WO2019228216A1 - 网络构建方法、系统及路由设备 - Google Patents

网络构建方法、系统及路由设备 Download PDF

Info

Publication number
WO2019228216A1
WO2019228216A1 PCT/CN2019/087690 CN2019087690W WO2019228216A1 WO 2019228216 A1 WO2019228216 A1 WO 2019228216A1 CN 2019087690 W CN2019087690 W CN 2019087690W WO 2019228216 A1 WO2019228216 A1 WO 2019228216A1
Authority
WO
WIPO (PCT)
Prior art keywords
network
user
routing device
route
cloud
Prior art date
Application number
PCT/CN2019/087690
Other languages
English (en)
French (fr)
Inventor
祝顺民
程钢
赵巍
黄蔚亭
温曙光
Original Assignee
阿里巴巴集团控股有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 阿里巴巴集团控股有限公司 filed Critical 阿里巴巴集团控股有限公司
Priority to EP19812571.8A priority Critical patent/EP3806407A4/en
Publication of WO2019228216A1 publication Critical patent/WO2019228216A1/zh
Priority to US17/100,462 priority patent/US20210075715A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/02Topology update or discovery
    • H04L45/08Learning-based routing, e.g. using neural networks or artificial intelligence
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/302Route determination based on requested QoS
    • H04L45/306Route determination based on the nature of the carried application
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/58Association of routers
    • H04L45/586Association of routers of virtual routers
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/64Routing or path finding of packets in data switching networks using an overlay routing layer
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services
    • H04L67/563Data redirection of data network streams

