Cisco Technology, Inc. Method and system for key generation, distribution and management
USRE49485E1 (en) 2013-12-18 2023-04-04 Cisco Technology, Inc. Overlay management protocol for secure routing based on an overlay network

Families Citing this family (39)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100428737C (en) * 2005-03-08 2008-10-22 杭州华三通信技术有限公司 Method for reducing VPN network arranging
WO2006094440A1 (en) * 2005-03-08 2006-09-14 Hangzhou H3C Technologies Co., Ltd. A method of virtual local area network exchange and the network device thereof
CN100525227C (en) 2005-03-10 2009-08-05 华为技术有限公司 Method for implementing integrated service access of access network
US7447167B2 (en) * 2005-03-28 2008-11-04 Cisco Technology, Inc. Method and apparatus for the creation and maintenance of a self-adjusting repository of service level diagnostics test points for network based VPNs
CN100387019C (en) * 2005-04-04 2008-05-07 华为技术有限公司 Method for realizing cross-mixed network multi-protocol tag exchange virtual special network
CN100393062C (en) * 2005-05-12 2008-06-04 中兴通讯股份有限公司 Method for core network access to multi-protocol sign exchange virtual special network
CN100409630C (en) * 2005-06-15 2008-08-06 杭州华三通信技术有限公司 Method and system for increasing safety of VPN user
CN100461755C (en) * 2005-08-12 2009-02-11 华为技术有限公司 Data message transmitting method and node equipment based on MPLS TE tunnel
CN100450065C (en) * 2005-09-09 2009-01-07 华为技术有限公司 Method for providing communication between virtual special network stations
CN100571264C (en) * 2005-10-31 2009-12-16 中兴通讯股份有限公司 A kind of cross-domain connection method of label exchange virtual dedicated network in multiprotocol
CN100450093C (en) * 2005-12-30 2009-01-07 华为技术有限公司 Method for providing QoS service for virtual special net user
CN101043429B (en) * 2006-06-05 2010-05-12 华为技术有限公司 Method for establishing multicasting LSP in MPLS field and multicasting data communication system
CN101529814B (en) * 2006-06-12 2012-08-01 北方电讯网络有限公司 Supporting multi-protocol label switching (MPLS) applications over Ethernet switch paths
CN101471880B (en) * 2007-12-27 2011-02-09 华为技术有限公司 Method, system and routing device for processing data
CN101499951B (en) * 2008-02-01 2012-05-23 华为技术有限公司 Tunnel configuration method, virtual access node, virtual edge node and system
CN101340374B (en) * 2008-08-28 2011-01-19 杭州华三通信技术有限公司 Method, system, apparatus for control transmission priority and user network edge equipment
CN101567854B (en) * 2009-05-26 2011-06-29 武汉烽火网络有限责任公司 Ethernet data frame VLAN double-layer label processing device and method based on flow classification
CN101667961B (en) * 2009-09-30 2011-08-24 西安电子科技大学 Policy-routing system based on grid service and dynamic policy-generating method
CN101729422B (en) * 2009-12-09 2012-09-26 杭州华三通信技术有限公司 Method and device for realizing QoS (Quality of Service) by utilizing BGP (Border Gateway Protocol)
CN102170386B (en) * 2010-02-26 2016-02-10 中兴通讯股份有限公司 The implementation method that identify label is separated with position, system and data encapsulation method
CN102377630A (en) * 2011-10-13 2012-03-14 华为技术有限公司 Traffic engineering tunnel-based virtual private network implementation method and traffic engineering tunnel-based virtual private network implementation system
CN102387205B (en) * 2011-10-21 2013-12-25 杭州华三通信技术有限公司 Method and device for locating position of virtual machine
CN103067279B (en) * 2011-10-24 2017-10-10 中兴通讯股份有限公司 VPN interconnected methods and system
CN102904792B (en) * 2012-09-21 2015-03-25 北京华为数字技术有限公司 Service carrying method and router
CN102938734A (en) * 2012-11-26 2013-02-20 杭州华三通信技术有限公司 Tunnel selection method and PE (Provider Edge) in MPLS (Multiprotocol Label Switching) network
CN104301192B (en) * 2013-07-18 2019-06-11 新华三技术有限公司 A kind of network equipment discovery method and device of VPN networking
CN103532857B (en) * 2013-10-28 2016-09-14 北京锐安科技有限公司 The method and device that a kind of data forward
CN104980362B (en) * 2014-04-04 2019-04-12 华为技术有限公司 A kind of service tunnel method for building up and equipment
CN105553810A (en) * 2015-12-14 2016-05-04 中国联合网络通信集团有限公司 Method and device for forwarding special line service packet
CN109167716B (en) * 2018-10-22 2021-02-23 智强通达科技(北京)有限公司 Two-layer virtual private network system based on BGP and use method
CN110035012B (en) * 2018-12-25 2021-09-14 中国银联股份有限公司 SDN-based VPN flow scheduling method and SDN-based VPN flow scheduling system
CN111385204B (en) * 2018-12-27 2022-03-29 中国移动通信集团贵州有限公司 Service transmission method, device, equipment and medium
CN110113243B (en) * 2019-04-29 2021-05-14 电子科技大学 User non-inductive VPN access method based on container technology
CN111865805B (en) * 2020-06-29 2023-01-24 烽火通信科技股份有限公司 Multicast GRE message processing method and system
CN114615108B (en) * 2020-11-23 2023-05-09 中国联合网络通信集团有限公司 Method, platform and equipment for opening special line of virtual private network
CN112437009B (en) * 2020-11-27 2022-07-01 网络通信与安全紫金山实验室 SRv6 method, router, routing system and storage medium for end-to-end flow policy
CN112787940A (en) * 2021-01-27 2021-05-11 哈尔滨工业大学(威海) Multi-level VPN encryption transmission method, system, equipment and storage medium
CN113438164A (en) * 2021-06-07 2021-09-24 中宇联云计算服务(上海)有限公司 Dynamic multi-path optimization method, system and equipment based on cloud network fusion technology
CN113676391A (en) * 2021-08-16 2021-11-19 上海地面通信息网络股份有限公司 Data transmission method, device, communication node and storage medium

