WO2021185253A1 - 拨号报文处理方法, 网元, 系统及网络设备 - Google Patents

拨号报文处理方法, 网元, 系统及网络设备 Download PDF

Info

Publication number
WO2021185253A1
WO2021185253A1 PCT/CN2021/081104 CN2021081104W WO2021185253A1 WO 2021185253 A1 WO2021185253 A1 WO 2021185253A1 CN 2021081104 W CN2021081104 W CN 2021081104W WO 2021185253 A1 WO2021185253 A1 WO 2021185253A1
Authority
WO
WIPO (PCT)
Prior art keywords
network element
plane network
forwarding plane
information
access gateway
Prior art date
Application number
PCT/CN2021/081104
Other languages
English (en)
French (fr)
Inventor
彭涛
花荣荣
余舟毅
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Priority to JP2022555785A priority Critical patent/JP7486597B2/ja
Priority to MX2022011470A priority patent/MX2022011470A/es
Priority to BR112022018589A priority patent/BR112022018589A2/pt
Priority to EP21771950.9A priority patent/EP4120637A4/en
Publication of WO2021185253A1 publication Critical patent/WO2021185253A1/zh
Priority to US17/945,309 priority patent/US20230018346A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4633Interconnection of networks using encapsulation techniques, e.g. tunneling
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/06Authentication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/02Details
    • H04L12/14Charging, metering or billing arrangements for data wireline or wireless communications
    • H04L12/1403Architecture for metering, charging or billing
    • H04L12/1407Policy-and-charging control [PCC] architecture
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4641Virtual LANs, VLANs, e.g. virtual private networks [VPN]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/50Network service management, e.g. ensuring proper service fulfilment according to agreements
    • H04L41/5003Managing SLA; Interaction between SLA and QoS
    • H04L41/5019Ensuring fulfilment of SLA
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/645Splitting route computation layer and forwarding layer, e.g. routing according to path computational element [PCE] or based on OpenFlow functionality
    • H04L45/655Interaction between route computation entities and forwarding entities, e.g. for route determination or for flow table update
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/66Policy and charging system
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M15/00Arrangements for metering, time-control or time indication ; Metering, charging or billing arrangements for voice wireline or wireless communications, e.g. VoIP
    • H04M15/80Rating or billing plans; Tariff determination aspects
    • H04M15/8044Least cost routing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W28/00Network traffic management; Network resource management
    • H04W28/02Traffic management, e.g. flow control or congestion control
    • H04W28/0205Traffic management, e.g. flow control or congestion control at the air interface
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/24Accounting or billing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/08Access restriction or access information delivery, e.g. discovery data delivery
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W48/00Access restriction; Network selection; Access point selection
    • H04W48/16Discovering, processing access restriction or access information
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W76/00Connection management
    • H04W76/10Connection setup
    • H04W76/12Setup of transport tunnels
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W88/00Devices specially adapted for wireless communication networks, e.g. terminals, base stations or access point devices
    • H04W88/14Backbone network devices
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W88/00Devices specially adapted for wireless communication networks, e.g. terminals, base stations or access point devices
    • H04W88/16Gateway arrangements
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W92/00Interfaces specially adapted for wireless communication networks
    • H04W92/04Interfaces between hierarchically different network devices

