CN208597089U - A kind of network tunnel automatic switching control equipment based on network quality - Google Patents
A kind of network tunnel automatic switching control equipment based on network quality Download PDFInfo
- Publication number
- CN208597089U CN208597089U CN201820401417.2U CN201820401417U CN208597089U CN 208597089 U CN208597089 U CN 208597089U CN 201820401417 U CN201820401417 U CN 201820401417U CN 208597089 U CN208597089 U CN 208597089U
- Authority
- CN
- China
- Prior art keywords
- router
- nqa
- couple
- network
- local area
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Landscapes
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
The utility model relates to a kind of network tunnel automatic switching control equipment based on network quality, including branch, enterprise interconnected local area network and enterprise headquarters' local area network, branch, enterprise local area network includes the first couple in router, first couple in router passes through primary link respectively and connects internet with backup link, primary link all passes through internet with backup link and connects enterprise headquarters' local area network, enterprise headquarters' local area network includes the second couple in router for connecting primary link and backup link, it further include NQA server and NQA client, NQA server connects the second couple in router, NQA client connects the first couple in router;The port that backup link is connected on first couple in router is set as static routing.Compared with prior art, the utility model combines generic routing encapsulation tunnel technology and NQA Network Quality Analysis technology, and the active and standby automatic switchover of IP tunnel is realized using the joint-action mechanism of NQA, has ensured network communications quality.
Description
Technical field
The utility model relates to network communication technology fields, certainly more particularly, to a kind of network tunnel based on network quality
Dynamic switching device.
Background technique
Currently, corporate client online is mainly by broadband access network, but when passing through the external general headquarters of broadband-access user, warp
Time delay and packet loss can be often led to the problem of, the QoS mass of network not can guarantee, influence the normal production environment of user, look for again
One supplier needs to redeploy light pricker, have increase input, open the period it is longer the deficiencies of place.Corporate client can be rented
Multilink mode accesses internet service provider, but in existing linux firewall it is most of do not support it is next
Hop link quality detection function can not automatically switch to backup link when primary link network quality difference.
Network Quality Analysis (NQA, Network Quality Analyzer) is to carry out network quality spy to the network equipment
The most commonly used one kind in survey.NQA by send test packet, to network performance, network provide service and service quality into
Row analysis, provides the parameter of network performance and service quality for user, such as delay variation, TCP connection time delay, FTP connection time delay
With file transfer rate etc..Using the test result of NQA, user can awareness network in time performance condition, for different
Network performance carries out respective handling;And network failure is diagnosed and is positioned.
Utility model content
The purpose of this utility model is exactly that there are what main/slave link can not automatically switch to lack in order to overcome the above-mentioned prior art
It falls into and a kind of network tunnel automatic switching control equipment based on network quality is provided.
The purpose of this utility model can be achieved through the following technical solutions:
A kind of network tunnel automatic switching control equipment based on network quality, including branch, enterprise interconnected local area network and
Enterprise headquarters' local area network, the branch, enterprise local area network include the first couple in router, and first couple in router leads to respectively
It crosses primary link and connects internet with backup link, the primary link all passes through internet with backup link and connects enterprise headquarters' local
Net, enterprise headquarters' local area network include the second couple in router for connecting the primary link and backup link, further include being used for
The NQA server and NQA client of NOA test are provided, the NQA server connects second couple in router, described
NQA client connects first couple in router;Backup is connected in first couple in router and the second couple in router
The port of link is set as establishing the static routing of linkage with NQA.
Preferably, enterprise headquarters' local area network further includes core switch and core router, the core router
Connect the second couple in router, the server cluster of core switch the connection core router and enterprise headquarters' local area network.
Preferably, the branch, enterprise local area network further includes the first vpn server for connecting first couple in router,
Enterprise headquarters' local area network further includes the second vpn server for connecting the core router.