Definitions

  • the present invention relates to the field of Internet technology applications, and in particular, to a network construction method, system, and routing device.
  • Type one provides by the operator.
  • MPLS VPN MPLS VPN
  • Type two Built by the enterprise itself.
  • the typical technology is IPSEC VPN.
  • Type 1 requires a dedicated physical link to access the operator's network, and service providers provide quality of service (QoS) guarantee (bandwidth, packet loss, delay, etc.) and service operation and maintenance. It is more troublesome to open, longer construction time, higher price, larger bandwidth and better service.
  • QoS quality of service
  • the second type is because the underlying data forwarding is carried by the Internet. Due to the Internet's best-effort forwarding model, it cannot provide QoS guarantee, and requires enterprises to deploy specialized technical personnel for operation and maintenance.
  • the enterprise private network provided by the operator has the problems of being expensive, slow to open, and unable to be used as needed.
  • the enterprise private network operated by the enterprise has no service quality guarantee.
  • the direct connection method is only used for interconnection between the enterprise and the public cloud, and cannot be used for interconnection between different regions of the enterprise. At present, all direct connections need to be manually configured, and the operation and maintenance costs are high.
  • Embodiments of the present invention provide a network construction method, a system, and a routing device to at least solve the construction problems existing in the hybrid cloud environment due to the need to manually configure the interconnection between different regions of the enterprise in the prior art, Technical problems of high operation and maintenance costs and low operating efficiency.
  • a network construction method which includes: directly connecting a user's direct private line to a cloud platform through a routing device; and forwarding data to a target area in the cloud platform through the routing device.
  • the routing device includes: a dedicated line access router.
  • the method further includes: learning the route of the network where the user device is located based on the network controller of the cloud network where the cloud platform is located.
  • learning the route of the network where the user equipment is located based on the network controller of the cloud network where the cloud platform is located includes: obtaining a route of the user equipment to call a preset application programming interface; and obtaining the user according to the obtained route.
  • learning the route of the network where the user equipment is located based on the network controller of the cloud network where the cloud platform is located includes: obtaining a route according to a dynamic routing protocol running between the user equipment and the cloud network; and learning based on the route.
  • forwarding data to a target area in the cloud platform through a routing device includes: generating a data forwarding policy through user interworking intentions previously obtained by the routing device; forwarding data to the target area according to the data forwarding policy, where the target area includes : One or a combination of at least two of the virtual private network, the area where the user to be interacted with, or other resources on the cloud.
  • generating a data forwarding policy based on the user's interworking intent previously obtained by the routing device includes: receiving routing information sent by the routing device in the area where each user to be interacted with; and performing calculations based on the routing information through a software-defined network controller To generate a data forwarding strategy.
  • the software-defined network controller performs calculation based on the routing information
  • generating the data forwarding strategy includes: the software-defined network controller performs calculation based on the routing information, and generates a data forwarding strategy.
  • forwarding the data to the target area according to the data forwarding policy includes: sending the data forwarding policy to a corresponding routing device; and forwarding the data to the target area through the routing device.
  • a network construction apparatus including: an access module for connecting a user's directly connected private line to a cloud platform through a routing device; and a forwarding module for connecting the Data is forwarded to the target area in the cloud platform.
  • a network construction system including: a cloud platform, a routing device, and a user device.
  • the routing device connects the user device to the cloud platform through a user's direct private line to connect the user
  • the data sent by the device is forwarded to the target area in the cloud platform.
  • a routing device is used for the cloud network-based network controller to learn the route of the user's network, to obtain the user's interworking intention based on the learned route, and to generate a data forwarding policy based on the user's interworking intention. Forward to target area.
  • a routing device including: a processor; and a memory, connected to the processor, and configured to provide the processor with instructions for processing the following processing steps: directly connecting a user to a dedicated line Access the cloud platform through a routing device; forward the data to the target area through the routing device.
  • the processor is configured to obtain a route according to a dynamic routing protocol running between the user equipment and the cloud network; learn based on the route; or obtain a route that the user equipment calls a preset application programming interface; according to The obtained route is to obtain the route of the user's network in the cloud network and the route of the area where other users to be interacted with; and, based on the user's interworking intent obtained by the routing device in advance, to generate a data forwarding strategy; Data is forwarded to the target area.
  • a dynamic routing protocol running between the user equipment and the cloud network
  • learn based on the route or obtain a route that the user equipment calls a preset application programming interface
  • the obtained route is to obtain the route of the user's network in the cloud network and the route of the area where other users to be interacted with; and, based on the user's interworking intent obtained by the routing device in advance, to generate a data forwarding strategy; Data is forwarded to the target area.
  • a storage medium is further provided, and the storage medium includes a stored program, wherein, when the program runs, the device where the storage medium is located is controlled to perform the foregoing network construction method.
  • a processor is further provided.
  • the processor is configured to run a program, and the program executes the foregoing network construction method when the program is run.
  • the user's direct private line is connected to the public cloud through a routing device; the data is forwarded to the target area through the routing device, and the high-speed channel of the public cloud is used to implement the private network of the enterprise and The high-speed channels of the Internet and the public cloud are combined into one.
  • the automatic configuration of the user's private network is realized, allowing users to quickly open the private network of the enterprise, thereby solving the problem that the interconnection between different regions of the enterprise in the prior art requires manual configuration and The construction problems in the hybrid cloud environment cause technical problems of high operation and maintenance costs and low operating efficiency.
  • FIG. 1 is a block diagram of a hardware structure of a routing device according to a network construction method according to an embodiment of the present invention
  • FIG. 2 is a flowchart of a network construction method according to the first embodiment of the present invention.
  • FIG. 3 is a schematic diagram of constructing a network in a network construction method according to Embodiment 1 of the present invention.
  • FIG. 4 is a schematic diagram of route learning through a dynamic routing protocol in a network construction method according to Embodiment 1 of the present invention.
  • FIG. 5 is a schematic diagram of calculating a route by an SDN controller in a network construction method according to Embodiment 1 of the present invention.
  • FIG. 6 is a schematic structural diagram of a network construction apparatus according to Embodiment 2 of the present invention.
  • IDC Inernet DataCenter, Internet Data Center
  • Public cloud A third party provides cloud computing services shared by multiple customers, and is generally used over the Internet.
  • Private cloud A cloud computing service that is owned by the enterprise and only serves itself, and runs in the user's data center.
  • Hybrid cloud A hybrid of public and private clouds. Enterprise resources are distributed on both public and private clouds, with Internet connections in between.
  • Enterprise private network An IT service that is used to connect the resources of an enterprise in different locations and only serves that enterprise.
  • VPN technology such as MPLS VPN.
  • SDN Software-defined network.
  • CPE Customer, Equipment, Customer Terminal Equipment.
  • Site Refers to a certain place of the user.
  • QoS Quatity of Service, quality of service, generally including link delay, packet loss, jitter and other service characteristics.
  • VPC Virtual Private Cloud is a three-tier network virtualized on the public cloud.
  • VBR Virtual Border Router, a dedicated line access router.
  • an embodiment of a network construction method is also provided. It should be noted that the steps shown in the flowchart of the accompanying drawings can be executed in a computer system such as a set of computer-executable instructions. The logical order is shown in the flowchart, but in some cases the steps shown or described may be performed in a different order than here.
  • FIG. 1 is a block diagram of a hardware structure of a routing device according to a network construction method according to an embodiment of the present invention.
  • the routing device 10 may include one or more (only one shown in the figure) a processor 102 (the processor 102 may include, but is not limited to, a processing device such as a microprocessor MCU or a programmable logic device FPGA)
  • a memory 104 for storing data
  • a transmission device 106 for communication functions.
  • the routing device 10 may further include more or fewer components than those shown in FIG. 1, or have a different configuration from that shown in FIG. 1.
  • the memory 104 may be used to store software programs and modules of application software, such as program instructions / modules corresponding to the network construction method in the embodiment of the present invention.
  • the processor 102 executes various software programs and modules stored in the memory 104 to execute various programs.
  • Function application and data processing that is, a network construction method for realizing the above application program.
  • the memory 104 may include a high-speed random access memory, and may further include a non-volatile memory, such as one or more magnetic storage devices, a flash memory, or other non-volatile solid-state memory.
  • the memory 104 may further include memory remotely disposed with respect to the processor 102, and these remote memories may be connected to the routing device 10 through a network. Examples of the above network include, but are not limited to, the Internet, an intranet, a local area network, a mobile communication network, and combinations thereof.
  • the transmission device 106 is used for receiving or transmitting data via a network.
  • the above-mentioned specific examples of the network may include a wireless network provided by a communication provider of the routing device 10.
  • the transmission device 106 includes a network adapter (NIC), which can be connected to other network devices through a base station so as to communicate with the Internet.
  • the transmission device 106 may be a radio frequency (RF) module, which is used to communicate with the Internet in a wireless manner.
  • RF radio frequency
  • FIG. 2 is a flowchart of a network construction method according to the first embodiment of the present invention.
  • Step S202 Connect the user's directly connected dedicated line to the cloud platform through a routing device
  • Step S204 Forward the data to the target area in the cloud platform through the routing device.
  • FIG. 3 is a schematic diagram of constructing a network in the network construction method according to the first embodiment of the present invention. Connect the dedicated line Direct Connect to the dedicated line access router VBR (that is, the routing device provided in this application), and access the cloud network through the VBR.
  • VBR dedicated line access router
  • the terminal equipment used by the user in Figure 3 can be located in different places, that is, sites A to D in Figure 3, and users at each site can access the cloud network or virtual private network through the direct connection dedicated line via the routing device VBR. VPC.
  • the target area for VBR to forward data to the cloud platform can be any location in the cloud network where the cloud platform is located, such as various sites, VPCs, etc., depending on the object that the data is to interact with. This application does not Be limited.
  • VBR can forward traffic to vpc or other cloud resources, and it can also forward traffic to other sites of users.
  • this kind of forwarding is based on routing, and it can also be other Layer 2 forwarding mechanisms (forwarding based on mac or vlan).
  • the network construction method provided in this application is described by taking route forwarding as a preferred example, and the network construction method provided in this application is subject to implementation, which is not specifically limited.
  • the user's direct private line is connected to the public cloud through a routing device; the data is forwarded to the target area through the routing device, and the high-speed channel of the public cloud is used to implement the private network of the enterprise and
  • the high-speed channels of the public network and the public cloud are combined into one, and the automatic learning and automatic distribution of the route realizes the automatic configuration of the user's private network, allowing users to quickly open the private network of the enterprise, thereby solving the problems caused by existing enterprises in the existing technology.
  • the interconnection between different regions requires manual configuration and construction problems in a hybrid cloud environment, resulting in technical problems of high operation and maintenance costs and low operating efficiency.
  • the routing device includes: a dedicated line access router.
  • the network construction method provided in this application further includes:
  • Step S201 The network controller based on the cloud network where the cloud platform is located learns the route of the network where the user equipment is located.
  • step S201 learning the route of the network where the user equipment is located based on the network controller of the cloud network where the cloud platform is located includes:
  • Step S2011 Obtain a route for the user equipment to call a preset application programming interface
  • step S2012 according to the obtained route, the route of the network where the user is located in the cloud network and the route of the area where other users to be interacted are located are obtained.
  • step S201 learning the route of the network where the user equipment is located based on the network controller of the cloud network where the cloud platform is located includes:
  • Step S2013 obtaining a route according to a dynamic routing protocol running between the user equipment and the cloud network;
  • Step S2014 learning based on the route.