Definitions

  • This application relates to the field of communications, and in particular to a dial-up message processing method, network element, system, and network equipment.
  • BNG Broadband Network Gateway
  • the plane network element only handles the forwarding task of forwarding user data packets, and the control plane network element handles the remaining non-forwarding tasks, such as resource scheduling, user authentication, billing, authorization, etc., so that forwarding and control are completely decoupled, and can provide Operators provide great convenience in deployment and operation and maintenance, and the utilization and reliability of equipment can be greatly improved compared with a BNG stand-alone machine.
  • the decoupling of BNG forwarding and control in the current network is not complete.
  • the dial-up message processing in the current network still requires the participation of the forwarding plane network element.
  • the work of the forwarding plane network element not only includes processing data messages sent by users. Forwarding also includes identifying, processing, and forwarding dial-up messages sent by users. On the one hand, it causes a heavy burden on the network elements of the forwarding plane and a high failure rate. On the other hand, the incomplete decoupling of the forwarding plane and the control plane will also cause problems It has an impact on the process of network deployment and operation and maintenance for operators.
  • This application provides a dial message processing method, network element, system, and network equipment, which are used to solve the problems of heavy load on the forwarding plane network element and incomplete decoupling of the forwarding plane and the control plane in the current dial message processing process.
  • a dial message processing method is provided, which is applied to a dial message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other, wherein the control plane
  • the network element may be a virtual broadband network gateway control plane network element (Virtual BNG-Control Plane) device or a virtual session control unit (Virtual Subscriber Control Unit, vSCU) implemented based on a general physical server combined with network function virtualization technology.
  • the vBNG-CP device or vSCU is a virtual network device.
  • the virtual network device may be a virtual machine (VM) that can implement the above-mentioned control plane network element function.
  • VM virtual machine
  • the virtual machine is deployed on a hardware device (for example, a physical server, such as an X86 server).
  • a virtual machine refers to a complete computer system that is simulated by software and has complete hardware system functions and runs in a completely isolated environment.
  • a hardware device for example, a physical server, such as an X86 server.
  • a virtual machine refers to a complete computer system that is simulated by software and has complete hardware system functions and runs in a completely isolated environment.
  • vBNG-CP devices or virtual session control units vSCU with the above-mentioned functions on a general physical server by reading this application in conjunction with the Virtualized Network Functions (VNF) technology. I won't repeat them here.
  • the method includes:
  • the control plane network element receives the dial message from the access gateway, and the dial message is the dial message sent by the user equipment to the access gateway;
  • the control plane network element sends an authentication request to the external server, and the authentication request is generated by the control plane network element according to the dial message;
  • the control plane network element receives the dial-up success information sent by the external server
  • the control plane network element determines the forwarding plane network element according to the dialing success information, so that the user equipment performs network communication through the forwarding plane network element.
  • the access gateway After the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing.
  • the control plane network element interacts with the external server to obtain the dialing success information, it can be based on the dialing success information.
  • the SLA information determines the target forwarding plane network element, so that the user equipment performs network communication through the forwarding plane network element.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the dial-up message includes the network interconnection protocol IP address of the user equipment
  • the method further includes: the control plane network element sends the forwarding plane network to the controller Element information, so that the controller sends a tunnel establishment request to the access gateway, where the tunnel establishment request is generated by the controller according to the information of the forwarding plane network element, and the tunnel establishment request is used between the access gateway and the forwarding plane network element
  • the first communication tunnel is established, and the first communication tunnel has a corresponding relationship with the IP address.
  • the control plane network element determines the target forwarding plane network element corresponding to the user equipment SLA level, it notifies the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway.
  • a tunnel is established between the inbound gateway and the target forwarding plane network element.
  • the access gateway can directly send the data message to the target forwarding plane network element through the communication tunnel, so that the user The device can directly use the target forwarding plane network element that matches its own SLA level to forward data packets, improving the efficiency of packet forwarding.
  • a user device can exclusively enjoy a virtual local area network (Virtual Local Area Network, VLAN), which improves user experience.
  • VLAN Virtual Local Area Network
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway. Specifically, after the AGW receives the tunnel establishment request, the AGW may determine the tunnel to communicate with the target forwarding plane network element according to the information of the forwarding plane network element in the tunnel establishment request, and according to the port information of the user equipment in the tunnel establishment request, Map the port information of the user equipment to the tunnel.
  • the information of the forwarding plane network element may include the interface information of the AGW and the interface information of the forwarding plane network element, and may also include the port information of the user equipment.
  • the format of the forwarding plane network element information may be as follows: AGW_ID /ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID, NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN.
  • AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID is the access information of the user equipment and the AGW ID information, NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port: SVLAN.
  • CVLAN is the interface information of the forwarding plane network element, and NAS_UpIdentifier refers to the forwarding
  • the name of the surface NE is followed by the slot, sub-slot, port, and VLAN information of the forwarding surface NE.
  • the method when the IP address has a corresponding relationship with the second communication tunnel, after the control plane network element determines the forwarding plane network element according to the dialing success information, the method further includes: the control plane network element sends to the controller The information of the plane network element is forwarded so that the controller sends a tunnel switching request to the access gateway.
  • the tunnel switching request is generated by the controller according to the information of the forwarding plane network element.
  • the tunnel switching request is used to make the communication tunnel corresponding to the IP address be
  • the second communication tunnel is switched to the first communication tunnel, and the second communication tunnel is a communication tunnel between the access gateway and other forwarding plane network elements.
  • the AGW sends the dial-up message to the control plane network element. Since the SLA level of the user equipment is low, the control plane network element determines to use UP1 to connect to the user equipment. Data packets are forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user equipment will send a dial-up packet for the second time, and after the AGW receives the second dial-up packet, it will also The message is sent to the control plane network element, and the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dial message processing processes do not require the forwarding plane network element to participate, making the processing pressure of the forwarding plane network element less. decrease very much.
  • the dialing success information includes service level agreement SLA information corresponding to the IP address
  • the control plane network element determining the forwarding plane network element according to the dialing success information includes: the control plane network element determining the forwarding plane network element according to the SLA information.
  • the forwarding plane network element determined according to the user's SLA information is the forwarding plane network element that best meets the needs of the user.
  • the tunnel between the AGW and the forwarding plane network element is mapped to the port information of the user equipment, so that the user equipment can send each time
  • the AGW can directly send the data packets of the user equipment to the forwarding plane network element corresponding to the user SLA information through the tunnel, thereby improving the user experience.
  • the method further includes: the control plane network element generates session session information according to the dial-up success information, where the session information corresponds to the IP address; the control plane network The element sends session information to the forwarding plane network element, so that the forwarding plane network element advertises routing information to the outside according to the session information, where the destination address of the routing information is an IP address.
  • the destination address of the routing information is the IP address corresponding to the user equipment, so that after the target forwarding plane network element receives the data message sent by the user equipment again, it can be based on the destination IP address of the data message and the above routing information , Determine the next hop IP address of the data message, and realize the forwarding of the data message of the user equipment.
  • a dial message processing method is provided, which is applied to a dial message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other, and the method includes:
  • the access gateway receives the dial-up message sent by the user equipment, and the dial-up message includes the network interconnection protocol IP address of the user equipment;
  • the access gateway sends a dial-up message to the control plane network element
  • the access gateway receives a tunnel establishment request from the controller, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element;
  • the access gateway establishes a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, where the first communication tunnel and the IP address are in a corresponding relationship.
  • the access gateway After the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing.
  • the control plane network element interacts with the external server to obtain the dialing success information, it can be based on the dialing success information.
  • the SLA information determines the target forwarding plane network element, and informs the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway to establish a tunnel between the access gateway and the target forwarding plane network element .
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the forwarding plane network element is determined by the control plane network element based on the dialing success information returned by the external server after the control plane network element generates the authentication request according to the dial-up message and sends the authentication request to the external server.
  • the tunnel establishment request is determined by the controller according to the control Generated by forwarding the information of the surface network element sent by the surface network element.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • the forwarding plane network element determined according to the user's SLA information is the forwarding plane network element that best meets the needs of the user.
  • the tunnel between the AGW and the forwarding plane network element is mapped to the port information of the user equipment, so that the user equipment can send each time
  • the AGW can directly send the data packets of the user equipment to the forwarding plane network element corresponding to the user SLA information through the tunnel, thereby improving the user experience.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway. Specifically, after the AGW receives the tunnel establishment request, the AGW may determine the tunnel to communicate with the target forwarding plane network element according to the information of the forwarding plane network element in the tunnel establishment request, and according to the port information of the user equipment in the tunnel establishment request, Map the port information of the user equipment to the tunnel.
  • the information of the forwarding plane network element may include the interface information of the AGW and the interface information of the forwarding plane network element, and may also include the port information of the user equipment.
  • the format of the forwarding plane network element information may be as follows: AGW_ID /ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID, NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN.
  • AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID is the access information of the user equipment and the AGW ID information, NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port: SVLAN.
  • CVLAN is the interface information of the forwarding plane network element, and NAS_UpIdentifier refers to the forwarding
  • the name of the surface NE is followed by the slot, sub-slot, port, and VLAN information of the forwarding surface NE.
  • the method when the IP address has a corresponding relationship with the second communication tunnel, the method further includes: the access gateway receives a tunnel switching request from the controller, where the tunnel switching request is based on the controller according to the forwarding plane Information generated by the network element; the access gateway switches the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, where the second communication tunnel is the communication tunnel between the access gateway and other forwarding plane network elements .
  • the AGW sends the dial-up message to the control plane network element. Since the SLA level of the user equipment is low, the control plane network element determines to use UP1 to connect to the user equipment. Data packets are forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user equipment will send a dial-up packet for the second time, and after the AGW receives the second dial-up packet, it will also The message is sent to the control plane network element, and the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dial message processing processes do not require the forwarding plane network element to participate, making the processing pressure of the forwarding plane network element less. decrease very much.
  • the method further includes: the access gateway receives a data message, wherein the source IP address of the data message is an IP address; the access gateway determines the first communication tunnel corresponding to the IP address according to the IP address; The access gateway transmits the data message to the forwarding plane network element through the first communication tunnel.
  • the access gateway can directly send the data message to the target forwarding plane network through the communication tunnel. This enables the user equipment to directly use the target forwarding plane network element that matches its own SLA level to forward data packets, thereby improving the efficiency of packet forwarding.
  • a dial message processing method is provided, which is applied to a dial message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other, and the method includes:
  • the receiving unit is configured to receive the information of the forwarding plane network element sent by the control plane network element, where the information of the forwarding plane network element is determined by the control plane network element after receiving the dial message of the user equipment sent by the access gateway,
  • the dial-up message includes the network interconnection protocol IP address of the user equipment
  • the generating unit is configured to generate a tunnel establishment request according to the information of the forwarding plane network element, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element;
  • the sending unit is configured to send a tunnel establishment request to the access gateway, so that the access gateway establishes a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, wherein the first communication tunnel has a corresponding relationship with an IP address.
  • the access gateway After the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing.
  • the control plane network element interacts with the external server to obtain the dialing success information, it can be based on the dialing success information.
  • the SLA information determines the target forwarding plane network element, and informs the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway to establish a tunnel between the access gateway and the target forwarding plane network element .
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the first communication tunnel is used when the access gateway receives a data message whose source IP address is an IP address, the access gateway confirms the first communication tunnel corresponding to the IP address according to the IP address, and passes the data message through the first communication tunnel.
  • a communication tunnel is transmitted to the forwarding plane network element.
  • the access gateway can directly send the data message to the target forwarding plane network through the communication tunnel. This enables the user equipment to directly use the target forwarding plane network element that matches its own SLA level to forward data packets, thereby improving the efficiency of packet forwarding.
  • the receiving unit when the IP address has a corresponding relationship with the second communication tunnel, is further configured to receive the information of the forwarding plane network element sent by the control plane network element; the generating unit is further configured to Meta information generates a tunnel switching request, where the tunnel switching request is used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, and the second communication tunnel is the access gateway and other forwarding planes. Communication tunnel between network elements; the sending unit is also used to send a tunnel switching request to the access gateway.
  • the AGW sends the dial-up message to the control plane network element. Since the SLA level of the user equipment is low, the control plane network element determines to use UP1 to connect to the user equipment. Data packets are forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user equipment will send a dial-up packet for the second time, and after the AGW receives the second dial-up packet, it will also The message is sent to the control plane network element, and the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dial message processing processes do not require the forwarding plane network element to participate, so that the processing pressure of the forwarding plane network element will be reduced. decrease very much.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway. Specifically, after the AGW receives the tunnel establishment request, the AGW may determine the tunnel to communicate with the target forwarding plane network element according to the information of the forwarding plane network element in the tunnel establishment request, and according to the port information of the user equipment in the tunnel establishment request, Map the port information of the user equipment to the tunnel.
  • the information of the forwarding plane network element may include the interface information of the AGW and the interface information of the forwarding plane network element, and may also include the port information of the user equipment.
  • the format of the forwarding plane network element information may be as follows: AGW_ID /ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID, NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN.
  • AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID is the access information of the user equipment and the AGW ID information, NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port: SVLAN.
  • CVLAN is the interface information of the forwarding plane network element, and NAS_UpIdentifier refers to the forwarding
  • the name of the surface NE is followed by the slot, sub-slot, port, and VLAN information of the forwarding surface NE.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • the forwarding plane network element determined according to the user's SLA information is the forwarding plane network element that best meets the needs of the user.
  • the tunnel between the AGW and the forwarding plane network element is mapped to the port information of the user equipment, so that the user equipment can send each time
  • the AGW can directly send the data packets of the user equipment to the forwarding plane network element corresponding to the user SLA information through the tunnel, thereby improving the user experience.
  • a dial message processing method is provided, which is applied to a dial message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the element can be a traditional hardware network device, referred to as a physical user plane network element (Physical User Plane, pUP) or a virtual session forwarding processing unit (Virtual Subscriber Forward Unit, vSFU), or it can be based on a general physical server combined with network function virtualization
  • the virtual device implemented by NFV technology is referred to as a virtual forwarding plane network element (Virtual User Plane, vUP) or a virtual session forwarding processing unit (Virtual Subscriber Forward Unit, vSFU) for short.
  • the vUP device or vSFU is a virtual network device, and the virtual network device may be a virtual machine (VM) capable of realizing the above-mentioned control plane network element function, and the virtual machine is deployed on a hardware device (for example, a physical server). , Such as an X86 server).
  • the virtual machine refers to a complete computer system with complete hardware system functions simulated by software and running in a completely isolated environment.
  • VM virtual machine
  • the forwarding plane network element receives the tunnel establishment request from the access gateway.
  • the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element.
  • the forwarding plane network element establishes a communication tunnel with the access gateway, where the communication tunnel corresponds to the IP address.
  • the access gateway After the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing.
  • the control plane network element interacts with the external server to obtain the dialing success information, it can be based on the dialing success information.
  • the SLA information determines the target forwarding plane network element, and informs the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway to establish a tunnel between the access gateway and the target forwarding plane network element .
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway. Specifically, after the AGW receives the tunnel establishment request, the AGW may determine the tunnel to communicate with the target forwarding plane network element according to the information of the forwarding plane network element in the tunnel establishment request, and according to the port information of the user equipment in the tunnel establishment request, Map the port information of the user equipment to the tunnel.
  • the information of the forwarding plane network element may include the interface information of the AGW and the interface information of the forwarding plane network element, and may also include the port information of the user equipment.
  • the format of the forwarding plane network element information may be as follows: AGW_ID /ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID, NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN.
  • AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID is the access information of the user equipment and the AGW ID information, NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port: SVLAN.
  • CVLAN is the interface information of the forwarding plane network element, and NAS_UpIdentifier refers to the forwarding
  • the name of the surface NE is followed by the slot, sub-slot, port, and VLAN information of the forwarding surface NE.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • the AGW sends the dial-up message to the control plane network element. Since the SLA level of the user equipment is low, the control plane network element determines to use UP1 to connect to the user equipment. Data packets are forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user equipment will send a dial-up packet for the second time, and after the AGW receives the second dial-up packet, it will also The message is sent to the control plane network element, and the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dial message processing processes do not require the forwarding plane network element to participate, making the processing pressure of the forwarding plane network element less. decrease very much.
  • the method further includes: the forwarding plane network element receives a data message from the access gateway through the communication tunnel, wherein the source IP address of the data message is an IP address.
  • the access gateway can directly send the data message to the target forwarding plane network through the communication tunnel. This enables the user equipment to directly use the target forwarding plane network element that matches its own SLA level to forward data packets, thereby improving the efficiency of packet forwarding.
  • the method further includes: the forwarding plane network element receiving session session information sent by the control plane network element, where the session information is generated by the forwarding plane network element based on the dialing success information returned by the external server, and the session information Corresponding to the IP address; the forwarding plane network element advertises routing information to the outside according to the session information, where the destination address of the routing information is the IP address.
  • the destination address of the routing information is the IP address corresponding to the user equipment, so that after the target forwarding plane network element receives the data message sent by the user equipment again, it can be based on the destination IP address of the data message and the above routing information , Determine the next hop IP address of the data message, and realize the forwarding of the data message of the user equipment.
  • a dial-up message processing system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other, wherein the control plane network element performs as described in the first aspect
  • the access gateway executes the method as described in the second aspect
  • the controller executes the method as described in the third aspect
  • the forwarding plane network element executes the method as described in the fourth aspect.
  • a control plane network element which is applied to a dial-up message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the control plane network element includes receiving Unit, sending unit and processing unit, where,
  • the receiving unit is used to receive a dial-up message from the access gateway, where the dial-up message is a dial-up message sent by the user equipment to the access gateway;
  • the sending unit is used to send an authentication request to an external server, and the authentication request is generated by the control plane network element according to the dial-up message;
  • the receiving unit is also used to receive dial-up success information sent by the external server;
  • the processing unit is configured to determine the forwarding plane network element according to the dialing success information, so that the user equipment performs network communication through the forwarding plane network element.
  • the dialing message includes the Internetwork Protocol IP address of the user equipment
  • the sending unit is further configured to send the forwarding plane network element information to the controller after the processing unit determines the forwarding plane network element according to the dialing success information, so that The controller sends a tunnel establishment request to the access gateway, where the tunnel establishment request is generated by the controller according to the information of the forwarding plane network element, and the tunnel establishment request is used to establish a first communication tunnel between the access gateway and the forwarding plane network element ,
  • the first communication tunnel has a corresponding relationship with the IP address.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway.
  • the sending unit is further configured to send the forwarding plane network element to the controller after the processing unit determines the forwarding plane network element according to the dialing success information Information to enable the controller to send a tunnel switching request to the access gateway, where the tunnel switching request is generated by the controller according to the information of the forwarding plane network element, and the tunnel switching request is used to cause the communication tunnel corresponding to the IP address to be transferred from the
  • the second communication tunnel is switched to the first communication tunnel, and the second communication tunnel is a communication tunnel between the access gateway and other forwarding plane network elements.
  • the dialing success information includes service level agreement SLA information corresponding to the IP address, and the processing unit is configured to determine the forwarding plane network element according to the SLA information.
  • the processing unit is further configured to, after the receiving unit receives the dialing success information sent by the external server, the control plane network element generates session information according to the dialing success information, where the session information corresponds to the IP address; the sending unit also uses Yu sends the session information to the forwarding plane network element, so that the forwarding plane network element advertises routing information to the outside according to the session information, where the destination address of the routing information is an IP address.
  • an access gateway which is applied to a dial-up message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the access gateway includes a sending unit, The receiving unit and the establishing unit, wherein,
  • the receiving unit is configured to receive a dial-up message sent by the user equipment, and the dial-up message includes the network interconnection protocol IP address of the user equipment;
  • the sending unit is used to send a dial message to the control plane network element
  • the receiving unit is further configured to receive a tunnel establishment request from the controller, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element;
  • the establishment unit is configured to establish a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, where the first communication tunnel and the IP address are in a corresponding relationship.
  • the forwarding plane network element is determined by the control plane network element based on the dialing success information returned by the external server after the control plane network element generates the authentication request according to the dial-up message and sends the authentication request to the external server.
  • the tunnel establishment request is determined by the controller according to the control Generated by forwarding the information of the surface network element sent by the surface network element.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway.
  • the receiving unit when the IP address has a corresponding relationship with the second communication tunnel, is further configured to receive a tunnel switching request from the controller, where the tunnel switching request is made by the controller according to the forwarding plane network element
  • the establishment unit is also used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, where the second communication tunnel is the communication between the access gateway and other forwarding plane network elements tunnel.
  • the receiving unit is further configured to receive a data message, wherein the source IP address of the data message is an IP address; the sending unit is further configured to determine the first communication tunnel corresponding to the IP address according to the IP address; and send The unit is also used to transmit the data message to the forwarding plane network element through the first communication tunnel.
  • a controller which is applied to a dial message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the controller includes a receiving unit and a generating unit. And the sending unit, in which,
  • the receiving unit is configured to receive the information of the forwarding plane network element sent by the control plane network element, where the information of the forwarding plane network element is determined by the control plane network element after receiving the dial message of the user equipment sent by the access gateway,
  • the dial-up message includes the network interconnection protocol IP address of the user equipment
  • the generating unit is configured to generate a tunnel establishment request according to the information of the forwarding plane network element, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element;
  • the sending unit is configured to send a tunnel establishment request to the access gateway, so that the access gateway establishes a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, wherein the first communication tunnel has a corresponding relationship with an IP address.
  • the first communication tunnel is used to confirm the first communication tunnel corresponding to the IP address according to the IP address when the access gateway receives the data message whose source IP address is the IP address, and The data message is transmitted to the forwarding plane network element through the first communication tunnel.
  • the receiving unit when the IP address has a corresponding relationship with the second communication tunnel, is further configured to receive the information of the forwarding plane network element sent by the control plane network element; the generating unit is further configured to Meta information generates a tunnel switching request, where the tunnel switching request is used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, and the second communication tunnel is the access gateway and other forwarding planes. Communication tunnel between network elements; the sending unit is also used to send a tunnel switching request to the access gateway.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • a forwarding plane network element which is applied to a dial-up message processing system.
  • the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the forwarding plane network element includes receiving Unit and establishment unit, where,
  • the receiving unit is used to receive a tunnel establishment request from the access gateway, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element, and the tunnel establishment request is received by the controller according to the control plane network element Generated after the dial-up message sent by the user equipment determines the forwarding-plane network element information sent after the forwarding-plane network element, the dial-up message includes the network interconnection protocol IP address of the user equipment;
  • the establishment unit is used to establish a communication tunnel with the access gateway, where the communication tunnel and the IP address have a corresponding relationship.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates the authentication request according to the dial-up message and sends the authentication request to the external server according to the information returned by the external server The forwarding plane network element determined by the SLA information in the dialing success information.
  • the receiving unit is further configured to receive a data message from the access gateway through a communication tunnel, where the source IP address of the data message is an IP address.
  • the forwarding plane network element further includes a publishing unit, and the receiving unit is further configured to receive session session information sent by the control plane network element, where the session information is the dialing success information returned by the forwarding plane network element according to the external server
  • the generated session information corresponds to the IP address
  • the publishing unit is used to publish routing information to the outside according to the session information, where the destination address of the routing information is the IP address.
  • a dial message system in a tenth aspect, includes a controller, a forwarding plane network element, and a control plane network element that are connected to each other, wherein the control plane network element executes the method described in the first aspect, and controls The device executes the method described in the third aspect, and the forwarding plane network element executes the method described in the fourth aspect.
  • the system further includes an access gateway, which is connected to the controller, the control plane network element, and the forwarding plane network element, wherein the access gateway executes the method described in the second aspect.
  • a computer-readable storage medium including instructions, which when executed on a computing device, cause the computing device to perform the methods described in the first, second, third, and fourth aspects .
  • a network device including a processor and a memory, and the processor executes code in the memory to execute the methods described in the first, second, third, and fourth aspects.
  • a computer program product runs on a network device, the network device executes the methods described in the first aspect, the second aspect, the third aspect, and the fourth aspect.
  • a chip is provided.
  • the network device executes the methods described in the first, second, third, and fourth aspects.
  • Figure 1 is a structural diagram of a dial message processing system
  • Figure 2 is a schematic diagram of the structure of a forwarding plane network element and a control plane network element
  • Figure 3 is a schematic flow diagram of a dial message processing method
  • Figure 4 is a schematic structural diagram of a dial message processing system provided by the present application.
  • FIG. 5 is a schematic flowchart of a dial message processing method provided by the present application.
  • FIG. 6 is a schematic flowchart of steps in an application scenario of a dial message processing method provided by the present application.
  • FIG. 7 is a schematic structural diagram of a control plane network element provided by the present application.
  • FIG. 8 is a schematic structural diagram of an access gateway provided by this application.
  • Fig. 9 is a schematic structural diagram of a controller provided by the present application.
  • FIG. 10 is a schematic structural diagram of a forwarding plane network element provided by this application.
  • Fig. 11 is a schematic structural diagram of a network device provided by the present application.
  • Dial-up Internet access refers to that the user device applies for its own account or purchases an internet card from the local Internet Service Provider (ISP), has its own user name and password, and then submits authentication, authorization and accounting (Authentication, Authorization, and Accounting) to the local Internet Service Provider (ISP).
  • the AAA server sends a dial-up message, and when the AAA verifies that the dial-up is successful, various services in the network can be used.
  • FIG 1 is a structural diagram of a dial message processing system.
  • user equipment 110 connects to an operator's network through a wireless access point (AP) or router (Router) 120, they can send dial messages to AAA 170 through the network.
  • AAA 170 can determine whether a user has access rights based on the dial-up message, provide network services to users with access rights, and return a successful dial-up message to the user equipment, so that the user equipment 110 can use the network for office, communication, and entertainment activities. Otherwise, the dialing fails, and the user cannot use various network services in the network even though the user is connected to the network.