Preferably, the primary link and backup link are respectively one in telecommunications, Netcom, Tie Tong and Great Wall network link
Kind.
Preferably, the couple in router is the router of built-in firewall.
Preferably, the NQA client and NQA server are the computer for being loaded with NQA test program.
Compared with prior art, the utility model combines generic routing encapsulation tunnel technology and NQA Network Quality Analysis
Technology carries out NQA network quality point by NQA server and NQA client between branch, enterprise and enterprise headquarters' local area network
Analysis is realized the active and standby automatic switchover of IP tunnel using the joint-action mechanism of NQA, has ensured network communications quality, saved cost.
Detailed description of the invention
Fig. 1 is the structural schematic diagram of the utility model.
Specific embodiment
The utility model is described in detail in the following with reference to the drawings and specific embodiments.The present embodiment is with the utility model
Implemented premised on technical solution, the detailed implementation method and specific operation process are given, but the guarantor of the utility model
Shield range is not limited to the following embodiments.
Embodiment
As shown in Figure 1, a kind of network tunnel automatic switching control equipment based on network quality, for realizing primary link breaks are worked as
When automatically switch to backup link, including branch, enterprise interconnected local area network and enterprise headquarters' local area network, office, branch, enterprise
Domain net includes the first couple in router 1, and the first couple in router 1 connects internet with backup link by primary link respectively, main
Link all passes through internet with backup link and connects enterprise headquarters' local area network, and enterprise headquarters' local area network includes the second couple in router
4, the second couple in router 4 connects primary link and backup link.Enterprise headquarters' local area network further includes core switch 6 and core road
By device 5, core router 5 connects the second couple in router 4, and core switch 6 connects core router 5 and office, enterprise headquarters
The server cluster of domain net.
The present apparatus realizes the switching of network link by NQA Network Quality Analysis technology.The realization of NQA Network Quality Analysis
Including the NQA server 7 of enterprise headquarters' local area network and the NQA client 2 of branch, enterprise local area network is arranged in, the test of NQA is
It is initiated by client, NQA server 7 connects the second couple in router 4, and NQA client 2 connects the first couple in router 1.NQA
Client 2 and NQA server 7 are the computer for being loaded with NQA test program, which has double netcard function.
The process of progress NQA test includes: between NQA client 2 and NQA server 7
(1) it constructs test case: test case being configured by order line in NQA client 2 or corresponding test is sent by network management end
After example operation, NQA client 2 is put into corresponding test case in test case queue and is scheduled;
(2) start test case: can choose starting, delay start, start by set date immediately;It is reached in the time of timer
Afterwards, then according to the test-types of test case, construction meets the message of respective protocol, if but the test packet of configuration size nothing
Method meets the minimum dimension for sending this protocol massages, then message transmission is constructed according to minimum message size as defined in this agreement;
(3) test case is handled: after test case starting, according to the message of return, can be mentioned to the operating status of related protocol
For data information;Sending time of the system time as test packet when transmission message, stamps timestamp to message, retransmits
To NQA server 7;After NQA server 7 receives message, the corresponding echo message of NQA client 2 is returned to, NQA client 2 exists
When receiving message, system time is read again, stamps timestamp to message;According to the time that sends and receives of message, meter
Calculate the two-way time of message.
NQA has linkage function, refers to that NQA provides detecting function, detection result is notified other modules, other modules are again
Respective treated function is carried out according to detection result.It realizes at present and VRRP, static routing, backup interface, IGMP Proxy
With the linkage of policybased routing.So connecting the port setting of backup link on the first couple in router 1 and the second couple in router 4
Static routing realizes route backup by configuring floating static router, establishes and links with NQA.
In the present embodiment, network link is using in IP tunneling between branch, enterprise local area network and enterprise headquarters' local area network
Generic Routing Encapsulation, primary link worn as backup tunnel by IP protocol transparent as main tunnel, backup link
Internet is crossed, realizes and is interconnected between endpoint.
