CN1968184A - Link layer communication method in LAN and network device thereof - Google Patents

Link layer communication method in LAN and network device thereof Download PDF

Info

Publication number
CN1968184A
CN1968184A CNA2005101236474A CN200510123647A CN1968184A CN 1968184 A CN1968184 A CN 1968184A CN A2005101236474 A CNA2005101236474 A CN A2005101236474A CN 200510123647 A CN200510123647 A CN 200510123647A CN 1968184 A CN1968184 A CN 1968184A
Authority
CN
China
Prior art keywords
network
mac address
address
message
local area
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CNA2005101236474A
Other languages
Chinese (zh)
Other versions
CN100596358C (en
Inventor
王飓
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
New H3C Technologies Co Ltd
Original Assignee
Hangzhou Huawei 3Com Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou Huawei 3Com Technology Co Ltd filed Critical Hangzhou Huawei 3Com Technology Co Ltd
Priority to CN200510123647A priority Critical patent/CN100596358C/en
Publication of CN1968184A publication Critical patent/CN1968184A/en
Application granted granted Critical
Publication of CN100596358C publication Critical patent/CN100596358C/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention relates to a chain layer communication method of local network, wherein the invention comprises that: setting virtual MAC address for local network; building relation between MAC address and node mark; before edge device sends report to external network, replacing the MAC address of communication node with virtual MAC address; when the edge device receives the report whose target address has virtual MAC address, based on the relation, replacing the virtual MAC address with relative MAC address to be transferred. The invention only learns and transmits MAC address in local network, to limit the number of MAC address, save MAC list resource of chain layer, and improve network property.

