CN1878112A - Method for realizing virtual LAN aggregation and aggregation exchanger - Google Patents

Method for realizing virtual LAN aggregation and aggregation exchanger Download PDF

Info

Publication number
CN1878112A
CN1878112A CN 200610099458 CN200610099458A CN1878112A CN 1878112 A CN1878112 A CN 1878112A CN 200610099458 CN200610099458 CN 200610099458 CN 200610099458 A CN200610099458 A CN 200610099458A CN 1878112 A CN1878112 A CN 1878112A
Authority
CN
China
Prior art keywords
side vlan
message
list item
vlan
acl list
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN 200610099458
Other languages
Chinese (zh)
Other versions
CN100586088C (en
Inventor
刘建锋
宁军
姚民
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou Huawei 3Com Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou Huawei 3Com Technology Co Ltd filed Critical Hangzhou Huawei 3Com Technology Co Ltd
Priority to CN200610099458A priority Critical patent/CN100586088C/en
Publication of CN1878112A publication Critical patent/CN1878112A/en
Application granted granted Critical
Publication of CN100586088C publication Critical patent/CN100586088C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Small-Scale Networks (AREA)

Abstract

The invention discloses a convergence method and exchange to realize VLAN, which comprises the following steps: setting corresponding relationship of different user side VLAN and network side VLAN; receiving the first report from user through user side VLAN for convergence exchange; sending the first report to gateway equipment through user side VLAN according to the set corresponding relationship; accepting the second report through network side VLAN for convergence exchange; sending the second report to corresponding user through user side VLAN according to set corresponding relationship and MAC address with carrying goal in the second report. The invention can proceed report transmission between convergence switch and gateway equipment through the same network side VLAN, which realizes VLAN convergence to save VLAN resource.

