Summary of the invention
Technical problem to be solved by this invention is: the method that the network that carries the multiple business function is carried out unified management is provided.
In order to solve the problems of the technologies described above, the present invention proposes a kind of unified network management that merges based on many nets of view: may further comprise the steps:
A, IP network discovery module are searched for the data link layer and the network layer of network, and with the IP device notice topology server of finding, topology server forms physical topology view;
B, the IP device informing business network that will find are found module, and business network finds that module filters out seed device in IP device;
C, business network discovery module are carried out business network by seed device and are found the formation business topology view;
D, according to the service management needs, in existing topological view, select network node to the integrated service topological view.
Described steps d is also added dummy node and the virtual integrated service topological view that is connected to.
Also comprise step e: the dummy node of setting up described interpolation and the virtual state relation that is connected to network node be connected.
Among the described step e, when setting up state relation, set alarm association.
Further, described IP network finds that the device data of the IP device that module is found can be by the business network read-only access, and the data that the business network discovery produces all can only be used voluntarily.
Modification to physical topology view and business topology view will send to IP network discovery module and corresponding service network discovery module, and IP network discovery module and corresponding service network discovery module are made corresponding conversion.
Preferably, described physical topology view and business topology view all are provided with control of authority.
The invention has the beneficial effects as follows: the network manager can be to the network of a carrying multiple business function, as possessing route switching simultaneously, ip voice, the network of safety function, only use a set of network administration systems to carry out unified management simultaneously to multiple business, and can seamless switching and interrelated, reach multi-service and merge unified management, and the emphasis working angle of being engaged in realizes purpose that the whole network is managed.Scheme of the present invention has changed the keeper must install several set of network administration systems to the present situation that the different business of consolidated network partly manages, and has reduced keeper's investment and complicated operation degree, thereby has strengthened the competitiveness of network management.
Embodiment
Technical scheme of the present invention, the equipment with IP address with all in the whole network is referred to as IP device.Carry out following agreement: the network that IP device is formed is called the basic physics network, and the network that ip voice equipment, security gateway equipment are formed is called business network, and thinks that this business network is carried on the basic physics network.
Embodiment:
System comprises:
Network is found module: comprise indispensable IP network discovery module; And the safety that can match according to the business of the network carrying, business networks such as ip voice are found module.
Topography module: this module is responsible for the data that network is found are handled, and forms concrete view, edits, watches for the keeper, and this module is made up of client/server two parts.
Other module: this part comprises provides administrator authentication, modules such as incident reception and processing and framework, because these modules do not belong to the emphasis of this programme, and need not to illustrate that those skilled in the art just can real piece, because these modules do not belong to the emphasis of this programme, and need not to illustrate that those skilled in the art just can implement, therefore do not describe in detail herein.
As shown in Figure 1, network management system is found module, business network discovery module by IP network, topology server, topological client are formed, and wherein business network finds that module has the ip voice network to find business networks discovery modules such as module, secure network discovery module.IP network finds that module and each business network discovery module link to each other with topology server; IP network finds that module links to each other with each business network discovery module respectively; Topology server links to each other with topological client.
IP network finds that module is in the bottom, it notifies the facility information of finding each business network to find module, each business network discovery module is carried out further business network according to service logic separately and is found, after adding service marker, node that each network discovery is obtained and link information send to topology server, topology server forms a plurality of service views according to this information, presents to the network manager by topological client then.
IP network finds that module is by data link layer and network layer search, the physical network topology figure that will be made up of IP device and the essential information of these equipment search for out, and the physical topology view of formation the whole network: the network manager starts network and finds module, network finds that server loads IP network successively according to configuration file and finds, safety, business networks such as ip voice are found module.In initialization procedure, IP network discovery module can be created a message issuing subject, safety, and business networks such as ip voice discovery module is subscribed to this message.
IP network discovery module is passed through ICMP, snmp protocol carries out the network discovery process of 2 layers, 3 layers (data link layer, network layer) IP device, after finding new equipment, it can read some essential informations by the SNMP mode, the type, the subnet that comprise this equipment, interface etc., the form with message when this information is saved in database is distributed to each subscribing module.Business network finds that module (such as the ip voice business network etc.) according to the rule of definition, screens notifying the equipment that comes.Described rule is kept in the configuration file, and the keeper is flexible customization as required.Equipment by screening is found seed device as this business network, adds concrete business network discovery procedure.For the equipment that possesses the multiple business function, the mapping of oneself can be arranged all on each business topology view.
Each business network finds that module is according to this business features, the seed device of finding with present networks is the entrance, carry out further network and find, the traffic performance that this equipment has is searched for out, and form corresponding basic business topology view according to result who finds and traffic performance.
The various device data that form in network discovery process are found the Equipment Foundations data that module produces except IP network and can be found the module read-only access by business network that all the other each business networks find that the data that form all are to use voluntarily, safeguard voluntarily.
Network is found the nodal information that module forms, link information, notify topology server with the form of message after adding mark, topology server is classified these message according to service marker, form corresponding topological view respectively, as physical topology view (IP View), secured views, ip voice view.For each view, keeper's all operations all can pass to corresponding network and find assembly, and the node that adds on view finds that at network part adds as seed device, and the node of deleting on view also can be deleted in network is found.
After system forms the whole network physical topology view and each basic service view automatically, the keeper can adjust it as required, as from the whole network physical topology view, copying an equipment in the safety service view, for the next node of copy, each business network is found and can independently be carried out the renewal and the search of business information according to the control logic of oneself this equipment as seed device.
The keeper selects required network node from existing topological view in newly-built topological view, also can add virtual node (such as various servers: WEB server, database server etc.) and virtual being connected in this view, form the integrated service topological view.
Preferably, the keeper can choose mode that node derivation/full view derives from postedit from the direct formation logic view of service view by use, and it is decoupling that logical view derives from latter two view.Be that the keeper carries out on logical view, and to increase, delete, change operation such as node connection only influential to this view, service view do not exerted an influence, and also can not have influence on network and find after logical view manually derives from.The keeper can select required network node from existing topological view in newly-built topological view, also can add virtual node (such as various servers: WEB server, database server etc.) and virtual being connected in this view, form a simple and clear integrated service topological view.
After the keeper has set up the integrated service topological view, can also set up topological state relation as required.With the dummy node that adds and the virtual state relation that is connected in the existing topological view the real network node and be connected so that allow the business topology view of fusion of previous step foundation can represent state (with the different state of different color showings) in real time.Such as: one provides the node of WEB service that service will be provided, then need a series of IP device support, if any one breaks down in these equipment, then the WEB server just can not provide service, so just can be with the state relation of this WEB server to the state of this serial equipment.
When setting up state relation, the keeper can also set alarm association.The network equipment and the alarm association that is connected on corresponding dummy node and virtual the connection, are formed dummy node and are connected alarm with virtual, with the network equipment with is connected and alarms, so that the quantity that minimizing is alarmed as the alarm cause record.Such as the alarm of a WEB server, the reason of this alarm can be that any one equipment or the connection that are associated with this WEB server have produced alarm.
Based on the control of authority of the view person of managing, the keeper only can manage the relevant device and the business of respective view.The keeper can be switched arbitrarily in having the view of authority, can open a plurality of views with authority simultaneously and carry out network management.In multi-user environment, the distribution of administrator right is very crucial, and in the present invention, we are by the control of authority of the view person of managing, and the keeper only can manage the relevant device and the business of respective view.The keeper can be switched arbitrarily in having the view of authority, can open a plurality of views with authority simultaneously and carry out network management.So just user right is combined together with many views.