Description

The link layer communications method of Local Area Network and the network equipment of application thereof
Technical field
The present invention relates to the data link layer technology of packet network, relate in particular to the link layer communications method of Local Area Network and use the network equipment of this method.
Background technology
Development along with metropolitan area network, Ethernet connects quilt employing more and more widely, a kind of new data link layer VPN (Virtual Private Network, virtual private networks) technology, VPLS (Virtual PrivateLAN Service, virtual private LAN service) fast development is got up.Pass through VPLS, a plurality of LAN (Local Area Network, local area network (LAN)) or VLAN (Virtual Local Area Network, VLAN) can be linked together, realization is striden the link layer message of WAN (Wide Area Network, wide area network) and is transmitted.
Typical VPLS networking structure as shown in Figure 1, zone (Site) Site_1 to region S ite_6 by CE (Custom Edge, user's edge device) with PE (Provider Edge, service provider's edge device) connects, wherein CE is the subscriber equipment that is connected with service provider's network, Site is with a user side network that CE was connected, and PE is for being used for connecting the equipment of user side network in service provider's the network.P in the network of service provider inside (Provider, service provider's nucleus equipment) couples together each PE.
By VPLS, the region S ite_1 among Fig. 1, Site_2, Site_4 and Site_6 can be included among the VPN, and region S ite_3 and Site_5 are included among another VPN, between each Site among the same VPN in the link layer intercommunication.Networking like this can expand to metropolitan area network with VPN easily, makes the service provider that the LAN service of a virtual private can be provided for the user easily.
In LAN inside, the network equipment carries out the forwarding of link layer message by study MAC (Media Access Control, medium access control system) address.Figure 2 shows that the simplest VPLS structure, Site 241 and Site 242 belong to same VPN, CE 231 inserts PE 221 with Site 241, CE 232 inserts PE 222 with Site 242, P 210 couples together PE 221 and PE 222, then the PC among the Site 241 (Personal Computer, personal computer) 251,252 can carry out link layer communications by each equipment that is connected therebetween with the PC 253,254 among the Site 242.
When PC 251 when PC 253 sends messages, by forwarded hop-by-hop, CE 231, PE 221, PE 222, CE 232 pass through the MAC Address self study, the source MAC of having preserved this message in MAC shows is the MAC Address of PC 251; Equally, when PC 253 when PC 251 sends messages, CE 232, PE 222, PE 221, CE 231 learn the MAC Address of PC 253 again.
As seen, all network equipments need be learnt the MAC Address of all communication nodes in this VPN in VPN.Especially for the PE equipment that connects a plurality of VPN among Fig. 1, need the MAC Address among the VPN of all connections of study.
The VPLS technology has also greatly been expanded the capacity of VPN when making things convenient for user networking, and the capacity that is used for the MAC table of store M AC address in the network equipment is limited.The capacity of the MAC table of prior network device can't satisfy the needs of large-scale VPLS networking, the network equipment can't learn to exceed the part MAC Address of MAC table capacity, cause the node of this part MAC Address possibly can't proper communication, or the process that the time need broadcast repeatedly of communication, network performance caused have a strong impact on.
Summary of the invention
The present invention will solve is the problem that the network equipment need be learnt in the prior art MAC Address too much causes network performance to descend.
The link layer communications method of Local Area Network is in order to realize that by at least one edge device a plurality of communication nodes in the described Local Area Network and external network in the intercommunication of link layer, may further comprise the steps among the present invention:
For Local Area Network is provided with virtual medium access control system MAC Address;
Set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification;
Edge device replaces with its virtual mac address with the MAC Address of communication node in this Local Area Network in the message before outside forwarded message;
When edge device receives the message that comprises virtual mac address in the destination address,, transmit this message after virtual mac address replaced with corresponding MAC Address according to the MAC Address of communication node and the corresponding relation of node identification.
Preferably, described node identification is the network layer address of communication node.
Preferably, described network layer address is the IP address;
Describedly set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification is specially: before outside forwarded ARP message, write down the corresponding relation of source MAC and source IP address in this ARP message at edge device.
Preferably, the MAC Address in the message that the ARP message that the subtend external network is transmitted, edge device are replaced with virtual mac address comprises source MAC in the ARP header and the request source MAC Address in the ARP message body.
Alternatively, described network layer address is the IP address;
Describedly set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification is specially:
Communication node in the configuring area network carries out gratuitous ARP broadcasting;
Edge device recorder to gratuitous ARP packet in the corresponding relation of source MAC and source IP address.
Preferably, described Local Area Network comprises the region S ite of virtual private LAN service VPLS and user's edge device CE of this Site;
Described external network comprise VPLS service provider's edge device PE and with described Local Area Network at least one Site in same virtual private network VPN;
Described edge device is CE or PE.
Preferably, described Local Area Network comprises a part communication node in the link layer network, described external network comprises the communication node outside the Local Area Network in this link layer network, the communication node energy in the Local Area Network and can only carry out link layer communications by edge device and external network.
First kind of network equipment of the present invention couples together at least one Local Area Network and its external network at link layer, comprise local network interface unit, memory cell, address conversioning unit and external network interface unit, wherein:
The local network interface unit be used for Local Area Network in communication node carry out link layer message and transmit;
The external network interface unit is used for carrying out link layer message with external network and transmits;
Memory cell is used for storing the virtual mac address of institute's join domain network, and the MAC Address of communication node and the corresponding relation of its node identification in this Local Area Network;
Address conversioning unit be used for with outside network interface unit be in the message of outgoing interface in this Local Area Network the MAC Address of communication node be converted to virtual mac address, and, will be that virtual mac address in the message of outgoing interface is converted to corresponding MAC Address with the local network interface unit according to the MAC Address of communication node and the corresponding relation of node identification.
Preferably, described node identification is the network layer address of communication node;
Described network layer address is the IP address;
The described network equipment comprises that also ARP intercepts the unit, join domain network interface unit, memory cell and address conversioning unit, be used in the message that with outside network interface unit is outgoing interface, identifying message from the ARP of this Local Area Network, with the corresponding relation write storage unit of source MAC in the ARP message and source IP address, and this ARP message outputed to address conversioning unit.
Alternatively, described node identification is the network layer address of communication node;
Described network layer address is the IP address;
The described network equipment comprises that also ARP intercepts the unit, is used for discerning the gratuitous ARP packet from the local network interface unit, with the corresponding relation write storage unit of source MAC in the gratuitous ARP packet and source IP address.
The link layer communications method of another kind of Local Area Network of the present invention is in order to realize that by at least one edge device a plurality of communication nodes in the described Local Area Network and external network in the intercommunication of link layer, may further comprise the steps:
At least one virtual mac address is set on described edge device;
The message that Local Area Network sends to external network arrives edge device;
Edge device is revised as virtual mac address with the MAC Address of communication node in the Local Area Network in this message, and transmits this message.
Preferably, described method also comprises:
The message that external network is sent to Local Area Network reaches edge device;
Edge device is revised as the MAC Address of the communication node with described message purpose network layer address with the virtual mac address in the described message, and transmits described message.
Preferably, described purpose network layer address is purpose IP address;
Described method also comprises: the ARP table by searching edge device or carry out the MAC Address that ARP resolving obtains having the communication node of described purpose IP address.
Preferably, when having the virtual mac address of surpassing, described edge device is revised as virtual mac address with the MAC Address of communication node and is specially: edge device is according to the MAC Address of communication node and the transformation rule of virtual mac address, and the MAC Address of communication node in the Local Area Network is converted to virtual mac address.
Second kind of network equipment of the present invention is positioned at the carrier network edge with thinking that the region S ite of at least one virtual private network provides service, comprising:
The VPN user interface section, be used for VPN Site in main frame carry out link layer message and transmit;
The carrier network interface unit, be used for carrier network in other equipment carry out link layer message and transmit;
The MAC memory cell is used for being stored in the virtual mac address that has uniqueness in the carrier network, and corresponding with host MAC address among the VPN Site and can represent the host identification of this main frame unique identity in this VPN;