Description

Realize the method and the convergence switch of virtual LAN aggregation
Technical field
The present invention relates to the network communications technology, particularly relate to a kind of method and convergence switch of realizing the Virtual Local Area Network polymerization.
Background technology
In numerous broadband networks establishment schemes, IP network is shown one's talent in the establishment of metropolitan area network with its exclusive processing ease, characteristic such as management is simple and technology is flexible, occupies significant proportion.In IP network, mainly be that (layer 3, and L3) switch is a core switching device with three layers, with VLAN is realization means and method, for the user provides the high speed Ethernet Private Line, be used for realizing realizing between high speed Internet access or the intra-company data service and other business of oneself, as video request program and so on.
Fig. 1 is two layers of networking schematic diagram in the prior art.Referring to Fig. 1, in the prior art, in two layers of networking, when a plurality of subscriber's main stations insert different VLAN, subscriber's main station 1 as shown in fig. 1 inserts VLAN1, subscriber's main station 2 inserts VLAN2 and subscriber's main station 3 inserts VLAN3, each VLAN passes through two layers respectively, and (layer2, L2) switch and convergence switch are transparent to gateway device such as terminating on the L3 switch.
Referring to Fig. 1, when carrying out message transmissions, on up direction, each subscriber's main station that inserts different VLAN is sent to convergence switch by the VLAN that inserts separately with message respectively; Each VLAN that convergence switch inserts by subscriber's main station respectively again is sent to gateway device with message; On down direction, the message that gateway device will send to each subscriber's main station is sent to convergence switch by each VLAN that subscriber's main station inserts respectively, and convergence switch is sent to each subscriber's main station by each VLAN that subscriber's main station inserts with message again.
By above description as can be seen, in the prior art, when the different user main frame inserts different VLAN, the message of each subscriber's main station must transmit by different VLAN between convergence switch and gateway device, make that the VLAN quantity between convergence switch and the gateway device is too much, wasted the VLAN resource greatly.
In addition, because the message of different user main frame must transmit by different VLAN between convergence switch and gateway device, therefore, at different VLAN, gateway device must carry out the VLAN finalization process respectively, thereby has increased the service load quantity of gateway device greatly; And at different VLAN, gateway device all must take the routing interface resource of self, thereby has wasted the interface resource of gateway device greatly.
Summary of the invention
In view of this, first purpose of the present invention is to provide a kind of method that realizes VLAN aggregation, second purpose of the present invention is to provide a kind of convergence switch, to guarantee carrying out message transmissions by a VLAN after the polymerization between convergence switch and gateway device, saves the VLAN resource.
In order to achieve the above object, technical scheme of the present invention is achieved in that
A kind of method that realizes virtual LAN aggregation, the corresponding relation of a plurality of user side virtual LAN VLAN and a network side VLAN is set, this method also comprises: convergence switch receives first message that subscriber's main station is sent by the active user's side VLAN among described a plurality of user side VLAN, according to set corresponding relation, first message is sent to gateway device by described network side VLAN; Convergence switch receives second message by described network side VLAN, according to the purpose medium access control MAC address of carrying in the set corresponding relation and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
The described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up the access control list ACL list item, the matched rule in the ACL list item is set and mates the corresponding relation of a plurality of user side VLAN of action record and a network side VLAN.
The described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up up direction ACL list item, matched rule in this up direction ACL list item is set is VLAN that message carries and be designated in described a plurality of user side VLAN sign any one, coupling action in this up direction ACL list item replaces with described network side VLAN for the user side VLAN sign that message is carried sign is set.
Described convergence switch comprises the step that first message is sent to gateway device by described network side VLAN according to set corresponding relation: convergence switch is determined close matched rule in the line direction ACL list item of the identifier of active user's side VLAN of carrying in first message, move according to the coupling in the up direction ACL list item, the VLAN sign of active user's side that first message is carried replaces with the sign of described network side VLAN, by described network side VLAN first message is sent to gateway device then.
The described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up a corresponding down direction ACL list item at each subscriber's main station, the matched rule that is provided with in each down direction ACL list item is the MAC Address of respective user main frame for the message target MAC (Media Access Control) address, and the VLAN that message carries is designated the network side VLAN sign; The coupling action that is provided with in each down direction ACL list item replaces with the user side VLAN sign that this down direction ACL list item institute respective user main frame inserts for the network side VLAN sign that message is carried.
Described convergence switch comprises the step that second message is sent to the respective user main frame by the user side VLAN of correspondence: convergence switch determines that the network side VLAN sign and the target MAC (Media Access Control) address that carry in second message meet a matched rule in the down direction ACL list item, move according to the coupling in this down direction ACL list item that meets, the sign of the network side VLAN that second message is carried replaces with the sign of respective user side VLAN, and the user side VLAN by described correspondence is sent to corresponding subscriber's main station with second message then.
