WO2021017764A1 - 探测多层数据的方法及装置 - Google Patents

探测多层数据的方法及装置 Download PDF

Info

Publication number
WO2021017764A1
WO2021017764A1 PCT/CN2020/100450 CN2020100450W WO2021017764A1 WO 2021017764 A1 WO2021017764 A1 WO 2021017764A1 CN 2020100450 W CN2020100450 W CN 2020100450W WO 2021017764 A1 WO2021017764 A1 WO 2021017764A1
Authority
WO
WIPO (PCT)
Prior art keywords
data
detection information
data detection
layer data
layer
Prior art date
Application number
PCT/CN2020/100450
Other languages
English (en)
French (fr)
Inventor
李志军
周晟
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2021017764A1 publication Critical patent/WO2021017764A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/12Network monitoring probes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/02Protocols based on web technology, e.g. hypertext transfer protocol [HTTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management
    • H04L67/141Setup of application sessions

Definitions

  • This application relates to the field of communications, for example, to methods and devices for detecting multiple layers of data.
  • the control plane and user plane separation (CU separation, CUPS, Control and User Plane Separation) architecture is the fourth generation mobile communication technology (4G, the 4th Generation Mobile Communication Technology) system and the fifth generation mobile communication technology (5G, the 5th) The functional architecture supported by Generation Mobile Communication Technology) systems.
  • the purpose of CU separation is to control the control plane function (CPF, Control Plane Function) of the session function and the user plane function (UPF, User Plane Function) forwarding control data (including Internet Protocol (IP) data and non-IP data) ) Is separated to separate UPF from the traditional architecture and focus on data detection and forwarding.
  • the Packet Forward Control Protocol (PFCP, Packet Forward Control Protocol) is used between CPF and UPF.
  • the message sent by the CPF to the UPF carries a packet detection rule (PDR, Packet Detection Rule), which is used to instruct the UPF how to detect the service data flow (Service Data Flow).
  • PDR Packet Detection Rule
  • Service Data Flow Service Data Flow
  • the embodiment of the present application provides a method for detecting multiple layers of data, including:
  • the uplink data or the downlink data is detected.
  • the embodiment of the application provides a method for sending information, including:
  • Multi-layer data detection information Sending multi-layer data detection information, where the multi-layer data detection information is used to detect uplink data or downlink data.
  • the embodiment of the present application provides a device for detecting multiple layers of data, including:
  • the receiving module is used to receive multi-layer data detection information
  • the detection module is used to detect uplink data or downlink data according to the multi-layer data detection information.
  • the embodiment of the present application provides a device for sending information, including:
  • the sending module is used to send multi-layer data detection information, and the multi-layer data detection information is used to detect uplink data or downlink data.
  • the embodiment of the present application provides a UPF entity for detecting multiple layers of data, including a processor and a memory;
  • the memory is used to store instructions
  • the processor is configured to read the instructions to execute any of the above-mentioned methods of detecting multi-layer data.
  • the embodiment of the present application provides a CPF entity that sends information, including: a processor and a memory;
  • the memory is used to store instructions
  • the processor is configured to read the instructions to execute any implementation of the method for sending information as described above.
  • the embodiment of the present application provides a communication system, including the foregoing UPF entity and the foregoing CPF entity.
  • An embodiment of the present application provides a storage medium that stores a computer program, and when the computer program is executed by a processor, any one of the methods in the embodiments of the present application is implemented.
  • the method for detecting multi-layer data provided by the embodiment of the present application detects uplink data or downlink data according to the received multi-layer data detection information, thereby realizing detection of multi-layer data.
  • FIG. 1 is a schematic diagram of the implementation process of a method for detecting multiple layers of data according to an embodiment of the application;
  • FIG. 2 is a schematic flowchart of a specific implementation method for detecting multi-layer data according to an embodiment of the application
  • FIG. 3 is a schematic diagram 1 of the PDR structure of an embodiment of the application.
  • FIG. 4 is a second schematic diagram of the PDR structure of an embodiment of the application.
  • FIG. 5 is a third schematic diagram of the PDR structure of an embodiment of the application.
  • FIG. 6 is a fourth schematic diagram of the PDR structure of an embodiment of this application.
  • FIG. 7 is a schematic structural diagram of an apparatus for detecting multi-layer data according to an embodiment of the application.
  • FIG. 8 is a schematic diagram of the UPF entity structure for detecting multi-layer data according to an embodiment of the application.
  • FIG. 9 is a schematic diagram of a CPF entity structure for sending information according to an embodiment of the application.
  • Fig. 10 is a schematic structural diagram of a communication system according to an embodiment of the application.
  • FIG. 1 is a schematic diagram of the implementation process of a method for detecting multiple layers of data according to an embodiment of the application, including:
  • Step S11 Receive multi-layer data detection information.
  • Step S12 Detect uplink data or downlink data according to the multi-layer data detection information.
  • UPF can include part of the user plane functions of the Serving Gateway (SGW) in the 4G system, that is, the Serving Gateway-User (SGW-U); and the packet data network gateway ( The user plane part of the Packet Data Network Gateway (PGW), namely the user plane of the Packet Data Network Gateway-User (PGW-U); or the user plane part of the data detection function (Traffic Detection Function, TDF), That is, the data detection function user plane (Traffic Detection Function-User, TDF-U). Or include UPF in 5G system.
  • SGW Serving Gateway
  • SGW-U Packet Data Network Gateway
  • TDF Traffic Detection Function
  • the above-mentioned multi-layer data detection information is carried in a PDR; the PDR is carried in a PFCP session establishment request or a PFCP session change request.
  • the multi-layer data detection information includes: outer layer data detection information and inner layer data detection information.
  • the multi-layer data detection information is carried in the PDR, including: the outer layer data detection information and the inner layer data detection information, respectively, in the two service data flow filter templates of the PDR (SDF Filter, Service Data Flow Filter); or, the outer layer data detection information and the inner layer data detection information are respectively carried in two flow descriptions (Flow Description) of the SDF Filter of the PDR.
  • detecting uplink data or downlink data according to the multi-layer data detection information includes: generating a corresponding multi-layer data detection rule based on the multi-layer data detection information; the multi-layer data The detection rule is used to indicate matching detection for multi-layer data; according to the multi-layer data detection rule, matching detection is performed on the multi-layer data in the uplink data or the downlink data.