  • the devices participating in the user dialing process in the network include at least user equipment 110, AP or router 120, switch or optical line terminal (OLT) 130, and access gateway (Access Gateway) as shown in FIG. , AGW) 140, control plane network element (Control Plane, CP) 150, forwarding plane network element (User Plane, UP) 160, AAA server 170, and controller 180.
  • AGW access gateway
  • Control Plane, CP control plane network element
  • forwarding plane network element User Plane, UP
  • AAA server 170 AAA server 170
  • controller 180 Access Gateway
  • Figure 1 only uses 2 user equipment 110, 2 APs, 1 router, 1 switch or optical line terminal 130, 1 AGW 140, 1 control plane network element 150, 2 forwarding plane network elements,
  • One AAA and one controller are taken as examples to illustrate.
  • the number of various devices in the dial-up message processing system can be determined according to actual conditions, and this application does not specifically limit it. in,
  • the user equipment 110 may be a mobile terminal, specifically a wireless electronic device that can be connected to an AP, a wired electronic device that can be connected to a router, or an electronic device that can be connected to both the AP and the router.
  • the device can be a smart phone, a handheld processing device, a tablet computer, a personal computer, a mobile notebook, a virtual reality device, an integrated handheld device, a vehicle-mounted device, a smart conference device, a smart advertising device, a smart home appliance, a wearable device, and so on.
  • the AP is the access point that uses wireless devices to enter the wired network, and is the bridge between the wireless network and the wired network. It is usually connected to a wired switch or router, so that wireless devices that access the AP can pass wirelessly.
  • the AP is connected to a wired switch or router.
  • APs are mainly used in broadband homes, buildings, campuses, campuses, warehouses, factories and other places that require wireless networks.
  • AP includes not only simple wireless access points (wireless switches), but also a collective name for devices such as wireless routers (including wireless gateways and wireless bridges) with routing functions that can establish independent wireless home networking.
  • a router is a hardware device that connects two or more networks. It acts as a gateway between networks.
  • TCP/IP Transmission Control Protocol/Internet Protocol
  • a dedicated intelligent network device that takes the address in each data packet and decides how to transmit it.
  • the router 130 can usually understand different forwarding protocols. For example, a certain local area network uses the Ethernet protocol and the Internet uses the TCP/IP protocol. Then the router between the Ethernet and the Internet can analyze the destination address of the data packet from the The address is converted to a TCP/IP address; then the data packet is sent to the TCP/IP address according to the best route according to the selected routing algorithm, and vice versa, so I won’t repeat it here.
  • the switch or the switch in the optical line terminal (Optical Line Terminal, OLT) 130 is a network device used for the forwarding of electrical signals. It can provide exclusive electrical signal paths for any two network nodes connected to the switch.
  • the switch may specifically be an Ethernet switch, a telephone voice switch, an optical fiber switch, and so on.
  • the OLT can be a network device for optical signal forwarding, can provide a network-side interface of an optical access network (OAN), and connect to one or more optical distribution networks (ODN), or it can be connected to a front-end switch Connect with a network cable to convert electrical signals into optical signals.
  • OLT is the core component of the optical access network, which is equivalent to the switch or router in the traditional communication network, and provides the optical fiber interface of the passive optical fiber network for users.
  • the access gateway AGW 140 is a network interconnection device used for the interconnection of two networks with different high-level protocols. It is used between two systems with different communication protocols, data protocols or languages, or even two systems with completely different architectures. AGW 140 can be simple Understanding as a translator, the gateway needs to repackage and translate the received information to meet the needs of the target system.
  • the control plane network element 150 and the forwarding plane network element 160 may be obtained after separating the forwarding plane and the control plane of the BNG.
  • BNG is used for user dial-up authentication, access control, traffic scheduling and other operations in the network. Simply put, after the dial-up message sent by user equipment 110 passes AGW 140, it needs to interact with AAA 170 through BNG to determine the user Whether the user has the authority to access the network, if the user has the authority to access the network, the BNG will store the IP address and routing information corresponding to the user device.
  • the BNG when the BNG receives the data message sent by the user device, the BNG can The source IP address and destination IP address of the message are combined with routing information to forward the data message to the router or switch corresponding to the next-hop IP address for routing and forwarding.
  • SDN Software Defined Network
  • NFV Network Function Virtualization
  • metropolitan area networks are evolving from a traditional network-core architecture to a data center-core network architecture; traditional networks Meta-devices are gradually evolving toward the decoupling of the forwarding plane and the control plane.
  • one or more BNGs may be separated into one or more control plane network elements 150 and one or more forwarding plane network elements 160.
  • one control plane network element 150 can uniformly control and manage multiple forwarding plane network elements 160, so that the forwarding plane network element 160 can forward messages sent by the user equipment under the management of the control plane network element 150.
  • the forwarding plane network element that is completely decoupled from the control plane only handles the forwarding task of forwarding user data packets, and the control plane network element handles the remaining non-forwarding tasks, such as resource scheduling, user authentication, billing, and Authorization and so on, so that forwarding and control are completely decoupled, which can provide operators with great convenience in deployment and operation and maintenance, and the utilization and reliability of equipment can be greatly improved compared with BNG stand-alone.
  • the forwarding plane network element 160 and the control plane network element 150 are respectively explained below.
  • the control plane network element 150 is used for unified management of multiple forwarding plane network elements 160. For example, after receiving a dial message sent by the forwarding plane network element 160, it interacts with the AAA 300 for user authentication, accounting and authorization, and performs user authentication, accounting, and authorization. After the dialing is successful, session information is delivered to the forwarding plane network element 160, so that the forwarding plane network element 160 can forward the data message sent by the user who successfully dialed according to the session information. Among them, the session information is used to save the authentication information that the user equipment corresponding to each IP address needs to save during data communication (ie, session) with the forwarding plane network element, such as the user name and MAC address of the user equipment corresponding to each IP address.
  • Routing information can store a path to a specific network address to guide the forwarding plane network element to route and forward data packets, Routing information can refer to routing table (Routing Table), routing information base (Routing Information Base, RIB) and other information, such as destination address, network mask, output interface, next hop IP address, etc., this application does not limited.
  • the control plane network element 150 is usually a virtualized network element, so it is also called vBNG-CP or virtual session control unit (Virtual Subscriber Control Unit, vSCU). In specific implementation, vBNG-CP or vSCU can be implemented using cloud technology.
  • the customized vBNG-CP or vSCU may include multiple virtual machines (Virtual Machine, VM) deployed on a physical server, and the multiple VMs may be uniformly managed by a virtual machine monitor (Hypervisor) running on the physical server.
  • VM Virtual Machine
  • Hypervisor virtual machine monitor
  • one vBNG-CP or vSCU can manage multiple physical forwarding plane network elements (Physical User Plane, pUP) and virtual forwarding plane network elements (Virtual User Plane, vUP).
  • the forwarding plane network element 160 is mainly used to forward the data message sent by the user equipment 110 according to the session information issued by the control plane network element 150.
  • the forwarding plane network element 160 may be a virtualized network element or a physical device.
  • the forwarding plane network element 160 may be abbreviated as vUP or virtual session forwarding processing unit (Virtual Session Forwarding Processing Unit).
  • vSFU Subscriber Forward Unit
  • VNF Virtualized Network Functions
  • pUP Physicalized Network Functions
  • pSFU Physical Subscriber Forward Unit
  • FIG. 2 is a schematic diagram of the internal structure of the control plane network element 150 and the forwarding plane network element 160 in the network shown in FIG. 1. It should be understood that although FIG. 2 does not divide the control plane network element 150 and the forwarding plane network element 160 into unit modules, in specific implementation, there may be various forms inside the control plane network element 150 and the forwarding plane network element 160.
  • the unit modules are divided. Each module can be a software module, a hardware module, or a part of a software module and a part of a hardware module, which is not limited in this application.
  • control plane network element 150 and the forwarding plane network element 160 can perform data communication through three interfaces, which are a control interface 151, a service interface 152, and a management interface 153, respectively.
  • the service interface 152 can adopt the Generic Protocol Extension for VXLAN (VXLAN-GPE) interface.
  • VXLAN-GPE Generic Protocol Extension for VXLAN
  • the document is encapsulated and sent to the control plane network element 150 for processing; the control interface 151 can use the Cloud Broadband Remote Access Server (BRAS) interface protocol standard draft (Control Plane and User Plane Separated Protocol, CUSP) interface to control
  • BRAS Cloud Broadband Remote Access Server
  • CUSP Control Plane and User Plane Separated Protocol
  • the management interface 153 adopts a network configuration protocol (Network Configuration Protocol, Netconf) interface, through which the control plane network element 150 can deliver part of the configuration to the forwarding plane network element 160, such as virtual local area network (VLAN), virtual private Network (Virtual Private Network, VPN) configuration data, etc.
  • the forwarding plane network element 160 can also report some operating status to the control plane network element 150 through the management interface 153, such as whether the forwarding plane network element 160 is currently in a fault state, forwarding Whether the number of sessions stored by the surface
  • AAA 170 is a server program that participates in processing user dial-up messages. It provides authentication, authorization and account services. The main purpose is to manage user access to network servers and provide services to users with access rights. AAA is the abbreviation of authentication, authorization and accounting respectively. Authentication means verifying whether a user can obtain network access rights; authorization means which network services the user can use; and accounting means recording the user's use of network resources.
  • AAA 170 usually supports Radius, a common open standard in the industry, to process user dial-up messages to ensure the compatibility of devices from different manufacturers. When the user equipment 110 sends a dial-up message to the AAA 170, the network access server (that is, the control plane network element 150 in the foregoing content) will exchange Radius messages with the AAA 170. If the authentication is passed, the user equipment will be able to access the protected network resource.
  • the controller 180 may specifically be an SDN controller, which is applied to the SDN network after the control plane and the forwarding plane are separated.
  • the AGW 140 and the switch will delegate the control of the forwarding rules to the controller 180, and the AGW 140 and The switch only forwards the data message according to the forwarding rule issued by the controller 180.
  • the controller 180 is a programmable controller, which can grasp global network information, be responsible for the flow control in the network, realize flexible control of network flow, and facilitate the management and configuration of the network and the deployment of new protocols by operators and scientific researchers, etc., making the network Become smarter.
  • the entire processing flow in which the user equipment 1 sends a dial-up message and the dial-up is successful may include the following steps:
  • the AGW 140 sends a dial message to the forwarding plane network element 160.
  • the dial-up message may be a dial-up message sent by the user equipment 1 to the switch or OTL 130 through the AP or router 120, and the switch or OTL 130 to the AGW 140.
  • the dial-up message may include the IP corresponding to the user equipment 1
  • the user can use the user equipment 100 to apply for his own account from a local ISP in advance or purchase an internet card to obtain the user name and password corresponding to the user equipment.
  • the forwarding plane network element 160 identifies the dial message and sends the dial message to the control plane network element 150. Specifically, the forwarding plane network element 160 may encapsulate the dial message and send it through the service interface 152 shown in FIG. 2 Go to the control plane network element 150 for processing. With reference to the foregoing content, one control plane network element 150 can manage one or more forwarding plane network elements 160. Therefore, after the AGW receives a dial-up message, it usually sends the dial-up message to each default forwarding set in the network. Surface network element.
  • the control plane network element 150 processes the dial message, obtains an authentication request, and sends an authentication request to AAA 160.
  • the authentication request contains the user name and password of the user device.
  • AAA 160 processes the authentication request, and in the case of successful authentication, obtains dial-up success information, where the dial-up success information includes the user name corresponding to user equipment 1 and the corresponding Service Level Agreement (SLA) level And the corresponding IP address.
  • SLA Service Level Agreement
  • AAA 160 for the authentication request can include: confirming whether the user name and password in the dial-up message are correct, whether you have access to the network, etc., in the case of yes, it indicates that the dialing is successful, and AAA 310 can also After further confirming which services are available for the IP address corresponding to the username, Service Level Agreement (SLA), records of using network resources, etc., AAA 310 will encapsulate the confirmed information into a dialing success message. And return it to the control plane network element 150. Understandably, if no, it means that the user name and password are wrong or the user name does not have access rights, indicating that the dialing failed.
  • SLA Service Level Agreement
  • AAA 160 can return the dialing failure information to the control plane network element 150, so that the control plane network element 150 can The dialing failure information is returned to the user equipment 1 through the forwarding plane network element 140, the AGW 140, the switch or OTL 130, the router or the AP 120 in turn, and the description is not repeated here.
  • AAA 160 returns the dialing success message to the control plane network element 150.
  • the control plane network element 150 generates session information corresponding to the IP address according to the dialing success information, and determines the target forwarding plane network element corresponding to the IP address according to the user's SLA information. It is understandable that users with high SLA levels are high-priority users, and the forwarding plane network elements of light-load, high-quality networks can be bound to them to forward data packets for them. Users with low SLA levels are low-priority users, and can bind the forwarding plane network elements of high-load and low-quality networks with them to forward messages for them. It should be noted that the target forwarding plane network element here and the default forwarding plane network element in step S220 may be the same network element or different network elements, which can be specifically determined according to the SLA information of the user equipment.
  • the control plane network element 150 sends the session information to the target forwarding plane network element. Specifically, the control plane network element 150 may forward the session information delivered to the forwarding plane network element 160 through the control interface 151 shown in FIG. 2.
  • the flowchart shown in FIG. 3 is described using the same network element as an example, which is not limited in this application.
  • the target forwarding plane network element advertises routing information according to the session information.
  • the destination address of the routing information is the IP address corresponding to the user equipment 1, so that after the target forwarding plane network element receives the data message sent by the user equipment 1 again, it can According to the destination IP address of the data message and the foregoing routing information, the next hop IP address of the data message is determined, so as to realize the forwarding of the data message of the user equipment 1.
  • the target forwarding plane network element can also store the corresponding session information corresponding to the IP address of the user equipment, which facilitates some program processing during the session, so that the target forwarding plane network element receives the data sent by the user equipment corresponding to the IP address every time
  • the routing information and so on required for forwarding the data message sent by the user equipment does not need to repeatedly send an authentication request to the AAA through the control plane network element 150 to verify various user information of the user equipment 100.
  • the target forwarding plane network element such as UP2
  • the AGW will first send the dial packet to the default at step S220
  • the forwarding plane network element such as UP1 is sent from UP1 to the control plane network element to interact with AAA.
  • the control plane network element determines to use UP2 to transmit the user's data message according to the SLA information in the dialing success information. First transmit the dial-up message to UP1, and then to the control plane network element, confirm that UP2 is the target forwarding plane network element, which brings additional processing pressure to the default forwarding plane network element UP1.
  • the forwarding plane network element only forwards user data messages.
  • the forwarding plane network element still participates in the dialing process. Every time a user dials and goes online, the forwarding plane network element must participate in the identification, encapsulation, and forwarding of the dialed message. This leads to the forwarding plane.
  • the network element has a heavy burden and a high failure rate.
  • the incomplete decoupling of the forwarding plane and the control plane will also have an impact on the deployment, operation and maintenance of the network by operators.
  • the embodiment of the present application provides a dial message processing system 400.
  • the system 400 can be applied to the network system shown in FIG. 1.
  • the dial message processing system includes an access gateway (Access Gateway). , AGW) 140, a control plane network element (Control Plane) 150, a forwarding plane network element (User Plane) 160, and a controller 180. It should be understood that the internal division of the control plane network element 150 in FIG.
  • the control plane network element 150 may also have multiple forms of unit module division, and each module may be a software module or a hardware module.
  • the module may also be a part of a software module and a part of a hardware module, which is not limited in this application. in,
  • the AGW 140 may directly send the dial message to the control plane network element 150 through the service interface after receiving the dial message sent by the user equipment, where the service interface may be the service interface 432 described in the embodiment in FIG. 2.
  • the control plane network element 150 can generate an authentication request according to the dial message sent by the AGW 140 after receiving the dial message sent by the AGW 140, and send the authentication request to AAA 170. In the case of a successful dialing, obtain the dialing success information returned by AAA 170 , And then determine the forwarding plane network element corresponding to the user equipment according to the dialing success information, and deliver the interface information of the forwarding plane network element to the controller.
  • the control plane network element 150 can determine whether the user equipment corresponding to the dial-up message is an online user according to the internal user management module and the address management module, and if not, through the protocol processing module, the Radius module, and the AAA module , First generate an authentication request according to the received dial message, and then send the authentication request to the radius server through the radius interface to remotely access the authentication server (ie AAA 170) request, and then authenticate, charge and authorize through AAA 170 to obtain Dial-up success information.
  • the control plane network element can then use the forwarding plane network element management module to determine the interface information of the forwarding plane network element corresponding to the user equipment according to the SLA information, and send it to the controller through the netconf interface.
  • the control plane network element can also be based on the successful dialing
  • the session information is generated from the information, and the session information is delivered to the forwarding plane network element through the management interface, where the management interface may be the management interface 431 described in the embodiment in FIG. 2.
  • the controller 170 may generate a tunnel establishment request according to the received interface information of the forwarding plane network element, where the tunnel establishment request is used to establish a communication tunnel between the AGW 140 and the target forwarding plane network element, and then the controller 170
  • the tunnel establishment request can be sent to the AGW 140.
  • the controller 170 may issue a tunnel establishment request to the AGW 140 through the netconf interface.
  • the netconf interface is an XML-based network configuration protocol interface.
  • the management software can use the netconf protocol to write configuration data into the device. It is understandable that this application can flexibly modify the configuration of the controller by using the netconf interface to realize the controller The function of AGW 140 to send a tunnel establishment request.
  • the forwarding plane network element 160 may establish a communication tunnel with the AGW 140 after the AGW 140 receives the tunnel establishment request, or it may publish the route according to the session information after receiving the session information issued by the control plane network element 150 through the management interface Information, so that when the user equipment sends a data message to the AGW 140, the AGW 140 can directly send the data message to the forwarding plane network element 160 through the communication tunnel, and the forwarding plane network element performs processing on the data message according to the previously published routing information. Forwarding, so that the user equipment performs network communication through the forwarding plane network element. It is understandable that if the user equipment sends a dial-up message for the first time, the AGW140 sends the dial-up message to the control plane network element 150.
  • the control plane network element 150 determines to use UP1 for the user
  • the data packet of the device is forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user device will send a dial packet for the second time. After the AGW140 receives the second dial packet, it will also The message will be sent to the control plane network element 150.
  • the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dial message processing processes do not require the forwarding plane network element to participate. Compared with the implementation in Figure 3 With the dial-up message processing method in the example, the processing pressure of the forwarding plane network element will be greatly reduced.
  • the access gateway after the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing, and the control plane network element interacts with the external server.
  • the target forwarding plane network element After obtaining the dialing success information, the target forwarding plane network element can be determined according to the SLA information in the dialing success information, and the controller can be notified of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, A tunnel is established between the inbound gateway and the target forwarding plane network element.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the dial message processing method provided in this application may include the following steps:
  • the AGW 140 sends a dial-up message to the control plane network element 150, where the dial-up message is a dial-up message sent by the user equipment to an access gateway, and the dial-up message is a dial-up message sent by the user equipment to the access gateway through the access gateway.
  • the dial-up message sent by the control plane network element, where the dial-up message includes the IP address of the user equipment.
  • the dial message may be a dial message sent by the switch or OTL 130 to the AGW 140 after the user equipment 110 sends it to the switch or OTL 130 through the AP or router 120.
  • the AGW 140 may interact with the control plane network element 150 through the service interface in the embodiment of FIG. 4.
  • the control plane network element 150 sends an authentication request to an external server, where the authentication request is generated by the control plane network element according to the dial-up message, and the external server is used to authenticate whether the user equipment dials successfully, where
  • the external server may be AAA 170 in the foregoing content.
  • step S402 refer to the detailed description of step S230 in the embodiment of FIG. 3, and the control plane network element 150 can interact with the AAA 170 remote connection through the radius interface.
  • the embodiment of FIG. 4 which will not be repeated here. .
  • step S403 The external server (AAA 170) processes the authentication request, and in the case of a successful dial-up, obtains dial-up success information, where the dial-up success information includes SLA information corresponding to the IP address.
  • AAA 170 The external server
  • step S403 reference may be made to the detailed description of step S240 in the above embodiment of FIG. 3, which will not be repeated here.
  • step S404 AAA 160 returns the dialing success information to the control plane network element 150.
  • step S404 reference may be made to the detailed description of step S250 in the embodiment of FIG. 3, which will not be repeated here.
  • the control plane network element 150 determines the target forwarding plane network element corresponding to the IP address according to the dialing success information.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address, and the control plane network element 150 determines the forwarding plane network element 160 according to the dial-up success information includes: the control plane network element 150 according to the SLA The information determines the forwarding plane network element 160.
  • the control plane network element 150 sends the information of the forwarding plane network element to the controller 180.
  • the information of the forwarding plane network element includes the interface information of the forwarding plane network element and the interface information of the access gateway.
  • the control plane network element can interact with the SDN controller through the netconf interface in the embodiment of FIG. 4.
  • the controller 180 generates a tunnel establishment request according to the interface information of the target forwarding plane network element, where the tunnel establishment request is used to establish a communication tunnel between the AGW 140 and the target forwarding plane network element.
  • the communication tunnel may be a layer 2 network tunnel in the Open System Interconnect (OSI) model, such as a Virtual Extensible Local Area Network (VXLAN) tunnel, a virtual leased line ( Virtual Leased Line (VLL) tunnels and Ethernet Virtual Private Network (EVPN) tunnels, etc., may also include tunnels supported by the second layer network in other OSI models, which are not specifically limited in this application.
  • OSI Open System Interconnect
  • VXLAN Virtual Extensible Local Area Network
  • VLL Virtual Leased Line
  • EVPN Virtual Private Network
  • the controller 180 sends the tunnel establishment request to the AGW 140.
  • the controller 180 can interact with the AGW 140 through the netconf interface in the embodiment of FIG. 4.
  • the AGW 140 establishes a communication tunnel with the target forwarding plane network element according to the tunnel establishment request, and the communication tunnel has a corresponding relationship with the IP address. After the communication tunnel is established, a user device can exclusively enjoy a virtual local area network (Virtual Local Area Network, VLAN), which improves user experience. Specifically, the AGW 140 may establish multiple communication tunnels between the forwarding plane network element and the AGW in advance, and then map the port information of the user equipment to the communication tunnel that communicates with the target forwarding plane network element.
  • VLAN Virtual Local Area Network
  • the following uses a VXLAN tunnel as an example to explain how the AGW establishes a communication tunnel with the target forwarding plane network element according to the tunnel establishment request.
  • This process can be implemented in two ways. The first one is that the AGW can manually configure the tunnel interface according to the interface information of the target forwarding plane network element, and specify the source and destination IP addresses of the tunnel to be the local AGW and forwarding plane respectively.
  • the VXLAN tunnel is established based on the IP address of the network element, and then the port information of the user equipment is mapped to the specified VXLAN tunnel, so that after receiving the data message sent by the user, the AGW directly determines the previously mapped port information according to the user equipment’s port information.
  • AGW can also discover the remote VXLAN tunnel endpoint (VXLAN Tunnel End Point, VTEP) through Enhanced Neighbor Discovery Protocol (ENDP) in advance, automatically between the local AGW and the remote VTEP Establish multiple VXLAN tunnels.
  • VTEP VXLAN Tunnel End Point
  • EndP Enhanced Neighbor Discovery Protocol
  • the AGW receives the tunnel establishment request, it can obtain the VXLAN tunnel that communicates with the target forwarding plane network element from the multiple VXLAN tunnels, and then map the port information of the user equipment to the VXLAN tunnel.
  • the AGW After receiving the data message sent by the user, the AGW directly determines the previously mapped designated tunnel according to the port information of the user equipment, and sends the data message to the target forwarding plane network element through the tunnel.
  • the method further includes: the control plane network element generates session information session information according to the dial-up success information, where The session information corresponds to the IP address; the control plane network element sends the session information to the forwarding plane network element, so that the forwarding plane network element publishes routing information to the outside according to the session information, where: The destination address of the routing information is the IP address.
  • This step is the same as step S270 to step S280 in the foregoing content, so it will not be repeated here.
  • the control plane network element 150 may deliver session information to the forwarding plane network element 160 through the control interface 151 shown in FIG. 2.
  • the target forwarding plane network element publishes the routing information
  • the target forwarding plane network element receives the data message sent by the user equipment again, it can determine the destination of the data message according to the destination IP address of the data message and the foregoing routing information.
  • One-hop IP address enables the forwarding of data messages to user equipment. It should be noted that this step can be performed simultaneously with step S406-step S409, or it can be performed sequentially, that is, the control plane network element can send the interface information of the target forwarding plane network element to the controller at the same time.
  • the session information sent by the forwarding plane network element is not specifically limited in this application.
  • the method further includes: the access gateway receives a data message, wherein the source IP address of the data message is the IP address; the access gateway according to the IP address , Determining the communication tunnel corresponding to the IP address; the access gateway transmits the data message to the forwarding plane network element through the communication tunnel.
  • step S401-step S409 the AGW has established a communication tunnel with the target forwarding plane network element, which corresponds to the IP address of the user equipment Therefore, when the user equipment sends a data message to the AGW again, the AGW can directly transmit the data message to the target forwarding plane network element through the tunnel, and the target forwarding plane network element can perform processing on the data message according to the previously stored routing information. Forward.
  • the method further includes: The control plane network element sends the forwarding plane network element information to the controller, so that the controller sends a tunnel switching request to the access gateway, where the tunnel switching request is based on the controller according to Generated by the information of the forwarding plane network element, the tunnel switching request is used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, and the second communication tunnel is the access The communication tunnel between the gateway and other forwarding plane network elements.
  • step S401 if the user equipment has already sent a dial-up message before step S401, so that the AGW has established a communication tunnel with other target forwarding plane network elements (such as UP1), when the user equipment sends the dial-up message for the second time, the user The SLA level of the control plane has changed, and the control plane network element determines that UP2 is the target forwarding plane network element of the current user equipment.
  • the AGW 140 can switch the communication tunnel with UP1 to the communication tunnel with UP2.
  • AGW 140 is performed in step S409
  • the port information and VLAN information corresponding to the user equipment can be mapped to the VxLAN channel interoperating with UP2, so that the user data forwarding message sent by the user equipment later is sent to UP2 for forwarding through the switched VxLAN channel.
  • step S401 For example, suppose that after the user equipment 1 sends a dial-up message to the AGW for the first time, the AGW performs step S401 to send the dial-up message to the control plane network element, and the control plane network element performs step S402 to process the dial-up message and obtain authentication Request, and execute step S403 to send the authentication request to AAA for authentication.
  • AAA executes step S404 to generate dialing success information, and sends the information to the control plane network element, and then the control plane network element performs step S405-step S406 according to the dialing success
  • the information determines that the target forwarding plane network element corresponding to the SLA level of the user equipment is UP1, and sends the interface information of UP1 and the port information of the AGW to the controller.
  • the controller executes steps S407-S408 to generate a tunnel establishment request and sends it to The AGW, the AGW finally executes step S409 to map the port information of the user equipment to the tunnel 1 interworking with UP1, and complete the processing of the first dial message.
  • the user equipment can send a data message to the AGW, and the AGW sends the data message to the UP1 through the communication tunnel 1 corresponding to the port address of the user equipment, so that the UP1 forwards the data message.
  • the user equipment modifies the SLA protocol after using the network for a period of time.
  • the AGW performs step S401 again to send the dial-up message to the control plane network element, and the control plane network element executes the step S402 processes the dial message to obtain an authentication request, and executes step S403 to send the authentication request to AAA for authentication.
  • AAA executes step S404 to generate dialing success information, and sends the information to the control plane network element, and then the control plane network element Step S405-Step S406 are executed, the target forwarding plane network element corresponding to the SLA level of the user equipment at this time is determined to be UP2 according to the dialing success information, and the interface information of UP2 and the port information of the AGW are sent to the controller, and the controller executes step S407 -S408 generates a tunnel switching request and sends it to the AGW.
  • the AGW finally executes step S409 to map the port information of the user equipment from the tunnel 1 intercommunication with UP1 to the tunnel 2 intercommunication with UP2, and complete the second dialing message The processing process. After that, the user equipment can send a data message to the AGW, and the AGW sends the data message to the UP2 through the communication tunnel 2 corresponding to the port address of the user equipment, so that the UP2 forwards the data message.
  • the AGW sends the dial-up message to the control plane network element. Since the SLA level of the user equipment is low, the control plane network element determines to use UP1 to connect to the user equipment. Data packets are forwarded; assuming that the user is not satisfied with the current network service, after modifying the SLA level to a higher level, the user equipment will send a dial-up packet for the second time, and after the AGW receives the second dial-up packet, it will also The message is sent to the control plane network element, and the control plane network element determines that UP2 forwards the data message of the user equipment.
  • the two dialing message processing processes do not require the forwarding plane network element to participate. Compared with the dialing in the embodiment of FIG. 3 With the message processing method, the processing pressure of the forwarding plane network element will be greatly reduced.
  • the access gateway after the access gateway receives the dial-up message, it will send the dial-up message to the control plane network element for processing, and the control plane network element interacts with the external server.
  • the target forwarding plane network element After obtaining the dialing success information, the target forwarding plane network element can be determined according to the SLA information in the dialing success information, and the controller can be notified of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, A tunnel is established between the inbound gateway and the target forwarding plane network element.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • the following takes the application scenario of Point-to-Point Protocol Over Ethernet (PPPOE) dialing and going online as an example to illustrate the specific implementation of the dial-up message processing method of this application.
  • PPPOE Point-to-Point Protocol Over Ethernet