A kind of convergence switch, this convergence switch is used to preserve the corresponding relation of a different user side VLAN and a network side VLAN, after receiving first message by any one user side VLAN, according to the corresponding relation of being preserved, first message is sent to gateway device by described network side VLAN, receive second message that gateway device sends by network side VLAN after, according to the target MAC (Media Access Control) address in the corresponding relation of being preserved and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
Described convergence switch comprises: man-machine interaction unit, MAC Address administrative unit, ACL list item administrative unit and transmitting-receiving processing unit, wherein,
Man-machine interaction unit, a plurality of user side VLAN signs and a network side VLAN sign that administrative staff are imported are sent to ACL list item administrative unit;
The MAC Address administrative unit when detecting each subscriber's main station access, is sent to ACL list item administrative unit with the MAC Address of each subscriber's main station and each user side VLAN sign of access thereof;
ACL list item administrative unit, according to the mac address information of the user side VLAN sign that receives, network side VLAN sign and each subscriber's main station and the user side VLAN sign of access thereof, set up the ACL list item, the matched rule in the ACL list item is set and mates the corresponding relation of a plurality of user side VLAN of action record and a network side VLAN;
The transmitting-receiving processing unit, receive first message that subscriber's main station is sent by active user's side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, first message is sent to gateway device by network side VLAN; Receive second message that gateway device is sent by network side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
Described ACL list item administrative unit, set up up direction ACL list item according to user side VLAN sign that receives and network side VLAN sign, matched rule in the up direction ACL list item is set is VLAN that message carries and be designated in the received user side VLAN sign any one, coupling action in the up direction ACL list item replaces with described network side VLAN for the user side VLAN sign that message is carried sign is set;
Described transmitting-receiving processing unit, when receiving first message, from ACL list item administrative unit, obtain up direction ACL list item, the active user's side vlan identifier that carries in determining first message closes behind the matched rule in the line direction ACL list item, move according to the coupling in the up direction ACL list item, the VLAN sign of active user's side that first message is carried replaces with the sign of network side VLAN, by network side VLAN first message is sent to gateway device then.
Described ACL list item administrative unit, according to the mac address information of the user side VLAN sign that receives, network side VLAN sign and each subscriber's main station and the user side VLAN sign of access thereof, set up a corresponding down direction ACL list item at each subscriber's main station, the matched rule that is provided with in each down direction ACL list item is the MAC Address of respective user main frame for the message target MAC (Media Access Control) address, and the VLAN that message carries is designated the network side VLAN sign; The coupling action that is provided with in each down direction ACL list item replaces with the user side VLAN sign that this down direction ACL list item institute respective user main frame inserts for the network side VLAN sign that message is carried;
Described transmitting-receiving processing unit, when receiving second message, from ACL list item administrative unit, obtain each down direction ACL list item, after network side VLAN sign of carrying in determining second message and target MAC (Media Access Control) address meet a matched rule in the down direction ACL list item, move according to the coupling in this down direction ACL list item that meets, the sign of the network side VLAN that second message is carried replaces with the sign of respective user side VLAN, and the user side VLAN by described correspondence is sent to corresponding subscriber's main station with second message then.
Described MAC Address administrative unit is further used for when detecting a subscriber's main station and withdraw from the user side VLAN of its access, and the MAC Address deletion message of carrying this subscriber's main station MAC Address is sent to ACL list item administrative unit;
ACL list item administrative unit, according to the MAC Address of carrying in the MAC Address deletion message that receives, deletion comprises the down direction ACL list item of this MAC Address.
This shows, in the present invention, between convergence switch and gateway device, carry out message transmissions, thereby realized VLAN aggregation by the same network side VLAN after the polymerization, make the VLAN quantity between convergence switch and the gateway device significantly reduce, saved the VLAN resource.
In addition, owing between convergence switch and gateway device, carry out message transmissions by the same network side VLAN after the polymerization, therefore, gateway device only needs to carry out finalization process at a network side VLAN, thereby greatly reduces the service load quantity of gateway device; And because gateway device only needs at a network side VLAN, therefore, gateway device only need take the routing interface resource of self, has saved the interface resource of gateway device greatly.
Description of drawings
Fig. 1 is two layers of networking schematic diagram in the prior art.
Fig. 2 is a structural representation of realizing the system of VLAN aggregation in the present invention.
Fig. 3 is the basic structure schematic diagram of convergence switch in the present invention.
Fig. 4 is a flow chart of realizing VLAN aggregation in embodiments of the present invention.
Embodiment
The present invention proposes a kind of method that realizes VLAN aggregation, its core concept is: the corresponding relation that a plurality of user side virtual LAN VLAN and a network side VLAN are set; Convergence switch receives first message that subscriber's main station is sent by the active user's side VLAN among described a plurality of user side VLAN, according to set corresponding relation, by described network side VLAN first message is sent to gateway device; Convergence switch receives second message by described network side VLAN, according to purpose medium access control (MAC) address of carrying in the set corresponding relation and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