  • the matching detection of the multiple layers of data in the uplink data or downlink data according to the multi-layer data detection rule includes: for the uplink data or downlink data, according to the external data Layer data detection information performs a first matching detection on outer layer data; in the case where the first matching detection is successful, performing a second matching detection on inner layer data according to the inner layer data detection information; in the second matching detection In the case of success, it is determined that there are multiple layers of data in the uplink data or downlink data.
  • HTTPS HyperText Transfer Protocol
  • HTTPS data is a kind of multi-layered data.
  • the inner layer is Hypertext Transfer Protocol (HTTP) data, which is encapsulated in the outer layer of Secure Sockets Layer (SSL, Secure Sockets Layer)/Transport Layer Security (TLS, Transport Layer Security) packets Inside.
  • SSL Secure Sockets Layer
  • TLS Transport Layer Security
  • the multi-layer data detection information is HTTPS data detection information
  • the HTTPS data detection information includes: SSL/TLS data detection information and HTTP data detection information.
  • the multi-layer data detection information is carried in the PDR, including: the SSL/TLS data detection information and the HTTP data detection information, which are carried in two SDF Filters of the PDR respectively;
  • the SSL/TLS data detection information and the HTTP data detection information are respectively carried in two stream descriptions of the SDF of the PDR.
  • detecting uplink data or downlink data according to the multi-layer data detection information includes: generating corresponding HTTPS data detection rules according to the HTTPS data detection information; the HTTPS data detection rules are used Instructs to perform matching detection on HTTPS data; according to the HTTPS data detection rule, perform matching detection on HTTPS data in the uplink data or downlink data.
  • the matching detection of HTTPS data in the uplink data or downlink data according to the HTTPS data detection rule includes: for the uplink data or downlink data, according to the SSL/TLS The data detection information performs a third matching detection on the outer layer SSL/TLS data; in the case of a successful third matching detection, a fourth matching detection is performed on the inner layer HTTP data according to the HTTP data detection information; in the fourth If the matching detection is successful, it is determined that HTTPS data exists in the uplink data or the downlink data.
  • An embodiment of the present application also proposes a method for sending information, including: sending multi-layer data detection information, where the multi-layer data detection information is used to detect uplink data or downlink data.
  • CPF can include part of the control plane functions of the Serving Gateway (SGW) in the 4G system, namely the Serving Gateway-Control (SGW-C); packet data network gateway ( Part of the control plane function of the PDN Gateway (PGW), namely the control plane of the Packet Data Network Gateway-Control (PGW-C); or part of the control plane function of the data detection function (Traffic Detection Function, TDF), namely the data Detection function user interface (Traffic Detection Function-Control, TDF-C). Or it includes the session management function (SMF, Session Management Function) in the 5G system.
  • SGW Serving Gateway
  • PGW Packet Data Network Gateway-Control
  • TDF data detection function
  • TDF data Detection Function
  • TDF data Detection Function-Control
  • SMF Session Management Function
  • the foregoing sending multi-layer data detection information includes: sending a PFCP session establishment request or a PFCP session change request; the PFCP session establishment request or the PFCP session change request carries a PDR, and the PDR carries the Multi-layer data detection information.
  • the multi-layer data detection information includes: outer layer data detection information and inner layer data detection information.
  • Carrying the multi-layer data detection information in the PDR includes: carrying two SDFs in the PDR, each of the SDFs respectively carrying the outer layer data detection information and the inner layer data detection information; or,
  • the SDF of the PDR includes two flow descriptions, and each of the flow descriptions respectively carries the outer layer data detection information and the inner layer data detection information.
  • the multi-layer data detection information is HTTPS data detection information.
  • the HTTPS data detection information includes: SSL/TLS data detection information and HTTP data detection information.
  • the PDR carrying the multi-layer data detection information includes: carrying two SDFs in the PDR, each of the SDFs respectively carrying the SSL/TLS data detection information and the HTTP data detection information; or,
  • the SDF of the PDR includes two flow descriptions, each of the flow descriptions respectively carrying the SSL/TLS data detection information and the HTTP data detection information.
  • FIG. 2 is a schematic flowchart of an embodiment of the present application, with the following steps:
  • the CPF sends a PFCP connection establishment request (PFCP Association Establishment Request) to the UPF.
  • PFCP connection establishment request PFCP Association Establishment Request
  • the CPF carries the multi-layer data detection capability of the CPF, and the multi-layer data detection capability may specifically be the HTTPS data detection capability.
  • the multi-layer data detection capability is used to indicate that the CPF/UPF can detect multi-layer data.
  • CPF/UPF needs to detect outer layer data and inner layer data.
  • HTTPS data detection capability is used to indicate that CPF/UPF can detect HTTPS data.
  • the UPF receives the PFCP connection establishment request, and returns a PFCP connection establishment response (PFCP Association Establishment Response) to the CPF.
  • PFCP connection establishment response PFCP Association Establishment Response
  • UPF carries the multi-layer data detection capability of UPF, and the multi-layer data detection capability may specifically be the HTTPS data detection capability.
  • S2A04 When it is necessary to create a Packet Data Network (PDN) connection (under the 4G system) or PDU session (under the 5G system) for the UE, CPF needs to create an independent PFCP session for each UE.
  • PDN Packet Data Network
  • 5G system Packet Data Network
  • the CPF sends a PFCP session establishment request (PFCP Session Establishment Request) to the UPF.
  • PFCP Session Establishment Request PFCP Session Establishment Request
  • CPF can send PDR, quality of service enhancement rule (QER, (Quality of Service, QoS) Enhancement Rule), data forwarding rule (FAR, Forward Action Rule), and usage report rule (URR, Usage Report) to UPF. Rule).
  • QER quality of service enhancement rule
  • FAR Forward Action Rule
  • URR Usage Report
  • multiple layers of data detection information may be included, or the multiple layers of data detection information may specifically be HTTPS data detection information.
  • multi-layer data detection information may include outer data detection information and inner data detection information.
  • the HTTPS data detection information may include SSL/TLS data detection information and HTTP data detection information.
  • the CPF sends a PFCP session change request to the UPF, and carries the PDR in the PFCP session change request.
  • the UPF receives the PFCP session establishment request, and returns a PFCP session establishment response (PFCP Session Establishment Response) to the CPF.
  • PFCP Session Establishment Response PFCP Session Establishment Response
  • UPF will obtain the multi-layer data detection information contained in the PDR, generate the corresponding multi-layer data detection rule, and install it under the corresponding PFCP session.
  • UPF If the multi-layer data detection information obtained by UPF is HTTPS data detection information, UPF generates HTTPS data detection rules and installs them in the corresponding PFCP session.
  • UPF receives uplink data, or receives downlink data.
  • UPF detects uplink and downlink data according to the installed multi-layer data detection rules or HTTPS data detection rules.