  • the discovery phase of the PPPOE protocol is usually divided into four steps, which will transmit a variety of different dial messages to the AGW, and the AGW only needs to send a variety of messages to the control plane network element for authentication without forwarding planes.
  • the participation of network elements is compared with the method in which the forwarding plane network element must participate in dial message processing in the embodiment of FIG. 3, using the dial message processing method provided in this application can greatly reduce the processing pressure of the forwarding plane network element.
  • the specific steps of using the dial message processing method provided in the embodiment of the present application to perform PPPOE dial-up online may be as follows:
  • the AGW receives the PPPOE Active Discovery Initiation (PADI) message sent by the Residential Gateway (RGW), where the PADI message includes the access information of the user equipment, and the PADI message is used to obtain all connectable Access equipment, such as control plane network elements.
  • the RGW is connected to the user equipment.
  • the format of the port information of the user equipment in the PADI message can be as follows: OLTID/ANI_frame/ANI_slot/ANI_subslot/ANI_port/ONU_ID, where OLTID represents the ID information of the OLT that the user equipment accesses.
  • ANI_frame/ANI_slot/ANI_subslot/ANI_port respectively represent the user equipment access node frame number, access node slot number, access node subslot number, and access node port number. For some devices that do not have a rack, frame, or subslot Concept, the corresponding position can be filled with 0 uniformly.
  • ONU_ID represents the ID information of the optical network unit (Optical Network Unit, ONU) that the user equipment accesses. It should be understood that the above format is only for illustration and does not constitute a specific limitation.
  • the AGW sends the PADI message to the control plane network element.
  • the control plane network element generates an active discovery service (PPPOE Active Discovery Offer, PADO) message according to the PADI message, and returns the PADO message to the AGW, where the PADO message is a response to the PADI message, indicating that the The control plane network element agrees to connect with the user equipment.
  • the PADO message includes at least a server name type label and the server's MAC address.
  • the server name type label is used to indicate the types of services that the control plane network element can provide to the user equipment.
  • the PADO message still carries the port information of the user equipment, and the information format can refer to the example in step 1, which will not be repeated here.
  • AGW returns the PADO message to RGW.
  • the RGW generates an Active Discovery Request (PPPOE Active Discovery Request, PADR) message according to the PADO message, and sends the PADR message to the AGW.
  • PADR Active Discovery Request
  • the user equipment can select an appropriate access device from multiple received PADO messages according to its server name type tag.
  • the user equipment selects a control plane network element as the access device.
  • the PADR message includes at least one server name type tag to determine the service type of the requested access device.
  • the PADR message still carries the port information of the user equipment, and the information format can refer to the example in step 1, which will not be repeated here.
  • the AGW sends the PADR message to the control plane network element.
  • the control plane network element generates an active discovery session confirmation (PPPOE Active Discovery Session Information-Confirmation, PADS) message according to the PADR message, and returns the PADS message to the AGW. Specifically, after the control plane network element receives the PADR message, it is ready to enter the session phase. At this time, the control plane network element will allocate a unique session ID for the next session and generate a PADS message containing the session ID. After receiving the PADS message, the user equipment generates session information according to the session ID in the PADS message, and various information during the session will be stored in the session information.
  • PPOE Active Discovery Session Information-Confirmation, PADS active discovery session confirmation
  • the AGW sends the PADS message to RGW.
  • the RGW generates a Link Control Protocol (LCP) request based on the PADS message, and sends an LCP request to the AGW.
  • LCP Link Control Protocol
  • the LCP request is used to perform authentication between the user equipment and the control plane network element and what type of authentication is used Way of negotiation.
  • the AGW sends an LCP request to the control plane network element.
  • the control plane network element sends the LCP request to AAA for authentication.
  • AAA returns the LCP negotiation result, which can specifically include whether to perform authentication and which authentication method to use.
  • the control plane network element negotiates the IP address and DNS server address of the user equipment with the RGW through the Network Control Protocol (NCP).
  • NCP Network Control Protocol
  • control plane network element sends an authentication request to AAA to confirm the account name and password of the user equipment and SLA information.
  • AAA returns the dialing success information, and the dialing success information includes the SLA information of the user equipment.
  • the process of step 15 to be implemented reference may be made to the detailed description of step S403 to step S404 in the embodiment of FIG. 5, which will not be repeated here.
  • the control plane network element determines the target forwarding plane network element corresponding to the IP address of the user equipment according to the user equipment SLA information, and generates session information corresponding to the IP address of the user equipment.
  • the process implemented in step 16 reference may be made to the detailed description of step S260 in the embodiment of FIG. 3 and step S405 in the embodiment of FIG. 5, which will not be repeated here.
  • the control plane network element sends the target forwarding plane network element information to the controller.
  • the control plane network element can interact with the SDN controller through the netconf interface, and the forwarding plane network element information can include AGW interface information As well as the interface information of the forwarding plane network element, it can also include the port information of the user equipment.
  • the format of the forwarding plane network element information can be as follows: AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID, NAS_UpIde-ntifier/NAS_slot /NAS_subslot/NAS_port:SVLAN.CVLAN.
  • AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID is the access information of the user equipment and the AGW ID information, NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port: SVLAN.
  • CVLAN is the interface information of the forwarding plane network element, and NAS_UpIdentifier refers to the forwarding
  • the name of the surface NE is followed by the slot, sub-slot, port, and VLAN information of the forwarding surface NE.
  • the process implemented in step 17 can also refer to the detailed description of step S406 in the embodiment of FIG. 5, which will not be repeated here.
  • the controller generates a tunnel establishment request according to the interface information of the target forwarding plane network element, and the tunnel establishment request is used to establish a communication tunnel between the AGW and the target forwarding plane network element.
  • the tunnel establishment request may include the interface information of the AGW described in step 17, the interface information of the target forwarding plane network element, and the access information of the book device. I won't repeat it here.
  • the controller sends the tunnel establishment request to the AGW.
  • the controller can interact with the AGW through the netconf interface.
  • the AGW can send the tunnel establishment request to the AGW corresponding to the interface information according to the AGW interface information in the information of the forwarding plane network element.
  • the AGW establishes a communication tunnel with the target forwarding plane network element according to the tunnel establishment request. Specifically, the AGW may determine the tunnel to communicate with the target forwarding plane network element according to the information of the forwarding plane network element in the tunnel establishment request, and map the port information of the user equipment to the tunnel based on the port information of the user equipment in the tunnel establishment request. In the tunnel.
  • the process implemented in step 20 reference may be made to the detailed description of step S409 in the embodiment of FIG. 5, which will not be repeated here.
  • the control plane network element sends the session information to the target forwarding plane network element. Specifically, the control plane network element may send the session information to the forwarding plane network element through the control interface 151 shown in FIG. 2.
  • the target forwarding plane network element advertises routing information according to the session information.
  • the destination address of the routing information is the IP address corresponding to the user equipment 1, so that after the target forwarding plane network element receives the data message sent by the user equipment 1 again, it can According to the destination IP address of the data message and the foregoing routing information, the next hop IP address of the data message is determined, so as to realize the forwarding of the data message of the user equipment 1.
  • control plane network element and the AGW can communicate directly, which greatly reduces the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data packets without participating in dialing messages.
  • the processing realizes the real decoupling of the forwarding plane and the control plane, which provides convenience for the deployment and operation and maintenance of the operator’s network.
  • FIG. 7 is a schematic structural diagram of a control plane network element 600 provided by an embodiment of the present application.
  • the control plane network element 600 can be applied to the dial message processing system shown in FIG. 1, and the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the control plane network element 600 may be a vBNG-CP device.
  • it may be a virtual session control unit vSCU (virtual Subscriber Control Unit).
  • vSCU virtual Subscriber Control Unit
  • vBNG-UP or vSCU can be used as a VNF in an NFV scenario, running on an X86 server, that is, an X86 server virtualization network element, which can be a virtual machine running on an X86 server.
  • the control plane network element 600 may include a receiving unit 610, a sending unit 620, and a processing unit 630, where:
  • the receiving unit 610 is configured to receive a dial-up message from the access gateway, where the dial-up message is a dial-up message sent by the user equipment to the access gateway; for a specific implementation, please refer to the above-mentioned Figure 5 The detailed description of step S401 in the embodiment will not be repeated here.
  • the sending unit 620 is configured to send an authentication request to an external server, and the authentication request is generated by the control plane network element according to the dial message; for a specific implementation, please refer to step S402 in the embodiment shown in FIG. 5 The detailed description of and the detailed description of step S220 in the embodiment shown in FIG. 3 will not be repeated here.
  • the receiving unit 610 is also configured to receive the dialing success information sent by the external server; for specific implementation, please refer to the detailed description of step S404 in the embodiment shown in FIG. 5 and the step S250 in the embodiment shown in FIG. 3 The detailed description will not be repeated here.
  • the processing unit 630 is configured to determine a forwarding plane network element according to the dialing success information, so that the user equipment performs network communication through the forwarding plane network element; for a specific implementation, please refer to the steps in the embodiment shown in FIG. 5 The detailed description of 405, the detailed description of step 16 in the embodiment shown in FIG. 6 and the detailed description of step S260 in the embodiment shown in FIG. 3 will not be repeated here.
  • the dial-up message includes the Internetwork Protocol IP address of the user equipment
  • the sending unit 620 is further configured to, after the processing unit determines a forwarding plane network element according to the dial-up success information, to The controller sends the information of the forwarding plane network element, so that the controller sends a tunnel establishment request to the access gateway, where the tunnel establishment request is made by the controller according to the forwarding plane network element Information generated, the tunnel establishment request is used to establish a first communication tunnel between the access gateway and the forwarding plane network element, and the first communication tunnel has a corresponding relationship with the IP address.
  • the information of the forwarding plane network element includes interface information of the forwarding plane network element and interface information of the access gateway.
  • the sending unit 620 is further configured to, after the processing unit determines the forwarding plane network element according to the dialing success information, Send the information of the forwarding plane network element to the controller, so that the controller sends a tunnel switching request to the access gateway, where the tunnel switching request is based on the controller according to the forwarding plane network element
  • the tunnel switching request is used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, and the second communication tunnel is the access gateway and other forwarding plane networks. Communication tunnel between yuan.
  • the dialing success information includes service level agreement SLA information corresponding to the IP address, and the processing unit is configured to determine the forwarding plane network element according to the SLA information.
  • the processing unit 630 is further configured to, after the receiving unit receives the dial-up success information sent by the external server, the control plane network element generates session information according to the dial-up success information, wherein: The session information corresponds to the IP address; the sending unit 620 is further configured to send the session information to the forwarding plane network element, so that the forwarding plane network element publishes routing information to the outside according to the session information, where , The destination address of the routing information is the IP address.
  • step S270 to step S280 in the embodiment shown in FIG. 3, and the detailed description of step 21 to step 22 in the embodiment of FIG. 6, which will not be repeated here.
  • FIG. 7 is only a possible implementation of the control plane network element.
  • the control plane network element 600 may also include more or fewer units, modules, or subsystems, which is not discussed in this application. limit.
  • the control plane network element provided in this application enables the access gateway to send the dialing message to the control plane network element for processing after receiving the dialing message.
  • the target forwarding plane network element can be determined according to the SLA information in the dialing success information, and the controller can be notified of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, and the target forwarding plane Establish tunnels between network elements.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • FIG. 8 is a schematic structural diagram of an access gateway 700 provided by the present application.
  • the access gateway 700 may be applied to the dial message processing system shown in FIG. 1, and the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the access gateway 700 may include a sending unit 710, a receiving unit 720, and a establishing unit 730, where:
  • the receiving unit 720 is configured to receive a dial-up message sent by a user equipment, where the dial-up message includes the Internetwork Protocol IP address of the user equipment;
  • the sending unit 710 is configured to send the dial message to the control plane network element; for a specific implementation manner, please refer to the detailed description of step S401 in the embodiment shown in FIG. 5, which will not be repeated here.
  • the receiving unit 720 is further configured to receive a tunnel establishment request from the controller, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element; for a specific implementation method, please Refer to the detailed description of step S408 in the embodiment shown in FIG. 5 and the detailed description of step 19 in the embodiment shown in FIG. 6, which will not be repeated here.
  • the establishing unit 730 is configured to establish a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, wherein the first communication tunnel has a corresponding relationship with the IP address.
  • the first communication tunnel has a corresponding relationship with the IP address.
  • the forwarding plane network element is determined according to the dialing success information returned by the external server after the control plane network element generates an authentication request according to a dial-up message and sends the authentication request to an external server.
  • the tunnel establishment request is generated by the controller according to the information of the forwarding plane network element sent by the control plane network element.
  • the information of the forwarding plane network element includes interface information of the forwarding plane network element and interface information of the access gateway.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates an authentication request according to the dial-up message and sends it to the external server. After the authentication request, the forwarding plane network element is determined according to the SLA information in the dialing success information returned by the external server.
  • the receiving unit 720 is further configured to receive a tunnel switching request from the controller, wherein the tunnel switching request Is generated by the controller according to the information of the forwarding plane network element; the establishing unit 730 is further configured to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication tunnel, wherein the The second communication tunnel is a communication tunnel between the access gateway and other forwarding plane network elements.
  • the receiving unit 720 is further configured to receive a data message, wherein the source IP address of the data message is the IP address; the sending unit 710 is further configured to, according to the IP address, Determine the first communication tunnel corresponding to the IP address; the sending unit 710 is further configured to transmit the data packet to the forwarding plane network element through the first communication tunnel.
  • FIG. 8 is only a possible implementation of the access gateway 700.
  • the access gateway 700 may also include more or fewer units, modules, or subsystems, which are not limited in this application. .
  • the access gateway provided in this application after receiving the dial-up message, will send the dial-up message to the control plane network element for processing.
  • the control plane network element interacts with the external server to obtain the dialing success information, it can be based on the dialing success.
  • the SLA information in the information determines the target forwarding plane network element, and informs the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, between the access gateway and the target forwarding plane network element Establish a tunnel.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • FIG. 9 is a schematic structural diagram of a controller 800 provided by the present application.
  • the controller 800 can be applied to the dial message processing system shown in FIG. 1, which includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the controller 800 may include a receiving unit 810, a generating unit 820, and a sending unit 830, where:
  • the receiving unit 810 is configured to receive the information of the forwarding plane network element sent by the control plane network element, where the information of the forwarding plane network element is that the control plane network element receives the information sent by the access gateway
  • the dial-up message includes the Internetwork Protocol IP address of the user equipment; for a specific implementation, please refer to the detailed description of step S406 in the embodiment shown in FIG. 5 and the figure The detailed description of step 17 in the sixth embodiment will not be repeated here.
  • the generating unit 820 is configured to generate a tunnel establishment request according to the information of the forwarding plane network element, wherein the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element; specific implementation For the manner, please refer to the detailed description of step S407 in the embodiment shown in FIG. 5 and the detailed description of step 18 in the embodiment of FIG. 6, which will not be repeated here.
  • the sending unit 830 is configured to send the tunnel establishment request to the access gateway, so that the access gateway establishes a first communication tunnel with the forwarding plane network element according to the tunnel establishment request, where:
  • the first communication tunnel has a corresponding relationship with the IP address.
  • the first communication tunnel is used for the access gateway to confirm the data packet with the source IP address being the IP address when the access gateway receives The first communication tunnel corresponding to the IP address, and the data packet is transmitted to the forwarding plane network element through the first communication tunnel.
  • the receiving unit 810 is further configured to receive the information of the forwarding plane network element sent by the control plane network element;
  • the generating unit 820 is further configured to generate a tunnel switching request according to the information of the forwarding plane network element, wherein the tunnel switching request is used to switch the communication tunnel corresponding to the IP address from the second communication tunnel to the first communication Tunnel, the second communication tunnel is a communication tunnel between the access gateway and other forwarding plane network elements;
  • the sending unit 830 is further configured to send a tunnel switching request to the access gateway.
  • the information of the forwarding plane network element includes interface information of the forwarding plane network element and interface information of the access gateway.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates an authentication request according to the dial-up message and sends it to the external server. After the authentication request, the forwarding plane network element is determined according to the SLA information in the dialing success information returned by the external server.
  • FIG. 9 is only a possible implementation of the controller 800.
  • the controller 800 may also include more or fewer units, modules or subsystems, which is not limited in this application.
  • the controller provided in this application enables the access gateway to send the dial-up message to the control plane network element for processing after receiving the dial-up message.
  • the control plane network element interacts with the external server to obtain the dial-up success information, it can be based on
  • the SLA information in the dial-up success information determines the target forwarding plane network element, and informs the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, and the access gateway and the target forwarding plane network element Establish a tunnel between.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • FIG. 10 is a schematic structural diagram of a forwarding plane network element 900 provided by the present application.
  • the forwarding plane network element 900 can be applied to the dial message processing system shown in FIG. 1, and the system includes a controller, an access gateway, a forwarding plane network element, and a control plane network element that are connected to each other.
  • the forwarding plane network element 900 can be a virtualized network element or a physical device.
  • the forwarding plane network element 900 can be referred to as vUP or vSFU for short.
  • the forwarding plane network element 900 may include a receiving unit 910 and a establishing unit 920, where:
  • the receiving unit 910 is configured to receive a tunnel establishment request from the access gateway, where the tunnel establishment request is used to establish a communication tunnel between the access gateway and the forwarding plane network element, and the tunnel
  • the establishment request is generated by the controller according to the information of the forwarding plane network element that is sent after the control plane network element determines the forwarding plane network element after receiving the dialing message sent by the user equipment, the dialing message It includes the network interconnection protocol IP address of the user equipment; for specific implementation, please refer to the detailed description of step S409 in the embodiment shown in FIG. 5 and the detailed description of step 20 in the embodiment of FIG. 6, which will not be repeated here.
  • the establishing unit 920 is configured to establish a communication tunnel with the access gateway, where the communication tunnel and the IP address are in a corresponding relationship.
  • the communication tunnel and the IP address are in a corresponding relationship.
  • the information of the forwarding plane network element includes interface information of the forwarding plane network element and interface information of the access gateway.
  • the dial-up success information includes the service level agreement SLA information corresponding to the IP address
  • the forwarding plane network element is the control plane network element that generates an authentication request according to the dial-up message and sends it to the external server. After the authentication request, the forwarding plane network element is determined according to the SLA information in the dialing success information returned by the external server.
  • the receiving unit 910 is further configured to receive a data message from the access gateway through the communication tunnel, wherein the source IP address of the data message is the IP address.
  • the forwarding plane network element further includes a publishing unit 930, and the receiving unit 910 is further configured to receive session information sent by the control plane network element, where the session information is the forwarding plane
  • the network element is generated by the network element according to the dial-up success information returned by the external server, and the session information corresponds to the IP address
  • the publishing unit 930 is configured to publish routing information to the outside according to the session information, wherein the The destination address of the routing information is the IP address.
  • FIG. 10 is only a possible implementation of the forwarding plane network element 900.
  • the forwarding plane network element 900 may also include more or fewer units, modules, or subsystems, which is not in this application. Make restrictions.
  • the forwarding plane network element provided in this application enables the access gateway to send the dial-up message to the control plane network element for processing after receiving the dial-up message.
  • the control plane network element interacts with the external server to obtain the dial-up success information, it can Determine the target forwarding plane network element according to the SLA information in the dial-up success message, and notify the controller of the interface information of the target forwarding plane network element, so that the controller can issue a migration instruction to the access gateway, and the access gateway and the target forwarding plane network Establish tunnels between yuan.
  • the entire dial-up message processing process does not involve the forwarding plane network element, which can reduce the processing pressure of the forwarding plane network element, so that the forwarding plane network element only needs to process the forwarding of data messages without participating in the processing of dial-up messages.
  • the decoupling of the forwarding plane and the control plane in the true sense provides convenience for the deployment, operation and maintenance of the operator's network.
  • FIG. 11 is a schematic structural diagram of a network device 1000 provided by an embodiment of this application.
  • the network device 1000 may be a forwarding plane network element, a controller, an access gateway, and a control plane network element in the foregoing content.
  • the network device 1000 includes a processor 1010, a communication interface 1020, a memory 1030, and a bus 1040.
  • the processor 1010, the communication interface 1020, and the memory 1030 may be connected to each other through an internal bus 1040, or may be communicated through other means such as wireless transmission.
  • the embodiment of the present application takes the connection through the bus 1040 as an example.
  • the bus 1040 may be a Peripheral Component Interconnect (PCI) bus or an Extended Industry Standard Architecture (EISA) bus.
  • PCI Peripheral Component Interconnect
  • EISA Extended Industry Standard Architecture
  • the bus 1040 can be divided into an address bus, a data bus, a control bus, and so on. For ease of representation, only one thick line is used to represent in FIG. 11, but it does not mean that there is only one bus or one type of bus.
  • the processor 1010 may be composed of one or more general-purpose processors, such as a central processing unit (CPU), or a combination of a CPU and a hardware chip.
  • the aforementioned hardware chip may be an application-specific integrated circuit (ASIC), a programmable logic device (Programmable Logic Device, PLD), or a combination thereof.
  • the above-mentioned PLD may be a complex programmable logic device (Complex Programmable Logic Device, CPLD), a field programmable logic gate array (Field-Programmable Gate Array, FPGA), a general array logic (Generic Array Logic, GAL), or any combination thereof.
  • the processor 1010 executes various types of digital storage instructions, such as software or firmware programs stored in the memory 1030, which enables the network device 1000 to provide a wide variety of services.
  • the memory is used to store computer instructions, where the memory 1030 is used to store program codes, and is controlled by the processor 1010 to execute, so as to execute the above-mentioned FIG. 4 -The processing steps of the control plane network element in any of the embodiments in FIG. 6.
  • the processor 1010 is configured to execute program codes stored in the memory 1030.
  • the program code may include one or more software modules.
  • the one or more software modules may be the software modules provided in the embodiment shown in FIG. 7 (in this embodiment, the software modules, such as the receiving unit, the sending unit, and the processing unit, are software modules).
  • the receiving unit may be used to receive a dial-up message from the access gateway
  • the sending unit may be used to send the dial-up message to an external server
  • the processing unit may determine the dial-up message according to the SLA information.
  • the forwarding plane network element corresponding to the IP address, etc. can be specifically used to perform S402, step S404, step S405 and optional steps of the foregoing method, and can also be used to perform other steps described in the embodiments of FIG. 4 to FIG. 6, here Do not repeat it.
  • this embodiment may also be based on a vBNG-CP device or a virtual session control unit vSCU implemented by a general physical server combined with a network function virtualization NFV technology.
  • the vBNG-CP device or the virtual session control unit is a virtual network device, and the virtual network device may be a virtual machine (VM) capable of realizing the above-mentioned control plane network element function, and the virtual machine is deployed on a hardware device ( For example, a physical server, such as an X86 server).
  • the virtual machine refers to a complete computer system with complete hardware system functions simulated by software and running in a completely isolated environment.
  • Those skilled in the art can combine NFV technology to virtualize one or more vBNG-CP devices or virtual session control units vSCU with the above-mentioned functions on a general physical server by reading this application. I won't repeat them here.
  • the memory is used to store computer instructions, where the memory 1030 is used to store program codes, and the processor 1010 controls the execution to execute the above diagrams. 4- The processing steps of accessing the gateway in any of the embodiments in FIG. 6.
  • the processor 1010 is configured to execute program codes stored in the memory 1030.
  • the program code may include one or more software modules.
  • the one or more software modules may be the software modules provided in the embodiment shown in FIG. 8 (in this embodiment, the software modules, such as the sending unit 710, the receiving unit 720, and the establishing unit 730, are software modules) .
  • the receiving unit may be used to receive a tunnel establishment request from the controller, and the establishing unit may be used to establish a communication tunnel with the forwarding plane network element according to the tunnel establishment request.
  • the steps S401, S409 and optional steps thereof in the foregoing method can also be used to perform other steps described in the embodiments of FIG. 4 to FIG. 6, which will not be repeated here.
  • the memory is used to store computer instructions
  • the memory 1030 is used to store program codes
  • the processor 1010 controls the execution to execute the above-mentioned FIG. 4 -The processing steps of the controller in any of the embodiments in FIG. 6.
  • the processor 1010 is configured to execute program codes stored in the memory 1030.
  • the program code may include one or more software modules.
  • the one or more software modules may be the software modules provided in the embodiment shown in FIG. 9 (in this embodiment, the software modules, such as the receiving unit, the generating unit, and the sending unit, are software modules).
  • the receiving unit may be used to receive interface information of the control plane network element from the forwarding plane network element
  • the generating unit may be used to generate a tunnel establishment request according to the interface information of the forwarding plane network element
  • the sending unit may be used to The access gateway sends the tunnel establishment request, so that the access gateway establishes a communication tunnel with the forwarding plane network element according to the tunnel establishment request, etc., which can be specifically used to perform S406-step of the foregoing method S408 and its optional steps can also be used to perform other steps described in the embodiments in FIG. 4 to FIG. 6, and details are not described herein again.
  • the memory is used to store computer instructions, where the memory 1030 is used to store program codes, and the processor 1010 controls the execution to execute the above The processing steps of the forwarding plane network element in any of the embodiments in FIG. 4 to FIG. 6.
  • the processor 1010 is configured to execute program codes stored in the memory 1030.
  • the program code may include one or more software modules.
  • the one or more software modules may be the software modules provided in the embodiment shown in FIG. 10 (in this embodiment, the software modules, such as the receiving unit, the establishing unit, and the publishing unit, are software modules).
  • the receiving unit is used to receive a tunnel establishment request from the access gateway
  • the establishing unit is used to establish a communication tunnel with the access gateway
  • the publishing unit is used to publish routing information according to session information, etc., which can be specifically used to perform the aforementioned method S409 and its optional steps can also be used to perform other steps described in the embodiments in FIG. 4 to FIG. 6, which will not be repeated here.
  • the forwarding plane network element can be a traditional hardware network device, abbreviated as pUP or pSFU, or a virtual device based on a general physical server combined with network function virtualization NFV technology, abbreviated as vUP or vSFU.
  • the vUP device or vSFU is a virtual network device, and the virtual network device may be a VM capable of implementing the above-mentioned control plane network element function, and the virtual machine is deployed on a hardware device (for example, a physical server, such as an X86 server).
  • the virtual machine refers to a complete computer system with complete hardware system functions simulated by software and running in a completely isolated environment.
  • Those skilled in the art can combine NFV technology to virtualize one or more vSFU devices or vUP devices with the above-mentioned functions on a general physical server by reading this application.
  • the memory 1030 may include a volatile memory (Volatile Memory), such as a random access memory (Random Access Memory, RAM); the memory 1030 may also include a non-volatile memory (Non-Volatile Memory), such as a read-only memory ( Read-Only Memory (ROM), Flash Memory (Flash Memory), Hard Disk Drive (HDD), or Solid-State Drive (SSD); the memory 1030 may also include a combination of the above types.
  • the memory 1030 may store program codes, which may specifically include program codes used to execute other steps described in the embodiments of FIG. 4 to FIG. 6, which will not be repeated here.
  • the communication interface 1020 may be a wired interface (such as an Ethernet interface), an internal interface (such as a high-speed serial computer expansion bus (Peripheral Component Interconnect express, PCIe) bus interface), a wired interface (such as an Ethernet interface), or a wireless interface (for example, a cellular network interface or the use of a wireless local area network interface) to communicate with other devices or modules.
  • a wired interface such as an Ethernet interface
  • PCIe serial computer expansion bus
  • PCIe Peripheral Component Interconnect express
  • Ethernet interface such as an Ethernet interface
  • a wireless interface for example, a cellular network interface or the use of a wireless local area network interface
  • FIG. 11 is only a possible implementation of the embodiment of the present application.
  • the network device may also include more or fewer components, which is not limited here.
  • the content not shown or described in the embodiments of the present application please refer to the relevant descriptions in the embodiments described in FIG. 4 to FIG. 6, which will not be repeated here.
  • network device shown in FIG. 11 may also be a computer cluster composed of multiple servers, which is not specifically limited in this application.
  • the embodiment of the present application also provides a computer-readable storage medium, which stores instructions in the computer-readable storage medium, and when the computer-readable storage medium runs on a processor, the method flow shown in FIGS. 4 to 6 is implemented.
  • the embodiment of the present application also provides a computer program product.
  • the computer program product runs on a processor, the method flow shown in FIGS. 4 to 6 is realized.
  • the above-mentioned embodiments may be implemented in whole or in part by software, hardware, firmware or any other combination.
  • the above-mentioned embodiments may be implemented in the form of a computer program product in whole or in part.
  • the computer program product includes one or more computer instructions.
  • the computer may be a general-purpose computer, a special-purpose computer, a computer network, or other programmable devices.
  • the computer instructions may be stored in a computer-readable storage medium, or transmitted from one computer-readable storage medium to another computer-readable storage medium.
  • the computer instructions may be transmitted from a website, computer, server, or data center.
  • the computer-readable storage medium may be any available medium that can be accessed by a computer or a data storage device such as a server or a data center that includes one or more sets of available media.
  • the usable medium may be a magnetic medium (for example, a floppy disk, a hard disk, and a magnetic tape), an optical medium (for example, a high-density digital video disc (Digital Video Disc, DVD)), or a semiconductor medium.
  • the semiconductor medium may be an SSD.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Business, Economics & Management (AREA)
  • Accounting & Taxation (AREA)
  • Computing Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Telephonic Communication Services (AREA)