Wherein, described corresponding relation being set can realize by corresponding access control list (ACL) list item is set in convergence switch.
Accordingly, the invention allows for a kind of convergence switch.This convergence switch is used to preserve the corresponding relation of a different user side VLAN and a network side VLAN, after receiving first message by any one user side VLAN, according to the corresponding relation of being preserved, first message is sent to gateway device by described network side VLAN, receive second message that gateway device sends by network side VLAN after, according to the target MAC (Media Access Control) address in the corresponding relation of being preserved and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
Fig. 3 is the basic structure schematic diagram of convergence switch in the present invention.Referring to Fig. 3, in the present invention, the basic structure of convergence switch can comprise: man-machine interaction unit, MAC Address administrative unit, ACL list item administrative unit and transmitting-receiving processing unit, wherein,
Man-machine interaction unit, a plurality of user side VLAN signs and a network side VLAN sign that administrative staff are imported are sent to ACL list item administrative unit;
The MAC Address administrative unit when detecting each subscriber's main station access, is sent to ACL list item administrative unit with the MAC Address of each subscriber's main station and each user side VLAN sign of access thereof;
ACL list item administrative unit, according to the mac address information of the user side VLAN sign that receives, network side VLAN sign and each subscriber's main station and the user side VLAN sign of access thereof, set up the ACL list item, the matched rule in the ACL list item is set and mates the corresponding relation of a plurality of user side VLAN of action record and a network side VLAN;
The transmitting-receiving processing unit, receive first message that subscriber's main station is sent by active user's side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, first message is sent to gateway device by network side VLAN; Receive second message that gateway device is sent by network side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
In the present invention, described user side VLAN is meant and is positioned at the access side, i.e. the VLAN that directly inserts of subscriber's main station; Described network side VLAN is meant and is positioned at network side, i.e. VLAN between convergence switch and the gateway device
For making the purpose, technical solutions and advantages of the present invention clearer, the present invention is described in further detail below in conjunction with drawings and the specific embodiments.
Fig. 4 is a flow chart of realizing VLAN aggregation in embodiments of the present invention.Referring to Fig. 2, Fig. 3 and Fig. 4, in the present invention, such as three subscriber's main stations is subscriber's main station 1, subscriber's main station and subscriber's main station 3, insert different user side VLAN respectively, be VLAN1, VLAN2 and VLAN3, the present invention realizes VLAN aggregation, is that VLAN4 realizes that the process of message transmissions may further comprise the steps by same network side VLAN promptly:
Step 401: the man-machine interaction unit of administrative staff in convergence switch imported a plurality of user side VLAN signs and a network side VLAN sign.
Such as, the user side VLAN sign that administrative staff imported comprises VLAN1, VLAN2 and VLAN3, the network side VLAN of being imported sign comprises VLAN4.
Step 402: in convergence switch, man-machine interaction unit is sent to ACL list item administrative unit with received a plurality of user side VLAN signs and a network side VLAN sign.
Step 403: after subscriber's main station 1, subscriber's main station 2 and subscriber's main station 3 inserted by VLAN1, VLAN2 and VLAN3 respectively, the MAC Address administrative unit in the convergence switch detected the MAC Address of the main frame 1 that Adds User, subscriber's main station 2 and subscriber's main station 3 and the VLAN sign of access thereof.
The user side VLAN sign of step 404:MAC memory manage unit MAC Address that will increase newly, each subscriber's main station and access thereof is sent to ACL list item administrative unit.
In above-mentioned steps 403 to step 404, MAC Address and VLAN that the MAC Address administrative unit detected and be sent to the subscriber's main station of ACL list item administrative unit are designated: subscriber's main station 1 corresponding MAC1 and VLAN1, subscriber's main station 2 corresponding MAC2 and VLAN2, subscriber's main station 3 corresponding MAC3 and VLAN3.
Step 405:ACL list item administrative unit is set up up direction ACL list item according to a plurality of user side VLAN signs that receive and a network side VLAN sign.
Here, comprise matched rule and coupling action in the up direction ACL list item.
Wherein, matched rule is: the VLAN that message carries is designated any one in the described user side VLAN sign, i.e. VLAN1, or VLAN2, or VLAN3.
The coupling action is: the user side VLAN sign that message is carried replaces with the network side VLAN sign, and just VLAN1 that message is carried or VLAN2 or VLAN3 replace with VLAN4.
Step 406:ACL list item administrative unit is set up a corresponding down direction ACL list item according to the MAC Address of a plurality of user side VLAN signs that receive, a network side VLAN sign and each subscriber's main station and the VLAN sign of access thereof at each subscriber's main station.
Here, include matched rule and coupling action in each down direction ACL list item.
Wherein, with subscriber's main station 1 corresponding down direction ACL list item 1 in, matched rule is: the message target MAC (Media Access Control) address is MAC1, and the VLAN that carries of message is designated network side VLAN sign, i.e. VLAN4.The coupling action is: the network side VLAN sign that message is carried replaces with the user side VLAN sign that 1 respective user main frame of this down direction ACL list item 1 inserts, and just the VLAN4 that message is carried replaces with VLAN1.
With subscriber's main station 2 corresponding down direction ACL list items 2 in, matched rule is: the message target MAC (Media Access Control) address equals MAC2, and the VLAN that carries of message is designated network side VLAN sign, i.e. VLAN4.The coupling action is: the network side VLAN sign that message is carried replaces with the user side VLAN sign that 2 respective user main frames of this down direction ACL list item 2 insert, and just the VLAN4 that message is carried replaces with VLAN2.