The MAC Address converting unit is used for the MAC Address of main frame among the Site in the VPN Site uplink message is converted to virtual mac address, and according to the corresponding relation of MAC Address and host identification, the virtual mac address in the downlink message is converted to corresponding MAC Address.
Preferably, described host identification is the IP address of this main frame;
The described network equipment also comprises the ARP monitoring unit, connect VPN user interface section, MAC memory cell and MAC Address converting unit, be used in uplink message, identifying the ARP message, the corresponding relation of source MAC in the ARP message and source IP address is write the MAC memory cell, and this ARP message is outputed to the MAC Address converting unit.
Alternatively, host identification is the VLAN ID VLAN ID at this main frame place among the described VPN Site.
The third network equipment of the present invention comprises:
First port set comprises at least one port, connects at least one Local Area Network;
Second port set comprises at least one port, connects the external network of described Local Area Network;
Crosspoint, to being the message of outlet from first port set, with second port set, the MAC Address of communication node in the wherein said Local Area Network replaced with virtual mac address after, transmit from second port set.
Preferably, described crosspoint is the message of outlet to from second port set with first port set, wherein virtual mac address is replaced with the MAC Address of the communication node with this message purpose network layer address after, transmit from first port set.
Preferably, the described network equipment also comprises the map addresses memory cell, connects crosspoint, is used for the network layer address of communication node and the corresponding relation of MAC Address in the storage area network.
Preferably, described network layer address is the IP address;
The described network equipment also comprises the ARP unit, is used for depositing the map addresses memory cell in according to the corresponding relation that generates IP address and MAC Address from the ARP message of first port set.
The present invention is by being divided into the link layer network Local Area Network and the external network that couples together with edge device, communication node is at the unified virtual mac address that adopts Local Area Network when external network sends message in the Local Area Network, when receiving the message of external network, find corresponding purpose communication node according to the network layer address in the message, make only portion's study within it and propagating of MAC Address in this Local Area Network, and externally only need learn a virtual mac address to this Local Area Network in the network, thereby limited the quantity of study MAC Address effectively, saved the MAC table resource of link layer device, avoided influencing the performance of network because of the scale of link layer network.
Description of drawings
Fig. 1 is a VPLS networking structure schematic diagram;
Fig. 2 is the VPN syndeton schematic diagram of striding metropolitan area network;
Fig. 3 is the flow chart of link layer communications method described in the first embodiment of the invention;
Fig. 4 is first kind of structure chart of the network equipment described in the second embodiment of the invention;
Fig. 5 is second kind of structure chart of the network equipment described in the second embodiment of the invention;
Fig. 6 is the flow chart of link layer communications method described in the third embodiment of the invention;
Fig. 7 is the structure chart of the network equipment described in the fifth embodiment of the invention;
Fig. 8 uses MAC Address conversion schematic diagram in the example one for the present invention;
Fig. 9 uses the network structure of example two for the present invention;
Figure 10 uses the network structure of example three for the present invention.
Embodiment
In the networking structure of VPLS, in the whole link layer network, a large amount of communication nodes mainly is distributed among each Site, and each Site arrives the connection device of provider network, and promptly the quantity of CE or PE equipment is but quite few, has only one usually.Therefore, communicating by letter of the link layer network node of each Site and this Site outside must be transmitted through the few connection device of quantity, and such network configuration makes that the propagation of communication node MAC Address in the Site and study are limited in Site inside becomes possibility.
To all messages of on certain connection device, transmitting to the external network of Site, if source MAC wherein is mapped as the unified MAC address, then for the network equipment in the external network of this Site, only need this unified MAC address of study message can be sent to this connection device, be forwarded to the communication node of Site inside again by this connection device.The method is applied to each Site of VPLS, can greatly reduces the needed MAC Address quantity of the network equipment among the VPLS.
In fact, existing link layer network all adopts the networking structure of two-stage or multistage switches cascade usually, subordinate's switch that each switch connected and/or network node are regarded as a zone in this link layer network, these zones all need to be undertaken by this switch to the connection of other parts of link layer network, therefore also can be that unit carries out the many to a mapping of MAC Address with the zone, so that the study and the propagation of MAC Address are kept apart.Simultaneously, such zone can oneself define its scope as required by the user.
Be suitable for the many networkings to a mapping method of MAC Address and can abstractly be following network configuration: a link layer network is divided into two parts, and a part is referred to as Local Area Network, and another part is positioned at the outside of this Local Area Network, is referred to as external network; Realize that by at least one edge device link layer connects between Local Area Network and the external network.Edge device can belong to Local Area Network, also can belong to external network.
Be understood that, in same link layer network, may comprise another Local Area Network that forms with another kind of dividing mode in the external network that a kind of dividing mode forms, then comprise the Local Area Network under this dividing mode in the external network that another kind of dividing mode forms.For example, in the link layer network among Fig. 2, when being Local Area Network with CE 231 and Site 241, service provider's network, CE 232 and Site242 have then constituted external network; And when being Local Area Network with CE 232 and Site 242,241 of CE 231 and Site are arranged in its external network.
Among first embodiment, the flow process of the link layer communications method of Local Area Network of the present invention as shown in Figure 3.At step S310, the virtual mac address of setting area network.The virtual mac address of Local Area Network has uniqueness in the scope of the link layer network that is made of Local Area Network and external network.
Can be that the Local Area Network setting surpasses 1 virtual mac address, it is realized and 1 virtual mac address only is set there is no different.Certainly, how the user can use according to the needs decision of real network ruuning situation and surpass 1 virtual mac address.
At step S320, set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification.
Be sent to by Local Area Network in the process of external network at message, that carry out is the many to a mapping of MAC Address, so that the network equipment in the external network can be with each communication node in the unified MAC address designation Local Area Network.And correspondingly, external network also only can use this unified MAC address to come each communication node in Local Area Network to send message.The message that external network sends can arrive edge device according to the unified MAC address, and edge device also can by certain mechanism carry out MAC Address one to many inverse mappings, find this message real purpose communication node in Local Area Network.
For the mapping that makes MAC Address and inverse mapping process to outside network readezvous point, optimal selection is to adopt the purpose network layer address in the existing header fields of message to carry out inverse mapping as the sign of purpose communication node.Network layer address was exactly to be used for the field of recognition purpose communication node originally, and can not rewritten in link layer communications.
In some link layer networks, the subnetwork layer address of communication node promptly has uniqueness in the scope of Local Area Network, can be used as node identification.For example in the link layer network of IP (Internet Protocol, Internet protocol), IP address packet includes network number/subnet number and host number two parts, and host number wherein can be as node identification in Local Area Network.
In addition, transport layer sign through mapping also can be used as node identification, concrete mapping method sees also RFC (Recommended For Comment) 1631 and RFC 3022, only needs the corresponding relation that corresponding relation with transport layer sign after the mapping and network layer address be revised as with MAC Address to get final product.
Setting up the method for the corresponding relation of the MAC Address of communication node in the Local Area Network and its node identification can specifically set according to the node identification that is adopted, communication protocol cause user.
At step S330, before will being forwarded to external network from the message of Local Area Network, edge device replaces with the MAC Address of communication node in the Local Area Network in the message virtual mac address of this Local Area Network.Having under the situation of a virtual mac address of surpassing, can select a virtual mac address to replace arbitrarily.Certainly, the MAC Address that how also can to decide in its sole discretion as required communication node of user is converted to these virtual mac address.
Because the network equipment is to carry out MAC address learning by the source MAC in the message, for the network equipment in the external network, all can only learn the same virtual mac address of Local Area Network the message that each communication node in Local Area Network sends like this.
At step S340, before will being forwarded to Local Area Network from the message of external network, according to the MAC Address of the communication node of in step S320, setting up and the corresponding relation of node identification, edge device finds corresponding MAC Address, and the virtual mac address of this Local Area Network in the message is replaced with the MAC Address that finds.
By said method, the MAC Address of communication node is effectively isolated in the Local Area Network.