Abstract

本申请提供了一种拨号报文处理方法。应用于拨号报文处理系统, 所述系统包括相互连接的控制器, 接入网关, 转发面网元和控制面网元, 所述方法包括: 所述控制面网元接收来自所述接入网关的拨号报文, 所述拨号报文是用户设备向所述接入网关发送的拨号报文; 所述控制面网元向外部服务器发送认证请求, 所述认证请求是所述控制面网元根据所述拨号报文生成的; 所述控制面网元接收所述外部服务器发送的拨号成功信息; 所述控制面网元根据所述拨号成功信息确定转发面网元, 使得所述用户设备通过所述转发面网元进行网络通信。

Description

拨号报文处理方法、网元、系统及网络设备
本申请要求于2020年3月16日提交中国专利局、申请号为202010183200.0、申请名称为“拨号报文处理方法、网元、系统及网络设备”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本申请涉及通信领域,尤其涉及拨号报文处理方法、网元、系统及网络设备。
背景技术
随着软件定义型网络(SDN)技术和网络功能虚拟化(NFV)技术的发展,城域网向着传统以网络为核心的架构向以数据中心为核心的网络架构演进;传统的网元设备也逐渐朝着转发面和控制面解耦的方向演进。其中,用于用户认证、接入控制、流量调度等操作的宽带网络网关(Broadband Network Gateway,BNG),也随之朝着转发面和控制面解耦的方向演进。BNG转发与控制解耦后,BNG可以转化为控制面网元和转发面网元,一个控制面网元可以管理多个转发面网元,理想状态下,转发面和控制面完全解耦的转发面网元只处理转发用户数据报文的转发任务,控制面网元来处理余下的非转发任务,比如资源调度、用户认证、计费、授权等等,这样转发与控制完全解耦,可以给运营商在部署和运维方面提供极大的便捷,和BNG单机相比设备的利用率和可靠性都能得到大幅的提升。
但是,当前网络中BNG的转发与控制解耦并不完全,当前网络中的拨号报文处理仍然需要转发面网元的参与,导致转发面网元的工作不仅包括对用户发送的数据报文进行转发,还包括对用户发送的拨号报文进行识别、处理和转发,一方面导致了转发面网元负担较重,故障率高,另一方面,转发面和控制面的解耦不完全也会给运营商在部署和运维网络的过程产生影响。
发明内容
本申请提供了拨号报文处理方法、网元、系统及网络设备,用于解决当前拨号报文处理过程中转发面网元负担重、转发面和控制面解耦不完全的问题。
第一方面,提供了一种拨号报文处理方法,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,其中,该控制面网元可以是基于通用的物理服务器结合网络功能虚拟化技术实现的虚拟宽带网络网关控制面网元(Virtual BNG-Control Plane)设备或虚拟会话控制单元(Virtual Subscriber Control Unit,vSCU)。vBNG-CP设备或vSCU为虚拟网络设备,虚拟网络设备可以是能够实现上述控制面网元功能的虚拟机(Virtual Machine,VM),虚拟机部署在硬件设备上(例如,物理服务器,如X86服务器)。虚拟机指通过软件模拟的具有完整硬件该系统功能的、运行在一个完全隔离环境中的完整计算机该系统。本领域技术人员通过阅读本申请即可结合虚拟化网络功能(Virtualized Network Functions,VNF)技术在通用物理服务器上虚拟出具有上述功能的一个或多个vBNG-CP设备或虚拟会话控制单元vSCU。此处不再赘述。该方法包括:
控制面网元接收来自接入网关的拨号报文,拨号报文是用户设备向接入网关发送的拨 号报文;
控制面网元向外部服务器发送认证请求,认证请求是控制面网元根据拨号报文生成的;
控制面网元接收外部服务器发送的拨号成功信息;
控制面网元根据拨号成功信息确定转发面网元,使得用户设备通过转发面网元进行网络通信。
上述方法中,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,使得用户设备通过转发面网元进行网络通信。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
在一实施例中,拨号报文包括用户设备的网络互联协议IP地址,控制面网元根据拨号成功信息确定转发面网元之后,该方法还包括:控制面网元向控制器发送转发面网元的信息,使得控制器向接入网关发送隧道建立请求,其中,隧道建立请求是控制器根据转发面网元的信息生成的,隧道建立请求用于在接入网关和转发面网元之间建立第一通信隧道,第一通信隧道与IP地址呈对应关系。
可以理解的,控制面网元确定与用户设备SLA等级对应的目标转发面网元后,通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。接入网关与转发面网元之间建立隧道后,当用户设备再次向接入网关发送数据报文时,接入网关可以直接将数据报文通过通信隧道发送给目标转发面网元,使得用户设备可以直接使用与自己SLA等级相匹配的目标转发面网元进行数据报文的转发,提高报文转发的效率。并且,建立通信隧道后,使得一个用户设备可以独享一个虚拟局域网(Virtual Local Area Network,VLAN),提升用户体验。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。具体地,AGW在接收到隧道建立请求之后,AGW可以根据隧道建立请求中的转发面网元的信息确定与目标转发面网元互通的隧道,并根据隧道建立请求中的用户设备的端口信息,将用户设备的端口信息映射到该隧道中。
需要说明的,转发面网元的信息可以包括AGW的接口信息以及转发面网元的接口信息,还可以包括用户设备的端口信息,举例来说,转发面网元的信息的格式可以如下:AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID,NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN。其中,AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID是用户设备的接入信息以及AGW的ID信息,NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN是转发面网元的接口信息,NAS_UpIdentifier是指转发面网元的名称,后面分别是转发面网元的槽位、子槽位、端口和VLAN信息。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,控制面网元根据拨号成功信息确定转发面网元之后,该方法还包括:控制面网元向控制器发送转发面网元的信息,使得控制器向接入网关发送隧道切换请求,其中,隧道切换请求是控制器根据转发 面网元的信息生成的,隧道切换请求用于使得IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,第二通信隧道是接入网关与其他转发面网元之间的通信隧道。
可以理解的,如果用户设备第一次发送拨号报文时,AGW将该拨号报文发送至控制面网元,由于该用户设备的SLA等级较低,控制面网元确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW接收到第二次拨号报文后,也会将该报文发送给控制面网元,控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,使得转发面网元的处理压力将大大减少。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,控制面网元根据拨号成功信息确定转发面网元包括:控制面网元根据SLA信息确定转发面网元。
可以理解的,SLA等级高的用户是高优先级用户,可以将轻载、优质网络的转发面网元与其绑定,为其进行数据报文的转发。SLA等级低的用户是低优先级用户,可以将高负载、低质网络的转发面网元与其绑定,为其进行报文转发。因此,根据用户SLA信息确定的转发面网元是最符合用户需求的转发面网元,将AGW与转发面网元之间的隧道于用户设备的端口信息进行映射,可以使得用户设备每次发送数据报文时,AGW都可以直接通过该隧道将用户设备的数据报文发送给与用户SLA信息对应的转发面网元,从而提高用户使用体验。
在一实施例中,控制面网元接收外部服务器发送的拨号成功信息之后,该方法还包括:控制面网元根据拨号成功信息生成会话session信息,其中,session信息与IP地址对应;控制面网元向转发面网元发送session信息,使得转发面网元根据session信息对外发布路由信息,其中,路由信息的目的地址为IP地址。
可以理解的,该路由信息的目的地址是该用户设备对应的IP地址,使得目标转发面网元再次接收到用户设备发送的数据报文之后,可以根据数据报文的目的IP地址和上述路由信息,确定数据报文的下一跳IP地址,实现对用户设备的数据报文的转发。
第二方面,提供了一种拨号报文处理方法,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,该方法包括:
接入网关接收用户设备发送的发送拨号报文,拨号报文包括用户设备的网络互联协议IP地址;
接入网关向控制面网元发送拨号报文;
接入网关接收来自控制器的隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道;
接入网关根据隧道建立请求,与转发面网元之间建立第一通信隧道,其中,第一通信隧道与IP地址呈对应关系。
上述方法中,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元 只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
在一实施例中,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息确定的,隧道建立请求是控制器根据控制面网元发送的转发面网元的信息生成的。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
可以理解的,SLA等级高的用户是高优先级用户,可以将轻载、优质网络的转发面网元与其绑定,为其进行数据报文的转发。SLA等级低的用户是低优先级用户,可以将高负载、低质网络的转发面网元与其绑定,为其进行报文转发。因此,根据用户SLA信息确定的转发面网元是最符合用户需求的转发面网元,将AGW与转发面网元之间的隧道于用户设备的端口信息进行映射,可以使得用户设备每次发送数据报文时,AGW都可以直接通过该隧道将用户设备的数据报文发送给与用户SLA信息对应的转发面网元,从而提高用户使用体验。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。具体地,AGW在接收到隧道建立请求之后,AGW可以根据隧道建立请求中的转发面网元的信息确定与目标转发面网元互通的隧道,并根据隧道建立请求中的用户设备的端口信息,将用户设备的端口信息映射到该隧道中。
需要说明的,转发面网元的信息可以包括AGW的接口信息以及转发面网元的接口信息,还可以包括用户设备的端口信息,举例来说,转发面网元的信息的格式可以如下:AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID,NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN。其中,AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID是用户设备的接入信息以及AGW的ID信息,NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN是转发面网元的接口信息,NAS_UpIdentifier是指转发面网元的名称,后面分别是转发面网元的槽位、子槽位、端口和VLAN信息。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,该方法还包括:接入网关接收来自控制器的隧道切换请求,其中,隧道切换请求是控制器根据转发面网元的信息生成的;接入网关将IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,其中,第二通信隧道是接入网关与其他转发面网元之间的通信隧道。
可以理解的,如果用户设备第一次发送拨号报文时,AGW将该拨号报文发送至控制面网元,由于该用户设备的SLA等级较低,控制面网元确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW接收到第二次拨号报文后,也会将该报文发送给控制面网元,控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,使得转发面网元的处理压力将大大减少。
在一实施例中,该方法还包括:接入网关接收数据报文,其中,数据报文的源IP地址 是IP地址;接入网关根据IP地址,确定与IP地址对应的第一通信隧道;接入网关通过第一通信隧道将数据报文传输至转发面网元。
可以理解的,接入网关与转发面网元之间建立隧道后,当用户设备再次向接入网关发送数据报文时,接入网关可以直接将数据报文通过通信隧道发送给目标转发面网元,使得用户设备可以直接使用与自己SLA等级相匹配的目标转发面网元进行数据报文的转发,提高报文转发的效率。
第三方面,提供了一种拨号报文处理方法,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,该方法包括:
接收单元用于接收由控制面网元发送的转发面网元的信息,其中,转发面网元的信息是控制面网元在接收到接入网关发送的用户设备的拨号报文之后确定的,拨号报文包括用户设备的网络互联协议IP地址;
生成单元用于根据转发面网元的信息,生成隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道;
发送单元用于向接入网关发送隧道建立请求,使得接入网关根据隧道建立请求,与转发面网元之间建立第一通信隧道,其中,第一通信隧道与IP地址呈对应关系。
上述方法中,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
第一通信隧道用于在接入网关接收到源IP地址是IP地址的数据报文的情况下,接入网关根据IP地址确认与IP地址对应的第一通信隧道,并将数据报文通过第一通信隧道传输至转发面网元。
可以理解的,接入网关与转发面网元之间建立隧道后,当用户设备再次向接入网关发送数据报文时,接入网关可以直接将数据报文通过通信隧道发送给目标转发面网元,使得用户设备可以直接使用与自己SLA等级相匹配的目标转发面网元进行数据报文的转发,提高报文转发的效率。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,接收单元还用于接收控制面网元发送的转发面网元的信息;生成单元还用于根据转发面网元的信息生成隧道切换请求,其中,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,第二通信隧道是接入网关与其他转发面网元之间的通信隧道;发送单元还用于向接入网关发送隧道切换请求。
可以理解的,如果用户设备第一次发送拨号报文时,AGW将该拨号报文发送至控制面网元,由于该用户设备的SLA等级较低,控制面网元确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW接收到第二次拨号报文后,也会将该报文发送给控制面网元, 控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,使得转发面网元的处理压力将大大减少。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。具体地,AGW在接收到隧道建立请求之后,AGW可以根据隧道建立请求中的转发面网元的信息确定与目标转发面网元互通的隧道,并根据隧道建立请求中的用户设备的端口信息,将用户设备的端口信息映射到该隧道中。
需要说明的,转发面网元的信息可以包括AGW的接口信息以及转发面网元的接口信息,还可以包括用户设备的端口信息,举例来说,转发面网元的信息的格式可以如下:AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID,NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN。其中,AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID是用户设备的接入信息以及AGW的ID信息,NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN是转发面网元的接口信息,NAS_UpIdentifier是指转发面网元的名称,后面分别是转发面网元的槽位、子槽位、端口和VLAN信息。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
可以理解的,SLA等级高的用户是高优先级用户,可以将轻载、优质网络的转发面网元与其绑定,为其进行数据报文的转发。SLA等级低的用户是低优先级用户,可以将高负载、低质网络的转发面网元与其绑定,为其进行报文转发。因此,根据用户SLA信息确定的转发面网元是最符合用户需求的转发面网元,将AGW与转发面网元之间的隧道于用户设备的端口信息进行映射,可以使得用户设备每次发送数据报文时,AGW都可以直接通过该隧道将用户设备的数据报文发送给与用户SLA信息对应的转发面网元,从而提高用户使用体验。
第四方面,提供了一种拨号报文处理方法,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,其中,转发面网元可以是一个传统硬件网络设备,简称为物理转发面网元(Physical User Plane,pUP)或者虚拟会话转发处理单元(Virtual Subscriber Forward Unit,vSFU),也可以基于通用的物理服务器结合网络功能虚拟化NFV技术实现的虚拟是设备,简称为虚拟转发面网元(Virtual User Plane,vUP)或者虚拟会话转发处理单元(Virtual Subscriber Forward Unit,vSFU)。所述vUP设备或vSFU为虚拟网络设备,所述虚拟网络设备可以是能够实现上述控制面网元功能的虚拟机(Virtual Machine,VM),所述虚拟机部署在硬件设备上(例如,物理服务器,如X86服务器)。所述虚拟机指通过软件模拟的具有完整硬件系统功能的、运行在一个完全隔离环境中的完整计算机系统。本领域技术人员通过阅读本申请即可结合NFV技术在通用物理服务器上虚拟出具有上述功能的一个或多个vSFU设备或vUP设备。该方法包括:
转发面网元接收来自接入网关的隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道,隧道建立请求是控制器根据控制面网元在接收到用户设备发送的拨号报文之后确定出转发面网元之后发送的转发面网元的信息生成的,拨号报文 包括用户设备的网络互联协议IP地址;
转发面网元与接入网关建立通信隧道,其中,通信隧道与IP地址呈对应关系。
上述方法中,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。具体地,AGW在接收到隧道建立请求之后,AGW可以根据隧道建立请求中的转发面网元的信息确定与目标转发面网元互通的隧道,并根据隧道建立请求中的用户设备的端口信息,将用户设备的端口信息映射到该隧道中。
需要说明的,转发面网元的信息可以包括AGW的接口信息以及转发面网元的接口信息,还可以包括用户设备的端口信息,举例来说,转发面网元的信息的格式可以如下:AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID,NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN。其中,AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID是用户设备的接入信息以及AGW的ID信息,NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN是转发面网元的接口信息,NAS_UpIdentifier是指转发面网元的名称,后面分别是转发面网元的槽位、子槽位、端口和VLAN信息。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
可以理解的,如果用户设备第一次发送拨号报文时,AGW将该拨号报文发送至控制面网元,由于该用户设备的SLA等级较低,控制面网元确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW接收到第二次拨号报文后,也会将该报文发送给控制面网元,控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,使得转发面网元的处理压力将大大减少。
在一实施例中,该方法还包括:转发面网元通过通信隧道接收来自接入网关的数据报文,其中,数据报文的源IP地址是IP地址。
可以理解的,接入网关与转发面网元之间建立隧道后,当用户设备再次向接入网关发送数据报文时,接入网关可以直接将数据报文通过通信隧道发送给目标转发面网元,使得用户设备可以直接使用与自己SLA等级相匹配的目标转发面网元进行数据报文的转发,提高报文转发的效率。
在一实施例中,该方法还包括:转发面网元接收控制面网元发送的会话session信息,其中,session信息是转发面网元网元根据外部服务器返回的拨号成功信息生成的,session 信息与IP地址对应;转发面网元根据session信息,对外发布路由信息,其中,路由信息的目的地址为IP地址。
可以理解的,该路由信息的目的地址是该用户设备对应的IP地址,使得目标转发面网元再次接收到用户设备发送的数据报文之后,可以根据数据报文的目的IP地址和上述路由信息,确定数据报文的下一跳IP地址,实现对用户设备的数据报文的转发。
第五方面,提供了一种拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,其中,控制面网元执行如第一方面描述的方法,接入网关执行如第二方面描述的方法,控制器执行如第三方面描述的方法,转发面网元执行如第四方面描述的方法。
第六方面,提供了一种控制面网元,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,控制面网元包括接收单元、发送单元以及处理单元,其中,
接收单元用于接收来自接入网关的拨号报文,拨号报文是用户设备向接入网关发送的拨号报文;
发送单元用于向外部服务器发送认证请求,认证请求是控制面网元根据拨号报文生成的;
接收单元还用于接收外部服务器发送的拨号成功信息;
处理单元用于根据拨号成功信息确定转发面网元,使得用户设备通过转发面网元进行网络通信。
在一实施例中,拨号报文包括用户设备的网络互联协议IP地址,发送单元还用于在处理单元根据拨号成功信息确定转发面网元之后,向控制器发送转发面网元的信息,使得控制器向接入网关发送隧道建立请求,其中,隧道建立请求是控制器根据转发面网元的信息生成的,隧道建立请求用于在接入网关和转发面网元之间建立第一通信隧道,第一通信隧道与IP地址呈对应关系。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,发送单元还用于在处理单元根据拨号成功信息确定转发面网元之后,向控制器发送转发面网元的信息,使得控制器向接入网关发送隧道切换请求,其中,隧道切换请求是控制器根据转发面网元的信息生成的,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,第二通信隧道是接入网关与其他转发面网元之间的通信隧道。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,处理单元用于根据SLA信息确定转发面网元。
在一实施例中,处理单元还用于在接收单元接收外部服务器发送的拨号成功信息之后,控制面网元根据拨号成功信息生成会话session信息,其中,session信息与IP地址对应;发送单元还用于向转发面网元发送session信息,使得转发面网元根据session信息对外发布路由信息,其中,路由信息的目的地址为IP地址。
第七方面,提供了一种接入网关,应用于拨号报文处理系统,该系统包括相互连接的 控制器、接入网关、转发面网元和控制面网元,接入网关包括发送单元、接收单元以及建立单元,其中,
接收单元用于接收用户设备发送的发送拨号报文,拨号报文包括用户设备的网络互联协议IP地址;
发送单元用于向控制面网元发送拨号报文;
接收单元还用于接收来自控制器的隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道;
建立单元用于根据隧道建立请求,与转发面网元之间建立第一通信隧道,其中,第一通信隧道与IP地址呈对应关系。
在一实施例中,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息确定的,隧道建立请求是控制器根据控制面网元发送的转发面网元的信息生成的。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,接收单元还用于接收来自控制器的隧道切换请求,其中,隧道切换请求是控制器根据转发面网元的信息生成的;建立单元还用于将所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,其中,第二通信隧道是接入网关与其他转发面网元之间的通信隧道。
在一实施例中,接收单元还用于接收数据报文,其中,数据报文的源IP地址是IP地址;发送单元还用于根据IP地址,确定与IP地址对应的第一通信隧道;发送单元还用于通过第一通信隧道将数据报文传输至转发面网元。
第八方面,提供了一种控制器,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,控制器包括接收单元、生成单元以及发送单元,其中,
接收单元用于接收由控制面网元发送的转发面网元的信息,其中,转发面网元的信息是控制面网元在接收到接入网关发送的用户设备的拨号报文之后确定的,拨号报文包括用户设备的网络互联协议IP地址;
生成单元用于根据转发面网元的信息,生成隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道;
发送单元用于向接入网关发送隧道建立请求,使得接入网关根据隧道建立请求,与转发面网元之间建立第一通信隧道,其中,第一通信隧道与IP地址呈对应关系。
在一实施例中,第一通信隧道用于在接入网关接收到源IP地址是IP地址的数据报文的情况下,接入网关根据IP地址确认与IP地址对应的第一通信隧道,并将数据报文通过第一通信隧道传输至转发面网元。
在一实施例中,在IP地址已与第二通信隧道呈对应关系的情况下,接收单元还用于接 收控制面网元发送的转发面网元的信息;生成单元还用于根据转发面网元的信息生成隧道切换请求,其中,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,第二通信隧道是接入网关与其他转发面网元之间的通信隧道;发送单元还用于向接入网关发送隧道切换请求。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
第九方面,提供了一种转发面网元,应用于拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,转发面网元包括接收单元和建立单元,其中,
接收单元用于接收来自接入网关的隧道建立请求,其中,隧道建立请求用于在接入网关和转发面网元之间建立通信隧道,隧道建立请求是控制器根据控制面网元在接收到用户设备发送的拨号报文之后确定出转发面网元之后发送的转发面网元的信息生成的,拨号报文包括用户设备的网络互联协议IP地址;
建立单元应用于与接入网关建立通信隧道,其中,通信隧道与IP地址呈对应关系。
在一实施例中,转发面网元的信息包括转发面网元的接口信息以及接入网关的接口信息。
在一实施例中,拨号成功信息包括IP地址对应的服务等级协议SLA信息,转发面网元是控制面网元根据拨号报文生成认证请求并向外部服务器发送认证请求之后,根据外部服务器返回的拨号成功信息中的SLA信息确定的转发面网元。
在一实施例中,接收单元还用于通过通信隧道接收来自接入网关的数据报文,其中,数据报文的源IP地址是IP地址。
在一实施例中,转发面网元还包括发布单元,接收单元还用于接收控制面网元发送的会话session信息,其中,session信息是转发面网元网元根据外部服务器返回的拨号成功信息生成的,session信息与IP地址对应;发布单元用于根据session信息,对外发布路由信息,其中,路由信息的目的地址为IP地址。
第十方面,提供了一种拨号报文该系统,该系统包括相互连接的控制器、转发面网元和控制面网元,其中,控制面网元执行如第一方面描述的该方法,控制器执行如第三方面描述的该方法,转发面网元执行如第四方面描述的该方法。
在一实施例中,该系统还包括接入网关,接入网关与控制器、控制面网元以及转发面网元相连,其中,接入网关执行如第二方面描述的该方法。
第十一方面,提供了一种计算机可读存储介质,包括指令,当指令在计算设备上运行时,使得计算设备执行如第一方面、第二方面、第三方面以及第四方面描述的方法。
第十二方面,提供了一种网络设备,包括处理器和存储器,处理器执行存储器中的代码执行如第一方面、第二方面、第三方面以及第四方面描述的方法。
第十三方面,提供了一种计算机程序产品,当该计算机程序产品在网络设备上运行时, 使得网络设备执行如第一方面、第二方面、第三方面以及第四方面描述的方法。
第十四方面,提供了一种芯片,当该芯片在网络设备上运行时,使得网络设备执行上述第一方面、第二方面、第三方面以及第四方面描述的方法。
附图说明
为了更清楚地说明本申请实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍:
图1是一种拨号报文处理系统的结构示意图;
图2是一种转发面网元和控制面网元的结构示意图;
图3是一种拨号报文处理方法的流程示意图;
图4是本申请提供的一种拨号报文处理系统的结构示意图;
图5是本申请提供的一种拨号报文处理方法的流程示意图;
图6是本申请提供的一种拨号报文处理方法在一应用场景下的步骤流程示意图;
图7是本申请提供的一种控制面网元的结构示意图;
图8是本申请提供的一种接入网关的结构示意图;
图9是本申请提供的一种控制器的结构示意图;
图10是本申请提供的一种转发面网元的结构示意图;
图11是本申请提供的一种网络设备的结构示意图。
具体实施方式
下面将结合本发明实施例中的附图,对本发明实施例中的技术方案进行描述,显然,所描述的实施例仅仅是本发明一部分实施例,而不是全部的实施例。基于本发明中的实施例,本领域普通技术人员在没有做出创造性劳动前提下所获得的所有其他实施例,都属于本发明保护的范围。
下面对本申请涉及的应用场景进行描述说明。