  • the network controller on the cloud provides an application programming interface (Application Programming Interface, API for short), which is called by the user to publish the user-side route to the network controller on the cloud. APIs are also provided to allow users to query routes on the cloud and other sites.
  • API Application Programming Interface
  • a dynamic routing protocol is run between the customer-side CPE (Customer, Equipment, and Wireless Terminal Access Equipment) and the cloud, as shown in Figure 4, which is performed by a dynamic routing protocol in the network construction method according to the first embodiment of the present invention.
  • the forwarding of data to the target area in the cloud platform through the routing device in step S204 includes:
  • Step S2041 Generate a data forwarding policy based on the user's interworking intention obtained in advance by the routing device;
  • step S2042 the data is forwarded to the target area according to the data forwarding policy.
  • the target area includes one or a combination of at least two of a virtual private network, an area where the user to be interacted with, or other resources on the cloud.
  • step S2041 generating a data forwarding policy through the user's interworking intention obtained in advance by the routing device includes:
  • Step S20411 Receive routing information sent by a routing device in the area where each user to be interacted with;
  • Step S20412 The software-defined network controller performs calculation according to the routing information to generate a data forwarding policy.
  • step S20412 the software-defined network controller performs calculation according to the routing information, and generating a data forwarding strategy includes:
  • step S204121 the routing controller in the software-defined network controller performs calculation according to the routing information to generate a data forwarding policy.
  • forwarding the data to the target area according to the data forwarding policy in step S2042 includes:
  • Step S20421 Send the data forwarding policy to the corresponding routing device
  • Step S20422 Forward the data to the target area through the routing device.
  • FIG. 5 is a schematic diagram of calculating a route by an SDN controller in the network construction method according to the first embodiment of the present invention.
  • the SDN controller receives the routes learned by each VBR feedback, and the SDN controller calculates the learned routes via the route controller, and the route controller automatically calculates the traffic for each component of the system according to the user's intent to communicate.
  • the route in the transmission process is then sent to the corresponding routing device in the form of a policy (that is, the data forwarding policy provided in this application), and the routing device performs data forwarding according to the policy.
  • the routing controller may be set in the SDN controller, or may exist in the system in the form of independently running devices.
  • VBR to VPC can be implemented through various system components, and the traffic forwarding between VBR and VBR can be performed in a direct connection between VBR and VBR. Transmission, or via routing via other system components.
  • different sites (sites A to D) of users in the network construction method provided by the present application can access different regions (regions) of the public cloud.
  • the network interconnection between different regions of the intermediate public cloud network is implemented by the public cloud service provider. Sites of users in different regions are interconnected through public cloud network services.
  • an enterprise private network is implemented through a high-speed channel of a public cloud (that is, a user's directly connected private line is connected to the public cloud through a routing device (such as a VBR)).
  • a routing device such as a VBR
  • the automatic configuration of the user's private network is realized, allowing users to quickly open the enterprise private network; of which, in this application, the learning of the route through VBR and the routing controller through the SDN controller Calculation of data stream transmission route, realize automatic learning and automatic distribution.
  • the network construction method provided in this application is different from the problem that the private network provided by the operator in the prior art is expensive, has a slow opening process, and cannot be used as needed.
  • the network construction method provided in this application uses dedicated line access for interconnection. In essence, a solution for clouding enterprise private network capabilities. Based on the above-mentioned routing learning, api configuration, and routing distribution, the enterprise private network services described in this application can be quickly launched, pay according to volume, and do not require users to perform operations and maintenance. , Reducing the pressure and cost of user operation and maintenance.
  • the network construction method provided by the application provides the capability of the enterprise private network, and calculates the data flow through the routing controller in the SDN controller to obtain the route of the data flow in the transmission process, and then uses the route in the form of a policy ( That is, the data forwarding policy provided in this application is sent to the corresponding routing device, and then the routing device performs data forwarding according to the policy. It has an automatic configuration function for interconnection between different regions of the enterprise, thereby achieving the use of cloud computing technology to provide enterprises Dedicated network services, enabling it to be quickly commissioned, charge-by-volume, and QoS guaranteed.
  • the network construction method according to the above embodiments can be implemented by means of software plus a necessary universal hardware platform. Of course, it can also be implemented by hardware, but in many cases The former is a better implementation.
  • the technical solution of the present invention in essence, or a part that contributes to the existing technology, can be embodied in the form of a software product, which is stored in a storage medium (such as ROM / RAM, magnetic disk, The optical disc) includes several instructions for causing a terminal device (which may be a mobile phone, a computer, a server, or a network device, etc.) to execute the methods described in the embodiments of the present invention.
  • FIG. 6 is a schematic structural diagram of a network construction apparatus according to Embodiment 2 of the present invention.
  • the apparatus includes:
  • the access module 62 is configured to connect a user's direct private line to the cloud platform through a routing device; the forwarding module 64 is configured to forward data to a target area in the cloud platform through the routing device.
  • a user's directly connected private line is connected to the cloud platform through a routing device; a user's directly connected private line is connected to the cloud platform through a routing device, and a high-speed channel of the public cloud is used to implement an enterprise private network.
  • the user's private network and public cloud high-speed channels are combined into one, and the automatic learning and automatic distribution of routes realizes the automatic configuration of the user's private network, allowing users to quickly open the private network of the enterprise, thereby solving the problem due to the existing technology.
  • Existing interconnections between enterprises in different regions require manual configuration and construction problems in a hybrid cloud environment, resulting in high operation and maintenance costs and technical problems of low operating efficiency.
  • a network construction system including: a cloud platform, a routing device, and a user device.
  • the routing device connects the user device to the cloud platform through a user's direct private line to connect the user
  • the data sent by the device is forwarded to the target area in the cloud platform
  • the public cloud, virtual private network, and the area where the user to be interacted accesses the cloud platform.
  • the area where the user to be interacted accesses the public cloud through a routing device, and accesses the virtual private network through a route between the routing devices.
  • a routing device is used for the cloud network-based network controller to learn the route of the user's network, to obtain the user's interworking intention based on the learned route, and to generate a data forwarding policy based on the user's interworking intention. Forward to target area.
  • the routing device is respectively connected to the public cloud, the virtual private network, and the area where the user to be interacted is used to connect the user's direct private line to the public cloud and send data to the target area, where the target area includes: virtual One or a combination of at least two of a private network, an area where a user to be interacted with, or other resources on the cloud.
  • a routing device including: a processor; and a memory, connected to the processor, and configured to provide the processor with instructions for processing the following processing steps: directly connecting a user to a dedicated line Access the cloud platform through a routing device; forward the data to the target area through the routing device.
  • the processor is configured to obtain a route according to a dynamic routing protocol running between the user equipment and the cloud network; learn based on the route; or obtain a route that the user equipment calls a preset application programming interface; according to The obtained route is to obtain the route of the user's network in the cloud network and the route of the area where other users to be interacted with; and, based on the user's interworking intent obtained by the routing device in advance, to generate a data forwarding strategy; and according to the data forwarding strategy, Data is forwarded to the target area.
  • a storage medium is also provided.
  • the storage medium includes a stored program, and the device where the storage medium is located is controlled to execute the network construction method in the first embodiment when the program is running.
  • a processor is further provided.
  • the processor is configured to run a program, and the program executes the network construction method in the first embodiment.
  • An embodiment of the present invention also provides a storage medium.
  • the storage medium may be used to store program code executed by the network construction method provided in the first embodiment.
  • the storage medium may be located in any routing device in a routing device group in a computer network, or in any mobile terminal in a mobile terminal group.
  • the storage medium is configured to store program code for performing the following steps: connecting a user's directly connected dedicated line to a cloud platform through a routing device; and forwarding data to the cloud platform through the routing device. target area.
  • the storage medium is configured to store program code for performing the following steps:
  • the routing device includes: a dedicated line access router.
  • the storage medium is configured to store program code for performing the following steps: Before connecting the user's directly connected dedicated line to the cloud platform through a routing device, based on the cloud network where the cloud platform is located The network controller learns the route of the network where the user equipment is located.
  • the storage medium is configured to store program code for performing the following steps:
  • the network controller based on the cloud network where the cloud platform is located learns the route of the network where the user equipment is located includes: Obtain a route for the user equipment to call a preset application programming interface; and obtain a route between the network in which the user is located in the cloud network and a route in the area where other users to be interacted are located according to the obtained route.
  • the storage medium is configured to store program code for performing the following steps: Learning the route of the network where the user equipment is located based on the network controller of the cloud network where the cloud platform is located includes: Dynamic routing protocol between user equipment and cloud network to obtain routes; learn based on routes.
  • the storage medium is configured to store program code for performing the following steps: forwarding data to a target area in the cloud platform through a routing device includes: a user interworking intention obtained in advance through the routing device, Generate a data forwarding policy; forward the data to the target area according to the data forwarding policy, where the target area includes one or a combination of at least two of a virtual private network, the area where the user to be interacted with, or other resources on the cloud.
  • the storage medium is configured to store program code for performing the following steps: the user interworking intention obtained in advance by the routing device, and generating a data forwarding policy includes: receiving the location of each user to be interacted with The routing information sent by the routing device in the area; the software-defined network controller calculates based on the routing information to generate a data forwarding strategy.
  • the storage medium is configured to store program code for performing the following steps: calculating by a software-defined network controller according to routing information, and generating a data forwarding policy includes: The routing controller calculates based on the routing information to generate a data forwarding strategy.
  • the storage medium is configured to store program code for performing the following steps: Forwarding data to a target area according to a data forwarding policy includes: sending the data forwarding policy to a corresponding routing device ; Forward the data to the target area through the routing device.
  • sequence numbers of the foregoing embodiments of the present invention are merely for description, and do not represent the superiority or inferiority of the embodiments.
  • the disclosed technical content can be implemented in other ways.
  • the device embodiments described above are only schematic.
  • the division of the unit is only a logical function division.
  • multiple units or components may be combined or may be combined. Integration into another system, or some features can be ignored or not implemented.
  • the displayed or discussed mutual coupling or direct coupling or communication connection may be indirect coupling or communication connection through some interfaces, units or modules, and may be electrical or other forms.
  • the units described as separate components may or may not be physically separated, and the components displayed as units may or may not be physical units, that is, may be located in one place, or may be distributed on multiple network units. Some or all of the units may be selected according to actual needs to achieve the objective of the solution of this embodiment.
  • each functional unit in each embodiment of the present invention may be integrated into one processing unit, or each unit may exist separately physically, or two or more units may be integrated into one unit.
  • the above integrated unit may be implemented in the form of hardware or in the form of software functional unit.
  • the integrated unit is implemented in the form of a software functional unit and sold or used as an independent product, it may be stored in a computer-readable storage medium.
  • the technical solution of the present invention essentially or part that contributes to the existing technology or all or part of the technical solution can be embodied in the form of a software product, which is stored in a storage medium , Including a number of instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to perform all or part of the steps of the method described in various embodiments of the present invention.
  • the foregoing storage media include: U disks, Read-Only Memory (ROM), Random Access Memory (RAM), mobile hard disks, magnetic disks, or optical disks, and other media that can store program codes .

