TWI456950B - 網路系統及通訊流量控制方法 - Google Patents

網路系統及通訊流量控制方法 Download PDF

Info

Publication number
TWI456950B
TWI456950B TW100132978A TW100132978A TWI456950B TW I456950 B TWI456950 B TW I456950B TW 100132978 A TW100132978 A TW 100132978A TW 100132978 A TW100132978 A TW 100132978A TW I456950 B TWI456950 B TW I456950B
Authority
TW
Taiwan
Prior art keywords
packet
switch
storm
sampling
discarding
Prior art date
Application number
TW100132978A
Other languages
English (en)
Other versions
TW201225587A (en
Inventor
Shihomi Sato
Original Assignee
Nec Corp
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Nec Corp filed Critical Nec Corp
Publication of TW201225587A publication Critical patent/TW201225587A/zh
Application granted granted Critical
Publication of TWI456950B publication Critical patent/TWI456950B/zh

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L47/00Traffic control in data switching networks
    • H04L47/10Flow control; Congestion control
    • H04L47/32Flow control; Congestion control by discarding or delaying data units, e.g. packets or frames
    • H04L47/323Discarding or blocking control packets, e.g. ACK packets
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L47/00Traffic control in data switching networks
    • H04L47/10Flow control; Congestion control
    • H04L47/32Flow control; Congestion control by discarding or delaying data units, e.g. packets or frames
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L49/00Packet switching elements
    • H04L49/55Prevention, detection or correction of errors
    • H04L49/555Error detection
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L49/00Packet switching elements
    • H04L49/55Prevention, detection or correction of errors
    • H04L49/557Error correction, e.g. fault recovery or fault tolerance
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/38Flow based routing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/64Routing or path finding of packets in data switching networks using an overlay routing layer
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/70Routing based on monitoring results

Claims (8)

  1. 一種網路系統,其包括:開關,其依據內部的流動表所登錄之項目,轉送封包;以及控制器,當判斷對該開關進行封包取樣的結果為所取樣的封包為流量風暴的原因時,針對該開關,設定指示該封包的配對條件及定義丟棄該封包的動作的丟棄用項目;其中該開關,在發生流量風暴時,依據該丟棄用項目,以流動單位丟棄肇因的封包。
  2. 如申請專利範圍第1項所述之網路系統,其中該控制器包括:定期取得從該開關轉送封包的統計資訊的裝置;從該統計資訊檢測得知轉送封包的增加量高過設定閾值時,若從前一次封包取樣結束時已經過特定時間,則對該開關開始封包取樣的裝置;從該統計資訊檢測得知轉送封包的增加量低於設定閾值時,結束對於該開關的封包取樣的裝置。
  3. 如申請專利範圍第1或2項所述之網路系統,該控制器更包括:從該封包取樣的結果,判斷屬於廣播風暴、多播風暴、或者單播風暴中何者的裝置;若為廣播風暴、多播風暴、或者單播風暴中任一者,則將所取樣的封包判斷為流量風暴的肇因之裝置。
  4. 一種控制器,其包括: 監視依據內部的流動表所登錄之項目轉送封包的開關,對該開關進行封包取樣的裝置;當判斷對該開關進行封包取樣的結果所取樣的封包為流量風暴的原因時,針對該開關,設定指示該封包的配對條件及定義丟棄該封包的動作的丟棄用項目,在該開關發生流量風暴時,控制該開關,使其依據該丟棄用項目,以流動單位丟棄肇因的封包的裝置。
  5. 一種通訊流量控制方法,其包括下列步驟:在開關中,依據內部的流動表所登錄之項目,轉送封包;在控制器中,當判斷對該開關進行封包取樣的結果所取樣的封包為流量風暴的原因時,針對該開關,設定指示該封包的配對條件及定義丟棄該封包的動作的丟棄用項目;在該開關中,當發生流量風暴時,依據該丟棄用項目,以流動單位丟棄肇因的封包。
  6. 如申請專利範圍第5項所述之通訊流量控制方法,更包括:在該控制器中,定期取得從該開關轉送封包的統計資訊的步驟;從該統計資訊檢測得知轉送封包的增加量高過設定閾值時,若從前一次封包取樣結束時已經過特定時間,則對該開關開始封包取樣的步驟;從該統計資訊檢測得知轉送封包的增加量低於設定閾 值時,結束對於該開關的封包取樣的步驟。
  7. 如申請專利範圍第5或6項所述之通訊流量控制方法,更包括:在該控制器中,從該封包取樣的結果,判斷屬於廣播風暴、多播風暴、或者單播風暴中何者的步驟;若為廣播風暴、多播風暴、或者單播風暴中任一者,則將所取樣的封包判斷為流量風暴的肇因之步驟。
  8. 一種儲存媒體,其儲存一程式,用以使得一計算機執行下列步驟:監視依據內部的流動表所登錄之項目轉送封包的開關,對該開關進行封包取樣的步驟;當判斷對該開關進行封包取樣的結果所取樣的封包為流量風暴的原因時,針對該開關,設定指示該封包的配對條件及定義丟棄該封包的動作的丟棄用項目,在該開關發生流量風暴時,控制該開關,使其依據該丟棄用項目,以流動單位丟棄肇因的封包的步驟。
TW100132978A 2010-10-28 2011-09-14 網路系統及通訊流量控制方法 TWI456950B (zh)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
JP2010242248 2010-10-28