  • step S2A05 CPF provides multi-layer data detection information
  • the multi-layer data detection rule generated by UPF will instruct UPF to perform matching detection on multi-layer data:
  • the UPF first matches the outer layer data according to the outer layer data detection information. If the matching is successful, the UPF continues to match the inner layer data according to the inner layer data detection information.
  • the HTTPS data detection rule generated by UPF will instruct UPF to perform matching detection on HTTPS data:
  • UPF first matches the outer layer SSL/TLS data according to the SSL/TLS data detection information. If the matching is successful, UPF continues to match the inner layer HTTP data according to the HTTP data detection information.
  • UPF When UPF successfully detects multiple layers of data or HTTPS data, it executes actions according to the rules indicated by CPF in the previous steps, such as Quality of Service Enforcement Rule (QER) for Quality of Service (Quality of Service). QoS) processing, forwarding according to forwarding action rules (Forwarding Action Rule, FAR), and usage reporting rules (Usage Reporting Rule, URR) for usage collection and reporting.
  • QER Quality of Service Enforcement Rule
  • FAR Forwarding Action Rule
  • URR Usage Reporting Rule
  • FIGS 3 and 4 are both PDR structure diagrams of embodiments of the present application, which are used to describe the structure of the PDR carrying multiple layers of data detection information.
  • PDR has been expanded to include two service data flow filter templates (SDF Filter), that is, an inner SDF Filter (Inner SDF Filter) is added on the basis of the original SDF Filter.
  • SDF Filter service data flow filter templates
  • Inner SDF Filter is used to carry inner data detection information
  • the original SDF Filter is used to carry outer data detection information.
  • the PDR structure shown in Figure 3 can also have other variations: an outer SDF Filter (Outer SDF Filter) is added on the basis of the original SDF Filter in the PDR. Outer SDF Filter is used to carry outer layer data detection information, while the original SDF Filter is used to carry inner layer data detection information.
  • Outer SDF Filter is used to carry outer layer data detection information
  • the original SDF Filter is used to carry inner layer data detection information.
  • the SDF Filter in the PDR has been extended, and the SDF Filter contains two flow descriptions (Flow Description), that is, an inner Flow Description is added to the original Flow Description ( Inner Flow Description).
  • Inner Flow Description is used to describe the inner message structure, while the original Flow Description is used to describe the outer message structure.
  • an outer Flow Description (Outer Flow Description) is added on the basis of the original Flow Description in the SDF Filter. Outer Flow Description is used to describe the outer message structure, while the original Flow Description is used to describe the inner message structure.
  • FIGS 5 and 6 are both PDR structure diagrams of embodiments of the present application, which are used to describe the structure of the HTTPS data detection information carried in the PDR.
  • the PDR has been extended to include two service data flow filtering templates (SDF Filter), that is, an HTTPS SDF Filter is added to the original SDF Filter.
  • HTTPS SDF Filter is used to carry HTTP data detection information
  • the original SDF Filter is used to carry SSL/TLS data detection information.
  • the SDF Filter in the PDR is extended, and the SDF Filter contains two flow descriptions (Flow Description), that is, an HTTP Flow Description is added to the original Flow Description.
  • HTTP Flow Description is used to describe the inner HTTP message structure, while the original Flow Description is used to describe the outer SSL/TLS message structure.
  • FIG. 7 is a schematic structural diagram of a device for detecting multiple layers of data in an embodiment of this application, including: a receiving module 710 for receiving multiple layer data detection information; The detection module 720 is configured to detect uplink data or downlink data according to the multi-layer data detection information.
  • This embodiment can be applied to UPF.
  • An embodiment of the present application also proposes a device for sending information, including: a sending module, configured to send multi-layer data detection information, where the multi-layer data detection information is used to detect uplink data or downlink data.
  • This embodiment can be applied to CPF.
  • FIG. 8 is a schematic diagram of the structure of a UPF entity for detecting multi-layer data according to an embodiment of the present application.
  • the UPF entity 80 provided by the embodiment of the present application includes a memory 803 and a processor 804.
  • the UPF entity 80 may also include an interface 801 and a bus 802.
  • the interface 801, the memory 803, and the processor 804 are connected through a bus 802.
  • the memory 803 is used to store instructions.
  • the processor 804 is configured to read the instructions to execute the technical solutions of the foregoing method embodiments applied to the UPF entity.
  • the implementation principles and technical effects are similar, and details are not described herein again.
  • FIG. 9 is a schematic diagram of the structure of a CPF entity for sending information according to an embodiment of the application.
  • the CPF entity 90 provided by the embodiment of the present application includes a memory 903 and a processor 904.
  • the CPF entity 90 may also include an interface 901 and a bus 902.
  • the interface 901, the memory 903, and the processor 904 are connected through a bus 902.
  • the memory 903 is used to store instructions.
  • the processor 904 is configured to read the instructions to execute the technical solutions of the foregoing method embodiments applied to the CPF entity.
  • the implementation principles and technical effects are similar, and details are not described herein again.
  • FIG. 10 is a schematic structural diagram of a communication system according to an embodiment of the application. As shown in FIG. 10, the system includes: a UPF entity 80 as in the foregoing embodiment and a CPF entity 90 in the foregoing embodiment.
  • the present application provides a storage medium that stores a computer program, and when the computer program is executed by a processor, the method in the foregoing embodiment is implemented.
  • this application can be provided as methods, systems, or computer program products. Therefore, this application may adopt the form of a hardware embodiment, a software embodiment, or an embodiment combining software and hardware. Moreover, this application may adopt the form of a computer program product implemented on one or more computer-usable storage media (including but not limited to disk storage, optical storage, etc.) including computer-usable program code.
  • These computer program instructions can also be stored in a computer-readable memory that can guide a computer or other programmable data processing equipment to work in a specific manner, so that the instructions stored in the computer-readable memory produce an article of manufacture including the instruction device.
  • the device implements the functions specified in one process or multiple processes in the flowchart and/or one block or multiple blocks in the block diagram.
  • These computer program instructions can also be loaded on a computer or other programmable data processing equipment, so that a series of operation steps are executed on the computer or other programmable equipment to produce computer-implemented processing, so as to execute on the computer or other programmable equipment.
  • the instructions provide steps for implementing functions specified in a flow or multiple flows in the flowchart and/or a block or multiple blocks in the block diagram.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer And Data Communications (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

