WO2021190029A1 - 实现运营商级网络地址转换的方法、装置和系统 - Google Patents

实现运营商级网络地址转换的方法、装置和系统 Download PDF

Info

Publication number
WO2021190029A1
WO2021190029A1 PCT/CN2020/140280 CN2020140280W WO2021190029A1 WO 2021190029 A1 WO2021190029 A1 WO 2021190029A1 CN 2020140280 W CN2020140280 W CN 2020140280W WO 2021190029 A1 WO2021190029 A1 WO 2021190029A1
Authority
WO
WIPO (PCT)
Prior art keywords
network address
public network
request
segment
control plane
Prior art date
Application number
PCT/CN2020/140280
Other languages
English (en)
French (fr)
Inventor
黄光平
陈勇
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Priority to US17/914,424 priority Critical patent/US11863516B2/en
Priority to EP20927639.3A priority patent/EP4117251A4/en
Publication of WO2021190029A1 publication Critical patent/WO2021190029A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/25Mapping addresses of the same type
    • H04L61/2503Translation of Internet protocol [IP] addresses
    • H04L61/2514Translation of Internet protocol [IP] addresses between local and global IP addresses
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/25Mapping addresses of the same type
    • H04L61/2503Translation of Internet protocol [IP] addresses
    • H04L61/251Translation of Internet protocol [IP] addresses between different IP versions
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2101/00Indexing scheme associated with group H04L61/00
    • H04L2101/60Types of network addresses
    • H04L2101/668Internet protocol [IP] address subnets
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/50Address allocation
    • H04L61/5007Internet protocol [IP] addresses
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/50Address allocation
    • H04L61/5061Pools of addresses