近些年来,网络技术发展快速,使得人们对其的依赖程度也在逐渐增加,互联网已经深入到千家万户,几乎所有的消费场所比如购物商场、餐厅、宾馆、咖啡厅等都为其顾客提供了无线服务,几乎所有的家庭、办公、学校等场所都覆盖了有线服务,上网已经成为了多数人学习、工作和生活的重要部分。
通常情况下,用户想要使用网络,需要进行拨号上网。拨号上网指的是用户设备向本地互联网服务提供商(Internet Service Provider,ISP)申请自己的账号或者购买上网卡,拥有自己的用户名和密码后,向认证授权和计费(Authentication,Authorization and Accounting,AAA)服务器发送拨号报文,在AAA验证拨号成功的情况下,即可使用网络中的各种服务。
图1是一种拨号报文处理系统的结构示意图。如图1所示,各种类型的用户设备110通过连接无线接入点(Access Point,AP)或者路由器(Router)120接入运营商网络后,可以通过该网络向AAA 170发送拨号报文,AAA 170可以根据拨号报文,确定用户是否具有访问权,并对具有访问权的用户提供网络服务,向用户设备返回拨号成功的消息,用户设备110才可以使用网络进行办公、交流和娱乐活动等等,反之,则拨号失败,用户虽然与网络连 接但是无法使用网络中的各种网络服务。其中,网络中参与用户拨号过程的设备至少包括如图1所示的用户设备110、AP或者路由器120、交换机(Switch)或者光线路终端(Optical Line Terminal,OLT)130、接入网关(Access Gateway,AGW)140、控制面网元(Control Plane,CP)150、转发面网元(User Plane,UP)160、AAA服务器170以及控制器180。应理解,图1仅仅以2个用户设备110,2个AP、1个路由器、1个交换机或者光线路终端130、1个AGW 140、1个控制面网元150、2个转发面网元、1个AAA和1个控制器为例进行了举例说明,具体实现中,拨号报文处理系统中各种设备的数量可以根据实际情况确定,本申请不作具体限定。其中,
用户设备110可以是移动终端,具体可以是能够与AP连接的无线电子设备,也可以是能够与路由器连接的有线电子设备,还可以是既能够与AP连接又能够与路由器连接的电子设备,电子设备具体可以是智能手机、掌上处理设备、平板电脑、个人电脑、移动笔记本、虚拟现实设备、一体化掌机、车载设备、智能会议设备、智能广告设备、智能家电、可穿戴设备等等。
AP或路由器120中,AP是使用无线设备进入有线网络的接入点,是无线网和有线网之间的桥梁,通常接入在有线交换机或者路由器上,使得接入AP的无线设备可以通过无线AP与有线交换机或者路由器相连。AP主要用于宽带家庭、大楼内部、校园内部、园区内部以及仓库、工厂等需要无线网络的地方。AP不仅包括单纯性的无线接入点(无线交换机),也可以是带路由功能的、可以建立独立无线家庭组网的无线路由器(包含无线网关、无线网桥)等类设备的统称。路由器是连接两个或多个网络的硬件设备,在网络间起网关作用,用于把非传输控制协议/网际协议(Transmission Control Protocol/Internet Protocol,TCP/IP)网络连接到因特网上,是读取每一个数据包中的地址然后决定如何传送的专用智能网络设备。路由器130通常能够理解不同的转发协议,例如某个局域网使用以太网协议,因特网使用TCP/IP协议,那么以太网和因特网之间的路由器可以分析局域网传来的数据包的目的地址,把局域网的地址转换为TCP/IP地址;再根据选定的路由算法把数据包按最佳路线传送到该TCP/IP地址,反之同理,这里不再赘述。
交换机或者光线路终端(Optical Line Terminal,OLT)130中的交换机一种用于电信号转发的网络设备。可以为接入交换机的任意两个网络节点提供独享的电信号通路。交换机具体可以是以太网交换机、电话语音交换机以及光纤交换机等等。OLT可以是光信号转发的网络设备,可以提供光接入网(Optical Access Network,OAN)的网络侧接口,与一个或多个光分配网(Optical Distribution Network,ODN)相连,也可以与前端交换机用网线相连,将电信号转化成光信号。OLT是光接入网的核心部件,相当于传统通信网中交换机或路由器,提供面向用户的无源光纤网络的光纤接口。
接入网关AGW 140是一种网络互联设备,用于两个高层协议不同的网络互联,使用在不同通信协议、数据协议或者语言,甚至体系结构完全不同的两种系统之间,AGW 140可以简单理解为一个翻译器,网关对收到的信息需要重新打包翻译,以适应目的系统的需求。
控制面网元150以及转发面网元160可以是对BNG进行转发面和控制面的分离后获得的。其中,BNG用于网络中的用户拨号认证、接入控制、流量调度等操作,简单来说,用户设备110发送的拨号报文经过AGW 140之后,需要通过BNG与AAA 170进行交互,确 定该用户是否有权限访问网络,如果该用户有权限访问网络,BNG将会存储该用户设备对应的IP地址和路由信息,在此之后,当BNG接收到该用户设备发送的数据报文时,BNG可以根据报文的源IP地址和目的IP地址,结合路由信息把数据报文转发给下一跳IP地址对应的路由器或者交换机进行路由转发。随着软件定义网络(Software Defined Network,SDN)技术和网络功能虚拟化(NFV)技术的发展,城域网向着传统以网络为核心的架构向以数据中心为核心的网络架构演进;传统的网元设备也逐渐朝着转发面和控制面解耦的方向演进。BNG转发与控制解耦后,一个或者多个BNG可以分离为一个或者多个控制面网元150以及一个或者多个转发面网元160。其中,一个控制面网元150可以统一控制和管理多个转发面网元160,使得转发面网元160在控制面网元150的管理下,可以对用户设备发送的报文进行转发。理想状态下,转发面和控制面完全解耦的转发面网元只处理转发用户数据报文的转发任务,控制面网元来处理余下的非转发任务,比如资源调度、用户认证、计费、授权等等,这样转发与控制完全解耦,可以给运营商在部署和运维方面提供极大的便捷,和BNG单机相比设备的利用率和可靠性都能得到大幅的提升。下面分别对转发面网元160和控制面网元150进行解释说明。
控制面网元150用于对多个转发面网元160进行统一管理,比如在接收到转发面网元160发送的拨号报文后,与AAA 300交互进行用户认证、计费和授权,并在拨号成功后,向转发面网元160下发会话(Session)信息,使得转发面网元160可以根据session信息对拨号成功的用户发送的数据报文进行转发。其中,session信息用于保存每一个IP地址对应的用户设备在与转发面网元进行数据通信(即会话)期间需要保存的认证信息,比如保存每一个IP地址对应的用户设备的用户名、MAC地址、IP地址、带宽、增值业务、不可访问地址清单(List)以及路由信息等等,路由信息可以存储有指向特定网络地址的路径,用于指导转发面网元对数据报文进行路由转发,路由信息可以是指路由表(Routing Table)、路由择域信息库(Routing Information Base,RIB)等信息,比如目的地址、网络掩码、输出接口、下一跳的IP地址等等,本申请不作限定。控制面网元150通常为虚拟化网元,因此又称为vBNG-CP或者虚拟会话控制单元(Virtual Subscriber Control Unit,vSCU),具体实现中,vBNG-CP或者vSCU可以采用云化技术实现,云化的vBNG-CP或者vSCU可以包括部署在物理服务器上的多个虚拟机(Virtual Machine,VM),该多个VM可以由运行在物理服务器上的虚拟机监视器(Hypervisor)进行统一管理。其中,一个vBNG-CP或者vSCU可以管理多个物理转发面网元(Physical User Plane,pUP)和虚拟转发面网元(Virtual User Plane,vUP)。
转发面网元160主要用于根据控制面网元150下发的session信息,对用户设备110发送的数据报文进行转发。转发面网元160可以是虚拟化网元,也可以是物理设备,当转发面网元160是虚拟化网元的情况下,转发面网元160可以简称为vUP或者虚拟会话转发处理单元(Virtual Subscriber Forward Unit,vSFU),具体可以是运行在X86服务器上的一个虚拟化网络功能(Virtualized Network Functions,VNF);当转发面网元160是物理设备的情况下,转发面网元可以简称为pUP或者物理会话转发处理单元(Physical Subscriber Forward Unit,pSFU),具体可以是一个传统硬件网络设备。本申请不对转发面网元160的具体形态进行限定。
图2是图1所示的网络中的控制面网元150和转发面网元160的内部结构示意图。应理解,图2虽然没有对控制面网元150和转发面网元160进行单元模块的划分,但是具体实现中,控制面网元150和转发面网元160的内部还可以存在多种形式的单元模块划分,各个模块可以是软件模块,也可以是硬件模块,也可以是部分软件模块部分硬件模块,本申请不对其进行限制。
如图2所示,控制面网元150和转发面网元160可以通过三个接口进行数据通信,这三个接口分别为控制接口151、业务接口152以及管理接口153。其中,业务接口152可以采用可扩展局域网通用扩展协议(Generic Protocol Extension for VXLAN,VXLAN-GPE)接口,当转发面网元160接收到用户的拨号报文时,可以通过该业务接口152将拨号报文封装上送至控制面网元150处理;控制接口151可以采用云化宽带接入服务器(Broadband Remote Access Server,BRAS)的接口协议标准草案(Control Plane and User Plane Separated Protocol,CUSP)接口,控制面网元150在接收到转发面网元160通过业务接口152发送的拨号报文后,如果拨号成功,控制面网元150可以通过该控制接口151向转发面网元160下发的session信息;管理接口153采用网络配置协议(Network Configuration Protocol,Netconf)接口,控制面网元150可以通过该接口向转发面网元160下发部分配置,比如虚拟局域网(Virtual Local Area Network,VLAN)、虚拟专用网络(Virtual Private Network,VPN)的配置数据等等,转发面网元160也可以通过该管理接口153向控制面网元150上报一些运行状态,比如转发面网元160当前是否处于故障状态、转发面网元160存储的session数量是否达到阈值等等。应理解,上述3个接口仅用于举例说明,控制面网元150和转发面网元160之间还可以根据实际情况,通过更多或者更少的接口进行数据通信,本申请不作具体限定。
AAA 170是一个参与处理用户拨号报文的服务器程序,提供验证授权以及账户服务,主要目的是管理用户访问网络服务器,对具有访问权的用户提供服务。AAA分别是验证、授权和记账的缩写,验证,即验证用户是否可以获得网络访问权限;授权,即授权用户可以使用哪些网络服务;记账,即记录用户使用网络资源的情况。AAA 170通常支持Radius这一业界通用的开放性标准来处理用户的拨号报文,以确保不同厂商设备的兼容性。当用户设备110向AAA 170发送拨号报文时,网络接入服务器(即前述内容中的控制面网元150)会与AAA 170交换Radius消息,如果认证通过,用户设备将可以访问受保护的网络资源。
控制器180具体可以为SDN控制器,应用于控制面和转发面分离后的SDN网络中,该网络中,AGW 140和交换机将会把转发规则的控制权交由控制器180负责,AGW 140和交换机仅根据控制器180下发的转发规则对数据报文进行转发。其中,控制器180是可编程的控制器,可以掌握全局网络信息、负责网络中的流量控制,实现网络流量的灵活控制,方便运营商和科研人员管理配置网络和部署新协议等等,使得网络变得更加智能。
因此,如图2所示,在图1所示的网络中,用户设备1发送拨号报文且拨号成功的整个处理流程可以包括以下步骤:
S210:AGW 140向转发面网元160发送拨号报文。其中,拨号报文可以是用户设备1通过AP或者路由器120向交换机或者OTL 130发送后,交换机或者OTL 130向AGW 140发送的拨号报文,该拨号报文可以包括所述用户设备1对应的IP地址、用户名和密码等信 息,用户可以提前使用该用户设备100向本地ISP申请自己的账号或者购买上网卡从而获得用户设备对应的用户名和密码。
S220:转发面网元160识别所述拨号报文,向控制面网元150发送拨号报文,具体地,转发面网元160可以通过图2所示的业务接口152将拨号报文封装上送至控制面网元150处理。参考前述内容可知,一个控制面网元150可以管理一个或者多个转发面网元160,因此,AGW在接收到拨号报文后,通常会把拨号报文发送给网络中设置的每一个默认转发面网元。
S230:控制面网元150对拨号报文进行处理,获得认证请求,并向AAA 160发送认证请求。该认证请求中包含了用户设备的用户名和密码。
S240:AAA 160对认证请求进行处理,在认证成功的情况下,获得拨号成功信息,其中,拨号成功信息中包括用户设备1对应的用户名、对应的服务等级协议(Service Level Agreement,SLA)等级和对应的IP地址。
具体地,AAA 160对认证请求的处理过程可以包括:确认拨号报文中的用户名和密码是否正确、是否拥有该网络的访问权等等,在是的情况下则表示拨号成功,AAA 310还可以进一步确认该用户名对应的IP地址可以使用哪些服务、服务等级协议(Service Level Agreement,SLA)、使用网络资源的记录等等信息后,AAA 310将会把确认好的信息封装成拨号成功消息,并将其返回给控制面网元150。可以理解的,如果在否的情况下则表示该用户名和密码错误或者该用户名没有访问权,表示拨号失败,AAA 160可以向控制面网元150返回拨号失败信息,使得控制面网元150可以依次通过转发面网元140、AGW 140、交换机或OTL 130、路由器或者AP 120将拨号失败信息返回给用户设备1,这里不再展开说明。
S250:AAA 160向控制面网元150返回拨号成功信息。
S260:控制面网元150根据拨号成功信息,生成该IP地址对应的session信息,并根据用户的SLA信息确定该IP地址对应的目标转发面网元。可以理解的,SLA等级高的用户是高优先级用户,可以将轻载、优质网络的转发面网元与其绑定,为其进行数据报文的转发。SLA等级低的用户是低优先级用户,可以将高负载、低质网络的转发面网元与其绑定,为其进行报文转发。需要说明的,这里的目标转发面网元与步骤S220中的默认转发面网元可以是同一个网元,也可以是不同的网元,具体可以根据用户设备的SLA信息确定。
S270:控制面网元150将session信息发送至目标转发面网元。具体地,控制面网元150可以通过图2所示的控制接口151向转发面网元160下发的session信息。图3所示的流程图是以同一个网元为例进行了说明,本申请不对此进行限定。
S280:目标转发面网元根据session信息发布路由信息,该路由信息的目的地址是该用户设备1对应的IP地址,使得目标转发面网元再次接收到用户设备1发送的数据报文之后,可以根据数据报文的目的IP地址和上述路由信息,确定数据报文的下一跳IP地址,实现对用户设备1的数据报文的转发。目标转发面网元还可以存储该用户设备对应IP地址的对应session信息,这样就方便了会话期间的一些程序处理,使得目标转发面网元每次接收到该IP地址对应的用户设备发送的数据报文时,都可以根据用户设备的IP地址对应的session信息,直接确定用户设备对应的IP地址是否有权限使用网络、是否有权限使用网络中的增 值服务、SLA信息、可使用的网络带宽、转发该用户设备发送的数据报文所需的路由信息等等,而无需重复通过控制面网元150向AAA发送认证请求,验证用户设备100的各种用户信息。
可以理解的,如果用户1的SLA等级高,需要使用目标转发面网元比如UP2进行数据报文的转发,而用户每次拨号上线时,AGW都会在步骤S220处先将拨号报文发送给默认转发面网元比如UP1,由UP1上送至控制面网元与AAA交互,控制面网元根据拨号成功信息中的SLA信息,确定使用UP2对用户的数据报文进行传输,每一次拨号上线都会先将拨号报文先传输至UP1,再传输至控制面网元,确认UP2为目标转发面网元,给默认转发面网元UP1带来额外的处理压力。
综上可知,BNG的控制面和转发面的完全解耦的理想状态下,转发面网元只做转发用户数据报文的工作。但是,在上述拨号处理过程中,转发面网元仍参与了拨号过程,每次用户拨号上线时,转发面网元都要参与拨号报文的识别、封装和转发,这样一方面导致了转发面网元负担较重,故障率高,另一方面,转发面和控制面的解耦不完全也会对运营商在部署和运维网络的过程产生影响。
为了解决上述转发面网元需要参与拨号过程导致BNG设备的转发面和控制面解耦不完全,进而导致转发面网元处理压力大、对运营商在部署和运维网络的过程产生影响的问题,本申请实施例提供了一种拨号报文处理系统400,如图4所示,该系统400可以应用于图1所示的网络系统中,该拨号报文处理系统包括接入网关(Access Gateway,AGW)140、控制面网元(Control Plane)150、转发面网元(User Plane)160以及控制器180。应理解,图4中控制面网元150的内部划分是一种示例性的划分方式,控制面网元150还可以存在多种形式的单元模块划分,各个模块可以是软件模块,也可以是硬件模块,也可以是部分软件模块部分硬件模块,本申请不对其进行限制。其中,
AGW 140可以在接收到用户设备发送的拨号报文后,将拨号报文通过业务接口直接发送至控制面网元150,其中,该业务接口可以是图2实施例描述的业务接口432。
控制面网元150可以在接收到AGW 140发送的拨号报文后,根据拨号报文生成认证请求,并将认证请求发送给AAA 170,在拨号成功的情况下,获得AAA 170返回的拨号成功信息,然后根据拨号成功信息确定用户设备对应的转发面网元,将该转发面网元的接口信息下发给控制器。具体地,控制面网元150可以根据内部的用户管理模块和地址管理模块确定拨号报文对应的用户设备是否是已上线的用户,在否的情况下,通过协议处理模块、Radius模块以及AAA模块,先根据接收到的拨号报文生成认证请求,然后将认证请求通过radius接口向radius服务器发送远程接入认证服务器(即AAA 170)的请求,然后通过AAA170进行认证、计费和授权,从而获得拨号成功信息。控制面网元可以再通过转发面网元管理模块,根据SLA信息确定用户设备对应的转发面网元的接口信息,并将其通过netconf接口发送给控制器,控制面网元还可以根据拨号成功信息生成session信息,并通过管理接口向转发面网元下发该session信息,其中,该管理接口可以是图2实施例描述的管理接口431。
控制器170可以根据接收到的转发面网元的接口信息,生成隧道(Tunnel)建立请求, 所述隧道建立请求用于在AGW 140与目标转发面网元之间建立通信隧道,然后控制器170可以将隧道建立请求发送给AGW 140。具体地,控制器170可以通过netconf接口向AGW140下发隧道建立请求。其中,netconf接口是一个基于XML的网络配置协议接口,管理软件可以使用netconf协议将配置数据写入设备,可以理解的,本申请通过使用netconf接口可以灵活修改控制器的配置,以实现控制器向AGW 140发送隧道建立请求的功能。
转发面网元160可以在AGW 140接收到隧道建立请求后,与AGW 140之间建立通信隧道,也可以在接收到控制面网元150通过管理接口下发的session信息后,根据session信息发布路由信息,使得用户设备向AGW 140发送数据报文时,AGW 140可以直接通过通信隧道将数据报文发送给转发面网元160,转发面网元再根据之前发布的路由信息,对数据报文进行转发,使得所述用户设备通过所述转发面网元进行网络通信。可以理解的,如果用户设备第一次发送拨号报文时,AGW140将该拨号报文发送至控制面网元150,由于该用户设备的SLA等级较低,控制面网元150确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW140接收到第二次拨号报文后,也会将该报文发送给控制面网元150,控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,相比于图3实施例的拨号报文处理方法,转发面网元的处理压力将大大减少。
综上可知,本申请实施例提供的拨号报文处理系统,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
下面基于图5所示的拨号报文系统,对本申请提供的拨号报文处理方法进行解释说明,如图5所示,本申请实施例提供的拨号报文处理方法可以包括以下步骤:
S401:AGW 140向控制面网元150发送拨号报文,其中,所述拨号报文是用户设备向接入网关发送的拨号报文,所述拨号报文是用户设备通过所述接入网关向所述控制面网元发送的拨号报文,所述拨号报文包括所述用户设备的IP地址。参考前述内容可知,拨号报文可以是用户设备110通过AP或者路由器120向交换机或者OTL 130发送后,交换机或者OTL 130向AGW 140发送的拨号报文。具体的,AGW 140可以通过图4实施例中的业务接口与控制面网元150交互。
S402:控制面网元150向外部服务器发送认证请求,所述认证请求是所述控制面网元根据所述拨号报文生成的,所述外部服务器用于认证所述用户设备是否拨号成功,其中,所述外部服务器可以是前述内容中的AAA 170。步骤S402实现的过程可以参考上述图3实施例中步骤S230的详细描述,并且,控制面网元150可以通过radius接口与AAA 170远程连接进行交互,具体可以参考图4实施例,这里不再赘述。
S403:外部服务器(AAA 170)对认证请求进行处理,在拨号成功的情况下,获得拨号成功信息,其中,拨号成功信息中包括所述IP地址对应的SLA信息。步骤S403实现的过程可以参考上述图3实施例中步骤S240的详细描述,这里不再赘述。
S404:AAA 160向控制面网元150返回拨号成功信息。步骤S404实现的过程可以参考上述图3实施例中步骤S250的详细描述,这里不再赘述。
S405:控制面网元150根据所述拨号成功信息,确定所述IP地址对应的目标转发面网元。所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述控制面网元150根据所述拨号成功信息确定转发面网元160包括:所述控制面网元150根据所述SLA信息确定所述转发面网元160。步骤S405实现的过程可以参考上述图3实施例中步骤S260的详细描述,这里不再赘述。
S406:控制面网元150向所述控制器180发送所述转发面网元的信息。具体地,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。具体实现中,控制面网元可以通过图4实施例中的netconf接口与SDN控制器交互。
S407:控制器180根据所述目标转发面网元的接口信息,生成隧道建立请求,所述隧道建立请求用于在AGW 140与目标转发面网元之间建立通信隧道。
具体实现中,所述通信隧道可以是开放式系统互联(Open System Interconnect,OSI)模型中的第二层网络的隧道,比如虚拟扩展局域网(Virtual Extensible Local Area Network,VXLAN)隧道、虚拟租用线(Virtual Leased Line,VLL)隧道以及以太网虚拟专用网(Ethernet Virtual Private Network,EVPN)隧道等等,还可以包括其他OSI模型中第二层网络支持的隧道,本申请不作具体限定。
S408:控制器180向AGW 140发送所述隧道建立请求。其中,控制器180可以通过图4实施例中的netconf接口与AGW 140交互。
S409:AGW 140根据隧道建立请求,与目标转发面网元建立通信隧道,所述通信隧道与所述IP地址呈对应关系。建立通信隧道后,使得一个用户设备可以独享一个虚拟局域网(Virtual Local Area Network,VLAN),提升用户体验。具体地,AGW 140可以提前建立好多个转发面网元与AGW之间的通信隧道,然后将用户设备的端口信息映射到与目标转发面网元互通的通信隧道中。
下面以VXLAN隧道为例,对AGW如何根据隧道建立请求与目标转发面网元建立通信隧道的过程进行解释说明。该过程可以有两种实现方式,第一种实现方式:AGW可以根据目标转发面网元的接口信息,通过手工配置tunnel接口,并指定隧道的源和目的IP地址分别为本端AGW和转发面网元的IP地址的方式,建立VXLAN隧道,然后将用户设备的端口信息映射到该指定VXLAN隧道,使得AGW在接收到用户发送的数据报文之后,直接根据用户设备的端口信息确定之前映射的指定VXLAN隧道,通过该VXLAN隧道将数据报文发送给目标转发面网元。第二种实现方式:AGW还可以提前通过增强的邻居发现协议(Enhance Neighbor Discovery Protocol,ENDP)发现远端VXLAN隧道端点(VXLAN Tunnel End Point,VTEP),自动在本端AGW和远端VTEP之间建立多个VXLAN隧道,当AGW接收到隧道建立请求后,可以在多个VXLAN隧道中获取与目标转发面网元之间互通的VXLAN隧道,然后将用户设备的端口信息映射到该VXLAN隧道中,使得AGW在接 收到用户发送的数据报文之后,直接根据用户设备的端口信息确定之前映射的指定隧道,通过该隧道将数据报文发送给目标转发面网元。
在具体的实施例中,所述控制面网元接收所述外部服务器发送的拨号成功信息之后,所述方法还包括:所述控制面网元根据所述拨号成功信息生成会话信息session信息,其中,所述session信息与所述IP地址对应;所述控制面网元向所述转发面网元发送所述session信息,使得所述转发面网元根据所述session信息对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。该步骤与前述内容中的步骤S270-步骤S280相同,因此这里不再展开赘述。
具体地,控制面网元150可以通过图2所示的控制接口151向转发面网元160下发session信息。其中,目标转发面网元发布路由信息以后,如果目标转发面网元再次接收到该用户设备发送的数据报文,可以根据数据报文的目的IP地址和上述路由信息,确定数据报文的下一跳IP地址,实现对用户设备的数据报文的转发。需要说明的,该步骤可以是与步骤S406-步骤S409同时进行的,也可以是先后进行的,也就是说,控制面网元可以在向控制器发送目标转发面网元的接口信息的同时向转发面网元发送session信息,本申请不作具体限定。
在具体的实施例中,所述方法还包括:所述接入网关接收数据报文,其中,所述数据报文的源IP地址是所述IP地址;所述接入网关根据所述IP地址,确定与所述IP地址对应的所述通信隧道;所述接入网关通过所述通信隧道将所述数据报文传输至所述转发面网元。可以理解的,用户设备在第一次发送拨号报文后,经过步骤S401-步骤S409,AGW已经建立了与目标转发面网元之间的通信隧道,该隧道与用户设备的IP地址呈对应关系,因此当用户设备再次向AGW发送数据报文,AGW可以直接将该数据报文通过隧道传输至目标转发面网元,目标转发面网元可以根据之前存储的路由信息,对该数据报文进行转发。
在具体的实施例中,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述控制面网元根据所述拨号成功信息确定转发面网元之后,所述方法还包括:所述控制面网元向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。也就是说,如果用户设备在步骤S401之前已经发送过一次拨号报文,使得AGW与其他目标转发面网元(比如UP1)建立了通信隧道,当用户设备第二次发送拨号报文时,用户的SLA等级发生了改变,控制面网元确定UP2作为当前用户设备的目标转发面网元,此时步骤S409处AGW 140可以将与UP1之间的通信隧道切换成与UP2之间的通信隧道。也就是说,如果该用户设备对应的端口信息和VLAN信息之前是映射到与UP1互通的VxLAN通道,当控制面网元确定UP2是该用户设备的目标转发面网元后,步骤S409处AGW 140可以将用户设备对应的端口信息和VLAN信息映射到与UP2互通的VxLAN通道,使得该用户设备之后发送的用户数据转发报文通过切换后的VxLAN通道送到UP2进行转发。
举例来说,假设用户设备1第一次向AGW发送拨号报文后,AGW执行步骤S401将拨号报文发送至控制面网元,控制面网元执行步骤S402对拨号报文进行处理,获得认证请 求,并执行步骤S403将认证请求发送给AAA进行认证,AAA执行步骤S404生成拨号成功信息,并将该信息发送给控制面网元,接着控制面网元执行步骤S405-步骤S406,根据拨号成功信息确定与用户设备的SLA等级对应的目标转发面网元为UP1,并向控制器发送UP1的接口信息以及AGW的端口信息,控制器执行步骤S407-S408生成隧道建立请求,将其下发给AGW,AGW最后执行步骤S409,将用户设备的端口信息映射到与UP1互通的隧道1中,完成第一次拨号报文的处理过程。用户设备在此之后可以向AGW发送数据报文,AGW通过与用户设备端口地址对应的通信隧道1将数据报文发送给UP1,使得UP1对该数据报文进行转发。
假设用户设备使用网络一段时间后修改了SLA协议,此时用户设备第二次向AGW发送拨号报文后,AGW再次执行步骤S401将拨号报文发送至控制面网元,控制面网元执行步骤S402对拨号报文进行处理,获得认证请求,并执行步骤S403将认证请求发送给AAA进行认证,AAA执行步骤S404生成拨号成功信息,并将该信息发送给控制面网元,接着控制面网元执行步骤S405-步骤S406,根据拨号成功信息确定此时与用户设备的SLA等级对应的目标转发面网元为UP2,并向控制器发送UP2的接口信息以及AGW的端口信息,控制器执行步骤S407-S408生成隧道切换请求,将其下发给AGW,AGW最后执行步骤S409,将用户设备的端口信息从与UP1互通的隧道1映射到与UP2互通的隧道2中,完成第二次拨号报文的处理过程。用户设备在此之后可以向AGW发送数据报文,AGW通过与用户设备端口地址对应的通信隧道2将数据报文发送给UP2,使得UP2对该数据报文进行转发。
可以理解的,如果用户设备第一次发送拨号报文时,AGW将该拨号报文发送至控制面网元,由于该用户设备的SLA等级较低,控制面网元确定使用UP1对用户设备的数据报文进行转发;假设用户不满意当前的网络服务,修改SLA等级为较高等级后,用户设备将会第二次发送拨号报文,AGW接收到第二次拨号报文后,也会将该报文发送给控制面网元,控制面网元确定UP2对用户设备的数据报文进行转发,两次拨号报文处理过程都无需转发面网元参与,相比于图3实施例的拨号报文处理方法,转发面网元的处理压力将大大减少。
综上可知,本申请实施例提供的拨号报文处理方法,接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