Publications (2)

Publication Number Publication Date
TW201225587A TW201225587A (en) 2012-06-16
TWI456950B true TWI456950B (zh) 2014-10-11

Family

ID=45993546

Family Applications (1)

Application Number Title Priority Date Filing Date
TW100132978A TWI456950B (zh) 2010-10-28 2011-09-14 網路系統及通訊流量控制方法

Country Status (8)

Country Link
US (1) US20130188489A1 (zh)
EP (1) EP2634977A4 (zh)
JP (1) JP5510687B2 (zh)
CN (1) CN103181128A (zh)
CA (1) CA2814830A1 (zh)
RU (1) RU2576480C2 (zh)
TW (1) TWI456950B (zh)
WO (1) WO2012056816A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9825850B2 (en) 2015-06-30 2017-11-21 Industrial Technology Research Institute Network controlling method and network controller

Families Citing this family (52)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3461077A1 (en) 2011-01-13 2019-03-27 NEC Corporation Network system and routing method
US9270476B2 (en) * 2012-01-17 2016-02-23 Telefonaktiebolaget L M Ericsson Methods and apparatus for network protection
US9184995B2 (en) * 2012-04-11 2015-11-10 Gigamon Inc. Traffic visibility in an open networking environment
JP6059336B2 (ja) 2012-04-13 2017-01-11 テケレック・インコーポレイテッドTekelec, Inc. Diameter過負荷制御を実行するための方法、システムおよびコンピュータ読取可能媒体
CN103929334B (zh) 2013-01-11 2018-02-23 华为技术有限公司 网络异常通知方法和装置
US9537904B2 (en) 2013-01-24 2017-01-03 Tekelec, Inc. Methods, systems, and computer readable media for using policy knowledge of or obtained by a policy and charging rules function (PCRF) for needs based forwarding of bearer session traffic to network nodes
US9609086B2 (en) 2013-03-15 2017-03-28 International Business Machines Corporation Virtual machine mobility using OpenFlow
US9104643B2 (en) 2013-03-15 2015-08-11 International Business Machines Corporation OpenFlow controller master-slave initialization protocol
US9769074B2 (en) 2013-03-15 2017-09-19 International Business Machines Corporation Network per-flow rate limiting
US9118984B2 (en) 2013-03-15 2015-08-25 International Business Machines Corporation Control plane for integrated switch wavelength division multiplexing
US9444748B2 (en) 2013-03-15 2016-09-13 International Business Machines Corporation Scalable flow and congestion control with OpenFlow
US9596192B2 (en) 2013-03-15 2017-03-14 International Business Machines Corporation Reliable link layer for control links between network controllers and switches
US9407560B2 (en) * 2013-03-15 2016-08-02 International Business Machines Corporation Software defined network-based load balancing for physical and virtual networks
US20140301226A1 (en) * 2013-04-09 2014-10-09 Electronics And Telecommunications Research Institute Apparatus and method for network monitoring and packet inspection
WO2014175335A1 (ja) * 2013-04-24 2014-10-30 日本電気株式会社 制御装置、計算機システム、通信制御方法及びプログラム
CN104243337B (zh) * 2013-06-09 2017-09-01 新华三技术有限公司 一种跨集群负载均衡的方法及装置
US9450872B2 (en) 2013-06-24 2016-09-20 Oracle International Corporation Methods, systems and computer readable media for collecting and distributing diameter overload control information to non-adjacent nodes
US9391897B2 (en) * 2013-07-31 2016-07-12 Oracle International Corporation Methods, systems, and computer readable media for mitigating traffic storms
US9369386B2 (en) 2013-07-31 2016-06-14 Oracle International Corporation Methods, systems, and computer readable media for destination-host defined overload scope
US9240949B2 (en) 2013-07-31 2016-01-19 Oracle International Corporation Methods, systems and computer readable media for predicting overload conditions using load information
CN104348656B (zh) * 2013-08-07 2018-09-07 中国移动通信集团北京有限公司 一种数据采集方法和装置
EP3039843B1 (de) * 2013-08-26 2023-01-11 Continental Automotive Technologies GmbH Filterverfahren zur anpassung einer rechenlast