When network layer protocol is the IP agreement, can be with its network layer address as node identification, and utilize its address resolution procedure to set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its IP address.
Before communication node A in Local Area Network and the communication node B in the external network communicate, can send ARP (Address Resolution Protocol, address resolution protocol) message earlier and obtain the MAC Address of communication node B.
If the MAC Address of communication node A is MAC_A, IP address is IP_A, the IP address of communication node B is IP_B, and the virtual mac address of establishing Local Area Network is SV_MAC, and then to receive the form of the APR message that communication node A sends as shown in the table when edge device:
Broadcasting/clean culture MAC MAC_A 0X0806 MAC_A IP_A 0/ unicast mac address IP_B
In the last table, first three field is the header fields of ARP message, and wherein broadcasting/clean culture MAC is the target MAC (Media Access Control) address of this ARP message; MAC_A is the source MAC of this ARP message; 0X0806 is a frame type, shows that this message is the ARP message.Follow-up field constitutes the message body of ARP message, and wherein MAC_A is the MAC Address of sending the communication node of ARP request, the i.e. MAC Address of ARP request source; IP_A is the IP address of sending the communication node of ARP request; The MAC Address of the IP address correspondence that 0/ unicast mac address will be resolved for this message, carrying out in the APR message of IP address resolution in request is 0; The IP address that IP_B will resolve for this message.
Receive the APR message of communication node A transmission when edge device after, the corresponding relation of MAC_A and IP_A in the ARP message body is noted, like this, can generate the MAC Address of communication node in the Local Area Network and the corresponding relation of IP address automatically by on edge device, intercepting the ARP message.
Behind the corresponding relation that has write down MAC Address and IP address, the virtual mac address SV_MAC of edge device usefulness Local Area Network replaces the MAC_A in the ARP message, both replace the MAC_A in the source MAC field in the ARP header, also replaced the MAC_A in the request source MAC Address field in the ARP message body.After replacement was finished, edge device was to the form such as the following table of the ARP of outside forwarded message:
Broadcasting/clean culture MAC SV_MAC 0X0806 SV_MAC IP_A 0/ unicast mac address IP_B
This ARP message externally transfers to communication node B in the network, and to learn the MAC Address of communication node A from this message promptly be SV_MAC rather than MAC_A for the node of process and communication node B in the transmission course.Like this, when communication node A sends message, will use SV_MAC after these nodes as target MAC (Media Access Control) address.In like manner, the node in the external network with Local Area Network in the process of other communication node message transmissions in, also only can learn MAC Address of SV_MAC.
In addition, can also obtain the MAC Address of communication node in the Local Area Network and the corresponding relation of its IP address by gratuitous ARP packet.After having disposed gratuitous ARP broadcasting on the communication node, after communication node obtains IP address or electrifying startup, can initiatively send gratuitous ARP packet.Gratuitous ARP packet utilizes broadcast mode request analysis sender's oneself IP address, and source IP address is identical with purpose IP address in message, and has filled in sender's oneself source and destination MAC Address.Edge device can obtain the corresponding relation of the interior communication node MAC Address of Local Area Network and its IP address by intercepting gratuitous ARP packet.And edge device is not to outside forwarded gratuitous ARP packet.
When Local Area Network by surpassing an edge device and external network when link layer is connected, because communication node may be undertaken and the communicating by letter of external network by different edge devices, can make the corresponding relation of all safeguarding communication node MAC Address and its IP address in the complete Local Area Network of portion on each edge device by intercepting gratuitous ARP packet in this case.
See also Fig. 1, as previously mentioned, Site_1, Site_2, Site_4 and Site_6 are included among the VPN, and region S ite_3 and Site_5 are included among another VPN.If as a Local Area Network, then the PE of Site_2, Site_4, Site_6 and connected CE and service provider network and P have constituted the external network of this Local Area Network with Site_1 and the CE that is attached thereto; If as another Local Area Network, then the PE of Site_5 and connected CE and service provider network and P have constituted the external network of another Local Area Network with Site_3 and the CE that is attached thereto.These two Local Area Networks can adopt the CE that is connected with Site_1, the CE that is connected with Site_3 as separately edge device respectively, also can adopt the PE of Site_1 and Site_3 link service provider's network simultaneously as the edge device of these two Local Area Networks.
When a network equipment when the edge device, with at least one Local Area Network with realize intercommunication corresponding to the external network of this Local Area Network at link layer.In second embodiment of the invention, such structure that the network equipment had is referring to Fig. 4, and address conversioning unit 420 is connected with Local Area Network unit 410, memory cell 430, external network interface unit 440 respectively.
Communication node in the local network interface unit 410 join domain networks carries out link layer message with communication node in the Local Area Network and transmits.External network interface unit 440 connects the communication node in the external networks, carries out link layer message with node in the external network and transmits.The MAC Address of communication node and the corresponding relation of its node identification at least one virtual mac address of the Local Area Network that storage is connected with the network equipment in the memory cell 430 and these Local Area Networks.The virtual mac address of Local Area Network is unique in this Local Area Network and the external network corresponding to this Local Area Network.
Local network interface unit 410 exports the message that is outgoing interface with outside network interface unit 440 that communication node in the Local Area Network sends to address conversioning unit 420, address conversioning unit 420 replaces with the MAC Address of communication node in this Local Area Network in the message virtual mac address of this Local Area Network in the memory cell 430, and the message after the address replaced exports external network interface unit 440 to, is forwarded to external network by it.
When the Local Area Network that connects above, which Local Area Network address conversioning unit 420 will derive from according to message, and the MAC of communication node in the Local Area Network is replaced with the virtual mac address of this Local Area Network.And different Local Area Networks can have identical virtual mac address, as long as this MAC Address can satisfy the uniqueness in each Local Area Network and external network thereof.
What external network interface unit 440 sent external network is that the message of outgoing interface exports address conversioning unit 420 to local network interface unit 410, according to the node identification of storage in the memory cell 420 and the corresponding relation of communication node MAC Address, address conversioning unit 420 finds corresponding MAC Address, the virtual mac address of Local Area Network in the message is replaced with the MAC Address that finds out, and the message after the address replaced exports local network interface unit 410 to, is forwarded to purpose communication node in the Local Area Network by it.
When the Local Area Network that connect to surpass, which Local Area Network address conversioning unit 420 can belong to according to virtual mac address in the message, and searches corresponding MAC Address in the corresponding relation of the MAC Address of this Local Area Network and node identification.
To adopting the network equipment of IP agreement work, can utilize the address resolution procedure of IP agreement to generate the MAC Address of storage in the memory cell 430 and the corresponding relation of IP address by following dual mode with the IP address as node identification:
As shown in Figure 4 a kind of, increase ARP and intercept unit 450, be connected to local network interface unit 410, address conversioning unit 420 and memory cell 430 respectively, in the message that is outgoing interface with outside network interface unit 440 of local network interface unit 410 outputs, identify the ARP message, extract source MAC and source IP address in the ARP message, with its corresponding relation write storage unit 430, export the ARP message to address conversioning unit 420 again.To the message that other messages and the address conversioning unit 420 of local network interface unit 410 output exports local network interface unit 410 to, ARP intercepts unit 450 and does not process.
Another kind increases gratuitous ARP and intercepts unit 460 as shown in Figure 5, and this mode need dispose the gratuitous ARP broadcast characteristic in Local Area Network.Gratuitous ARP is intercepted unit 460 and is connected to local network interface unit 410 and memory cell 430 respectively, in the message of local network interface unit 410 outputs, identify gratuitous ARP packet, extract source MAC and source IP address in the gratuitous ARP packet, with its corresponding relation write storage unit 430.
In the 3rd embodiment, the flow process of link layer communications method of the present invention as shown in Figure 6.At step S610, at least one virtual mac address is set on edge device.
At step S620, what communication node sent in the Local Area Network is the message arrival edge device of outlet with the external network.
At step S630, edge device will be with the external network in the message of outlet in the Local Area Network MAC Address of communication node replace with virtual mac address.Also may appear in the link layer load in the link layer header of this message not only can appear in the MAC Address of communication node in the Local Area Network.
When on edge device, being provided with when surpassing one MAC Address, the MAC Address of defined range intra network communication node is to the transformation rule of these virtual mac address voluntarily for the user, and edge device communicates the conversion of the MAC Address of node to virtual mac address according to such transformation rule.
At step S640, edge device is to amended this message of outside forwarded MAC Address.