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Artificial Intelligence (AREA)
  • Evolutionary Computation (AREA)
  • Medical Informatics (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

本发明公开了一种网络构建方法、系统及路由设备。其中,该方法包括:将用户的直连专线通过路由设备接入云平台;通过路由设备将数据转发至云平台中的目标区域。本发明解决了由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云环境中存在的构建问题,导致的运维成本高,运行效率低下的技术问题。

Description

网络构建方法、系统及路由设备
本申请要求2018年05月31日递交的申请号为201810550604.1、发明名称为“网络构建方法、系统及路由设备”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本发明涉及互联网技术应用领域,具体而言,涉及一种网络构建方法、系统及路由设备。
背景技术
传统的企业专网,都是基于各种VPN技术实现的。按照业务性质的不同,有两种典型类型:类型一、由运营商提供的。典型技术是MPLS VPN。类型二、由企业自行建设的。典型技术是IPSEC VPN。
其中,类型一中多数需要有专门的物理链路接入到运营商网络中,服务提供商提供服务质量(Quatity of Service,简称QoS)保障(带宽,丢包,延迟等)和服务运维。其开通较为麻烦,施工时间较长,价格较高,带宽较大,服务较好。而类型二由于其底层的数据转发是由互联网承载的,由于互联网的尽力服务的转发模型,无法提供QoS保障,并且需要企业配备专门的技术人员进行运维。
另一方面,随着混合云架构的兴起,企业将企业自身的IT资源同时放在公有云和私有云上,一般把敏感数据(例如:公司决策、银行信息、用户及员工信息)存储在企业内部的私有云里,以保证数据安全;把其它面向资源放在公有云上(例如:企业发布会详情),以此为客户提供服务。其中,通过网络进行连接。公有云服务提供商为了支持混合云架构,一般也提供两种互连机制连接公有云的资源:其一,基于IPSEC VPN。其二,基于专线接入。专线是一条由公有云服务提供商或者第三方合作伙伴(包括运营商)提供的网络连接。
但是由运营商的提供的企业专网存在价格昂贵,开通流程慢,不能按需使用的问题。而由企业运维的企业专网却也无服务质量保证。并且通过直连Direct Connect的方式只用于企业与公有云的互联互通,不能用于企业不同地域之间互连,并且目前所有的Direct Connect需要手工配置,开通运维成本高。
针对上述由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云 环境中存在的构建问题,导致的运维成本高,运行效率低下的问题,目前尚未提出有效的解决方案。
发明内容
本发明实施例提供了一种网络构建方法、系统及路由设备,以至少解决由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云环境中存在的构建问题,导致的运维成本高,运行效率低下的技术问题。
根据本发明实施例的一个方面,提供了一种网络构建方法,包括:将用户的直连专线通过路由设备接入云平台;通过路由设备将数据转发至云平台中的目标区域。
可选的,路由设备包括:专线接入路由器。
可选的,在将用户的直连专线通过路由设备接入云平台之前,该方法还包括:基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由。
进一步地,可选的,基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:获取用户设备调用预设的应用程序编程接口的路由;根据获取的路由,得到用户所处网络在云网络中的路由与其他待交互用户所在区域之间的路由。
可选的,基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:根据运行于用户设备与云网络之间的动态路由协议,获取路由;依据路由进行学习。
可选的,通过路由设备将数据转发至云平台中的目标区域包括:通过路由设备预先获取的用户互通意图,生成数据转发策略;依据数据转发策略将数据转发至目标区域,其中,目标区域包括:虚拟专用网、待交互用户所在区域或其他云上资源中的一种或至少两种的组合。
进一步地,可选的,通过路由设备预先获取的用户互通意图,生成数据转发策略包括:接收各个待交互用户所在区域中的路由设备发送的路由信息;通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略。
可选的,通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略包括:通过软件定义网络控制器中的路由控制器依据路由信息进行计算,生成数据转发策略。
进一步地,可选的,依据数据转发策略将数据转发至目标区域包括:将数据转发策略发送至对应的路由设备;通过路由设备将数据转发至目标区域。
根据本发明实施例的另一方面,还提供了一种网络构建装置,包括:接入模块,用于将用户的直连专线通过路由设备接入云平台;转发模块,用于通过路由设备将数据转 发至云平台中的目标区域。
根据本发明实施例的又一方面,还提供了一种网络构建系统,包括:云平台、路由设备和用户设备,路由设备将用户设备通过用户的直连专线接入云平台,用于将用户设备发送的数据转发至云平台中的目标区域。
可选的,路由设备,用于基于云网络的网络控制器学习用户所处网络的路由,根据学习后的路由获取用户互通意图,并根据用户互通意图生成数据转发策略,依据数据转发策略将数据转发至目标区域。
根据本发明实施例的再一方面,还提供了一种路由设备,包括:处理器;以及存储器,与处理器连接,用于为处理器提供处理以下处理步骤的指令:将用户的直连专线通过路由设备接入云平台;通过路由设备将数据转发至目标区域。
可选的,处理器,用于根据运行于用户设备与云网络之间的动态路由协议,获取路由;并依据路由进行学习;或,获取用户设备调用预设的应用程序编程接口的路由;根据获取的路由,得到用户所处网络在云网络中的路由与其他待交互用户所在区域之间的路由;以及,通过路由设备预先获取的用户互通意图,生成数据转发策略;并依据数据转发策略将数据转发至目标区域。
根据本发明另一实施例的一方面,还提供了一种存储介质,存储介质包括存储的程序,其中,在程序运行时控制存储介质所在设备执行上述网络构建方法。
根据本发明另一实施例的再一方面,还提供了一种处理器,处理器用于运行程序,其中,程序运行时执行上述网络构建方法。
在本发明实施例中,通过将用户的直连专线通过路由设备接入公有云;通过路由设备将数据转发至目标区域,通过公有云的高速通道,实现了企业专网,把用户的企业专网和公有云的高速通道合二为一。并且从路由的自动学习和自动分发,实现了用户专网的自动配置,允许用户快速开通企业专网,进而解决了由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云环境中存在的构建问题,导致的运维成本高,运行效率低下的技术问题。
附图说明
此处所说明的附图用来提供对本发明的进一步理解,构成本申请的一部分,本发明的示意性实施例及其说明用于解释本发明,并不构成对本发明的不当限定。在附图中:
图1是本发明实施例的一种网络构建方法的路由设备的硬件结构框图;
图2是根据本发明实施例一的网络构建方法的流程图;
图3是根据本发明实施例一的网络构建方法中构建网络的示意图;
图4是根据本发明实施例一的网络构建方法中通过动态路由协议进行路由学习的示意图;
图5是根据本发明实施例一的网络构建方法中通过SDN控制器计算路由的示意图;
图6是根据本发明实施例二的网络构建装置的结构示意图。
具体实施方式
为了使本技术领域的人员更好地理解本发明方案,下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行清楚、完整地描述,显然,所描述的实施例仅仅是本发明一部分的实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都应当属于本发明保护的范围。
需要说明的是,本发明的说明书及上述附图中的术语“第一”、“第二”等是用于区别类似的对象,而不必用于描述特定的顺序或先后次序。应该理解这样使用的数据在适当情况下可以互换,以便这里描述的本发明的实施例能够以除了在这里图示或描述的那些以外的顺序实施。此外,术语“包括”和“具有”以及他们的任何变形,意图在于覆盖不排他的包含,例如,包含了一系列步骤或单元的过程、方法、系统、产品或设备不必限于清楚地列出的那些步骤或单元,而是可包括没有清楚地列出的或对于这些过程、方法、产品或设备固有的其它步骤或单元。
本申请涉及的技术名词:
IDC:Inernet DataCenter,互联网数据中心
公有云:由第三方提供多方客户共享的云计算服务,一般通过互联网使用。
私有云:由企业自身拥有并只为自身服务的云计算服务,运行在用户的数据中心中。
混合云:公有云和私有云的混合体,企业的资源同时分布在公有云和私有云上,中间通过互联网连接。
企业专网:一种IT服务,用于连接企业分布在不同地点的资源,只为该企业服务。一般使用VPN技术实现,比如MPLS VPN等。
SDN:Software-defined networking,软件定义网络。