With subscriber's main station 3 corresponding down direction ACL list items 3 in, matched rule is: the message target MAC (Media Access Control) address equals MAC3, and the VLAN that carries of message is designated network side VLAN sign, i.e. VLAN4.The coupling action is: the network side VLAN sign that message is carried replaces with the user side VLAN sign that 3 respective user main frames of this down direction ACL list item 3 insert, and just the VLAN4 that message is carried replaces with VLAN3.
Step 407: on up direction, a subscriber's main station such as subscriber's main station 1, is that VLAN1 is carried in the message 1 and is sent to convergence switch with the sign of the user side VLAN that inserted.
Step 408: in convergence switch, the transmitting-receiving processing unit obtains up direction ACL list item from ACL list item administrative unit after receiving message 1 on the up direction.
Step 409: the transmitting-receiving processing unit determines that the user side VLAN sign of carrying in the message 1 is that VLAN1 meets the matched rule in the up direction ACL list item.
Here, because being the VLAN that message carries, the matched rule in the up direction ACL list item is designated user side VLAN sign, i.e. VLAN1, or VLAN2, or VLAN3.Therefore, in this step, the transmitting-receiving processing unit can determine that the VLAN1 that carries in the message 1 meets the matched rule in the up direction ACL list item.
Step 410: the transmitting-receiving processing unit is according to the action of the coupling in the up direction ACL list item, that is, the user side VLAN sign that message is carried replaces with the network side VLAN sign, carries out the VLAN1 that carries in the message 1 is replaced with VLAN4.
Step 411: the transmitting-receiving processing unit is sent to gateway device by VLAN4 with message 1.
For other subscriber's main stations, promptly subscriber's main station 2 and subscriber's main station 3 are identical to the principle of step 411 process in the process and the above-mentioned steps 407 of up direction transmission message.
Step 412: on down direction, when gateway device need be to a subscriber's main station, such as subscriber's main station 1, during downward message 2, gateway device is that MAC1 is carried in the message 2 as target MAC (Media Access Control) address with the MAC Address of subscriber's main station 1, and be that VLAN4 is carried in the message 2 with the sign of network side VLAN, then message 2 is sent to convergence switch.
Step 413: in convergence switch, the transmitting-receiving processing unit obtains each down direction ACL list item from ACL list item administrative unit after receiving message 2 on the down direction.
Step 414: the transmitting-receiving processing unit mates the target MAC (Media Access Control) address that carries in the message 2 and network side VLAN sign and matched rule in each down direction ACL list item.
Step 415: when the matched rule in the target MAC (Media Access Control) address that the transmitting-receiving processing unit carries in determining message 2 and network side VLAN sign and the down direction ACL list item 1 is complementary, according to the action of the coupling in the down direction ACL list item 1, the VLAN4 that carries in the message 2 is replaced with VLAN1.
Here, because in the down direction ACL list item 1 at subscriber's main station 1, matched rule is: the message target MAC (Media Access Control) address is MAC1, and the VLAN that message carries is designated network side VLAN sign, i.e. VLAN4.Therefore, the transmitting-receiving processing unit is MAC1 according to the target MAC (Media Access Control) address that carries in the message 2, and the VLAN that carries is designated VLAN4, can match down direction ACL list item 1.And, replace with VLAN1 according to the action of the coupling in the down direction ACL list item 1 for the VLAN4 that message is carried, carry out the VLAN4 that carries in the message 2 is replaced with VLAN1.
Step 416: the transmitting-receiving processing unit is sent to subscriber's main station 1 by VLAN1 with message 2.
For other subscriber's main stations, promptly subscriber's main station 2 and subscriber's main station 3 are identical to the principle of step 416 process in the process and the above-mentioned steps 412 of down direction transmission message.
Need to prove, there is no proper sequence requirement between each step described in above-mentioned Fig. 4, be for convenience of description and the different step that splits.Such as, describe message the step 407 of up direction transmission course to step 411 with describe message in the step 412 of down direction transmission course to the sequencing that does not have between the step 416 to fix etc.
In the present invention, utilize MAC Address administrative unit and all right dynamic management that further realizes subscriber's main station of ACL list item administrative unit in the convergence switch, in communication process, when a subscriber's main station inserts user side VLAN and withdraws from user side VLAN, cooperation by MAC Address administrative unit and ACL list item administrative unit can realize upgrading dynamically relevant ACL list item, thereby guarantees to utilize the network side VLAN after the polymerization to finish message transmissions exactly.Particularly, work as subscriber's main station, when inserting user side VLAN1 such as subscriber's main station 1, according to above-mentioned process shown in Figure 4, the present invention can set up relevant up direction ACL list item and down direction ACL list item at the subscriber's main station 1 of this access; When this subscriber's main station 1 withdraws from user side VLAN1, the MAC Address administrative unit can detect this subscriber's main station l and disconnect and being connected of VLAN1, therefore, the MAC Address deletion message of carrying MAC 1 information can be sent to ACL list item administrative unit, ACL list item administrative unit is according to the MAC1 information of carrying in this MAC Address deletion message, deletion comprises the down direction ACL list item 1 of MAC1 information, for up direction ACL list item, can with in its matched rule about the information deletion of VLAN1, can not delete yet.
In a word, the above is preferred embodiment of the present invention only, is not to be used to limit protection scope of the present invention.Within the spirit and principles in the present invention all, any modification of being done, be equal to replacement, improvement etc., all should be included within protection scope of the present invention.