To step S640, the MAC Address of Local Area Network intercommunication node is isolated in Local Area Network inside by edge device through step S610.
At step S650, what external network sent is that the message that exports reaches edge device with the Local Area Network.
At step S660, edge device will be the MAC Address that the virtual mac address in the message that exports replaces with the communication node with this message purpose network layer address with the Local Area Network.
Usually in edge device, have the network layer address of communication node in the Local Area Network address resolution table corresponding to MAC Address, edge device can obtain the MAC Address of correspondence according to the purpose network layer address in this table and the message.If in this table, there is not the list item of purpose network layer address, then can utilizes existing address resolution method that the purpose network layer address in the message is resolved, thereby obtain the MAC Address of purpose communication node.For example, there is the corresponding relation of MAC Address and IP address in the ARP table on the edge device of operation IP agreement, in the IP agreement, uses very general and obtain the MAC Address corresponding with target MAC (Media Access Control) address by the ARP address resolution procedure.
At step S670, edge device this message after Local Area Network is transmitted the modification MAC Address.
The fourth embodiment of the present invention is the network equipment of the external network of at least one Local Area Network of connection and each Local Area Network.When this network equipment connected above a Local Area Network as edge device, the external network of these Local Area Networks might comprise identical communication node.
This network equipment comprises first port set and second port set, and is connected the crosspoint between first port set and second port set.Port number in first port set and second port set is at least one, and wherein first port set is used for connecting one or more Local Area Networks, and second port set is used for connecting the external network of these Local Area Networks.
When first port set receives when being the message of outlet with second port set, with message transmissions to exchanging the unit.After the MAC Address of communication node replaces with virtual mac address in the Local Area Network that crosspoint is connected first port set in the message, be forwarded to external network from second port set.
When second port set receives when being the message of outlet with first port set, with message transmissions to exchanging the unit.Crosspoint is forwarded to Local Area Network from first port set after the virtual mac address in the message is replaced with the MAC Address of the communication node with this message purpose network layer address.
Crosspoint can be searched the MAC Address corresponding with the purpose network layer address in the address resolution list item, also can obtain this MAC Address by address resolution procedure.
In addition, can also be by in the network equipment, increasing the map addresses memory cell, be connected with crosspoint, the corresponding relation of the network layer address of communication node and its MAC Address in the storage area network therein, crosspoint can find the MAC Address corresponding with the purpose network layer address of this message receiving when being the message of outlet with first port set in the map addresses memory cell like this.
When the operation of the network equipment in present embodiment IP agreement, the network layer address of communication node is the IP address, increase the ARP unit in the network equipment, the corresponding relation according to generate IP address and MAC Address from the ARP message of first port set deposits the map addresses memory cell in.How generate corresponding relation existing detailed description in detail in first and second embodiment of IP address and MAC Address, no longer repetition herein according to the ARP message.
The network equipment in the fifth embodiment of the invention is positioned at the carrier network edge, and being used for provides service for the Site of at least one VPN.For example, this network equipment can be each PE among Fig. 1.In the present embodiment structure of the network equipment as shown in Figure 7, MAC Address converting unit 720 is connected with VPN user interface section 710, MAC memory cell 730, carrier network interface unit 740 respectively.
VPN user interface section 710 is external to the Site of one or more VPN, carries out link layer message with main frame among these Site and transmits.
Carrier network interface unit 740 external carrier networks carry out link layer message with other equipment in the carrier network and transmit.
Be stored as the virtual mac address that the network equipment is provided with in the present embodiment in MAC memory cell 730, this virtual mac address is unique in carrier network.MAC memory cell 730 also be used for storing with VPN Site in the corresponding host identification of host MAC address, this host identification can show the identity of this main frame uniquely in the VPN at its place.
VPN user interface section 710 is received, be that the message of outlet is called uplink message from VPN Site with carrier network interface unit 740, carrier network interface unit 740 is received, be that the message of outlet is called downlink message with VPN user interface section 710, then to uplink message, MAC Address converting unit 720 is converted to virtual mac address with the MAC Address of main frame in the Site wherein; To downlink message, MAC Address converting unit 720 is converted to corresponding MAC Address according to the corresponding relation of MAC Address and host identification with the virtual mac address in the downlink message.
To the foundation of host MAC address and host identification corresponding relation in the selection of host identification in the Site, the MAC memory cell 730 etc., identical method among all available employing and first embodiment no longer repeats herein in the present embodiment.
When each main frame among certain Site that VPN user interface section 710 is connected belongs to different VLAN respectively, also can be with VLAN ID (VLAN ID) as its host identification.
When the network equipment in present embodiment operation IP agreement, can be with the IP address of main frame in the VPN Site as host identification.At this moment, can be by the corresponding relation of IP address and MAC Address in the ARP address resolution procedure generation MAC memory cell 730.In said structure, increase ARP monitoring unit 750, be connected to VPN user interface section 710, MAC memory cell 730 and MAC Address converting unit 720 respectively.ARP monitoring unit 750 identifies the ARP message in uplink message, the corresponding relation of source MAC in the ARP message and source IP address is write MAC memory cell 730, and this ARP message is outputed to MAC Address converting unit 720.
Identical with second embodiment, the 4th embodiment, virtual mac address can be more than one, and different Site can use same virtual mac address.
Below illustrate concrete application of the present invention.
In using example one, in network configuration shown in Figure 2, implement the present invention.With CE 231 and Site241 is first Local Area Network, and establishing its virtual mac address is SVMAC_1, is edge device with CE 231; With CE 232 and Site 242 is second Local Area Network, and establishing its virtual mac address is SVMAC_2, is edge device with CE 232; In first Local Area Network and second Local Area Network, use the present invention respectively, if the MAC Address of the PC 253 among PC 251 among the Site 241 and the Site 242 is respectively MAC_251 and MAC_253, then when PC 251 communicated by letter with PC 253, the MAC Address transfer process in the message as shown in Figure 8.
PC 251 is a source MAC with MAC_251, is that target MAC (Media Access Control) address sends messages to PC 253 with SVMAC_2, and during CE 231, MAC_251 is replaced by SVMAC_1 when message arrives; Message is a source MAC with SVMAC_1, is that target MAC (Media Access Control) address is sent to CE 232 by CE 231 with SVMAC_2; When message arrived CE 232, SVMAC_2 was replaced by the actual address MAC_253 of PC 253; Message is that target MAC (Media Access Control) address is sent to PC 253 by CE 232 with the SVMAC_1 source MAC with MAC_253.When PC 253 when PC 251 sends messages, then experience reverse address replacement process, repeat no more herein.
Should be with in the example, each uses Local Area Network of the present invention to its external network, has only a virtual mac address to need study, and the study of the internal mac address of Local Area Network is limited in the inside of Local Area Network.
Application example two of the present invention is an applied environment with network shown in Figure 9.In the link layer network in Fig. 9, three fringe regions insert backbone area by three BL (Border Linker, border connector) respectively, and all nodes in three fringe regions and the backbone area are in the link layer intercommunication.For three fringe regions, must be communicated with other zone by BL.Each fringe region is used the present invention as Local Area Network, with its BL that inserts backbone area as edge device.
Supposing has N1 communication node except that 3 edge device BL in the backbone area, N2 communication node all arranged in each fringe region, and before using the present invention, the network equipment in this link layer network needs study (N1+3*N2+2) individual MAC Address; And behind application the present invention, the network equipment in edge device BL and the fringe region only needs study (N1+N2+2) individual MAC Address, and other network equipments in the backbone area only need study (N1+5) individual MAC Address.As seen, the present invention has significant effect to reducing the MAC Address quantity that the network equipment need be learnt in the link layer network.
In using example three, the present invention is applied to the Local Area Network among Figure 10.Local Area Network is connected with external network by surpassing an edge device, and the communication node in the Local Area Network can only carry out link layer communications by edge device and external network.After being provided with virtual mac address for Local Area Network, need only the address translation process of on each edge device, all carrying out among the present invention, then the MAC address learning of Local Area Network inside may be limited in the Local Area Network equally.
Above-described embodiment of the present invention does not constitute the qualification to protection range of the present invention.Any any modification of being done within the spirit and principles in the present invention, be equal to and replace and improvement etc., all should be included within the claim protection range of the present invention.