In the present embodiment, preferred branch, enterprise local area network further includes the first VPN clothes for connecting the first couple in router 1
Business device 3, enterprise headquarters' local area network further includes the second vpn server 8 for connecting core router 5, in branch and general headquarters' local area network
Between establish the Virtual Private Network of access, be more suitable for accessing in external general headquarters' local area network in this way.
In the present embodiment, primary link and backup link all use the optical fiber link of telecommunications.
First couple in router 1 and the second couple in router 4 all built-in firewalls.
The implementation method of the present apparatus are as follows:
1, branch, enterprise LAN configuration: the first couple in router 1 connects the IP of primary link and the second couple in router 4 connects
The IP docking for connecing primary link, when the link where the IP breaks down, i.e., when NQA test 10 seconds packet losses of appearance (lose 5
Packet), it is linked by NQA and the first access switch static routing, the backup link for automatically switching to the second access switch connects
The virtual interface routing that mouth IP is established, specific as follows:
1.1, the foundation of ipsec encryption agreement;
1.2, it establishes the main tunnel to the second couple in router 4 and defines tunnel encryption, the data in tunnel are protected
Shield;
1.3, the backup tunnel and definition tunnel encryption to the second couple in router 4 are established, the data in tunnel are carried out
Protection;
1.4, the route stand-by for establishing the first couple in router 1 and the second couple in router 4 automatically switches, and connects by first
Track process and backup floating route implementing automatic switching function are called in the static routing for entering router 1;
1.5, NQA network analysis test case is defined;
2, enterprise headquarters' LAN configuration:
2.1, the foundation of ipsec encryption agreement defines tunnel by defining the exchange of IKE key and IPSec proposal
Encryption mechanism;
2.2, it establishes the main tunnel to the first couple in router 1 and defines tunnel encryption, the data in tunnel are protected
Shield;
2.3, the backup tunnel and definition tunnel encryption to the first couple in router 1 are established, the data in tunnel are carried out
Protection;
2.4, the route stand-by for establishing the first couple in router 1 and the second couple in router 4 automatically switches, and is lacked by static state
It saves routing and calls track process and backup floating route implementing automatic switching function, and definition the first couple in router 1 of access
IP host router;
2.5, NQA network analysis test case is defined.
After tested, when primary link breaks lose 5 packets, primary link will automatically switch on backup link the present apparatus, when
After NQA tests main link lanes recovery, the couple in router at both ends is not interrupted, and automatic switchback primary link has ensured network communication
Quality.
Claims (4)
1. a kind of network tunnel automatic switching control equipment based on network quality, including branch, enterprise interconnected local area network and enterprise
Industry general headquarters local area network, the branch, enterprise local area network include the first couple in router, and first couple in router passes through respectively
Primary link connects internet with backup link, and the primary link all passes through internet with backup link and connects enterprise headquarters' local
Net, enterprise headquarters' local area network include the second couple in router for connecting the primary link and backup link, which is characterized in that
It further include for providing the NQA server and NQA client of NOA test, NQA server connection the second access routing
Device, the NQA client connect first couple in router;Connect in first couple in router and the second couple in router
The port for connecing backup link is set as establishing the static routing of linkage with NQA;
Enterprise headquarters' local area network further includes core switch and core router, second access of core router connection
Router, the server cluster of core switch the connection core router and enterprise headquarters' local area network;The branch, enterprise
Local area network further includes the first vpn server for connecting first couple in router, and enterprise headquarters' local area network further includes connecting
Connect the second vpn server of the core router.
2. a kind of network tunnel automatic switching control equipment based on network quality according to claim 1, which is characterized in that institute
It states primary link and backup link is respectively one of telecommunications, Netcom, Tie Tong and Great Wall network link.
3. a kind of network tunnel automatic switching control equipment based on network quality according to claim 1, which is characterized in that institute
State the router that couple in router is built-in firewall.