CPE:Customer Premise Equipment,客户终端设备。
用户侧:在混合云架构中,指属于企业的IT设施和设备。
Site:指用户的某个场所。
QoS:Quatity of Service,服务质量,一般包括链路的延迟,丢包,抖动等服务特性。
VPC:Virtual Private Cloud虚拟专用网,在公有云上虚拟出来的三层网络。
VBR:Virtual Border Router,专线接入路由器。
实施例1
根据本发明实施例,还提供了一种网络构建方法实施例,需要说明的是,在附图的流程图示出的步骤可以在诸如一组计算机可执行指令的计算机系统中执行,并且,虽然在流程图中示出了逻辑顺序,但是在某些情况下,可以以不同于此处的顺序执行所示出或描述的步骤。
本申请实施例一所提供的方法实施例可以在移动终端、路由设备或者类似的运算装置中执行。以运行在路由设备上为例,图1是本发明实施例的一种网络构建方法的路由设备的硬件结构框图。如图1所示,路由设备10可以包括一个或多个(图中仅示出一个)处理器102(处理器102可以包括但不限于微处理器MCU或可编程逻辑器件FPGA等的处理装置)、用于存储数据的存储器104、以及用于通信功能的传输装置106。本领域普通技术人员可以理解,图1所示的结构仅为示意,其并不对上述电子装置的结构造成限定。例如,路由设备10还可包括比图1中所示更多或者更少的组件,或者具有与图1所示不同的配置。
存储器104可用于存储应用软件的软件程序以及模块,如本发明实施例中的网络构建方法对应的程序指令/模块,处理器102通过运行存储在存储器104内的软件程序以及模块,从而执行各种功能应用以及数据处理,即实现上述的应用程序的网络构建方法。存储器104可包括高速随机存储器,还可包括非易失性存储器,如一个或者多个磁性存储装置、闪存、或者其他非易失性固态存储器。在一些实例中,存储器104可进一步包括相对于处理器102远程设置的存储器,这些远程存储器可以通过网络连接至路由设备10。上述网络的实例包括但不限于互联网、企业内部网、局域网、移动通信网及其组合。
传输装置106用于经由一个网络接收或者发送数据。上述的网络具体实例可包括路由设备10的通信供应商提供的无线网络。在一个实例中,传输装置106包括一个网络适配器(Network Interface Controller,NIC),其可通过基站与其他网络设备相连从而可与互联网进行通讯。在一个实例中,传输装置106可以为射频(Radio Frequency,RF)模块,其用于通过无线方式与互联网进行通讯。
在上述运行环境下,本申请提供了如图2所示的网络构建方法。图2是根据本发明实施例一的网络构建方法的流程图。
步骤S202,将用户的直连专线通过路由设备接入云平台;
步骤S204,通过路由设备将数据转发至云平台中的目标区域。
具体的,结合步骤S202至步骤S204,本申请提供的网络构建方法如图3所示,图3是根据本发明实施例一的网络构建方法中构建网络的示意图,其中,图3中用户的直连专线Direct Connect接入到专线接入路由器VBR(即,本申请提供的路由设备)上,通过VBR访问云网络。
这里图3中用户所使用的终端设备可以位于不同的场所中,即,图3中的siteA至site D,每个site中的用户可以通过直连专线经由路由设备VBR访问云网络或虚拟专用网VPC。需要说明的是,VBR将数据转发至云平台中的目标区域可以是云平台所处云网络中任一位置,例如各个site、VPC等位置,具体基于数据所要交互的对象而定,本申请不做限定。
在图3中VBR既能将流量转发到vpc或者其它云上的资源中,也能将流量转发到用户的其它site。一般这种转发是根据路由转发,也可以是其它的二层转发机制(根据mac或者vlan转发)。本申请提供的网络构建方法以路由转发为优选示例进行说明,以实现本申请提供的网络构建方法为准,具体不做限定。
在本发明实施例中,通过将用户的直连专线通过路由设备接入公有云;通过路由设备将数据转发至目标区域,通过公有云的高速通道,实现了企业专网,把用户的企业专网和公有云的高速通道合二为一,并且从路由的自动学习和自动分发,实现了用户专网的自动配置,允许用户快速开通企业专网,进而解决了由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云环境中存在的构建问题,导致的运维成本高,运行效率低下的技术问题。
可选的,路由设备包括:专线接入路由器。
可选的,在步骤S202中将用户的直连专线通过路由设备接入云平台之前,本申请提供的网络构建方法还包括:
步骤S201,基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由。
进一步地,可选的,步骤S201中基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:
步骤S2011,获取用户设备调用预设的应用程序编程接口的路由;
步骤S2012,根据获取的路由,得到用户所处网络在云网络中的路由与其他待交互用户所在区域之间的路由。
可选的,步骤S201中基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:
步骤S2013,根据运行于用户设备与云网络之间的动态路由协议,获取路由;
步骤S2014,依据路由进行学习。
具体的,结合步骤S2011至步骤S2014,本申请提供的网络构建方法中用户路由学习通过两种机制实现,具体如下:
机制一(对应步骤S2011和步骤S2012):
云上的网络控制器提供应用程序编程接口(Application Programming Interface,简称api),用户进行调用,把用户侧的路由发布给云上的网络控制器。同时也提供api,允许用户查询云上和其它site的路由。
机制二(对应步骤S2013和步骤S2014):
在用户侧CPE(Customer Premise Equipment,无线终端接入设备)和云上之间运行动态路由协议,如图4所示,图4是根据本发明实施例一的网络构建方法中通过动态路由协议进行路由学习的示意图。以BGP为例进行说明,BGP是最广泛的用于此场景的路由协议,其它路由协议还包括:RIP,RIPng,这里不做赘述。
需要说明的是本申请提到的动态路由协议仅以上述为例进行说明,以实现本申请提供的网络构建方法为准,具体不做限定。
可选的,步骤S204中通过路由设备将数据转发至云平台中的目标区域包括:
步骤S2041,通过路由设备预先获取的用户互通意图,生成数据转发策略;
步骤S2042,依据数据转发策略将数据转发至目标区域,其中,目标区域包括:虚拟专用网、待交互用户所在区域或其他云上资源中的一种或至少两种的组合。
进一步地,可选的,步骤S2041中通过路由设备预先获取的用户互通意图,生成数据转发策略包括:
步骤S20411,接收各个待交互用户所在区域中的路由设备发送的路由信息;
步骤S20412,通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略。
可选的,步骤S20412中通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略包括:
步骤S204121,通过软件定义网络控制器中的路由控制器依据路由信息进行计算, 生成数据转发策略。
进一步地,可选的,步骤S2042中依据数据转发策略将数据转发至目标区域包括:
步骤S20421,将数据转发策略发送至对应的路由设备;
步骤S20422,通过路由设备将数据转发至目标区域。
具体的,结合上述步骤S204,为了支持企业专网的快速构建,需要能根据用户意图直接计算系统组件上的路由(VBR以及公有云虚拟网络的一些其它组件),为此,本申请提供的网络构建方法在虚拟网络的控制器(图5中的SDN控制器)中设计了一个路由控制器实现此功能。如图5所示,图5是根据本发明实施例一的网络构建方法中通过SDN控制器计算路由的示意图。
由图5可知,SDN控制器接收各个VBR反馈学习到的路由,SDN控制器将学习到的路由经由路由控制器进行计算,由路由控制器根据用户互通意图,自动为系统每个组件计算该流量在传输过程中的路由,然后将该路由以策略的形式(即,本申请提供的数据转发策略)发送至对应的路由设备,再由路由设备根据该策略进行数据转发。
综上,本申请提供的网络构建方法中路由控制器可以设置于SDN控制器中,或以独立运行的设备为形式存在于系统中。
需要说明的是,本申请中数据流量在转发的过程中经由VBR至VPC的过程,可以通过经由各个系统组件实现,VBR与VBR之间的流量转发可以以VBR与VBR之间直连的方式进行传输,或通过路由经由其他系统组件的形式进行传输。
基于图3,本申请提供的网络构建方法中用户的不同的site(siteA~D)可以接入公有云的不同地域(region)。中间的公有云网络的不同地域之间的网络互连由公有云服务提供商实现。在不同地域的用户的site通过公有云网络服务进行了互连。
本申请提供的网络构建方法中通过公有云的高速通道(即,将用户的直连专线通过路由设备(例如VBR)接入公有云),实现了企业专网。把用户的企业专网和公有云的高速通道合二为一。并且从路由的自动学习和自动分发,实现了用户专网的自动配置,允许用户快速开通企业专网;其中,在本申请中通过VBR对路由的学习,以及通过SDN控制器中路由控制器对数据流传输路由的计算,实现自动学习和自动分发。