US9537775B2 (en) 2013-09-23 2017-01-03 Oracle International Corporation Methods, systems, and computer readable media for diameter load and overload information and virtualization
JP6127900B2 (ja) * 2013-10-18 2017-05-17 富士通株式会社 パケット処理装置、パケット処理方法、パケット処理プログラム
CN104579810B (zh) * 2013-10-23 2019-10-25 中兴通讯股份有限公司 软件定义网络流量采样方法和系统
US9838483B2 (en) 2013-11-21 2017-12-05 Oracle International Corporation Methods, systems, and computer readable media for a network function virtualization information concentrator
CN104660565B (zh) 2013-11-22 2018-07-20 华为技术有限公司 恶意攻击的检测方法和装置
US11388082B2 (en) 2013-11-27 2022-07-12 Oracle International Corporation Methods, systems, and computer readable media for diameter routing using software defined network (SDN) functionality
CN103746928A (zh) * 2013-12-30 2014-04-23 迈普通信技术股份有限公司 利用访问控制列表控制流量的方法和系统
CN104796340B (zh) * 2014-01-22 2018-11-27 新华三技术有限公司 一种组播数据传输方法和设备
JP6076937B2 (ja) * 2014-03-28 2017-02-08 株式会社日立製作所 パケット伝送システムおよびネットワークコントローラ
CN104113839A (zh) * 2014-07-14 2014-10-22 蓝盾信息安全技术有限公司 基于sdn的移动数据安全保护系统及方法
US9749242B2 (en) 2014-08-20 2017-08-29 At&T Intellectual Property I, L.P. Network platform as a service layer for open systems interconnection communication model layer 4 through layer 7 services
US10291689B2 (en) 2014-08-20 2019-05-14 At&T Intellectual Property I, L.P. Service centric virtual network function architecture for development and deployment of open systems interconnection communication model layer 4 through layer 7 services in a cloud computing system
US9800673B2 (en) 2014-08-20 2017-10-24 At&T Intellectual Property I, L.P. Service compiler component and service controller for open systems interconnection layer 4 through layer 7 services in a cloud computing system
US9742690B2 (en) 2014-08-20 2017-08-22 At&T Intellectual Property I, L.P. Load adaptation architecture framework for orchestrating and managing services in a cloud computing system
US9473567B2 (en) 2014-08-20 2016-10-18 At&T Intellectual Property I, L.P. Virtual zones for open systems interconnection layer 4 through layer 7 services in a cloud computing system
US10218604B2 (en) * 2015-01-19 2019-02-26 Hewlett Packard Enterprise Development Lp Engines to prune overlay network traffic
US9917729B2 (en) 2015-04-21 2018-03-13 Oracle International Corporation Methods, systems, and computer readable media for multi-layer orchestration in software defined networks (SDNs)
US10027760B2 (en) 2015-05-22 2018-07-17 Oracle International Corporation Methods, systems, and computer readable media for short and long term policy and charging rules function (PCRF) load balancing
US10439929B2 (en) * 2015-07-31 2019-10-08 Avago Technologies International Sales Pte. Limited Graceful recovery of a multicast-enabled switch
CN105187324B (zh) * 2015-08-21 2018-01-30 上海斐讯数据通信技术有限公司 一种sdn流转发的数量限制方法和控制系统
TWI599204B (zh) * 2016-01-28 2017-09-11 神雲科技股份有限公司 伺服器的封包過濾方法及基板管理控制器
JP6724427B2 (ja) * 2016-03-07 2020-07-15 日本電気株式会社 コントローラ、通信スイッチ、通信システム、通信制御方法、及びプログラム
RU2618191C1 (ru) * 2016-04-22 2017-05-02 Федеральное государственное казенное военное образовательное учреждение высшего образования "Академия Федеральной службы охраны Российской Федерации" (Академия ФСО России) Система передачи трафика в мультисервисных сетях связи
US10264040B2 (en) * 2016-08-03 2019-04-16 Big Switch Networks, Inc. Systems and methods to manage multicast traffic
CN108156014B (zh) * 2016-12-06 2021-08-13 华为技术有限公司 一种环路故障处理方法和交换机
US11627111B2 (en) * 2020-03-02 2023-04-11 Cisco Technology, Inc. Systems and methods for implementing universal targets in network traffic classification
CN114050907B (zh) * 2020-07-23 2023-05-02 华为技术有限公司 网络数据包的过滤方法,终端设备和可读存储介质
CN112073333B (zh) * 2020-08-28 2022-05-06 苏州浪潮智能科技有限公司 一种基于SONiC开发的智能容器化流量风暴控制方法与系统
CN112187639B (zh) * 2020-08-31 2021-11-19 西安交通大学 一种基于流属性的数据包路径编码的生成方法及系统
CN115941534A (zh) * 2022-12-08 2023-04-07 贵州电网有限责任公司 一种针对电力系统局域网的网络风暴源溯源方法