下面以以太网点对点协议(Point-to-Point Protocol Over Ethernet,PPPOE)拨号上线的应用场景为例,对本申请拨号报文处理方法的具体实现进行举例说明。可以理解的,PPPOE协议的发现阶段通常分为四个步骤,将会传输多种不同的拨号报文至AGW,AGW只需要将多种报文依次发送至控制面网元进行认证而无需转发面网元的参与,相比于图3实施例 中转发面网元必须参与拨号报文处理的方法,使用本申请提供的拨号报文处理方法,可以大大降低转发面网元的处理压力。如图6所示,使用本申请实施例提供的拨号报文处理方法进行PPPOE拨号上线的具体步骤可以如下:
1、AGW接收家庭网关(Residential Gateway,RGW)发送的主动发现启动(PPPOE Active Discovery Initiation,PADI)报文,其中,PADI报文包括用户设备的接入信息,PADI报文用于获得所有可连接的接入设备,比如控制面网元。其中,RGW与用户设备相连。以RGW与OLT相连为例,PADI报文中用户设备的端口信息的信息的格式可以如下:OLTID/ANI_frame/ANI_slot/ANI_subslot/ANI_port/ONU_ID,其中,OLTID代表用户设备接入的OLT的ID信息,ANI_frame/ANI_slot/ANI_subslot/ANI_port分别代表用户设备接入节点机框号、接入节点槽号、接入节点子槽号、接入节点端口号,对于某些设备没有机架、框、子槽的概念,相应位置可以统一填0。ONU_ID代表用户设备接入的光网络单元(Optical Network Unit,ONU)的ID信息。应理解,上述格式仅用于说明,并不能构成具体限定。
2、AGW将PADI报文发送至控制面网元。
3、控制面网元根据PADI报文,生成主动发现服务(PPPOE Active Discovery Offer,PADO)报文,向AGW返回PADO报文,其中,PADO报文是所述PADI报文的回应,表示所述控制面网元同意与用户设备进行连接,PADO报文至少包括服务器名称类型标签以及服务器的MAC地址,服务器名称类型标签用于表明控制面网元可向用户设备提供的服务种类。PADO报文中仍携带有用户设备的端口信息,信息格式可以参考步骤1中的例子,这里不再展开赘述。
4、AGW将PADO报文返回RGW。
5、RGW根据PADO报文,生成主动发现请求(PPPOE Active Discovery Request,PADR)报文,向AGW发送PADR报文。具体的,用户设备可以从收到的多个PADO报文中,根据其服务器名称类型标签,选择一个合适的接入设备,在本例子中,用户设备选择了控制面网元作为接入设备。PADR报文至少包括一个服务器名称类型标签,确定请求的接入设备的服务种类。PADR报文中仍携带有用户设备的端口信息,信息格式可以参考步骤1中的例子,这里不再展开赘述。
6、AGW将PADR报文发送至控制面网元。
7、控制面网元根据PADR报文,生成主动发现会话确认(PPPOE Active Discovery Session信息-Confirmation,PADS)报文,向AGW返回PADS报文。具体地,控制面网元接收到PADR报文后,就准备进入会话阶段,此时控制面网元将会为接下来的会话分配一个唯一的session ID,生成包含该session ID的PADS报文,使得用户设备在接收到PADS报文后,根据PADS报文中的session ID生成session信息,会话期间的各种信息将会存储在该session信息中。
8、AGW将PADS报文发送至RGW。
9、RGW根据PADS报文生成链路控制协议(Link Control Protocol,LCP)请求,向AGW发送LCP请求,LCP请求用于在用户设备和控制面网元之间进行是否进行认证和采用何种认证方式的协商。
10、AGW向控制面网元发送LCP请求。
11、控制面网元将LCP请求发送至AAA进行认证。
12、AAA返回LCP协商结果,具体可以包括是否进行认证和采用何种认证方式。
13、控制面网元通过网络控制协议(Network Control Protocol,NCP)与RGW协商用户设备的IP地址和DNS服务器地址。
14、控制面网元向AAA发送认证请求,确认用户设备的账户名密码以及SLA信息。步骤14实现的过程可以参考上述图5实施例中的步骤S402的详细描述,这里不再赘述。
15、AAA返回拨号成功信息,拨号成功信息中包括用户设备的SLA信息。步骤15实现的过程可以参考上述图5实施例中的步骤S403-步骤S404的详细描述,这里不再赘述。
16、控制面网元根据用户设备SLA信息,确定用户设备的IP地址对应的目标转发面网元,生成与所述用户设备的IP地址对应的session信息。步骤16实现的过程可以参考上述图3实施例中步骤S260和图5实施例中步骤S405的详细描述,这里不再赘述。
17、控制面网元向控制器发送所述目标转发面网元的信息,具体实现中,控制面网元可以通过netconf接口与SDN控制器交互,转发面网元的信息可以包括AGW的接口信息以及转发面网元的接口信息,还可以包括用户设备的端口信息,举例来说,转发面网元的信息的格式可以如下:AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID,NAS_UpIde-ntifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN。其中,AGW_ID/ANI_slot/ANI_subslot/ANI_port/VLAN_ID/QINQ_ID是用户设备的接入信息以及AGW的ID信息,NAS_UpIdentifier/NAS_slot/NAS_subslot/NAS_port:SVLAN.CVLAN是转发面网元的接口信息,NAS_UpIdentifier是指转发面网元的名称,后面分别是转发面网元的槽位、子槽位、端口和VLAN信息。步骤17实现的过程还可以参考上述图5实施例中步骤S406的详细描述,这里不再赘述。
18、控制器根据所述目标转发面网元的接口信息,生成隧道建立请求,所述隧道建立请求用于在AGW与目标转发面网元之间建立通信隧道。步骤18实现的过程可以参考上述图5实施例中步骤S407的详细描述,隧道建立请求中可以包括步骤17描述的AGW的接口信息、目标转发面网元的接口信息以及用书设备的接入信息,这里不再赘述。
19、控制器向AGW发送所述隧道建立请求。具体实现中,控制器可以通过netconf接口与AGW交互。AGW可以根据转发面网元的信息中的AGW的接口信息,将隧道建立请求发送给与该接口信息对应的AGW,步骤19实现的过程可以参考上述图5实施例中步骤S408的详细描述,这里不再赘述。
20、AGW根据隧道建立请求,与目标转发面网元建立通信隧道。具体地,AGW可以根据隧道建立请求中的转发面网元的信息确定与目标转发面网元互通的隧道,并根据隧道建立请求中的用户设备的端口信息,将用户设备的端口信息映射到该隧道中。步骤20实现的过程可以参考上述图5实施例中步骤S409的详细描述,这里不再赘述。
21、控制面网元将session信息发送至目标转发面网元。具体地,控制面网元可以通过图2所示的控制接口151向转发面网元下发的session信息。
22、目标转发面网元根据session信息发布路由信息,该路由信息的目的地址是该用户设备1对应的IP地址,使得目标转发面网元再次接收到用户设备1发送的数据报文之后,可以根据数据报文的目的IP地址和上述路由信息,确定数据报文的下一跳IP地址,实现 对用户设备1的数据报文的转发。
可以理解的,上述PPPOE拨号过程中,控制面网元与AGW之间来回传输了多次报文(比如PADI报文、PADO报文、PADS报文等等),由图6可知,上述过程中,AGW与控制面网元进行了6次交互,如果不使用本申请提供的拨号报文处理方法,使用图3实施例的方法,AGW每次向控制面网元发送报文或者控制面网元每次向AGW发送报文,都需要通过转发面网元进行转发,使得转发面网元的转发压力较大。而使用本申请提供的方法,控制面网元与AGW之间可以直接通信,大大降低了转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
上述详细阐述了本申请实施例的方法,为了便于更好的实施本申请实施例上述方案,相应地,下面还提供用于配合实施上述方案的相关设备。
图7是本申请实施例提供的一种控制面网元600的结构示意图。其中,控制面网元600可以应用于图1所示的拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元。具体可以参考上述图4-图6所示实施例中的描述。所述控制面网元600可以是vBNG-CP设备。例如其可以为虚拟会话控制单元vSCU(virtual Subscriber Control Unit)。具体实施方式中,vBNG-UP或者vSCU可以作为NFV场景下作为一种VNF,运行在X86服务器上,即一种X86服务器虚拟化网元,可以是运行在X86拂去其上的虚拟机。如图7所示,所述控制面网元600可以包括接收单元610、发送单元620以及处理单元630,其中:
所述接收单元610用于接收来自所述接入网关的拨号报文,所述拨号报文是用户设备向所述接入网关发送的拨号报文;具体实现方式,请参考上述图5所示实施例中步骤S401的详细描述,此处不再赘述。
所述发送单元620用于向外部服务器发送认证请求,所述认证请求是所述控制面网元根据所述拨号报文生成的;具体实现方式,请参考上述图5所示实施例中步骤S402的详细描述,以及图3所示实施例中步骤S220的详细描述,此处不再赘述。
所述接收单元610还用于接收所述外部服务器发送的拨号成功信息;具体实现方式,请参考上述图5所示实施例中步骤S404的详细描述,以及图3所示实施例中步骤S250的详细描述,此处不再赘述。
所述处理单元630用于根据所述拨号成功信息确定转发面网元,使得所述用户设备通过所述转发面网元进行网络通信;具体实现方式,请参考上述图5所示实施例中步骤405的详细描述,图6所示实施例中步骤16的详细描述以及图3所示实施例中步骤S260的详细描述,此处不再赘述。
在一实施例中,所述拨号报文包括所述用户设备的网络互联协议IP地址,所述发送单元620还用于在所述处理单元根据所述拨号成功信息确定转发面网元之后,向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道建立请求,其中,所述隧道建立请求是所述控制器根据所述转发面网元的信息生成的,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立第一通信隧道,所述第一通信隧道与所述IP 地址呈对应关系。具体实现方式,请参考上述图5所示实施例中步骤S406-步骤S409的详细描述,以及图6实施例中步骤17-步骤22的详细描述,此处不再赘述。
在一实施例中,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
在一实施例中,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述发送单元620还用于在所述处理单元根据所述拨号成功信息确定转发面网元之后,向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
在一实施例中,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述处理单元用于根据所述SLA信息确定所述转发面网元。
在一实施例中,所述处理单元630还用于在所述接收单元接收所述外部服务器发送的拨号成功信息之后,所述控制面网元根据所述拨号成功信息生成会话session信息,其中,所述session信息与所述IP地址对应;所述发送单元620还用于向所述转发面网元发送所述session信息,使得所述转发面网元根据所述session信息对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。具体实现方式,请参考上述图3所示实施例中步骤S270-步骤S280的详细描述,以及图6实施例中步骤21-步骤22的详细描述,此处不再赘述。
应理解,图7仅仅是控制面网元的一种可能的实现方式,实际应用中,控制面网元600还可以包括更多或更少的单元、模块或者子系统,本申请并不对此进行限制。
本申请提供的控制面网元,使得接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
图8是本申请提供的一种接入网关700的结构示意图。其中,接入网关700可以应用于图1所示的拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元。如图8所示,所述接入网关700可以包括发送单元710、接收单元720以及建立单元730,其中,
所述接收单元720用于接收用户设备发送的发送拨号报文,所述拨号报文包括所述用户设备的网络互联协议IP地址;
所述发送单元710用于向所述控制面网元发送所述拨号报文;具体实现方式,请参考上述图5所示实施例中步骤S401的详细描述,此处不再赘述。
所述接收单元720还用于接收来自所述控制器的隧道建立请求,其中,所述隧道建立 请求用于在所述接入网关和转发面网元之间建立通信隧道;具体实现方式,请参考上述图5所示实施例中步骤S408的详细描述,以及图6实施例中步骤19的详细描述,此处不再赘述。
所述建立单元730用于根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。具体实现方式,请参考上述图5所示实施例中步骤S409的详细描述,以及图6实施例中步骤20的详细描述,此处不再赘述。
在一实施例中,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息确定的,所述隧道建立请求是所述控制器根据所述控制面网元发送的转发面网元的信息生成的。具体实现方式,请参考上述图5所示实施例中步骤S405的详细描述,图6所示实施例中步骤16的详细描述以及图3所示实施例中步骤S260的详细描述,此处不再赘述。
在一实施例中,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
在一实施例中,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
在一实施例中,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述接收单元720还用于接收来自所述控制器的隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的;所述建立单元730还用于将所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,其中,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
在一实施例中,所述接收单元720还用于接收数据报文,其中,所述数据报文的源IP地址是所述IP地址;所述发送单元710还用于根据所述IP地址,确定与所述IP地址对应的所述第一通信隧道;所述发送单元710还用于通过所述第一通信隧道将所述数据报文传输至所述转发面网元。
应理解,图8仅仅是接入网关700的一种可能的实现方式,实际应用中,接入网关700还可以包括更多或更少的单元、模块或者子系统,本申请并不对此进行限制。
本申请提供的接入网关,在接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
图9是本申请提供的一种控制器800的结构示意图。其中,控制器800可以应用于图1所示的拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控 制面网元。如图9所示,所述控制器800可以包括接收单元810、生成单元820以及发送单元830,其中,
所述接收单元810用于接收由所述控制面网元发送的所述转发面网元的信息,其中,所述转发面网元的信息是所述控制面网元在接收到接入网关发送的用户设备的拨号报文之后确定的,所述拨号报文包括所述用户设备的网络互联协议IP地址;具体实现方式,请参考上述图5所示实施例中步骤S406的详细描述,以及图6实施例中步骤17的详细描述,此处不再赘述。
所述生成单元820用于根据所述转发面网元的信息,生成隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和转发面网元之间建立通信隧道;具体实现方式,请参考上述图5所示实施例中步骤S407的详细描述,以及图6实施例中步骤18的详细描述,此处不再赘述。
所述发送单元830用于向所述接入网关发送所述隧道建立请求,使得所述接入网关根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。具体实现方式,请参考上述图5所示实施例中步骤S408的详细描述,以及图6实施例中步骤19的详细描述,此处不再赘述。
在一实施例中,所述第一通信隧道用于在所述接入网关接收到源IP地址是所述IP地址的数据报文的情况下,所述接入网关根据所述IP地址确认与所述IP地址对应的所述第一通信隧道,并将所述数据报文通过所述第一通信隧道传输至所述转发面网元。
在一实施例中,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述接收单元810还用于接收所述控制面网元发送的所述转发面网元的信息;所述生成单元820还用于根据所述转发面网元的信息生成隧道切换请求,其中,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道;所述发送单元830还用于向所述接入网关发送隧道切换请求。
在一实施例中,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
在一实施例中,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
应理解,图9仅仅是控制器800的一种可能的实现方式,实际应用中,控制器800还可以包括更多或更少的单元、模块或者子系统,本申请并不对此进行限制。
本申请提供的控制器,使得接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上 的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
图10是本申请提供的一种转发面网元900的结构示意图。其中,转发面网元900可以应用于图1所示的拨号报文处理系统,该系统包括相互连接的控制器、接入网关、转发面网元和控制面网元。转发面网元900可以是虚拟化网元,也可以是物理设备,当转发面网元900是虚拟化网元的情况下,转发面网元900可以简称为vUP或者vSFU,具体可以是运行在X86服务器上的一个VNF;当转发面网元900是物理设备的情况下,转发面网元可以简称为pUP或者pSFU,具体可以是一个传统硬件网络设备。如图10所示,所述转发面网元900可以包括接收单元910和建立单元920,其中,
所述接收单元910用于接收来自所述接入网关的隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立通信隧道,所述隧道建立请求是所述控制器根据所述控制面网元在接收到用户设备发送的拨号报文之后确定出转发面网元之后发送的所述转发面网元的信息生成的,所述拨号报文包括所述用户设备的网络互联协议IP地址;具体实现方式,请参考上述图5所示实施例中步骤S409的详细描述,以及图6实施例中步骤20的详细描述,此处不再赘述。
所述建立单元920应用于与所述接入网关建立通信隧道,其中,所述通信隧道与所述IP地址呈对应关系。具体实现方式,请参考上述图5所示实施例中步骤S409的详细描述,以及图6实施例中步骤20的详细描述,此处不再赘述。
在一实施例中,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
在一实施例中,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。具体实现方式,请参考上述图5所示实施例中步骤S405的详细描述,图6所示实施例中步骤16的详细描述,此处不再赘述。
在一实施例中,所述接收单元910还用于通过所述通信隧道接收来自所述接入网关的数据报文,其中,所述数据报文的源IP地址是所述IP地址。
在一实施例中,所述转发面网元还包括发布单元930,所述接收单元910还用于接收所述控制面网元发送的会话session信息,其中,所述session信息是所述转发面网元网元根据所述外部服务器返回的拨号成功信息生成的,所述session信息与所述IP地址对应;所述发布单元930用于根据所述session信息,对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。具体实现方式,请参考上述图3所示实施例中步骤S270-步骤S280,以及图6实施例中步骤21-步骤22的详细描述,此处不再赘述。
应理解,图10仅仅是转发面网元900的一种可能的实现方式,实际应用中,转发面网元900还可以包括更多或更少的单元、模块或者子系统,本申请并不对此进行限制。
本申请提供的转发面网元使得接入网关接收到拨号报文后,将会把拨号报文发送至控制面网元进行处理,控制面网元与外部服务器进行交互获得拨号成功信息后,可以根据拨号成功信息中的SLA信息确定目标转发面网元,并通知控制器目标转发面网元的接口信息,使得控制器可以向接入网关下发迁移指令,在接入网关和目标转发面网元之间建立隧道。 整个拨号报文处理的过程都没有转发面网元的参与,可以降低转发面网元的处理压力,使得转发面网元只需要处理数据报文的转发,无需参与拨号报文的处理,实现了真正意义上的转发面和控制面的解耦,为运营商网络的部署和运维提供了便捷。
图11为本申请实施例提供的一种网络设备1000的结构示意图。其中,所述网络设备1000可以是前述内容中的转发面网元、控制器、接入网关和控制面网元。如图11所示,网络设备1000包括:处理器1010、通信接口1020、存储器1030、以及总线1040。其中,处理器1010、通信接口1020以及存储器1030可以通过内部总线1040相互连接,也可通过无线传输等其他手段实现通信。本申请实施例以通过总线1040连接为例,总线1040可以是外设部件互连标准(Peripheral Component Interconnect,PCI)总线或扩展工业标准结构(Extended Industry Standard Architecture,EISA)总线等。所述总线1040可以分为地址总线、数据总线、控制总线等。为便于表示,图11中仅用一条粗线表示,但并不表示仅有一根总线或一种类型的总线。
所述处理器1010可以由一个或者多个通用处理器构成,例如中央处理器(Central Processing Unit,CPU),或者CPU和硬件芯片的组合。上述硬件芯片可以是专用集成电路(Application-Specific Inegrated Circuit,ASIC)、可编程逻辑器件(Programmable Logic Device,PLD)或其组合。上述PLD可以是复杂可编程逻辑器件(Complex Programmable Logic Device,CPLD)、现场可编程逻辑门阵列(Field-Programmable Gate Array,FPGA)、通用阵列逻辑(Generic Array Logic,GAL)或其任意组合。处理器1010执行各种类型的数字存储指令,例如存储在存储器1030中的软件或者固件程序,它能使网络设备1000提供较宽的多种服务。
在网络设备1000是前述内容中的控制面网元的情况下,所述存储器用于存储计算机指令,其中,存储器1030用于存储程序代码,并由处理器1010来控制执行,以执行上述图4-图6中任一实施例中控制面网元的处理步骤。处理器1010用于执行存储器1030中存储的程序代码。
所述的程序代码中可以包括一个或多个软件模块。这一个或多个软件模块可以为图7所示实施例中提供的软件模块(在该实施例中各软件模块,如接收单元,发送单元,处理单元,为软件模块的情况下)。例如所述接收单元可以用于接收来自所述接入网关的拨号报文,所述发送单元可以用于向外部服务器发送所述拨号报文,所述处理单元可以根据所述SLA信息,确定所述IP地址对应的转发面网元等等,具体可用于执行前述方法的S402、步骤S404和步骤S405及其可选步骤,还可以用于执行图4-图6实施例描述的其他步骤,这里不再进行赘述。
需要说明的是,本实施例也可以基于通用的物理服务器结合网络功能虚拟化NFV技术实现的vBNG-CP设备或虚拟会话控制单元vSCU。所述vBNG-CP设备或虚拟会话控制单元为虚拟网络设备,所述虚拟网络设备可以是能够实现上述控制面网元功能的虚拟机VM(Virtual Machine),所述虚拟机部署在硬件设备上(例如,物理服务器,如X86服务器)。所述虚拟机指通过软件模拟的具有完整硬件系统功能的、运行在一个完全隔离环境中的完整计算机系统。本领域技术人员通过阅读本申请即可结合NFV技术在通用物理服务器上虚拟出具有上述功能的一个或多个vBNG-CP设备或虚拟会话控制单元vSCU。此处不再赘述。
在网络设备1000是前述内容中的接入网关的情况下,所述存储器用于存储计算机指令,其中,其中,存储器1030用于存储程序代码,并由处理器1010来控制执行,以执行上述图4-图6中任一实施例中接入网关的处理步骤。处理器1010用于执行存储器1030中存储的程序代码。
所述的程序代码中可以包括一个或多个软件模块。这一个或多个软件模块可以为图8所示实施例中提供的软件模块(在该实施例中各软件模块,如发送单元710、接收单元720以及建立单元730,为软件模块的情况下)。例如所述接收单元可以用于接收来自所述控制器的隧道建立请求,所述建立单元可以用于根据所述隧道建立请求,与所述转发面网元之间建立通信隧道等等,具体可用于执行前述方法的S401、步骤S409及其可选步骤,还可以用于执行图4-图6实施例描述的其他步骤,这里不再进行赘述。
在网络设备1000是前述内容中的控制器的情况下,所述存储器用于存储计算机指令,其中,其中,存储器1030用于存储程序代码,并由处理器1010来控制执行,以执行上述图4-图6中任一实施例中控制器的处理步骤。处理器1010用于执行存储器1030中存储的程序代码。
所述的程序代码中可以包括一个或多个软件模块。这一个或多个软件模块可以为图9所示实施例中提供的软件模块(在该实施例中各软件模块,如接收单元、生成单元和发送单元,为软件模块的情况下)。例如接收单元可以用于接收来自所述转发面网元的控制面网元的接口信息,生成单元可以用于根据所述转发面网元的接口信息,生成隧道建立请求,发送单元可以用于向所述接入网关发送所述隧道建立请求,使得所述接入网关根据所述隧道建立请求,与所述转发面网元之间建立通信隧道等等,具体可用于执行前述方法的S406-步骤S408及其可选步骤,还可以用于执行图4-图6实施例描述的其他步骤,这里不再进行赘述。
在网络设备1000是前述内容中的转发面网元的情况下,所述存储器用于存储计算机指令,其中,其中,存储器1030用于存储程序代码,并由处理器1010来控制执行,以执行上述图4-图6中任一实施例中转发面网元的处理步骤。处理器1010用于执行存储器1030中存储的程序代码。
所述的程序代码中可以包括一个或多个软件模块。这一个或多个软件模块可以为图10所示实施例中提供的软件模块(在该实施例中各软件模块,如接收单元,建立单元和发布单元,为软件模块的情况下)。例如接收单元用于接收来自所述接入网关的隧道建立请求,建立单元用于与所述接入网关建立通信隧道,发布单元用于根据session信息发布路由信息等等,具体可用于执行前述方法的S409及其可选步骤,还可以用于执行图4-图6实施例描述的其他步骤,这里不再进行赘述。
需要说明的是,转发面网元可以是一个传统硬件网络设备,简称为pUP或者pSFU,也可以基于通用的物理服务器结合网络功能虚拟化NFV技术实现的虚拟是设备,简称为vUP或者vSFU。所述vUP设备或vSFU为虚拟网络设备,所述虚拟网络设备可以是能够实现上述控制面网元功能的VM,所述虚拟机部署在硬件设备上(例如,物理服务器,如X86服务器)。所述虚拟机指通过软件模拟的具有完整硬件系统功能的、运行在一个完全隔离环境中的完整计算机系统。本领域技术人员通过阅读本申请即可结合NFV技术在通用物 理服务器上虚拟出具有上述功能的一个或多个vSFU设备或vUP设备。
所述存储器1030可以包括易失性存储器(Volatile Memory),例如随机存取存储器(Random Access Memory,RAM);存储器1030也可以包括非易失性存储器(Non-Volatile Memory),例如只读存储器(Read-Only Memory,ROM)、快闪存储器(Flash Memory)、硬盘(Hard Disk Drive,HDD)或固态硬盘(Solid-State Drive,SSD);存储器1030还可以包括上述种类的组合。存储器1030可以存储有程序代码,具体可以包括用于执行图4-图6实施例描述的其他步骤的程序代码,这里不再进行赘述。
通信接口1020可以为有线接口(例如以太网接口),可以为内部接口(例如高速串行计算机扩展总线(Peripheral Component Interconnect express,PCIe)总线接口)、有线接口(例如以太网接口)或无线接口(例如蜂窝网络接口或使用无线局域网接口),用于与与其他设备或模块进行通信。
需要说明的,图11仅仅是本申请实施例的一种可能的实现方式,实际应用中,所述网络设备还可以包括更多或更少的部件,这里不作限制。关于本申请实施例中未示出或未描述的内容,可参见前述图4-图6所述实施例中的相关阐述,这里不再赘述。
应理解,图11所示的网络设备还可以是多个服务器构成的计算机集群,本申请不作具体限定。
本申请实施例还提供一种计算机可读存储介质,所述计算机可读存储介质中存储有指令,当其在处理器上运行时,图4-图6所示的方法流程得以实现。
本申请实施例还提供一种计算机程序产品,当所述计算机程序产品在处理器上运行时,图4-图6所示的方法流程得以实现。
上述实施例,可以全部或部分地通过软件、硬件、固件或其他任意组合来实现。当使用软件实现时,上述实施例可以全部或部分地以计算机程序产品的形式实现。所述计算机程序产品包括一个或多个计算机指令。在计算机上加载或执行所述计算机程序指令时,全部或部分地产生按照本发明实施例所述的流程或功能。所述计算机可以为通用计算机、专用计算机、计算机网络、或者其他可编程装置。所述计算机指令可以存储在计算机可读存储介质中,或者从一个计算机可读存储介质向另一个计算机可读存储介质传输,例如,所述计算机指令可以从一个网站站点、计算机、服务器或数据中心通过有线(例如同轴电缆、光纤、数字用户线(Digital Subscriber Line,DSL))或无线(例如红外、无线、微波等)方式向另一个网站站点、计算机、服务器或数据中心进行传输。所述计算机可读存储介质可以是计算机能够存取的任何可用介质或者是包含一个或多个可用介质集合的服务器、数据中心等数据存储设备。所述可用介质可以是磁性介质(例如,软盘、硬盘、磁带)、光介质(例如,高密度数字视频光盘(Digital Video Disc,DVD)、或者半导体介质。半导体介质可以是SSD。
以上所述,仅为本发明的具体实施方式,但本发明的保护范围并不局限于此,任何熟悉本技术领域的技术人员在本发明揭露的技术范围内,可轻易想到各种等效的修改或替换,这些修改或替换都应涵盖在本发明的保护范围之内。因此,本发明的保护范围应以权利要求的保护范围为准。