Claims (11)

1, a kind of method that realizes virtual LAN aggregation, it is characterized in that, the corresponding relation of a plurality of user side virtual LAN VLAN and a network side VLAN is set, this method also comprises: convergence switch receives first message that subscriber's main station is sent by the active user's side VLAN among described at least two user side VLAN, according to set corresponding relation, first message is sent to gateway device by described network side VLAN; Convergence switch receives second message by described network side VLAN, according to the purpose medium access control MAC address of carrying in the set corresponding relation and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
2, method according to claim 1, it is characterized in that, the described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up the access control list ACL list item, the matched rule in the ACL list item is set and mates the corresponding relation of a plurality of user side VLAN of action record and a network side VLAN.
3, method according to claim 2, it is characterized in that, the described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up up direction ACL list item, matched rule in this up direction ACL list item is set is VLAN that message carries and be designated in described a plurality of user side VLAN sign any one, coupling action in this up direction ACL list item replaces with described network side VLAN for the user side VLAN sign that message is carried sign is set.
4, method according to claim 3, it is characterized in that, described convergence switch comprises the step that first message is sent to gateway device by described network side VLAN according to set corresponding relation: convergence switch is determined close matched rule in the line direction ACL list item of the identifier of active user's side VLAN of carrying in first message, move according to the coupling in the up direction ACL list item, the VLAN sign of active user's side that first message is carried replaces with the sign of described network side VLAN, by described network side VLAN first message is sent to gateway device then.
5, according to claim 2,3 or 4 described methods, it is characterized in that, the described step that a plurality of user side VLAN and a network side VLAN corresponding relation are set comprises: convergence switch is set up a corresponding down direction ACL list item at each subscriber's main station, the matched rule that is provided with in each down direction ACL list item is the MAC Address of respective user main frame for the message target MAC (Media Access Control) address, and the VLAN that message carries is designated the network side VLAN sign; The coupling action that is provided with in each down direction ACL list item replaces with the user side VLAN sign that this down direction ACL list item institute respective user main frame inserts for the network side VLAN sign that message is carried.
6, method according to claim 5, it is characterized in that, described convergence switch comprises the step that second message is sent to the respective user main frame by the user side VLAN of correspondence: convergence switch determines that the network side VLAN sign and the target MAC (Media Access Control) address that carry in second message meet a matched rule in the down direction ACL list item, move according to the coupling in this down direction ACL list item that meets, the sign of the network side VLAN that second message is carried replaces with the sign of respective user side VLAN, and the user side VLAN by described correspondence is sent to corresponding subscriber's main station with second message then.
7, a kind of convergence switch, it is characterized in that, this convergence switch is used to preserve the corresponding relation of a different user side VLAN and a network side VLAN, after receiving first message by any one user side VLAN, according to the corresponding relation of being preserved, first message is sent to gateway device by described network side VLAN, receive second message that gateway device sends by network side VLAN after, according to the target MAC (Media Access Control) address in the corresponding relation of being preserved and second message, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
8, convergence switch according to claim 7 is characterized in that, described convergence switch comprises: man-machine interaction unit, MAC Address administrative unit, ACL list item administrative unit and transmitting-receiving processing unit, wherein,
Man-machine interaction unit, a plurality of user side VLAN signs and a network side VLAN sign that administrative staff are imported are sent to ACL list item administrative unit;
The MAC Address administrative unit when detecting each subscriber's main station access, is sent to ACL list item administrative unit with the MAC Address of each subscriber's main station and each user side VLAN sign of access thereof;
ACL list item administrative unit, according to the mac address information of the user side VLAN sign that receives, network side VLAN sign and each subscriber's main station and the user side VLAN sign of access thereof, set up the ACL list item, the matched rule in the ACL list item is set and mates the corresponding relation of a plurality of user side VLAN of action record and a network side VLAN;
The transmitting-receiving processing unit, receive first message that subscriber's main station is sent by active user's side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, first message is sent to gateway device by network side VLAN; Receive second message that gateway device is sent by network side VLAN, from ACL list item administrative unit, obtain the ACL list item, according to the matched rule a plurality of user side VLAN that action is write down with coupling of ACL list item and the corresponding relation of a network side VLAN, second message is sent to the subscriber's main station of correspondence by the user side VLAN of correspondence.
9, convergence switch according to claim 8, it is characterized in that, described ACL list item administrative unit, set up up direction ACL list item according to user side VLAN sign that receives and network side VLAN sign, matched rule in the up direction ACL list item is set is VLAN that message carries and be designated in the received user side VLAN sign any one, coupling action in the up direction ACL list item replaces with described network side VLAN for the user side VLAN sign that message is carried sign is set;
Described transmitting-receiving processing unit, when receiving first message, from ACL list item administrative unit, obtain up direction ACL list item, the active user's side vlan identifier that carries in determining first message closes behind the matched rule in the line direction ACL list item, move according to the coupling in the up direction ACL list item, the VLAN sign of active user's side that first message is carried replaces with the sign of network side VLAN, by network side VLAN first message is sent to gateway device then.
10, according to Claim 8 or 9 described convergence switches, it is characterized in that, described ACL list item administrative unit, according to the mac address information of the user side VLAN sign that receives, network side VLAN sign and each subscriber's main station and the user side VLAN sign of access thereof, set up a corresponding down direction ACL list item at each subscriber's main station, the matched rule that is provided with in each down direction ACL list item is the MAC Address of respective user main frame for the message target MAC (Media Access Control) address, and the VLAN that message carries is designated the network side VLAN sign; The coupling action that is provided with in each down direction ACL list item replaces with the user side VLAN sign that this down direction ACL list item institute respective user main frame inserts for the network side VLAN sign that message is carried;
Described transmitting-receiving processing unit, when receiving second message, from ACL list item administrative unit, obtain each down direction ACL list item, after network side VLAN sign of carrying in determining second message and target MAC (Media Access Control) address meet a matched rule in the down direction ACL list item, move according to the coupling in this down direction ACL list item that meets, the sign of the network side VLAN that second message is carried replaces with the sign of respective user side VLAN, and the user side VLAN by described correspondence is sent to corresponding subscriber's main station with second message then.
11, convergence switch according to claim 10, it is characterized in that, described MAC Address administrative unit, be further used for when detecting a subscriber's main station and withdraw from the user side VLAN of its access, the MAC Address deletion message of carrying this subscriber's main station MAC Address is sent to ACL list item administrative unit;
ACL list item administrative unit, according to the MAC Address of carrying in the MAC Address deletion message that receives, deletion comprises the down direction ACL list item of this MAC Address.
CN200610099458A 2006-07-20 2006-07-20 Method for realizing virtual LAN aggregation and aggregation exchanger Expired - Fee Related CN100586088C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200610099458A CN100586088C (en) 2006-07-20 2006-07-20 Method for realizing virtual LAN aggregation and aggregation exchanger