本申请提供的网络构建方法区别于现有技术中由运营商的提供的企业专网价格昂贵,开通流程慢,不能按需使用的问题,本申请提供的网络构建方法中使用专线接入进行互联,本质上一种企业专网能力云化的方案,基于上述的路由学习,api配置,路由分发,使得本申请描述的企业专网服务能够快速开通、按量付费,并且不需要用户进行运 维,减轻了用户运维的压力和成本。
并且规避了现有技术中由企业运维的企业专网无服务质量保证的问题,本申请提供的网络构建方法中由公有云服务提供商提供服务质量保证。
同样规避了现有技术中Direct Connect只用于企业与公有云的互联互通,不能用于企业不同地域之间互连,并且目前所有的Direct Connect需要手工配置,开通运维成本高的问题,本申请提供的网络构建方法中提供了企业专网的能力,并且通过SDN控制器中的路由控制器对数据流进行计算,得到数据流在传输过程中的路由,然后将该路由以策略的形式(即,本申请提供的数据转发策略)发送至对应的路由设备,再由路由设备根据该策略进行数据转发,对企业不同地域之间互连具有自动配置功能,从而达到了利用云计算技术提供企业专网服务,使之具备快速开通,按量计费,QoS保障等特性。
需要说明的是,对于前述的各方法实施例,为了简单描述,故将其都表述为一系列的动作组合,但是本领域技术人员应该知悉,本发明并不受所描述的动作顺序的限制,因为依据本发明,某些步骤可以采用其他顺序或者同时进行。其次,本领域技术人员也应该知悉,说明书中所描述的实施例均属于优选实施例,所涉及的动作和模块并不一定是本发明所必须的。
通过以上的实施方式的描述,本领域的技术人员可以清楚地了解到根据上述实施例的网络构建方法可借助软件加必需的通用硬件平台的方式来实现,当然也可以通过硬件,但很多情况下前者是更佳的实施方式。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质(如ROM/RAM、磁碟、光盘)中,包括若干指令用以使得一台终端设备(可以是手机,计算机,服务器,或者网络设备等)执行本发明各个实施例所述的方法。
实施例2
根据本发明实施例,还提供了一种用于实施上述网络构建方法的装置,如图6所示,图6是根据本发明实施例二的网络构建装置的结构示意图,该装置包括:
接入模块62,用于将用户的直连专线通过路由设备接入云平台;转发模块64,用于通过路由设备将数据转发至云平台中的目标区域。
在本发明实施例中,通过将用户的直连专线通过路由设备接入云平台;将用户的直连专线通过路由设备接入云平台,通过公有云的高速通道,实现了企业专网,把用户的企业专网和公有云的高速通道合二为一,并且从路由的自动学习和自动分发,实现了用 户专网的自动配置,允许用户快速开通企业专网,进而解决了由于现有技术中存在的企业不同地域之间的互连需要手工配置且在混合云环境中存在的构建问题,导致的运维成本高,运行效率低下的技术问题。
实施例3
根据本发明实施例的又一方面,还提供了一种网络构建系统,包括:云平台、路由设备和用户设备,路由设备将用户设备通过用户的直连专线接入云平台,用于将用户设备发送的数据转发至云平台中的目标区域
其中,公有云、虚拟专用网和待交互用户所在区域接入上述云平台,待交互用户所在区域通过路由设备接入公有云,并通过路由设备之间的路由接入虚拟专用网。
可选的,路由设备,用于基于云网络的网络控制器学习用户所处网络的路由,根据学习后的路由获取用户互通意图,并根据用户互通意图生成数据转发策略,依据数据转发策略将数据转发至目标区域。
具体的,路由设备,分别与公有云、虚拟专用网和待交互用户所在区域连接,用于将用户的直连专线接入公有云,并将数据发送至目标区域,其中,目标区域包括:虚拟专用网、待交互用户所在区域或其他云上资源中的一种或至少两种的组合。
实施例4
根据本发明实施例的再一方面,还提供了一种路由设备,包括:处理器;以及存储器,与处理器连接,用于为处理器提供处理以下处理步骤的指令:将用户的直连专线通过路由设备接入云平台;通过路由设备将数据转发至目标区域。
可选的,处理器,用于根据运行于用户设备与云网络之间的动态路由协议,获取路由;并依据路由进行学习;或,获取用户设备调用预设的应用程序编程接口的路由;根据获取的路由,得到用户所处网络在云网络中的路由与其他待交互用户所在区域之间的路由;以及,通过路由设备预先获取的用户互通意图,生成数据转发策略;并依据数据转发策略将数据转发至目标区域。
实施例5
根据本发明实施例的再一方面,还提供了一种存储介质,存储介质包括存储的程序,其中,在程序运行时控制存储介质所在设备执行上述实施例一中的网络构建方法。
实施例6
根据本发明实施例的再一方面,还提供了一种处理器,处理器用于运行程序,其中,程序运行时执行上述实施例一中的网络构建方法。
实施例7
本发明的实施例还提供了一种存储介质。可选地,在本实施例中,上述存储介质可以用于保存上述实施例一所提供的网络构建方法所执行的程序代码。
可选地,在本实施例中,上述存储介质可以位于计算机网络中路由设备群中的任意一个路由设备中,或者位于移动终端群中的任意一个移动终端中。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:将用户的直连专线通过路由设备接入云平台;通过路由设备将数据转发至云平台中的目标区域。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:路由设备包括:专线接入路由器。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:在将用户的直连专线通过路由设备接入云平台之前,基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由。
进一步地,可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:获取用户设备调用预设的应用程序编程接口的路由;根据获取的路由,得到用户所处网络在云网络中的路由与其他待交互用户所在区域之间的路由。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:基于云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:根据运行于用户设备与云网络之间的动态路由协议,获取路由;依据路由进行学习。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:通过路由设备将数据转发至云平台中的目标区域包括:通过路由设备预先获取的用户互通意图,生成数据转发策略;依据数据转发策略将数据转发至目标区域,其中,目标区域包括:虚拟专用网、待交互用户所在区域或其他云上资源中的一种或至少两种的组合。
进一步地,可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:通过路由设备预先获取的用户互通意图,生成数据转发策略包括:接收各个待交互用户所在区域中的路由设备发送的路由信息;通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略。
可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:通过软件定义网络控制器依据路由信息进行计算,生成数据转发策略包括:通过软件定义 网络控制器中的路由控制器依据路由信息进行计算,生成数据转发策略。
进一步地,可选地,在本实施例中,存储介质被设置为存储用于执行以下步骤的程序代码:依据数据转发策略将数据转发至目标区域包括:将数据转发策略发送至对应的路由设备;通过路由设备将数据转发至目标区域。
上述本发明实施例序号仅仅为了描述,不代表实施例的优劣。
在本发明的上述实施例中,对各个实施例的描述都各有侧重,某个实施例中没有详述的部分,可以参见其他实施例的相关描述。
在本申请所提供的几个实施例中,应该理解到,所揭露的技术内容,可通过其它的方式实现。其中,以上所描述的装置实施例仅仅是示意性的,例如所述单元的划分,仅仅为一种逻辑功能划分,实际实现时可以有另外的划分方式,例如多个单元或组件可以结合或者可以集成到另一个系统,或一些特征可以忽略,或不执行。另一点,所显示或讨论的相互之间的耦合或直接耦合或通信连接可以是通过一些接口,单元或模块的间接耦合或通信连接,可以是电性或其它的形式。
所述作为分离部件说明的单元可以是或者也可以不是物理上分开的,作为单元显示的部件可以是或者也可以不是物理单元,即可以位于一个地方,或者也可以分布到多个网络单元上。可以根据实际的需要选择其中的部分或者全部单元来实现本实施例方案的目的。
另外,在本发明各个实施例中的各功能单元可以集成在一个处理单元中,也可以是各个单元单独物理存在,也可以两个或两个以上单元集成在一个单元中。上述集成的单元既可以采用硬件的形式实现,也可以采用软件功能单元的形式实现。
所述集成的单元如果以软件功能单元的形式实现并作为独立的产品销售或使用时,可以存储在一个计算机可读取存储介质中。基于这样的理解,本发明的技术方案本质上或者说对现有技术做出贡献的部分或者该技术方案的全部或部分可以以软件产品的形式体现出来,该计算机软件产品存储在一个存储介质中,包括若干指令用以使得一台计算机设备(可为个人计算机、服务器或者网络设备等)执行本发明各个实施例所述方法的全部或部分步骤。而前述的存储介质包括:U盘、只读存储器(ROM,Read-Only Memory)、随机存取存储器(RAM,Random Access Memory)、移动硬盘、磁碟或者光盘等各种可以存储程序代码的介质。
以上所述仅是本发明的优选实施方式,应当指出,对于本技术领域的普通技术人员来说,在不脱离本发明原理的前提下,还可以做出若干改进和润饰,这些改进和润饰也 应视为本发明的保护范围。