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11496294B2 (en) 2013-01-30 2022-11-08 Cisco Technology, Inc. Method and system for key generation, distribution and management
US11516004B2 (en) 2013-01-30 2022-11-29 Cisco Technology, Inc. Method and system for key generation, distribution and management
USRE49485E1 (en) 2013-12-18 2023-04-04 Cisco Technology, Inc. Overlay management protocol for secure routing based on an overlay network
US11497068B2 (en) 2015-12-18 2022-11-08 Cisco Technology, Inc. Establishing a private network using multi-uplink capable network devices
US11497067B2 (en) * 2015-12-18 2022-11-08 Cisco Technology, Inc. Establishing a private network using multi-uplink capable network devices
US11792866B2 (en) 2015-12-18 2023-10-17 Cisco Technology, Inc. Establishing a private network using multi-uplink capable network devices

Also Published As

Publication number Publication date
CN1507230A (en) 2004-06-23

Similar Documents

Publication Publication Date Title
CN1254059C (en) Method of realizing special multiple-protocol label exchanging virtual network
EP2030385B1 (en) Routing protocol with packet network attributes for improved route selection
CN101072183B (en) Data flow service quality assuring method and device
US8542580B2 (en) Method and system for transporting service flow securely in an IP network
US20030133412A1 (en) VLAN to MPLS mapping: method to establish end-to-end traffic path spanning enterprise local area networks and a global network
JP2008515348A5 (en)
US8670320B2 (en) Quality of service routing architecture
WO2002080474A1 (en) Method and apparatus to perform network routing
CN1913523A (en) Method for implementing layer level virtual private exchange service
CN1324164A (en) Communication system, communiction control method, and control program storage medium
CN101035019A (en) Fast convergence method and device of the end-to-end service
CN1852236A (en) Method for realizing muti-casting in BGP/MPLS VPN
CN101645849B (en) QoS realization method in transitional environment and PE router
CN1863127A (en) Method for core network access to multi-protocol sign exchange virtual special network
WO2008011818A1 (en) Method of realizing hierarchy-virtual private lan service and network system
CN101355516B (en) Method and system for providing service quality tactics for various virtual special network
CN1527544A (en) Ethernet exchanger and its service processing method
Shvedov et al. Segment routing in data transmission networks
CN102474451B (en) Connect internal layer and outer MPLS label
CN114205286A (en) Method, system and network equipment for copy mode selection of EVPN multicast
WO2007031006A1 (en) A virtual switching method which could be routed
CN1816003A (en) Telecommunication method and apparatus of dissimilar chain protocol
CN102291317B (en) A kind of retransmission method and device of virtual private network packet
CN1744541A (en) Method for realizing virtual private network business in multi-layer label switch network
CN1881906A (en) Realization method for monitoring network service

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20060426

Termination date: 20151210

EXPY Termination of patent right or utility model