本申请提出一种探测多层数据的方法和装置、以及一种发送信息的方法和装置,其中探测多层数据的方法包括:接收多层数据探测信息;根据所述多层数据探测信息,对上行数据或下行数据进行探测。

Description

探测多层数据的方法及装置
本申请要求在2019年07月26日提交中国专利局、申请号为201910687148.X的中国专利申请的优先权,该申请的全部内容通过引用结合在本申请中。
技术领域
本申请涉及通信领域,例如涉及探测多层数据的方法及装置。
背景技术
控制面和用户面分离(CU分离,CUPS,Control and User Plane Separation)架构,是第四代移动通信技术(4G,the 4th Generation Mobile Communication Technology)系统和第五代移动通信技术(5G,the 5th Generation Mobile Communication Technology)系统均支持的功能架构。CU分离的目的是将控制会话功能的控制面功能(CPF,Control Plane Function)与控制数据(包括互联网协议(Internet Protocol,IP)数据、非IP数据)转发的用户面功能(UPF,User Plane Function)进行分离,以便使UPF从传统的架构中分离出来,专注于数据的探测、转发。CPF与UPF之间使用包前转控制协议(PFCP,Packet Forward Control Protocol)。CPF向UPF发送的消息中,携带包探测规则(PDR,Packet Detection Rule),用于指示UPF如何探测服务数据流(Service Data Flow)。但是,相关技术的PDR机制并不提供探测多层数据的能力,UPF无法探测多层数据。
发明内容
为了解决上述至少一个技术问题,本申请实施例提供了以下方案。
本申请实施例提供了一种探测多层数据的方法,包括:
接收多层数据探测信息;
根据所述多层数据探测信息,对上行数据或下行数据进行探测。
本申请实施例提供了一种发送信息的方法,包括:
发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
本申请实施例提供了一种探测多层数据的装置,包括:
接收模块,用于接收多层数据探测信息;
探测模块,用于根据所述多层数据探测信息,对上行数据或下行数据进行探测。
本申请实施例提供了一种发送信息的装置,包括:
发送模块,用于发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
本申请实施例提供了一种探测多层数据的UPF实体,包括:处理器及存储器;
所述存储器用于存储指令;
所述处理器被配置为读取所述指令以执行如上述探测多层数据方法中的任意实施方式。
本申请实施例提供了一种发送信息的CPF实体,包括:处理器及存储器;
所述存储器用于存储指令;
所述处理器被配置为读取所述指令以执行如上述发送信息的方法中的任意实施方式。
本申请实施例提供了一种通信系统,包括上述UPF实体和上述CPF实体。
本申请实施例提供了一种存储介质,所述存储介质存储有计算机程序,所述计算机程序被处理器执行时实现本申请实施例中的任意一种方法。
本申请实施例所提供的探测多层数据的方法,根据接收到的多层数据探测信息对上行数据或下行数据进行探测,从而实现对多层数据的探测。
附图说明
图1为本申请实施例的一种探测多层数据的方法实现流程示意图;
图2为本申请实施例的一种探测多层数据的具体实现方式流程示意图;
图3为本申请实施例的PDR结构示意图一;
图4为本申请实施例的PDR结构示意图二;
图5为本申请实施例的PDR结构示意图三;
图6为本申请实施例的PDR结构示意图四;
图7为本申请实施例的一种探测多层数据的装置结构示意图;
图8为本申请实施例的探测多层数据的UPF实体结构示意图;
图9为本申请实施例的发送信息的CPF实体结构示意图;
图10为本申请实施例的通信系统结构示意图。
具体实施方式
下文中将结合附图对本申请的实施例进行详细说明。需要说明的是,在不冲突的情况下,本申请中的实施例及实施例中的特征可以相互任意组合。
本申请实施例提出一种探测多层数据的方法,如图1为本申请实施例的一种探测多层数据的方法实现流程示意图,包括:
步骤S11:接收多层数据探测信息。
步骤S12:根据所述多层数据探测信息,对上行数据或下行数据进行探测。
本实施例可以应用于UPF,UPF可以包括4G系统中的服务网关(Serving Gateway,SGW)的用户面部分功能,即服务网关用户面(Serving Gateway-User,SGW-U);分组数据网络网关(Packet Data Network Gateway,PGW)的用户面部分功能,即分组数据网络网关用户面(Packet Data Network Gateway-User,PGW-U);或者数据检测功能(Traffic Detection Function,TDF)的用户面部分功能,即数据检测功能用户面(Traffic Detection Function-User,TDF-U)。或者包括5G系统中的UPF。
在一种实施方式中,上述多层数据探测信息在PDR中携带;所述PDR在PFCP会话建立请求或PFCP会话变更请求中携带。
在一种实施方式中,所述多层数据探测信息包括:外层数据探测信息以及内层数据探测信息。
在一种实施方式中,所述多层数据探测信息在PDR中携带,包括:所述外层数据探测信息和所述内层数据探测信息,分别在所述PDR的两个服务数据流过滤模板(SDF Filter,Service Data Flow Filter)中携带;或者,所述外层数据 探测信息和所述内层数据探测信息,分别在所述PDR的SDF Filter的两个流描述(Flow Description)中携带。
在一种实施方式中,根据所述多层数据探测信息,对上行数据或下行数据进行探测,包括:根据所述多层数据探测信息,生成对应的多层数据探测规则;所述多层数据探测规则用于指示针对多层数据进行匹配检测;根据所述多层数据探测规则,对所述上行数据或下行数据中的多层数据进行匹配检测。
在一种实施方式中,所述根据所述多层数据探测规则,对所述上行数据或下行数据中的多层数据进行匹配检测,包括:针对所述上行数据或下行数据,根据所述外层数据探测信息对外层数据进行第一匹配检测;在所述第一匹配检测成功的情况下,根据所述内层数据探测信息对内层数据进行第二匹配检测;在所述第二匹配检测成功的情况下,确定所述上行数据或下行数据中存在多层数据。
本申请实施例还可以实现对加密超文本传输协议(HTTPS,HyperText Transfer Protocol Secure)数据进行探测。HTTPS数据是一种多层数据,其内层是超文本传输协议(HTTP)数据,被封装在外层的安全套接层(SSL,Secure Sockets Layer)/传输层安全(TLS,Transport Layer Security)数据包内。