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
JP2004056340A (ja) * 2002-07-18 2004-02-19 Nec Corp Ipフロー多段ハッシュ装置、ipフロー多段ハッシュ方法、ipフロー多段ハッシュプログラム及びその記録媒体
TW200503473A (en) * 2003-06-30 2005-01-16 Intel Corp System and method for dynamically configuring and transitioning wired and wireless networks
US7088701B1 (en) * 2000-04-14 2006-08-08 Qualcomm, Inc. Method and apparatus for adaptive transmission control in a high data rate communication system
JP2010141731A (ja) * 2008-12-12 2010-06-24 Mitsubishi Electric Corp レイヤ2スイッチ

Family Cites Families (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5636345A (en) * 1995-03-30 1997-06-03 Bay Networks, Inc. Method and apparatus for detecting and preventing broadcast storms on an emulated local area network
JPH11112544A (ja) 1997-10-01 1999-04-23 Hitachi Ltd Lanスイッチ
US7274665B2 (en) * 2002-09-30 2007-09-25 Intel Corporation Packet storm control
JP4667129B2 (ja) 2005-06-13 2011-04-06 富士通株式会社 通信制御方法及び,これを適用する通信装置
CN101286996A (zh) * 2008-05-30 2008-10-15 北京星网锐捷网络技术有限公司 一种风暴攻击抵抗方法与装置
CN101364999B (zh) * 2008-09-18 2012-07-04 华为技术有限公司 一种基于流的服务质量处理的方法、设备及系统
CN102349268B (zh) * 2009-03-09 2015-11-25 日本电气株式会社 OpenFlow通信系统和OpenFlow通信方法
JP2010242248A (ja) 2009-04-03 2010-10-28 Teijin Ltd 超微細炭素繊維の製造方法
US9124515B2 (en) * 2010-11-22 2015-09-01 Hewlett-Packard Development Company, L.P. Elephant flow detection in a computing device
US8879397B2 (en) * 2011-05-13 2014-11-04 Polytechnic Institute Of New York University Balancing load in a network, such as a data center network, using flow based routing