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200610099458A CN100586088C (en) 2006-07-20 2006-07-20 Method for realizing virtual LAN aggregation and aggregation exchanger

Publications (2)

Publication Number Publication Date
CN1878112A true CN1878112A (en) 2006-12-13
CN100586088C CN100586088C (en) 2010-01-27

Family

ID=37510415

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200610099458A Expired - Fee Related CN100586088C (en) 2006-07-20 2006-07-20 Method for realizing virtual LAN aggregation and aggregation exchanger

Country Status (1)

Country Link
CN (1) CN100586088C (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2008077347A1 (en) * 2006-12-25 2008-07-03 Huawei Technologies Co., Ltd. Link aggregation method, device, mac frame receiving/sending method and system
WO2010012143A1 (en) * 2008-07-26 2010-02-04 中兴通讯股份有限公司 Method and system of virtual local area network data forwarding
CN102415065A (en) * 2009-03-26 2012-04-11 博科通讯系统有限公司 Redundant host connection in a routed network
CN102546414A (en) * 2012-01-06 2012-07-04 北京星网锐捷网络技术有限公司 Message forwarding method, device and system
WO2015123853A1 (en) * 2014-02-21 2015-08-27 华为技术有限公司 Data flow processing method and apparatus
WO2017186181A1 (en) * 2016-04-29 2017-11-02 新华三技术有限公司 Network access control
CN111555972A (en) * 2020-04-10 2020-08-18 深圳震有科技股份有限公司 Aggregation method, system and storage medium of aggregated link
CN112887117A (en) * 2019-11-29 2021-06-01 中国移动通信有限公司研究院 Method, device and medium for accessing and configuring network slice
CN113079076A (en) * 2021-03-23 2021-07-06 新华三软件有限公司 Message forwarding method and device
CN114978809A (en) * 2022-06-23 2022-08-30 惠州华阳通用电子有限公司 Vehicle-mounted Ethernet VLAN node configuration method