在一种实施方式中,所述多层数据探测信息为HTTPS数据探测信息,所述HTTPS数据探测信息包括:SSL/TLS数据探测信息、以及HTTP数据探测信息。
在一种实施方式中,所述多层数据探测信息在PDR中携带,包括:所述SSL/TLS数据探测信息和所述HTTP数据探测信息,分别在所述PDR的两个SDF Filter中携带;或者,所述SSL/TLS数据探测信息和所述HTTP数据探测信息,分别在所述PDR的SDF的两个流描述中携带。
在一种实施方式中,根据所述多层数据探测信息,对上行数据或下行数据进行探测,包括:根据所述HTTPS数据探测信息,生成对应的HTTPS数据探测规则;所述HTTPS数据探测规则用于指示针对HTTPS数据进行匹配检测;根据所述HTTPS数据探测规则,对所述上行数据或下行数据中的HTTPS数据进行匹配检测。
在一种实施方式中,所述根据所述HTTPS数据探测规则,对所述上行数据或下行数据中的HTTPS数据进行匹配检测,包括:针对所述上行数据或下行数 据,根据所述SSL/TLS数据探测信息对外层SSL/TLS数据进行第三匹配检测;在所述第三匹配检测成功的情况下,根据所述HTTP数据探测信息对内层HTTP数据进行第四匹配检测;在所述第四匹配检测成功的情况下,确定所述上行数据或下行数据中存在HTTPS数据。
本申请实施例还提出一种发送信息的方法,包括:发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
本实施例可以应用于CPF,CPF可以包括4G系统中的服务网关(Serving Gateway,SGW)的控制面部分功能,即服务网关控制面(Serving Gateway-Control,SGW-C);分组数据网络网关(PDN Gateway,PGW)的控制面部分功能,即分组数据网络网关控制面(Packet Data Network Gateway-Control,PGW-C);或者数据检测功能(Traffic Detection Function,TDF)的控制面部分功能,即数据检测功能用户面(Traffic Detection Function-Control,TDF-C)。或者包括5G系统中的会话管理功能(SMF,Session Management Function)。
在一种实施方式中,上述发送多层数据探测信息,包括:发送PFCP会话建立请求或PFCP会话变更请求;所述PFCP会话建立请求或PFCP会话变更请求中携带PDR,所述PDR中携带所述多层数据探测信息。
在一种实施方式中,所述多层数据探测信息包括:外层数据探测信息以及内层数据探测信息。
所述PDR中携带所述多层数据探测信息,包括:在所述PDR中携带两个SDF,各个所述SDF分别携带所述外层数据探测信息和所述内层数据探测信息;或者,在所述PDR的SDF中包含两个流描述,各个所述流描述分别携带所述外层数据探测信息和所述内层数据探测信息。
在一种实施方式中,所述多层数据探测信息为HTTPS数据探测信息。
在一种实施方式中,所述HTTPS数据探测信息包括:SSL/TLS数据探测信息、以及HTTP数据探测信息。
所述PDR中携带所述多层数据探测信息,包括:在所述PDR中携带两个SDF,各个所述SDF分别携带所述SSL/TLS数据探测信息和所述HTTP数据探测信息;或者,在所述PDR的SDF中包含两个流描述,各个所述流描述分别携 带所述SSL/TLS数据探测信息和所述HTTP数据探测信息。
以下结合附图,对本申请实施例进行详细描述。
图2是本申请实施例的流程示意图,具有如下步骤:
S2A01,CPF上电启动时,CPF和UPF之间需要建立PFCP连接。
S2A02,CPF向UPF发送PFCP连接建立请求(PFCP Association Establishment Request)。
在本步骤中,CPF携带CPF的多层数据探测能力,多层数据探测能力具体可以为HTTPS数据探测能力。
其中,多层数据探测能力,用于指示CPF/UPF能探测多层数据。对两层数据而言,CPF/UPF需要探测外层数据、内层数据。
HTTPS数据探测能力,用于指示CPF/UPF能探测HTTPS数据。
S2A03,UPF接收PFCP连接建立请求,向CPF返回PFCP连接建立响应(PFCP Association Establishment Response)。
在本步骤中,UPF携带UPF的多层数据探测能力,多层数据探测能力具体可以为HTTPS数据探测能力。
S2A04,当需要为UE创建分组数据网络(Packet Data Network,PDN)连接(4G系统下)或PDU会话(5G系统下)时,CPF需要为每一个UE创建一个独立的PFCP会话。
S2A05,CPF向UPF发送PFCP会话建立请求(PFCP Session Establishment Request)。
在本步骤中,CPF可以向UPF发送PDR、服务质量增强规则(QER,(Quality of Service,QoS)Enhancement Rule)、数据前转规则(FAR,Forward Action Rule)及用量上报规则(URR,Usage Report Rule)。
在PDR中,可以包含多层数据探测信息,或者,多层数据探测信息可以具体为HTTPS数据探测信息。
其中,多层数据探测信息,可以包含外层数据探测信息以及内层数据探测信息。
HTTPS数据探测信息,可以包含SSL/TLS数据探测信息、以及HTTP数据探测信息。
另外,在需要进行PFCP会话变更的情况下,CPF向UPF发送PFCP会话变更请求,并在PFCP会话变更请求中携带PDR。
S2A06,UPF接收PFCP会话建立请求,向CPF返回PFCP会话建立响应(PFCP Session Establishment Response)。
S2A07,在获得CPF提供的各种规则后,UPF在本地安装对应的规则。
在本步骤中,UPF将获得的PDR中包含的多层数据探测信息,生成对应的多层数据探测规则,并安装到对应的PFCP会话下。
如果UPF获得的多层数据探测信息是HTTPS数据探测信息,则UPF生成HTTPS数据探测规则,并安装到对应的PFCP会话下。
S2B01,UPF收到上行数据,或收到下行数据。
S2B02,UPF根据已安装的多层数据探测规则或HTTPS数据探测规则,对上下行数据进行探测。
如果步骤S2A05中,CPF提供的是多层数据探测信息,则UPF生成的多层数据探测规则将指示UPF对多层数据进行匹配检测:
-UPF首先根据外层数据探测信息对外层数据进行匹配,如果匹配成功,则UPF继续根据内层数据探测信息对内层数据进行匹配。
如果步骤S2A05中CPF提供的是HTTPS数据探测信息,则UPF生成的HTTPS数据探测规则将指示UPF对HTTPS数据进行匹配检测:
-UPF首先根据SSL/TLS数据探测信息对外层SSL/TLS数据进行匹配,如果匹配成功,则UPF继续根据HTTP数据探测信息对内层HTTP数据进行匹配。
S2B03,当UPF成功探测到多层数据或HTTPS数据时,根据前述步骤中CPF所指示的规则执行动作,如按服务质量执行规则(Quality of Service Enforcement Rule,QER)进行服务质量(Quality of Service,QoS)处理、按转发动作规则(Forwarding Action Rule,FAR)执行前转、按用量上报规则(Usage Reporting Rule,URR)进行用量收集和上报。
图3、图4都是本申请实施例的PDR结构图,用于描述PDR中携带多层数 据探测信息的结构。
在图3中,相比较相关技术,对PDR进行了扩展,其中包含两个服务数据流过滤模板(SDF Filter),即在原有SDF Filter的基础上增加了一个内层SDF Filter(Inner SDF Filter)。Inner SDF Filter用于携带内层数据探测信息,而原有的SDF Filter用于携带外层数据探测信息。
图3所示的PDR结构,还可以有其他变型:在PDR中原有SDF Filter的基础上增加一个外层SDF Filter(Outer SDF Filter)。Outer SDF Filter用于携带外层数据探测信息,而原有的SDF Filter用于携带内层数据探测信息。
在图4中,相比较相关技术,对PDR中的SDF Filter进行了扩展,在SDF Filter中包含两个流描述(Flow Description),即在原有Flow Description的基础上增加了一个内层Flow Description(Inner Flow Description)。Inner Flow Description用于描述内层报文结构,而原有的Flow Description用于描述外层报文结构。
对比于图4所示的PDR结构,还可以有其他变型:在SDF Filter中原有Flow Description的基础上增加一个外层Flow Description(Outer Flow Description)。Outer Flow Description用于描述外层报文结构,而原有的Flow Description用于描述内层报文结构。
图5、图6都是本申请实施例的PDR结构图,用于描述PDR中携带HTTPS数据探测信息的结构。
在图5中,相比较相关技术,对PDR进行了扩展,其中包含两个服务数据流过滤模板(SDF Filter),即在原有SDF Filter的基础上增加了一个HTTPS SDF Filter。HTTPS SDF Filter用于携带HTTP数据探测信息,而原有的SDF Filter用于携带SSL/TLS数据探测信息。
在图6中,相比较相关技术,对PDR中的SDF Filter进行了扩展,在SDF Filter中包含两个流描述(Flow Description),即在原有Flow Description的基础上增加了一个HTTP Flow Description。HTTP Flow Description用于描述内层HTTP报文结构,而原有的Flow Description用于描述外层SSL/TLS报文结构。
本申请实施例还提出一种探测多层数据的装置,如图7为本申请实施例的一种探测多层数据的装置结构示意图,包括:接收模块710,用于接收多层数据探测信息;探测模块720,用于根据所述多层数据探测信息,对上行数据或下行 数据进行探测。
本实施例可以应用于UPF。
本申请实施例还提出一种发送信息的装置,包括:发送模块,用于发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
本实施例可以应用于CPF。
本申请实施例各装置中的各模块的功能可以参见上述方法实施例中的对应描述,在此不再赘述。
图8为本申请实施例探测多层数据的UPF实体结构示意图,如图8所示,本申请实施例提供的UPF实体80包括:存储器803与处理器804。所述UPF实体80还可以包括接口801和总线802。所述接口801、存储器803与处理器804通过总线802相连接。所述存储器803用于存储指令。所述处理器804被配置为读取所述指令以执行上述应用于UPF实体的方法实施例的技术方案,其实现原理和技术效果类似,此处不再赘述。
图9为本申请实施例发送信息的CPF实体结构示意图,如图9所示,本申请实施例提供的CPF实体90包括:存储器903与处理器904。所述CPF实体90还可以包括接口901和总线902。所述接口901、存储器903与处理器904通过总线902相连接。所述存储器903用于存储指令。所述处理器904被配置为读取所述指令以执行上述应用于CPF实体的方法实施例的技术方案,其实现原理和技术效果类似,此处不再赘述。
图10为本申请实施例的通信系统结构示意图,如图10所示,该系统包括:如上述实施例的UPF实体80、以及上述实施例的CPF实体90。
本申请提供一种存储介质,所述存储介质存储有计算机程序,所述计算机程序被处理器执行时实现上述实施例中的方法。
本领域内的技术人员应明白,本申请的实施例可提供为方法、系统、或计算机程序产品。因此,本申请可采用硬件实施例、软件实施例或结合软件和硬件方面的实施例的形式。而且,本申请可采用在一个或多个包括有计算机可用程序代码的计算机可用存储介质(包括但不限于磁盘存储器和光学存储器等)上实施的计算机程序产品的形式。
本申请是参照根据本申请实施例的方法、设备(系统)和计算机程序产品的流程图和/或方框图来描述的。应理解可由计算机程序指令实现流程图和/或方框图中的每一流程和/或方框、以及流程图和/或方框图中的流程和/或方框的结合。可提供这些计算机程序指令到通用计算机、专用计算机、嵌入式处理机或其他可编程数据处理设备的处理器以产生一个机器,使得通过计算机或其他可编程数据处理设备的处理器执行的指令产生用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的装置。
这些计算机程序指令也可存储在能引导计算机或其他可编程数据处理设备以特定方式工作的计算机可读存储器中,使得存储在该计算机可读存储器中的指令产生包括指令装置的制造品,该指令装置实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能。
这些计算机程序指令也可装载到计算机或其他可编程数据处理设备上,使得在计算机或其他可编程设备上执行一系列操作步骤以产生计算机实现的处理,从而在计算机或其他可编程设备上执行的指令提供用于实现在流程图一个流程或多个流程和/或方框图一个方框或多个方框中指定的功能的步骤。
以上所述,仅为本申请的实施例而已,并非用于限定本申请的保护范围。