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7088701B1 (en) * 2000-04-14 2006-08-08 Qualcomm, Inc. Method and apparatus for adaptive transmission control in a high data rate communication system
JP2004056340A (ja) * 2002-07-18 2004-02-19 Nec Corp Ipフロー多段ハッシュ装置、ipフロー多段ハッシュ方法、ipフロー多段ハッシュプログラム及びその記録媒体
TW200503473A (en) * 2003-06-30 2005-01-16 Intel Corp System and method for dynamically configuring and transitioning wired and wireless networks
JP2010141731A (ja) * 2008-12-12 2010-06-24 Mitsubishi Electric Corp レイヤ2スイッチ

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
Kyriakos Zarifis, Georgia Kontesidou, "Openflow Virtual Networking A Flow-Based Network Virtualization Architecture",2009 http://www.diva-portal.org/smash/get/diva2%3A302700/FULLTEXT01.pdf Parulkar, Larry Peterson, Jennifer Rexford, Scott Shenker, Jonathan Turner, "OpenFlow: Enabling Innovation in Campus Networks", 2008/03/14 OpenFlow Switch Specification v0.8.9 2008/12/02 *

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9825850B2 (en) 2015-06-30 2017-11-21 Industrial Technology Research Institute Network controlling method and network controller

Also Published As

Publication number Publication date
KR20130060349A (ko) 2013-06-07
TW201225587A (en) 2012-06-16
RU2576480C2 (ru) 2016-03-10
JP5510687B2 (ja) 2014-06-04
US20130188489A1 (en) 2013-07-25
JPWO2012056816A1 (ja) 2014-03-20
EP2634977A4 (en) 2015-01-07
EP2634977A1 (en) 2013-09-04
RU2013119723A (ru) 2014-12-10
WO2012056816A1 (ja) 2012-05-03
CN103181128A (zh) 2013-06-26
CA2814830A1 (en) 2012-05-03

Similar Documents

Publication Publication Date Title
TWI456950B (zh) 網路系統及通訊流量控制方法
WO2012148620A4 (en) Handling large volumes of internet live unicast content streams
EP2728948B1 (en) Method, device and storage medium for adjusting wake-up period of terminal
JP2014534781A5 (zh)
JP2016509437A5 (zh)
EP2058736A3 (en) Systems and methods for flow monitoring and sampling using flow identifiers
WO2015039519A1 (zh) 数据处理的方法及装置
WO2007144867A3 (en) Voice over ip capturing
JP2010016909A5 (zh)
EP1898563A3 (fr) Procédé et système de commande à distance d'équipements domestiques
JP2014078858A5 (zh)
WO2008091354A3 (en) Triggering flow analysis at intermediary devices
JP2006352262A5 (zh)
EP2528277A3 (en) Multiple protocol correlation and topology detection in eHRPD networks
WO2018108071A1 (zh) 选择转发路径的方法和设备
JP2017509272A5 (zh)
EP1906591A3 (en) Method, device and system for detecting layer 2 loop
WO2015107385A3 (en) Methods and network device for oversubscription handling
WO2008021470A3 (en) Transient analysis of packet queuing loss in a broadcast network
JP2011530951A5 (zh)
JP2019533358A5 (zh)
JP2010074818A5 (zh)
WO2016023487A1 (zh) 基于静电除尘过滤器的除霾新风系统及其控制方法
WO2010062020A3 (en) System for controlling path maximum transmission unit by detecting repetitional ip packet fragmentation and method thereof
JP2009218743A5 (zh)

Legal Events

Date Code Title Description
MM4A Annulment or lapse of patent due to non-payment of fees