Cited By (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9154330B2 (en) 2006-12-25 2015-10-06 Huawei Technologies Co., Ltd. Method and device of link aggregation and method and system for transceiving MAC frames
WO2008077347A1 (en) * 2006-12-25 2008-07-03 Huawei Technologies Co., Ltd. Link aggregation method, device, mac frame receiving/sending method and system
WO2010012143A1 (en) * 2008-07-26 2010-02-04 中兴通讯股份有限公司 Method and system of virtual local area network data forwarding
CN102415065A (en) * 2009-03-26 2012-04-11 博科通讯系统有限公司 Redundant host connection in a routed network
CN102415065B (en) * 2009-03-26 2015-08-05 博科通讯系统有限公司 The method and apparatus that redundant host connects in the network having route
CN102546414A (en) * 2012-01-06 2012-07-04 北京星网锐捷网络技术有限公司 Message forwarding method, device and system
CN102546414B (en) * 2012-01-06 2015-04-22 北京星网锐捷网络技术有限公司 Message forwarding method, device and system
US10116554B2 (en) 2014-02-21 2018-10-30 Huawei Technologies Co., Ltd. Data flow processing method and apparatus
WO2015123853A1 (en) * 2014-02-21 2015-08-27 华为技术有限公司 Data flow processing method and apparatus
WO2017186181A1 (en) * 2016-04-29 2017-11-02 新华三技术有限公司 Network access control
US11025631B2 (en) 2016-04-29 2021-06-01 New H3C Technologies Co., Ltd. Network access control
CN112887117A (en) * 2019-11-29 2021-06-01 中国移动通信有限公司研究院 Method, device and medium for accessing and configuring network slice
CN112887117B (en) * 2019-11-29 2023-09-19 中国移动通信有限公司研究院 Method, equipment and medium for accessing and configuring network slice
CN111555972A (en) * 2020-04-10 2020-08-18 深圳震有科技股份有限公司 Aggregation method, system and storage medium of aggregated link
CN113079076A (en) * 2021-03-23 2021-07-06 新华三软件有限公司 Message forwarding method and device
CN114978809A (en) * 2022-06-23 2022-08-30 惠州华阳通用电子有限公司 Vehicle-mounted Ethernet VLAN node configuration method
CN114978809B (en) * 2022-06-23 2024-01-12 惠州华阳通用电子有限公司 Vehicle-mounted Ethernet VLAN node configuration method

Also Published As

Publication number Publication date
CN100586088C (en) 2010-01-27

Similar Documents

Publication Publication Date Title
CN1878112A (en) Method for realizing virtual LAN aggregation and aggregation exchanger
CN1286297C (en) Method of realizing sign delivery of user's position
CN101075962A (en) Method and apparatus for realizing DHCP repeater in two-layer network exchanger
CN1913523A (en) Method for implementing layer level virtual private exchange service
CN101051923A (en) Multicast control method in ether passive optical network
CN101616014B (en) Method for realizing cross-virtual private local area network multicast
CN1866904A (en) Method and apparatus for astringing two layer MAC address
CN1866910A (en) Data message transmission method and Ethernet bridge apparatus based on VLAN
CN1946041A (en) VLAN polymerizing method, converging exchanger and system based on ARP detector intercept
CN1741492A (en) Equiment and method for controlling group transmitting data retransmission
CN1863129A (en) System based on two layer VPN foreign medium communication and method thereof
CN1859304A (en) Method for realizing neighbour discovery
CN1809032A (en) Method of dynamically learning address on MAC layer
CN1716904A (en) Group broadcast realizing method based on multiple service transmission platform
CN101052022A (en) System and method for virtual special net user to access public net
CN101047695A (en) Method for implementing selection of multi-service and dynamic service in digital customer line
CN101056267A (en) Layer 2 forwarding method and forwarding device
CN1297105C (en) Method for implementing multirole main machine based on virtual local network
CN101035088A (en) Method, system and access device for realizing the intercommunication of two layers of local specific service
CN1917521A (en) Method and system for realizing load balancing, and load balancing equipment
CN1889448A (en) Method and system for crossing virtual local network group broadcasting under assigned source group broadcasting protocol extraneous group broadcasting mode
CN101079775A (en) Method for dividing virtual LAN, data transfer and wireless packet gateway
CN1870588A (en) Implementing method and system for support VPLS service on IP skeletal network
CN1741499A (en) Virtual circuit exchanging method based on MAC studying
CN1863089A (en) Method for configurating slave node of virtual LAN

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: NEW H3C TECHNOLOGIES Co.,Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: HANGZHOU H3C TECHNOLOGIES Co.,Ltd.

CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20100127