Claims (22)

  1. 一种探测多层数据的方法,包括:
    接收多层数据探测信息;
    根据所述多层数据探测信息,对上行数据或下行数据进行探测。
  2. 根据权利要求1所述的方法,其中,所述多层数据探测信息在包探测规则PDR中携带;所述PDR在包前转控制协议PFCP会话建立请求或PFCP会话变更请求中携带。
  3. 根据权利要求2所述的方法,其中,所述多层数据探测信息包括:外层数据探测信息以及内层数据探测信息。
  4. 根据权利要求3所述的方法,其中,所述多层数据探测信息在PDR中携带,包括:
    所述外层数据探测信息和所述内层数据探测信息,分别在所述PDR的两个服务数据流SDF过滤模板中携带;或者,
    所述外层数据探测信息和所述内层数据探测信息,分别在所述PDR的SDF过滤模板的两个流描述中携带。
  5. 根据权利要求3所述的方法,其中,根据所述多层数据探测信息,对上行数据或下行数据进行探测,包括:
    根据所述多层数据探测信息,生成对应的多层数据探测规则;所述多层数据探测规则用于指示针对多层数据进行匹配检测;
    根据所述多层数据探测规则,对所述上行数据或下行数据中的多层数据进行匹配检测。
  6. 根据权利要求5所述的方法,其中,所述根据所述多层数据探测规则,对所述上行数据或下行数据中的多层数据进行匹配检测,包括:
    根据所述外层数据探测信息对目标数据中的外层数据进行第一匹配检测,所述目标数据为所述上行数据或下行数据;
    在所述第一匹配检测成功的情况下,根据所述内层数据探测信息对所述目标数据中的内层数据进行第二匹配检测;
    在所述第二匹配检测成功的情况下,确定所述目标数据中存在多层数据。
  7. 根据权利要求2所述的方法,其中,所述多层数据探测信息为加密超文本 传输协议HTTPS数据探测信息。
  8. 根据权利要求7所述的方法,其中,所述HTTPS数据探测信息包括:安全套接层SSL/传输层安全TLS数据探测信息、以及超文本传输协议HTTP数据探测信息。
  9. 根据权利要求8所述的方法,其中,所述多层数据探测信息在PDR中携带,包括:
    所述SSL/TLS数据探测信息和所述HTTP数据探测信息,分别在所述PDR的两个SDF过滤模板中携带;或者,
    所述SSL/TLS数据探测信息和所述HTTP数据探测信息,分别在所述PDR的SDF过滤模板的两个流描述中携带。
  10. 根据权利要求8所述的方法,其中,所述根据所述多层数据探测信息,对上行数据或下行数据进行探测,包括:
    根据所述HTTPS数据探测信息,生成对应的HTTPS数据探测规则;所述HTTPS数据探测规则用于指示针对HTTPS数据进行匹配检测;
    根据所述HTTPS数据探测规则,对所述上行数据或下行数据中的HTTPS数据进行匹配检测。
  11. 根据权利要求10所述的方法,其中,所述根据所述HTTPS数据探测规则,对所述上行数据或下行数据中的HTTPS数据进行匹配检测,包括:
    根据所述SSL/TLS数据探测信息对目标数据的外层SSL/TLS数据进行第三匹配检测,其中,所述目标数据包括所述上行数据或下行数据;
    在所述第三匹配检测成功的情况下,根据所述HTTP数据探测信息对所述目标数据的内层HTTP数据进行第四匹配检测;
    在所述第四匹配检测成功的情况下,确定所述目标数据中存在HTTPS数据。
  12. 一种发送信息的方法,包括:
    发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
  13. 根据权利要求12所述的方法,其中,所述发送多层数据探测信息,包括:
    发送PFCP会话建立请求或PFCP会话变更请求;所述PFCP会话建立请求 或PFCP会话变更请求中携带PDR,所述PDR中携带所述多层数据探测信息。
  14. 根据权利要求13所述的方法,其中,所述多层数据探测信息包括:外层数据探测信息以及内层数据探测信息;
    所述PDR中携带所述多层数据探测信息,包括:在所述PDR中携带两个SDF过滤模板,所述两个SDF过滤模板分别携带所述外层数据探测信息和所述内层数据探测信息;或者,在所述PDR的SDF过滤模板中包含两个流描述,所述两个流描述分别携带所述外层数据探测信息和所述内层数据探测信息。
  15. 根据权利要求13所述的方法,其中,所述多层数据探测信息为HTTPS数据探测信息。
  16. 根据权利要求15所述的方法,其中,所述HTTPS数据探测信息包括:SSL/TLS数据探测信息、以及HTTP数据探测信息;
    所述PDR中携带所述多层数据探测信息,包括:在所述PDR中携带两个SDF过滤模板,所述两个SDF过滤模板分别携带所述SSL/TLS数据探测信息和所述HTTP数据探测信息;或者,在所述PDR的SDF过滤模板中包含两个流描述,所述两个流描述分别携带所述SSL/TLS数据探测信息和所述HTTP数据探测信息。
  17. 一种探测多层数据的装置,包括:
    接收模块,设置为接收多层数据探测信息;
    探测模块,设置为根据所述多层数据探测信息,对上行数据或下行数据进行探测。
  18. 一种发送信息的装置,包括:
    发送模块,设置为发送多层数据探测信息,所述多层数据探测信息用于对上行数据或下行数据进行探测。
  19. 一种探测多层数据的用户面功能UPF实体,所述UPF实体包括:处理器及存储器;
    所述存储器设置为存储指令;
    所述处理器被配置为读取所述指令以执行如权利要求1至11中任一所述的方法。
  20. 一种发送信息的控制面功能CPF实体,所述CPF实体包括:处理器及存储器;
    所述存储器设置为存储指令;
    所述处理器被配置为读取所述指令以执行如权利要求12至16中任一项所述的方法。
  21. 一种通信系统,所述系统包括如权利要求19所述的用户面功能UPF及如权利要求20所述的控制面功能CPF。
  22. 一种存储介质,存储有计算机程序,所述计算机程序被处理器执行时实现权利要求1至16中任一项所述的方法。
PCT/CN2020/100450 2019-07-26 2020-07-06 探测多层数据的方法及装置 WO2021017764A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201910687148.X 2019-07-26
CN201910687148.XA CN111092783B (zh) 2019-07-26 2019-07-26 探测多层数据的方法及装置