Claims (13)

  1. 一种网络构建方法,其特征在于,包括:
    将用户的直连专线通过路由设备接入云平台;
    通过所述路由设备将数据转发至所述云平台中的目标区域。
  2. 根据权利要求1所述的网络构建方法,其特征在于,所述路由设备包括:专线接入路由器。
  3. 根据权利要求1所述的网络构建方法,其特征在于,在所述将用户的直连专线通过路由设备接入云平台之前,所述方法还包括:
    基于所述云平台所处的云网络的网络控制器学习用户设备所处网络的路由。
  4. 根据权利要求3所述的网络构建方法,其特征在于,所述基于所述云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:
    获取所述用户设备调用预设的应用程序编程接口的路由;
    根据获取的所述路由,得到所述用户所处网络在所述云网络中的路由与其他待交互用户所在区域之间的路由。
  5. 根据权利要求3所述的网络构建方法,其特征在于,所述基于所述云平台所处的云网络的网络控制器学习用户设备所处网络的路由包括:
    根据运行于所述用户设备与所述云网络之间的动态路由协议,获取所述路由;
    依据所述路由进行学习。
  6. 根据权利要求1至5中任一项所述的网络构建方法,其特征在于,所述通过所述路由设备将数据转发至所述云平台中的目标区域包括:
    通过所述路由设备预先获取的用户互通意图,生成数据转发策略;
    依据所述数据转发策略将所述数据转发至所述目标区域。
  7. 根据权利要求6所述的网络构建方法,其特征在于,所述通过所述路由设备预先获取的用户互通意图,生成数据转发策略包括:
    接收各个待交互用户所在区域中的路由设备发送的路由信息;
    通过软件定义网络控制器依据所述路由信息进行计算,生成所述数据转发策略。
  8. 根据权利要求7所述的网络构建方法,其特征在于,所述通过软件定义网络控制器依据所述路由信息进行计算,生成所述数据转发策略包括:
    通过所述软件定义网络控制器中的路由控制器依据所述路由信息进行计算,生成所述数据转发策略。
  9. 根据权利要求8所述的网络构建方法,其特征在于,所述依据所述数据转发策略将所述数据转发至所述目标区域包括:
    将所述数据转发策略发送至对应的路由设备;
    通过所述路由设备将所述数据转发至所述目标区域。
  10. 一种网络构建系统,其特征在于,包括:
    云平台、路由设备和用户设备,
    所述路由设备将所述用户设备通过用户的直连专线接入所述云平台,用于将所述用户设备发送的数据转发至所述云平台中的目标区域。
  11. 根据权利要求10所述的网络构建系统,其特征在于,
    所述路由设备,用于基于云网络的网络控制器学习用户所处网络的路由,根据学习后的路由获取用户互通意图,并根据所述用户互通意图生成数据转发策略,依据所述数据转发策略将所述数据转发至所述目标区域。
  12. 一种路由设备,其特征在于,包括:
    处理器;以及
    存储器,与所述处理器连接,用于为所述处理器提供处理以下处理步骤的指令:将用户的直连专线通过路由设备接入云平台;通过所述路由设备将数据转发至目标区域。
  13. 根据权利要求12所述的路由设备,其特征在于,
    所述处理器,用于根据运行于用户设备与云网络之间的动态路由协议,获取所述路由;并依据所述路由进行学习;或,获取所述用户设备调用预设的应用程序编程接口的路由;根据获取的所述路由,得到所述用户所处网络在所述云网络中的路由与其他待交互用户所在区域之间的路由;以及,通过所述路由设备预先获取的用户互通意图,生成数据转发策略;并依据所述数据转发策略将所述数据转发至所述目标区域。
PCT/CN2019/087690 2018-05-31 2019-05-21 网络构建方法、系统及路由设备 WO2019228216A1 (zh)

Priority Applications (2)

Application Number Priority Date Filing Date Title
EP19812571.8A EP3806407A4 (en) 2018-05-31 2019-05-21 ROUTING METHOD, SYSTEM, AND DEVICE FOR ESTABLISHING A NETWORK
US17/100,462 US20210075715A1 (en) 2018-05-31 2020-11-20 Network Construction Method, System, and Routing Device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201810550604.1 2018-05-31
CN201810550604.1A CN110557332B (zh) 2018-05-31 2018-05-31 网络构建方法、系统及路由设备

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US17/100,462 Continuation US20210075715A1 (en) 2018-05-31 2020-11-20 Network Construction Method, System, and Routing Device

Publications (1)

Publication Number Publication Date
WO2019228216A1 true WO2019228216A1 (zh) 2019-12-05

Family

ID=68696818

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2019/087690 WO2019228216A1 (zh) 2018-05-31 2019-05-21 网络构建方法、系统及路由设备

Country Status (4)

Country Link
US (1) US20210075715A1 (zh)
EP (1) EP3806407A4 (zh)
CN (1) CN110557332B (zh)
WO (1) WO2019228216A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023197873A1 (zh) * 2022-04-11 2023-10-19 中兴通讯股份有限公司 音视频系统、接入方法、路由转发方法及可读存储介质