4. a kind of network tunnel automatic switching control equipment based on network quality according to claim 1, which is characterized in that institute
It states NQA client and NQA server is the computer for being loaded with NQA test program.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201820401417.2U CN208597089U (en) | 2018-03-23 | 2018-03-23 | A kind of network tunnel automatic switching control equipment based on network quality |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201820401417.2U CN208597089U (en) | 2018-03-23 | 2018-03-23 | A kind of network tunnel automatic switching control equipment based on network quality |
Publications (1)
Publication Number | Publication Date |
---|---|
CN208597089U true CN208597089U (en) | 2019-03-12 |
Family
ID=65599757
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201820401417.2U Active CN208597089U (en) | 2018-03-23 | 2018-03-23 | A kind of network tunnel automatic switching control equipment based on network quality |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN208597089U (en) |
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108429674A (en) * | 2018-03-23 | 2018-08-21 | 上海地面通信息网络股份有限公司 | A kind of network tunnel automatic switching control equipment based on network quality |
CN111162985A (en) * | 2020-01-06 | 2020-05-15 | 武汉虹信通信技术有限责任公司 | Rail transit terminal backup system and method |
-
2018
- 2018-03-23 CN CN201820401417.2U patent/CN208597089U/en active Active
Cited By (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN108429674A (en) * | 2018-03-23 | 2018-08-21 | 上海地面通信息网络股份有限公司 | A kind of network tunnel automatic switching control equipment based on network quality |
CN111162985A (en) * | 2020-01-06 | 2020-05-15 | 武汉虹信通信技术有限责任公司 | Rail transit terminal backup system and method |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
US10673725B2 (en) | Determining operating statuses of applications in different datacenters and switching access between the applications | |
CN101729543B (en) | Method for improving performance of mobile SSL VPN by utilizing remote Socks5 technology | |
CN110178342A (en) | The scalable application level of SDN network monitors | |
US11153185B2 (en) | Network device snapshots | |
CN208597089U (en) | A kind of network tunnel automatic switching control equipment based on network quality | |
Sandor et al. | Resilience in the Internet of Things: The software defined networking approach | |
CN104283780A (en) | Method and device for establishing data transmission route | |
CN108667675A (en) | A kind of communication means, communication equipment and private line of communication are for network method | |
Zopellaro Soares et al. | SDN‐based teleprotection and control power systems: A study of available controllers and their suitability | |
CN109729059A (en) | Data processing method, device and computer | |
CN109150589A (en) | Based on the processing method and system that Open Stack virtual network obstruction is abnormal | |
KR20160022327A (en) | Methods for managing transaction in software defined networking network | |
CN108429674A (en) | A kind of network tunnel automatic switching control equipment based on network quality | |
Lange et al. | Transparent network services via a virtual traffic layer for virtual machines | |
Ayuso et al. | FT-FW: A cluster-based fault-tolerant architecture for stateful firewalls | |
Solomon et al. | Network traffic monitoring in an industrial environment | |
Janir et al. | Analysis about Benefits of Software-Defined Wide Area Network: A New Alternative for WAN Connectivity | |
CN114866362A (en) | Campus network addiction prevention method and system | |
CN106161051B (en) | Custom end intelligent route selection | |
Han et al. | Computer network failure and solution | |
CN117785483B (en) | Cross-domain heterogeneous computing power resource efficient interconnection and unified management system | |
Qureshi et al. | Simulation and visualization of transmission control protocol's (TCP) flow-control and multi-home options | |
RU131928U1 (en) | DEVICE FOR CHANGING TRAFFIC ROUTE FOR PROCESSING | |
Mena Diaz et al. | Analysis about benefits of software-defined wide area network: a new alternative for WAN connectivity | |
CN105373512B (en) | The implementation method and device of communication protocol for virtualized environment |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
GR01 | Patent grant | ||
GR01 | Patent grant |