Claims (21)

1. the link layer communications method of a Local Area Network in order to realize that by at least one edge device a plurality of communication nodes in the described Local Area Network and external network in the intercommunication of link layer, is characterized in that, may further comprise the steps:
For Local Area Network is provided with virtual medium access control system MAC Address;
Set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification;
Edge device replaces with its virtual mac address with the MAC Address of communication node in this Local Area Network in the message before outside forwarded message;
When edge device receives the message that comprises virtual mac address in the destination address,, transmit this message after virtual mac address replaced with corresponding MAC Address according to the MAC Address of communication node and the corresponding relation of node identification.
2. the link layer communications method of Local Area Network according to claim 1, it is characterized in that: described node identification is the network layer address of communication node.
3. as the link layer communications method of Local Area Network as described in the claim 2, it is characterized in that: described network layer address is the IP address;
Describedly set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification is specially: before outside forwarded ARP message, write down the corresponding relation of source MAC and source IP address in this ARP message at edge device.
4. as the link layer communications method of Local Area Network as described in the claim 3, it is characterized in that: the MAC Address in the message that the ARP message that the subtend external network is transmitted, edge device are replaced with virtual mac address comprises source MAC in the ARP header and the request source MAC Address in the ARP message body.
5. as the link layer communications method of Local Area Network as described in the claim 2, it is characterized in that: described network layer address is the IP address;
Describedly set up the MAC Address of communication node in the Local Area Network and the corresponding relation of its node identification is specially:
Communication node in the configuring area network carries out gratuitous ARP broadcasting;
Edge device recorder to gratuitous ARP packet in the corresponding relation of source MAC and source IP address.
6. as the link layer communications method of Local Area Network as described in any one of the claim 1 to 5, it is characterized in that: described Local Area Network comprises the region S ite of virtual private LAN service VPLS and user's edge device CE of this Site;
Described external network comprise VPLS service provider's edge device PE and with described Local Area Network at least one Site in same virtual private network VPN;
Described edge device is CE or PE.
7. as the link layer communications method of Local Area Network as described in any one of the claim 1 to 5, it is characterized in that: described Local Area Network comprises a part communication node in the link layer network, described external network comprises the communication node outside the Local Area Network in this link layer network, the communication node energy in the Local Area Network and can only carry out link layer communications by edge device and external network.
8. a network equipment couples together at least one Local Area Network and its external network at link layer, it is characterized in that, comprises local network interface unit, memory cell, address conversioning unit and external network interface unit, wherein:
The local network interface unit be used for Local Area Network in communication node carry out link layer message and transmit;
The external network interface unit is used for carrying out link layer message with external network and transmits;
Memory cell is used for storing the virtual mac address of institute's join domain network, and the MAC Address of communication node and the corresponding relation of its node identification in this Local Area Network;
Address conversioning unit be used for with outside network interface unit be in the message of outgoing interface in this Local Area Network the MAC Address of communication node be converted to virtual mac address, and, will be that virtual mac address in the message of outgoing interface is converted to corresponding MAC Address with the local network interface unit according to the MAC Address of communication node and the corresponding relation of node identification.
9. the network equipment as claimed in claim 8 is characterized in that: described node identification is the network layer address of communication node;
Described network layer address is the IP address;
The described network equipment comprises that also ARP intercepts the unit, join domain network interface unit, memory cell and address conversioning unit, be used in the message that with outside network interface unit is outgoing interface, identifying message from the ARP of this Local Area Network, with the corresponding relation write storage unit of source MAC in the ARP message and source IP address, and this ARP message outputed to address conversioning unit.
10. the network equipment as claimed in claim 8 is characterized in that: described node identification is the network layer address of communication node;
Described network layer address is the IP address;
The described network equipment comprises that also ARP intercepts the unit, is used for discerning the gratuitous ARP packet from the local network interface unit, with the corresponding relation write storage unit of source MAC in the gratuitous ARP packet and source IP address.
11. the link layer communications method of a Local Area Network in order to realize that by at least one edge device a plurality of communication nodes in the described Local Area Network and external network in the intercommunication of link layer, is characterized in that, may further comprise the steps:
At least one virtual mac address is set on described edge device;
The message that Local Area Network sends to external network arrives edge device;
Edge device is revised as virtual mac address with the MAC Address of communication node in the Local Area Network in this message, and transmits this message.
12. the link layer communications method as Local Area Network as described in the claim 11 is characterized in that described method also comprises:
The message that external network is sent to Local Area Network reaches edge device;
Edge device is revised as the MAC Address of the communication node with described message purpose network layer address with the virtual mac address in the described message, and transmits described message.
13. as the link layer communications method of Local Area Network as described in the claim 12, it is characterized in that: described purpose network layer address is purpose IP address;
Described method also comprises: the ARP table by searching edge device or carry out the MAC Address that ARP resolving obtains having the communication node of described purpose IP address.
14. link layer communications method as Local Area Network as described in any one of the claim 11 to 13, it is characterized in that, when having the virtual mac address of surpassing, described edge device is revised as virtual mac address with the MAC Address of communication node and is specially: edge device is according to the MAC Address of communication node and the transformation rule of virtual mac address, and the MAC Address of communication node in the Local Area Network is converted to virtual mac address.
15. a network equipment is positioned at the carrier network edge with thinking that the region S ite of at least one virtual private network provides service, it is characterized in that, comprising:
The VPN user interface section, be used for VPN Site in main frame carry out link layer message and transmit;
The carrier network interface unit, be used for carrier network in other equipment carry out link layer message and transmit;
The MAC memory cell is used for being stored in the virtual mac address that has uniqueness in the carrier network, and corresponding with host MAC address among the VPN Site and can represent the host identification of this main frame unique identity in this VPN;
The MAC Address converting unit is used for the MAC Address of main frame among the Site in the VPN Site uplink message is converted to virtual mac address, and according to the corresponding relation of MAC Address and host identification, the virtual mac address in the downlink message is converted to corresponding MAC Address.
16. the network equipment as claimed in claim 15 is characterized in that: described host identification is the IP address of this main frame;
The described network equipment also comprises the ARP monitoring unit, connect VPN user interface section, MAC memory cell and MAC Address converting unit, be used in uplink message, identifying the ARP message, the corresponding relation of source MAC in the ARP message and source IP address is write the MAC memory cell, and this ARP message is outputed to the MAC Address converting unit.
17. as the claim 15 or the 16 described network equipments, it is characterized in that: host identification is the VLAN ID VLAN ID at this main frame place among the described VPN Site.
18. a network equipment is characterized in that, comprising:
First port set comprises at least one port, connects at least one Local Area Network;
Second port set comprises at least one port, connects the external network of described Local Area Network;
Crosspoint, to being the message of outlet from first port set, with second port set, the MAC Address of communication node in the wherein said Local Area Network replaced with virtual mac address after, transmit from second port set.
19. the network equipment as claimed in claim 18, it is characterized in that: described crosspoint is to from second port set, with first port set is the message of outlet, after wherein virtual mac address replaced with the MAC Address of the communication node with this message purpose network layer address, transmit from first port set.
20. the network equipment as claimed in claim 19 is characterized in that: the described network equipment also comprises the map addresses memory cell, is used for the network layer address of communication node and the corresponding relation of MAC Address in the storage area network;
Described crosspoint is according to the corresponding relation of map addresses cell stores, obtains and with first port set is the corresponding MAC Address of purpose network layer address in the message of outlet.
21. the network equipment as claimed in claim 20 is characterized in that: described network layer address is the IP address;
The described network equipment also comprises the ARP unit, is used for depositing the map addresses memory cell in according to the corresponding relation that generates IP address and MAC Address from the ARP message of first port set.
CN200510123647A 2005-11-18 2005-11-18 Link layer communication method in LAN and network device thereof Active CN100596358C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN200510123647A CN100596358C (en) 2005-11-18 2005-11-18 Link layer communication method in LAN and network device thereof