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110912758A (zh) * 2019-12-24 2020-03-24 赵鹏 一种结合公有云和传统idc资源的网络架构
CN113141266B (zh) * 2020-01-17 2022-05-31 中国移动通信集团浙江有限公司 基于软件定义网络的网络管理系统及方法
CN111797128A (zh) * 2020-05-26 2020-10-20 苏宁云计算有限公司 用于管理企业间共享数据的架构、方法、装置和存储介质
CN112950063B (zh) * 2021-03-29 2023-05-09 国网河北省电力有限公司经济技术研究院 区域能源互补方法和装置
CN113206776A (zh) * 2021-04-26 2021-08-03 中国联合网络通信集团有限公司 混合云网络连接方法、系统及控制器
CN114499935B (zh) * 2021-12-17 2023-08-29 阿里巴巴(中国)有限公司 云平台的访问方法、装置、设备及存储介质
CN114189566B (zh) * 2022-02-14 2022-07-19 阿里巴巴达摩院(杭州)科技有限公司 无线通信方法、网关、设备及系统
CN114826825B (zh) * 2022-04-19 2024-04-16 北京金山云网络技术有限公司 云网络的组网方法、装置及云网络
CN114785670A (zh) * 2022-04-21 2022-07-22 中国建设银行股份有限公司 一种专线接入方法及装置

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102710965A (zh) * 2012-05-29 2012-10-03 中国联合网络通信集团有限公司 视频监控数据获取方法和系统,以及承载专用网络
WO2014140941A1 (en) * 2013-03-13 2014-09-18 International Business Machines Corporation Secure matching supporting fuzzy data
CN105681075A (zh) * 2015-12-30 2016-06-15 中国银联股份有限公司 基于混合云平台的网络管理系统
CN106571992A (zh) * 2016-10-27 2017-04-19 深圳市深信服电子科技有限公司 虚拟专线建立方法及装置

Family Cites Families (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20020091850A1 (en) * 1992-10-23 2002-07-11 Cybex Corporation System and method for remote monitoring and operation of personal computers
US8243589B1 (en) * 2008-08-14 2012-08-14 United Services Automobile Association (Usaa) Systems and methods for data center load balancing
EP4009606B1 (en) * 2011-11-29 2023-09-20 Amazon Technologies, Inc. Interfaces to manage direct network peerings
CN104753828B (zh) * 2013-12-31 2019-10-25 华为技术有限公司 一种sdn控制器、数据中心系统和路由连接方法
CN105530639B (zh) * 2014-09-28 2019-01-22 中国电信股份有限公司 一种网络控制器和网络控制方法
CN104902005A (zh) * 2015-04-13 2015-09-09 中国联合网络通信集团有限公司 一种混合云中的资源调度方法、系统和私有云
US20170017907A1 (en) * 2015-07-13 2017-01-19 Cisco Technology, Inc. Supply chain excellence as a service
CN105681188A (zh) * 2015-12-28 2016-06-15 国云科技股份有限公司 一种云平台的软路由器虚拟机实现方法
CN105721306B (zh) * 2016-02-04 2019-03-15 杭州数梦工场科技有限公司 一种配置信息的传输方法和装置
CN105681191B (zh) * 2016-02-25 2019-04-30 烽火通信科技股份有限公司 基于路由器虚拟化的sdn平台及实现方法
US10819630B1 (en) * 2016-04-20 2020-10-27 Equinix, Inc. Layer three instances for a cloud-based services exchange
US10024675B2 (en) * 2016-05-10 2018-07-17 Microsoft Technology Licensing, Llc Enhanced user efficiency in route planning using route preferences
US10601779B1 (en) * 2016-06-21 2020-03-24 Amazon Technologies, Inc. Virtual private network (VPN) service backed by eventually consistent regional database
KR20180050999A (ko) * 2016-11-07 2018-05-16 주식회사 케이티 모바일 백홀 네트워크 슬라이싱을 통한 전용 회선 구성 시스템 및 방법
US10560431B1 (en) * 2016-12-05 2020-02-11 Amazon Technologies, Inc. Virtual private gateway for encrypted communication over dedicated physical link
CN106651724A (zh) * 2017-01-03 2017-05-10 山东浪潮商用系统有限公司 一种基于混合云的电子税务局系统
WO2018154701A1 (ja) * 2017-02-24 2018-08-30 株式会社Fuji 不具合情報共有システム
CN107483339B (zh) * 2017-09-15 2020-03-13 中国联合网络通信集团有限公司 一种云平台及视频监控方法
US11102079B2 (en) * 2018-04-17 2021-08-24 Microsoft Technology Licensing, Llc Cross-regional virtual network peering

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102710965A (zh) * 2012-05-29 2012-10-03 中国联合网络通信集团有限公司 视频监控数据获取方法和系统,以及承载专用网络
WO2014140941A1 (en) * 2013-03-13 2014-09-18 International Business Machines Corporation Secure matching supporting fuzzy data
CN105681075A (zh) * 2015-12-30 2016-06-15 中国银联股份有限公司 基于混合云平台的网络管理系统
CN106571992A (zh) * 2016-10-27 2017-04-19 深圳市深信服电子科技有限公司 虚拟专线建立方法及装置

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP3806407A4

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2023197873A1 (zh) * 2022-04-11 2023-10-19 中兴通讯股份有限公司 音视频系统、接入方法、路由转发方法及可读存储介质

Also Published As

Publication number Publication date
EP3806407A1 (en) 2021-04-14
CN110557332A (zh) 2019-12-10
CN110557332B (zh) 2022-05-06
EP3806407A4 (en) 2021-12-15
US20210075715A1 (en) 2021-03-11

Similar Documents

Publication Publication Date Title
WO2019228216A1 (zh) 网络构建方法、系统及路由设备
US11115327B2 (en) Methods, systems, and computer readable media for providing mobile device connectivity
US10567288B1 (en) Automatic discovery, scaling, and load balancing of multiple cloud data centers in a software-defined network environment
US20060291447A1 (en) Virtual circuits in packet networks
CN107786613B (zh) 宽带远程接入服务器bras转发实现方法和装置
CN103548376B (zh) 通过openflow数据平面在云计算机中实现epc
US9615318B2 (en) Multiplexing core networks in RAN sharing
CN111106991A (zh) 一种云专线系统及其业务发放和开通方法
EP2922252A1 (en) Selectable service node resources
US8542580B2 (en) Method and system for transporting service flow securely in an IP network
CN109788041B (zh) 一种基于utn网络的sdn云网一体化系统
CN104767696B (zh) Sdn化的接入网中控制用户接入的方法及装置
WO2020048348A1 (zh) 数据传输方法和系统
EP3151477B1 (en) Fast path content delivery over metro access networks
CN108882305A (zh) 一种数据包的分流方法及装置
CN107241454A (zh) 一种实现地址管理的方法、装置、aaa服务器及sdn控制器
CN107566196A (zh) 组网方法和组网装置、用户边缘设备及可读存储介质
US20080159298A1 (en) System and method to provide multiple private networks
CN103249091A (zh) 一种HQoS控制方法、RSG及HQoS控制系统
KR20160063166A (ko) Sdn 기반의 제어기의 데이터 경로 변경 방법
US20240098030A1 (en) Cloud-based application recognition to support application-aware functionality on customer premises equipment
Rajan et al. Application of nfv and sdn to 5g infrastructure
CN115883256A (zh) 基于加密隧道的数据传输方法、装置及存储介质
CN1195365C (zh) 一种基于带外信令的ip网络系统
Alvarez-Vaquero et al. Network VoIP for corporative environment design

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 19812571

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

ENP Entry into the national phase

Ref document number: 2019812571

Country of ref document: EP

Effective date: 20210111