Claims (49)

  1. 一种拨号报文处理方法,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述方法包括:
    所述控制面网元接收来自所述接入网关的拨号报文,所述拨号报文是用户设备向所述接入网关发送的拨号报文;
    所述控制面网元向外部服务器发送认证请求,所述认证请求是所述控制面网元根据所述拨号报文生成的;
    所述控制面网元接收所述外部服务器发送的拨号成功信息;
    所述控制面网元根据所述拨号成功信息确定转发面网元,使得所述用户设备通过所述转发面网元进行网络通信。
  2. 根据权利要求1所述的方法,其特征在于,所述拨号报文包括所述用户设备的网络互联协议IP地址,所述控制面网元根据所述拨号成功信息确定转发面网元之后,所述方法还包括:
    所述控制面网元向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道建立请求,其中,所述隧道建立请求是所述控制器根据所述转发面网元的信息生成的,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立第一通信隧道,所述第一通信隧道与所述IP地址呈对应关系。
  3. 根据权利要求2所述的方法,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  4. 根据权利要求2或3所述的方法,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述控制面网元根据所述拨号成功信息确定转发面网元之后,所述方法还包括:
    所述控制面网元向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
  5. 根据权利要求1至4任一权利要求所述的方法,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述控制面网元根据所述拨号成功信息确定转发面网元包括:所述控制面网元根据所述SLA信息确定所述转发面网元。
  6. 根据权利要求1至5任一权利要求所述的方法,其特征在于,所述控制面网元接收所述外部服务器发送的拨号成功信息之后,所述方法还包括:
    所述控制面网元根据所述拨号成功信息生成会话session信息,其中,所述session信 息与所述IP地址对应;
    所述控制面网元向所述转发面网元发送所述session信息,使得所述转发面网元根据所述session信息对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。
  7. 一种拨号报文处理方法,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述方法包括:
    所述接入网关接收用户设备发送的发送拨号报文,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述接入网关向所述控制面网元发送所述拨号报文;
    所述接入网关接收来自所述控制器的隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和转发面网元之间建立通信隧道;
    所述接入网关根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。
  8. 根据权利要求7所述的方法,其特征在于,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息确定的,所述隧道建立请求是所述控制器根据所述控制面网元发送的转发面网元的信息生成的。
  9. 根据权利要求8所述的方法,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  10. 根据权利要求8所述的方法,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
  11. 根据权利要求7至10任一权利要求所述的方法,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述方法还包括:
    所述接入网关接收来自所述控制器的隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的;
    所述接入网关将所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,其中,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
  12. 根据权利要求7至11任一权利要求所述的方法,其特征在于,所述方法还包括:
    所述接入网关接收数据报文,其中,所述数据报文的源IP地址是所述IP地址;
    所述接入网关根据所述IP地址,确定与所述IP地址对应的所述第一通信隧道;
    所述接入网关通过所述第一通信隧道将所述数据报文传输至所述转发面网元。
  13. 一种拨号报文处理方法,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述方法包括:
    所述控制器接收由所述控制面网元发送的所述转发面网元的信息,其中,所述转发面网元的信息是所述控制面网元在接收到接入网关发送的用户设备的拨号报文之后确定的,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述控制器根据所述转发面网元的信息,生成隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和转发面网元之间建立通信隧道;
    所述控制器向所述接入网关发送所述隧道建立请求,使得所述接入网关根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。
  14. 根据权利要求13所述的方法,其特征在于,所述第一通信隧道用于在所述接入网关接收到源IP地址是所述IP地址的数据报文的情况下,所述接入网关根据所述IP地址确认与所述IP地址对应的所述第一通信隧道,并将所述数据报文通过所述第一通信隧道传输至所述转发面网元。
  15. 根据权利要求14所述的方法,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述方法还包括:
    所述控制器接收所述控制面网元发送的所述转发面网元的信息;
    所述控制器根据所述转发面网元的信息生成隧道切换请求,其中,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道;
    所述控制器向所述接入网关发送隧道切换请求。
  16. 根据权利要求13至15任一权利要求所述的方法,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  17. 根据权利要求13至16任一权利要求所述的方法,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
  18. 一种拨号报文处理的方法,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述方法包括:
    所述转发面网元接收来自所述接入网关的隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立通信隧道,所述隧道建立请求是所述控制器根据所述控制面网元在接收到用户设备发送的拨号报文之后确定出转发面网元之后发送的 所述转发面网元的信息生成的,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述转发面网元与所述接入网关建立通信隧道,其中,所述通信隧道与所述IP地址呈对应关系。
  19. 根据权利要求18所述的方法,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  20. 根据权利要求18或19所述的方法,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
  21. 根据权利要求18所述的方法,其特征在于,所述方法还包括:
    所述转发面网元通过所述通信隧道接收来自所述接入网关的数据报文,其中,所述数据报文的源IP地址是所述IP地址。
  22. 根据权利要求18至21任一权利要求所述的方法,其特征在于,所述方法还包括:
    所述转发面网元接收所述控制面网元发送的会话session信息,其中,所述session信息是所述转发面网元网元根据所述外部服务器返回的拨号成功信息生成的,所述session信息与所述IP地址对应;
    所述转发面网元根据所述session信息,对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。
  23. 一种拨号报文处理系统,其特征在于,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,其中,所述控制面网元执行如权利要求1至6任一权利要求所述的方法,所述接入网关执行如权利要求7至12任一权利要求所所述的方法,所述控制器执行如权利要求13至17任一权利要求所述的方法,所述转发面网元执行如权利要求18至22任一权利要求所述的方法。
  24. 一种控制面网元,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述控制面网元包括接收单元、发送单元以及处理单元,其中,
    所述接收单元用于接收来自所述接入网关的拨号报文,所述拨号报文是用户设备向所述接入网关发送的拨号报文;
    所述发送单元用于向外部服务器发送认证请求,所述认证请求是所述控制面网元根据所述拨号报文生成的;
    所述接收单元还用于接收所述外部服务器发送的拨号成功信息;
    所述处理单元用于根据所述拨号成功信息确定转发面网元,使得所述用户设备通过所 述转发面网元进行网络通信。
  25. 根据权利要求24所述的控制面网元,其特征在于,所述拨号报文包括所述用户设备的网络互联协议IP地址,所述发送单元还用于在所述处理单元根据所述拨号成功信息确定转发面网元之后,向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道建立请求,其中,所述隧道建立请求是所述控制器根据所述转发面网元的信息生成的,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立第一通信隧道,所述第一通信隧道与所述IP地址呈对应关系。
  26. 根据权利要求25所述的控制面网元,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  27. 根据权利要求24或25所述的控制面网元,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述发送单元还用于在所述处理单元根据所述拨号成功信息确定转发面网元之后,向所述控制器发送所述转发面网元的信息,使得所述控制器向所述接入网关发送隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
  28. 根据权利要求24至27任一权利要求所述的控制面网元,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述处理单元用于根据所述SLA信息确定所述转发面网元。
  29. 根据权利要求24至28任一权利要求所述的控制面网元,其特征在于,
    所述处理单元还用于在所述接收单元接收所述外部服务器发送的拨号成功信息之后,所述控制面网元根据所述拨号成功信息生成会话session信息,其中,所述session信息与所述IP地址对应;
    所述发送单元还用于向所述转发面网元发送所述session信息,使得所述转发面网元根据所述session信息对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。
  30. 一种接入网关,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述接入网关包括发送单元、接收单元以及建立单元,其中,
    所述接收单元用于接收用户设备发送的发送拨号报文,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述发送单元用于向所述控制面网元发送所述拨号报文;
    所述接收单元还用于接收来自所述控制器的隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和转发面网元之间建立通信隧道;
    所述建立单元用于根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。
  31. 根据权利要求30所述的接入网关,其特征在于,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息确定的,所述隧道建立请求是所述控制器根据所述控制面网元发送的转发面网元的信息生成的。
  32. 根据权利要求31所述的接入网关,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
  33. 根据权利要求30所述的接入网关,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  34. 根据权利要求30至33任一权利要求所述的接入网关,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述接收单元还用于接收来自所述控制器的隧道切换请求,其中,所述隧道切换请求是所述控制器根据所述转发面网元的信息生成的;
    所述建立单元还用于将所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,其中,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道。
  35. 根据权利要求30至34任一权利要求所述的接入网关,其特征在于,所述接收单元还用于接收数据报文,其中,所述数据报文的源IP地址是所述IP地址;
    所述发送单元还用于根据所述IP地址,确定与所述IP地址对应的所述第一通信隧道;
    所述发送单元还用于通过所述第一通信隧道将所述数据报文传输至所述转发面网元。
  36. 一种控制器,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述控制器包括接收单元、发送单元以及生成单元,其中,
    所述接收单元用于接收由所述控制面网元发送的所述转发面网元的信息,其中,所述转发面网元的信息是所述控制面网元在接收到接入网关发送的用户设备的拨号报文之后确定的,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述生成单元用于根据所述转发面网元的信息,生成隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和转发面网元之间建立通信隧道;
    所述发送单元用于向所述接入网关发送所述隧道建立请求,使得所述接入网关根据所述隧道建立请求,与所述转发面网元之间建立第一通信隧道,其中,所述第一通信隧道与所述IP地址呈对应关系。
  37. 根据权利要求36所述的控制器,其特征在于,所述第一通信隧道用于在所述接入网关接收到源IP地址是所述IP地址的数据报文的情况下,所述接入网关根据所述IP地址确认与所述IP地址对应的所述第一通信隧道,并将所述数据报文通过所述第一通信隧道传输至所述转发面网元。
  38. 根据权利要求37所述的控制器,其特征在于,在所述IP地址已与第二通信隧道呈对应关系的情况下,所述接收单元还用于接收所述控制面网元发送的所述转发面网元的信息;
    所述生成单元还用于根据所述转发面网元的信息生成隧道切换请求,其中,所述隧道切换请求用于使得所述IP地址对应的通信隧道由第二通信隧道切换为第一通信隧道,所述第二通信隧道是所述接入网关与其他转发面网元之间的通信隧道;
    所述发送单元还用于向所述接入网关发送隧道切换请求。
  39. 根据权利要求36至38任一权利要求所述的控制器,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  40. 根据权利要求36至39任一权利要求所述的控制器,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功信息中的所述SLA信息确定的所述转发面网元。
  41. 一种转发面网元,其特征在于,应用于拨号报文处理系统,所述系统包括相互连接的控制器、接入网关、转发面网元和控制面网元,所述转发面网元包括接收单元以及建立单元,其中,
    所述接收单元用于接收来自所述接入网关的隧道建立请求,其中,所述隧道建立请求用于在所述接入网关和所述转发面网元之间建立通信隧道,所述隧道建立请求是所述控制器根据所述控制面网元在接收到用户设备发送的拨号报文之后确定出转发面网元之后发送的所述转发面网元的信息生成的,所述拨号报文包括所述用户设备的网络互联协议IP地址;
    所述建立单元应用于与所述接入网关建立通信隧道,其中,所述通信隧道与所述IP地址呈对应关系。
  42. 根据权利要求41所述的转发面网元,其特征在于,所述转发面网元的信息包括所述转发面网元的接口信息以及所述接入网关的接口信息。
  43. 根据权利要求41或42所述的转发面网元,其特征在于,所述拨号成功信息包括所述IP地址对应的服务等级协议SLA信息,所述转发面网元是所述控制面网元根据拨号报文生成认证请求并向外部服务器发送所述认证请求之后,根据外部服务器返回的拨号成功 信息中的所述SLA信息确定的所述转发面网元。
  44. 根据权利要求41所述的转发面网元,其特征在于,所述接收单元还用于通过所述通信隧道接收来自所述接入网关的数据报文,其中,所述数据报文的源IP地址是所述IP地址。
  45. 根据权利要求41至44任一权利要求所述的转发面网元,其特征在于,所述转发面网元还包括发布单元,所述接收单元还用于接收所述控制面网元发送的会话session信息,其中,所述session信息是所述转发面网元网元根据所述外部服务器返回的拨号成功信息生成的,所述session信息与所述IP地址对应;
    所述发布单元用于根据所述session信息,对外发布路由信息,其中,所述路由信息的目的地址为所述IP地址。
  46. 一种拨号报文处理系统,其特征在于,所述系统包括相互连接的控制器、转发面网元和控制面网元,其中,所述控制面网元执行如权利要求1至6任一权利要求所述的方法,所述控制器执行如权利要求13至17任一权利要求所述的方法,所述转发面网元执行如权利要求18至22任一权利要求所述的方法。
  47. 根据权利要求46所述的系统,其特征在于,所述系统还包括接入网关,所述接入网关与所述控制器、所述控制面网元以及所述转发面网元相连,其中,所述接入网关执行如权利要求7至12任一权利要求所述的方法。
  48. 一种计算机可读存储介质,其特征在于,包括指令,当所述指令在计算设备上运行时,使得所述计算设备执行如权利要求1至6、7至12、13至17、18至22任一权利要求所述的方法。
  49. 一种网络设备,其特征在于,包括处理器和存储器,所述处理器执行所述存储器中的代码执行如权利要求1至6、7至12、13至17、18至22任一权利要求所述的方法。
PCT/CN2021/081104 2020-03-16 2021-03-16 拨号报文处理方法, 网元, 系统及网络设备 WO2021185253A1 (zh)

Priority Applications (5)

Application Number Priority Date Filing Date Title
JP2022555785A JP7486597B2 (ja) 2020-03-16 2021-03-16 ダイアルアップ・パケット処理方法、ネットワーク要素、システム、ネットワーク装置
MX2022011470A MX2022011470A (es) 2020-03-16 2021-03-16 Metodo de procesamiento de paquetes de marcacion, elemento de red, sistema y dispositivo de red.
BR112022018589A BR112022018589A2 (pt) 2020-03-16 2021-03-16 Método de processamento de pacote de acesso discado, elemento de rede, sistema e dispositivo de rede
EP21771950.9A EP4120637A4 (en) 2020-03-16 2021-03-16 DIALING MESSAGE PROCESSING METHOD, NETWORK ELEMENTS, SYSTEM, AND NETWORK DEVICE
US17/945,309 US20230018346A1 (en) 2020-03-16 2022-09-15 Dial-up packet processing method, network element, system, and network device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202010183200.0 2020-03-16
CN202010183200.0A CN113411802A (zh) 2020-03-16 2020-03-16 拨号报文处理方法、网元、系统及网络设备

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US17/945,309 Continuation US20230018346A1 (en) 2020-03-16 2022-09-15 Dial-up packet processing method, network element, system, and network device

Publications (1)

Publication Number Publication Date
WO2021185253A1 true WO2021185253A1 (zh) 2021-09-23

Family

ID=77676603

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2021/081104 WO2021185253A1 (zh) 2020-03-16 2021-03-16 拨号报文处理方法, 网元, 系统及网络设备

Country Status (7)

Country Link
US (1) US20230018346A1 (zh)
EP (1) EP4120637A4 (zh)
JP (1) JP7486597B2 (zh)
CN (1) CN113411802A (zh)
BR (1) BR112022018589A2 (zh)
MX (1) MX2022011470A (zh)
WO (1) WO2021185253A1 (zh)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US12088676B2 (en) * 2022-01-26 2024-09-10 Juniper Networks, Inc. Integrated broadband network gateway (BNG) device for providing a BNG control plane for one or more distributed BNG user plane devices

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090252133A1 (en) * 2008-04-07 2009-10-08 Hitachi Communication Technologies, Ltd. Mobile communication system and access gateway having plural user plane agws
CN109428792A (zh) * 2017-08-29 2019-03-05 中兴通讯股份有限公司 一种用户宽带接入处理的方法及装置、设备
CN110166270A (zh) * 2018-02-13 2019-08-23 中兴通讯股份有限公司 热备切换处理方法、设备及存储介质
CN110650077A (zh) * 2018-06-27 2020-01-03 中兴通讯股份有限公司 一种l2tp协议控制与转发分离的方法及系统

Family Cites Families (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9549317B2 (en) * 2011-10-17 2017-01-17 Mitel Mobility Inc. Methods and apparatuses to provide secure communication between an untrusted wireless access network and a trusted controlled network
US9253019B1 (en) * 2012-03-09 2016-02-02 Juniper Networks, Inc. Fault tolerance for authentication, authorization, and accounting (AAA) functionality
CN103685026A (zh) * 2012-08-31 2014-03-26 中兴通讯股份有限公司 一种虚拟网络的接入方法和系统
US8953592B2 (en) * 2012-09-28 2015-02-10 Juniper Networks, Inc. Network address translation for application of subscriber-aware services
NL2014020B1 (en) * 2014-12-19 2016-10-12 Ivent Mobile B V Voice and text data service for mobile subscribers.
EP3402305B1 (en) * 2016-01-19 2020-04-29 Huawei Technologies Co., Ltd. Method and device for allocating ip address
US11012311B2 (en) * 2016-06-21 2021-05-18 NEC Laboratories Europe GmbH SDN-based mobile communication system and method for operating such system
CN107786613B (zh) * 2016-08-30 2020-05-12 新华三技术有限公司 宽带远程接入服务器bras转发实现方法和装置
CN109391940B (zh) * 2017-08-02 2021-02-12 华为技术有限公司 一种接入网络的方法、设备及系统
US10778609B2 (en) * 2017-08-10 2020-09-15 Futurewei Technologies, Inc. Interactions between a broadband network gateway and a fifth generation core
WO2019042912A1 (en) * 2017-08-28 2019-03-07 Koninklijke Kpn N.V. APPLICATION FUNCTION IN A NETWORK AND ITS CONTROL

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20090252133A1 (en) * 2008-04-07 2009-10-08 Hitachi Communication Technologies, Ltd. Mobile communication system and access gateway having plural user plane agws
CN109428792A (zh) * 2017-08-29 2019-03-05 中兴通讯股份有限公司 一种用户宽带接入处理的方法及装置、设备
CN110166270A (zh) * 2018-02-13 2019-08-23 中兴通讯股份有限公司 热备切换处理方法、设备及存储介质
CN110650077A (zh) * 2018-06-27 2020-01-03 中兴通讯股份有限公司 一种l2tp协议控制与转发分离的方法及系统

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP4120637A4

Also Published As

Publication number Publication date
CN113411802A (zh) 2021-09-17
BR112022018589A2 (pt) 2022-11-22
MX2022011470A (es) 2022-10-07
EP4120637A4 (en) 2023-12-13
JP2023518370A (ja) 2023-05-01
JP7486597B2 (ja) 2024-05-17
US20230018346A1 (en) 2023-01-19
EP4120637A1 (en) 2023-01-18

Similar Documents

Publication Publication Date Title
EP3656174B1 (en) Interactions between a broadband network gateway and a fifth generation core
WO2021136311A1 (zh) 一种vpc之间的通信方法及装置
JP7282146B2 (ja) Brasシステムベースのパケットカプセル化方法および装置
WO2020216339A1 (zh) 接入网关的方法及装置
JP2019526983A (ja) ブロードバンドリモートアクセスサーバの制御プレーン機能と転送プレーン機能の分離
WO2012049631A1 (en) Multipath transmission control protocol proxy
US20220408332A1 (en) Method for advertising route, network element, system, and device
WO2021254001A1 (zh) 会话建立方法、装置、系统及计算机存储介质
US20230050466A1 (en) Communication method and related device
WO2021185253A1 (zh) 拨号报文处理方法, 网元, 系统及网络设备
CN117500000A (zh) 基于移动边缘计算的算力资源调度方法、设备及存储介质
WO2019134637A1 (zh) 多类型的层叠虚拟网络互连的方法、装置及系统
WO2021232920A1 (zh) 数据传输方法、电子设备及存储介质
US20240314077A1 (en) Apparatuses, methods and non-transitory computer-readable storage mediums for network access
EP4373051A1 (en) Apparatuses, methods and non-transitory computer-readable storage mediums for network access to residential gateways
WO2022017453A1 (zh) 一种网络接入方法、装置及系统
WO2022156423A1 (zh) 一种数据传输方法及装置
US11902052B1 (en) Separate PFCP session model for network access by residential gateways
WO2022213822A1 (zh) 一种控制用户设备接入网络的方法、装置及设备
US20240039763A1 (en) Separate pfcp session model for network access by residential gateways
EP4312405A1 (en) Combined pfcp session model for network access by residential gateways
CN117097517A (zh) 融合网络的认证鉴权网络系统及融合网络的用户认证方法
CN118555166A (zh) 一种云网络中的跨资源池二层互通方法及装置

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 21771950

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 202217051711

Country of ref document: IN

ENP Entry into the national phase

Ref document number: 2022555785

Country of ref document: JP

Kind code of ref document: A

REG Reference to national code

Ref country code: BR

Ref legal event code: B01A

Ref document number: 112022018589

Country of ref document: BR

NENP Non-entry into the national phase

Ref country code: DE

ENP Entry into the national phase

Ref document number: 2021771950

Country of ref document: EP

Effective date: 20221011

ENP Entry into the national phase

Ref document number: 112022018589

Country of ref document: BR

Kind code of ref document: A2

Effective date: 20220916