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN200510123647A CN100596358C (en) 2005-11-18 2005-11-18 Link layer communication method in LAN and network device thereof

Publications (2)

Publication Number Publication Date
CN1968184A true CN1968184A (en) 2007-05-23
CN100596358C CN100596358C (en) 2010-03-31

Family

ID=38076741

Family Applications (1)

Application Number Title Priority Date Filing Date
CN200510123647A Active CN100596358C (en) 2005-11-18 2005-11-18 Link layer communication method in LAN and network device thereof

Country Status (1)

Country Link
CN (1) CN100596358C (en)

Cited By (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2009064230A1 (en) * 2007-11-14 2009-05-22 Telefonaktiebolaget L M Ericsson (Publ) Method for reducing the required memory capacity of switches by using fictive source mac addresses
CN101170512B (en) * 2007-11-21 2010-04-21 中兴通讯股份有限公司 Message service processing method
CN102045405A (en) * 2009-10-16 2011-05-04 华为技术有限公司 Address translation method, equipment and system
WO2011147220A1 (en) * 2010-05-28 2011-12-01 中兴通讯股份有限公司 System and method for managing device identifiers of ubiquitous network
CN102318290A (en) * 2011-07-29 2012-01-11 华为技术有限公司 Message forward method and device
CN102355417A (en) * 2011-10-08 2012-02-15 杭州华三通信技术有限公司 Data center two-layer interconnection method and device
WO2012031487A1 (en) * 2010-09-08 2012-03-15 华为技术有限公司 Method for transmitting addresses correspondence relationship in second-layer protocol using link status routing
WO2011107052A3 (en) * 2011-04-20 2012-03-22 华为技术有限公司 Method and access node for preventing address conflict
CN102457586A (en) * 2010-10-18 2012-05-16 中兴通讯股份有限公司 Expanding method for realizing double-layer network and expanded double-layer network
CN101521631B (en) * 2009-04-14 2012-05-23 华为技术有限公司 Treatment method, equipment and system for VPLS network messages
CN102957684A (en) * 2011-08-25 2013-03-06 宏碁股份有限公司 DLNA (digital living network alliance) packaging and transmitting method and system
CN103259724A (en) * 2012-02-15 2013-08-21 中兴通讯股份有限公司 Method, system and client edge device for implementing MPLS VPN
CN104378302A (en) * 2010-09-08 2015-02-25 华为技术有限公司 Method for sending address corresponding relation in second layer protocol by utilizing link state routing
CN104584640A (en) * 2012-08-30 2015-04-29 高通股份有限公司 Layer 2 address management in 3 address only capable access points in networks with relays
US9385886B2 (en) 2011-07-06 2016-07-05 Huawei Technologies Co., Ltd. Method for processing a packet and related device
CN103716245B (en) * 2012-09-29 2017-02-08 上海贝尔股份有限公司 Edge router based on virtual special-purpose local area network
CN112083892A (en) * 2020-09-25 2020-12-15 上海依图网络科技有限公司 Data storage method, device, equipment and medium
CN112187610A (en) * 2020-09-24 2021-01-05 北京赛宁网安科技有限公司 Network isolation system and method for network target range
CN113302883A (en) * 2019-01-15 2021-08-24 诺基亚技术有限公司 Exchanging header information for data transmission