Publications (1)

Publication Number Publication Date
WO2021017764A1 true WO2021017764A1 (zh) 2021-02-04

Family

ID=70393428

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2020/100450 WO2021017764A1 (zh) 2019-07-26 2020-07-06 探测多层数据的方法及装置

Country Status (2)

Country Link
CN (1) CN111092783B (zh)
WO (1) WO2021017764A1 (zh)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111092783B (zh) * 2019-07-26 2024-03-12 中兴通讯股份有限公司 探测多层数据的方法及装置

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3068110A1 (en) * 2015-03-09 2016-09-14 Samsung Electronics Co., Ltd. Method and apparatus for providing web services
WO2017219895A1 (zh) * 2016-06-24 2017-12-28 中兴通讯股份有限公司 一种基于分离架构的计费方法、装置和系统
WO2017219972A1 (zh) * 2016-06-24 2017-12-28 中兴通讯股份有限公司 网元管理方法、设备、系统、控制面功能实体及存储介质
WO2018195803A1 (zh) * 2017-04-26 2018-11-01 华为技术有限公司 一种报文处理方法及相关设备
CN109167670A (zh) * 2018-07-09 2019-01-08 中兴通讯股份有限公司 Pfcp连接处理方法、装置、网元、系统及存储介质
CN109474568A (zh) * 2017-12-25 2019-03-15 北京安天网络安全技术有限公司 针对利用域前置技术实现恶意攻击的检测方法及系统
CN111092783A (zh) * 2019-07-26 2020-05-01 中兴通讯股份有限公司 探测多层数据的方法及装置

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN108419270B (zh) * 2017-02-10 2021-08-06 中兴通讯股份有限公司 一种业务分流实现方法及装置
CN109756430B (zh) * 2017-11-07 2021-08-03 华为技术有限公司 一种规则的处理方法及装置

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP3068110A1 (en) * 2015-03-09 2016-09-14 Samsung Electronics Co., Ltd. Method and apparatus for providing web services
WO2017219895A1 (zh) * 2016-06-24 2017-12-28 中兴通讯股份有限公司 一种基于分离架构的计费方法、装置和系统
WO2017219972A1 (zh) * 2016-06-24 2017-12-28 中兴通讯股份有限公司 网元管理方法、设备、系统、控制面功能实体及存储介质
WO2018195803A1 (zh) * 2017-04-26 2018-11-01 华为技术有限公司 一种报文处理方法及相关设备
CN109474568A (zh) * 2017-12-25 2019-03-15 北京安天网络安全技术有限公司 针对利用域前置技术实现恶意攻击的检测方法及系统
CN109167670A (zh) * 2018-07-09 2019-01-08 中兴通讯股份有限公司 Pfcp连接处理方法、装置、网元、系统及存储介质
CN111092783A (zh) * 2019-07-26 2020-05-01 中兴通讯股份有限公司 探测多层数据的方法及装置

Also Published As

Publication number Publication date
CN111092783A (zh) 2020-05-01
CN111092783B (zh) 2024-03-12

Similar Documents

Publication Publication Date Title
US8942619B2 (en) Relay device
JP6568270B2 (ja) サービス層サウスバウンドインターフェースおよびサービスの質
US7636305B1 (en) Method and apparatus for monitoring network traffic
CN105580317B (zh) 用于diameter负载和过载信息及虚拟化的方法、系统和计算机可读介质
CN100474819C (zh) 一种深度报文检测方法、网络设备及系统
JP6059336B2 (ja) Diameter過負荷制御を実行するための方法、システムおよびコンピュータ読取可能媒体
JP6481909B2 (ja) サービス経路生成方法および装置
WO2021077767A1 (zh) 一种业务管理方法及装置
WO2015143610A1 (zh) 一种nfv系统的业务实现方法及通信单元
CN107172111A (zh) 一种数据传输方法、装置及系统
CN107078972A (zh) 用于在支持多路径传输控制协议的通信网络中提供服务的装置和方法
CN108353022A (zh) 一种数据报文的处理方法、装置及系统
US11831763B2 (en) Methods, systems, and computer readable media for utilizing predetermined encryption keys in a test simulation environment
TW202042535A (zh) 無線通訊系統中之會話管理方法
CN108289061B (zh) 基于sdn的业务链拓扑系统
JP5916877B2 (ja) Diameterルーティングノードをテストするための方法、システム、およびコンピュータプログラム
WO2021017764A1 (zh) 探测多层数据的方法及装置
WO2017148419A1 (zh) 数据传输方法及服务器
WO2015113285A1 (zh) 通信网络中的控制方法、集中控制器及无线通信网络系统
CN106716975A (zh) 传输链路的续传方法、装置和系统
WO2009127162A1 (zh) 一种实现组合计费业务的方法、系统及装置
CN108632233A (zh) 一种报警复核方法和装置
WO2019205756A1 (zh) 数据发送保护方法、装置、系统及计算机可读存储介质
WO2016078450A1 (zh) 一种业务链中的数据处理方法及设备、存储介质
CN109802928A (zh) 一种ssl/tls代理方法、装置、设备及存储介质

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 20846415

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 20846415

Country of ref document: EP

Kind code of ref document: A1

122 Ep: pct application non-entry in european phase

Ref document number: 20846415

Country of ref document: EP

Kind code of ref document: A1

32PN Ep: public notification in the ep bulletin as address of the adressee cannot be established

Free format text: NOTING OF LOSS OF RIGHTS PURSUANT TO RULE 112(1) EPC (EPO FORM 1205A DATED 21.09.22)

122 Ep: pct application non-entry in european phase

Ref document number: 20846415

Country of ref document: EP

Kind code of ref document: A1