Cited By (31)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2009064230A1 (en) * 2007-11-14 2009-05-22 Telefonaktiebolaget L M Ericsson (Publ) Method for reducing the required memory capacity of switches by using fictive source mac addresses
CN101170512B (en) * 2007-11-21 2010-04-21 中兴通讯股份有限公司 Message service processing method
CN101521631B (en) * 2009-04-14 2012-05-23 华为技术有限公司 Treatment method, equipment and system for VPLS network messages
CN102045405A (en) * 2009-10-16 2011-05-04 华为技术有限公司 Address translation method, equipment and system
WO2011147220A1 (en) * 2010-05-28 2011-12-01 中兴通讯股份有限公司 System and method for managing device identifiers of ubiquitous network
CN102404181B (en) * 2010-09-08 2014-10-08 华为技术有限公司 Address corresponding relationship sending method of layer 2 protocol utilizing link state routing
WO2012031487A1 (en) * 2010-09-08 2012-03-15 华为技术有限公司 Method for transmitting addresses correspondence relationship in second-layer protocol using link status routing
CN102404181A (en) * 2010-09-08 2012-04-04 华为技术有限公司 Address corresponding relationship sending method of layer 2 protocol utilizing link state routing
US9749230B2 (en) 2010-09-08 2017-08-29 Huawei Technologies Co., Ltd. Method of sending address correspondence in a second layer protocol of applying link state routing
CN104378302A (en) * 2010-09-08 2015-02-25 华为技术有限公司 Method for sending address corresponding relation in second layer protocol by utilizing link state routing
CN104378302B (en) * 2010-09-08 2017-11-17 华为技术有限公司 Address corresponding relation sending method and route bridge device
CN102457586A (en) * 2010-10-18 2012-05-16 中兴通讯股份有限公司 Expanding method for realizing double-layer network and expanded double-layer network
CN102457586B (en) * 2010-10-18 2015-06-03 中兴通讯股份有限公司 Expanding method for realizing double-layer network and expanded double-layer network
WO2011107052A3 (en) * 2011-04-20 2012-03-22 华为技术有限公司 Method and access node for preventing address conflict
US9385886B2 (en) 2011-07-06 2016-07-05 Huawei Technologies Co., Ltd. Method for processing a packet and related device
CN102318290A (en) * 2011-07-29 2012-01-11 华为技术有限公司 Message forward method and device
CN102318290B (en) * 2011-07-29 2014-12-10 华为技术有限公司 Message forward method and device
WO2012109864A1 (en) * 2011-07-29 2012-08-23 华为技术有限公司 Message forwarding method and device
CN102957684A (en) * 2011-08-25 2013-03-06 宏碁股份有限公司 DLNA (digital living network alliance) packaging and transmitting method and system
CN102355417A (en) * 2011-10-08 2012-02-15 杭州华三通信技术有限公司 Data center two-layer interconnection method and device
WO2013120427A1 (en) * 2012-02-15 2013-08-22 中兴通讯股份有限公司 Mpls vpn realizing method, system and customer edge
CN103259724A (en) * 2012-02-15 2013-08-21 中兴通讯股份有限公司 Method, system and client edge device for implementing MPLS VPN
CN103259724B (en) * 2012-02-15 2017-12-29 中兴通讯股份有限公司 A kind of MPLS VPN implementation method, system and customer edge devices
CN104584640A (en) * 2012-08-30 2015-04-29 高通股份有限公司 Layer 2 address management in 3 address only capable access points in networks with relays
CN103716245B (en) * 2012-09-29 2017-02-08 上海贝尔股份有限公司 Edge router based on virtual special-purpose local area network
CN113302883A (en) * 2019-01-15 2021-08-24 诺基亚技术有限公司 Exchanging header information for data transmission
CN113302883B (en) * 2019-01-15 2022-04-29 诺基亚技术有限公司 Method and apparatus for exchanging header information for data transmission
US11368397B2 (en) 2019-01-15 2022-06-21 Nokia Technologies Oy Swapping header information for data transmission
CN112187610A (en) * 2020-09-24 2021-01-05 北京赛宁网安科技有限公司 Network isolation system and method for network target range
CN112187610B (en) * 2020-09-24 2021-11-16 北京赛宁网安科技有限公司 Network isolation system and method for network target range
CN112083892A (en) * 2020-09-25 2020-12-15 上海依图网络科技有限公司 Data storage method, device, equipment and medium

Also Published As

Publication number Publication date
CN100596358C (en) 2010-03-31

Similar Documents

Publication Publication Date Title
CN1968184A (en) Link layer communication method in LAN and network device thereof
CN1263267C (en) Nomadic translator or router
CN1791054A (en) Virtual special network multicast method by virtual router mode
CN1946041A (en) VLAN polymerizing method, converging exchanger and system based on ARP detector intercept
CN1298592A (en) Establishing connectivity in networks
CN1801764A (en) Internet access method based on identity and location separation
CN1495631A (en) Internetwork protocol address distribution equipment and method
CN1658588A (en) Communication device, relay, communication system and communication method
CN101051995A (en) Protection switching method based on no connection network
US7760666B2 (en) Method of generating and managing connection identifiers for supporting multicast for each group in IPv6-based wireless network and network interface using the method
CN1929444A (en) Operator's boundary notes, virtual special LAN service communication method and system
CN101047651A (en) Method, system and equipment for setting IP priority level
CN1848792A (en) Method for realizing cross-mixed network multi-protocol tag exchange virtual special network
CN101047631A (en) Customer position information transmitting method, MAC address automatic allocating method, network creating method and system
CN1863143A (en) Method, system and apparatus for implementing Web server access
CN1809032A (en) Method of dynamically learning address on MAC layer
CN1866904A (en) Method and apparatus for astringing two layer MAC address
CN1881935A (en) Mobile Internet protocol route processing method and system and router
CN1905488A (en) Method and system for access user by virtual router redundance protocol
CN1870583A (en) Method for implementing communication of mobile IPv6 node and IPv4 communication buddy
CN1801783A (en) Multi-domain multicast integration data distributing structure and method based on IP/MPLS/BGP
CN101056267A (en) Layer 2 forwarding method and forwarding device
CN1777150A (en) Method for realizing user-isolated virtual LAN and its network device
CN101052004A (en) Multicast transmission method based on virtual distribution net in network
CN1725730A (en) Method of multilayer VLAN switching

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP03 Change of name, title or address

Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No.

Patentee after: Xinhua three Technology Co., Ltd.

Address before: 310053 Hangzhou hi tech Industrial Development Zone, Zhejiang province science and Technology Industrial Park, No. 310 and No. six road, HUAWEI, Hangzhou production base

Patentee before: Huasan Communication Technology Co., Ltd.

CP03 Change of name, title or address