Definitions

  • the embodiments of the present disclosure relate to the field of communications, and in particular to methods, devices and systems, electronic equipment, and computer-readable storage media for implementing Carrie Grade Network Address Translation (CGN).
  • CGN Carrie Grade Network Address Translation
  • Wired broadband access is the basic access service for home broadband, corporate private lines, and public wireless fidelity (WiFi, Wireless Fidelity), and is the second largest mainstream broadband access service besides mobile broadband.
  • IPTV Internet Protocol Television
  • Wired broadband access network equipment With the rapid development of emerging access services such as (IPTV, Internet Protocol Television) and high-definition video, the traditional model of integrating the transfer and control plane of wired broadband access network equipment is becoming less and less suitable for cloud-based network architecture and rapid development and delivery of new services. And other needs.
  • SDN Software Defined Network
  • NFV Network Function Virtualization
  • IPv4 Internet Protocol Version 4
  • CGN Carrie Grade Network Address Translation
  • the embodiments of the present disclosure provide a method and device, electronic equipment, and computer-readable medium for implementing carrier-level network address translation.
  • embodiments of the present disclosure provide a method for implementing carrier-level network address translation, which includes:
  • embodiments of the present disclosure provide a method for implementing carrier-level network address translation, which includes:
  • the first request is used to apply for a public network address segment; allocating public network address segment information to the forwarding plane, and returning it to the forwarding plane The first response; wherein, the first response includes: allocated public network address segment information;
  • an electronic device which includes:
  • At least one processor At least one processor
  • the memory has at least one program stored thereon, and when the at least one program is executed by the at least one processor, any one of the above-mentioned methods for implementing the carrier-level network address translation by the at least one processor is enabled.
  • embodiments of the present disclosure provide a computer-readable storage medium on which a computer program is stored, and when the program is executed by a processor, any one of the above-mentioned methods for implementing carrier-level network address translation is implemented.
  • embodiments of the present disclosure provide a system for implementing carrier-level network address translation, including a forwarding plane and a control plane;
  • the forwarding plane and the control plane are respectively set in different electronic devices
  • the forwarding plane is used for:
  • control plane is used for:
  • Receiving the first request sent by the forwarding plane assign public network address segment information to the forwarding plane, and return a first response to the forwarding plane; assign a public network address to the user according to the public network address segment information, and transfer the The public network address is sent to the forwarding plane; the private network address is assigned to the user, and the private network address is sent to the forwarding plane.
  • the method for implementing operator-level network address translation realizes a broadband access system with separation of transfer and control (such as virtual broadband remote access server (vBRAS, Virtual Broadband Remote Access Server), classified broadband network gateway (DBNG) , CGN in Disaggregated Broadband Network Gateway).
  • vBRAS virtual broadband remote access server
  • DBNG classified broadband network gateway
  • CGN Disaggregated Broadband Network Gateway
  • FIG. 1 is a flowchart of a method for implementing carrier-level network address translation provided by an embodiment of the disclosure
  • FIG. 2 is a flowchart of another method for implementing carrier-level network address translation provided by an embodiment of the disclosure
  • Example 3 is a flowchart of the method for implementing carrier-level network address translation provided by Example 1 of the embodiments of the disclosure;
  • Example 4 is a flowchart of a method for implementing carrier-level network address translation provided by Example 2 of the embodiments of the present disclosure
  • Example 5 is a flowchart of a method for implementing carrier-level network address translation provided in Example 3 of the embodiments of the disclosure
  • Example 6 is a flowchart of the method for implementing carrier-level network address translation provided by Example 4 of the embodiments of the disclosure.
  • Fig. 7 is a block diagram of a device for implementing carrier-level network address translation provided by an embodiment of the disclosure.
  • FIG. 8 is a block diagram of another device for implementing carrier-level network address translation provided by an embodiment of the present disclosure.
  • FIG. 9 is a block diagram of a system for implementing carrier-level network address translation provided by an embodiment of the disclosure.
  • Fig. 1 is a flowchart of a method for implementing operator-level network address translation according to an embodiment of the disclosure.
  • an embodiment of the present disclosure provides a method for implementing operator-level network address translation, which is applied to the forwarding plane of a broadband access system with separate forwarding and control.
  • the forwarding plane and the control plane are respectively set in different electronic In the device, the method includes:
  • Step 100 Send a first request to the control plane of the broadband access system with separate transfer and control, where the first request is used to apply for a public network address segment from the control plane; receive a first response returned by the control plane; wherein , The first response includes: allocated public network address segment information.
  • the public network address segment information may be a public network address segment or an address mask.
  • the first request may be a public network address segment allocation request
  • the first response may be a public network address segment allocation response.
  • the first request and the first response are not limited to the names given above, as long as the names having the above functions are within the protection scope of the embodiments of the present disclosure, they will not be repeated here.
  • Step 101 Receive a public network address allocated by the control plane for a user according to the public network address segment information; receive a private network address allocated by the control plane for the user.
  • the public network address may be a public network IPv4 address
  • the private network address may be IPv4 or IPv6.
  • Step 102 Perform public and private network address translation on the received service traffic of the user according to the public network address and the private network address.
  • the public and private network address translation may be the conversion between IPv4 and public network IPv4 addresses, namely NAT44; it may also be the conversion between IPv6 and public network IPv4 addresses, namely NAT64.
  • the private network address in the source address in the upstream service traffic is converted into a public network address
  • the public network address in the destination address in the downlink service flow is converted into a private network address.
  • the method further includes:
  • the service traffic after public and private network address translation is performed.
  • the method further includes:
  • the user identity traceability information includes: the public network address, the private network address, and the port segment; or, the user identity traceability information includes: the public network address, the private network address, and the The port.
  • the method further includes:
  • the second request may be a public network address segment status query request
  • the second response may be a public network address segment status query response.
  • the second request and the second response are not limited to the names given above, as long as the names having the above functions are within the protection scope of the embodiments of the present disclosure, they will not be repeated here.
  • the state of the public network address segment is idle, and the method further includes: sending a third request to the control plane, where the third request is used to request to release the public network address segment.
  • the third request may be a public network address segment release request.
  • the third request is not limited to the names given above, as long as the names having the above functions are within the protection scope of the embodiments of the present disclosure, the details will not be repeated here.
  • the method further includes:
  • a fourth request sent by the control plane is received, where the fourth request is used to query the status of at least one public network address in the public network address segment; a fourth response is returned to the control plane; wherein, the first The fourth response includes: the status of at least one public network address in the public network address segment.
  • the fourth request may be a public network address status query request.
  • the fourth request is not limited to the names given above, as long as the names with the above functions are within the protection scope of the embodiments of the present disclosure, details are not repeated here.
  • the status of all public network addresses in the public network address segment is in use, and the method further includes: resending the first request to the control plane.
  • the method further includes: sending a fifth request to the control plane, where the fifth request is used to request to update the public network address segment Right to use.
  • the fifth request may be a public network address segment usage right update request.
  • the fifth request is not limited to the names given above, as long as the names with the above functions are within the protection scope of the embodiments of the present disclosure, the details will not be repeated here.
  • Fig. 2 is a flowchart of another method for implementing operator-level network address translation according to an embodiment of the disclosure.
  • an embodiment of the present disclosure provides another method for implementing operator-level network address translation, which is applied to the control plane of a broadband access system with separate transfer and control.
  • the control plane and the forwarding plane are respectively set in different In electronic equipment, including:
  • Step 200 Receive a first request sent by a forwarding plane of a broadband access system with separate transfer and control, where the first request is used to apply for a public network address segment; assign public network address segment information to the forwarding plane, and The forwarding plane returns a first response; where the first response includes information about the allocated public network address segment.
  • the public network address segment information may be a public network address segment, or an address mask.
  • the first request may be a public network address segment allocation request
  • the first response may be a public network address segment allocation response.
  • the first request and the first response are not limited to the names given above, as long as the names having the above functions are within the protection scope of the embodiments of the present disclosure, they will not be repeated here.
  • Step 201 Assign a public network address to a user according to the public network address segment information, and send the public network address to the forwarding plane; assign a private network address to the user, and send the private network address to the forwarding plane.
  • the public network address may be a public network IPv4 address
  • the private network address may be IPv4 or IPv6.
  • the method further includes:
  • the method further includes:
  • the user identity traceability information includes: the public network address, the private network address, and the port segment; or, the user identity traceability information includes: the public network address, the private network address, and the The port.
  • the method further includes:
  • a second request is sent to the forwarding plane, where the second request is used to query the status of the public network address segment; a second response returned by the forwarding plane is received; wherein, the second response includes: the The status of the public network address segment.
  • the second request may be a public network address segment status query request
  • the second response may be a public network address segment status query response.
  • the second request and the second response are not limited to the names given above, as long as the names having the above functions are within the protection scope of the embodiments of the present disclosure, they will not be repeated here.
  • the state of the public network address segment is idle, and the method further includes:
  • a third request sent by the forwarding plane is received, where the third request is used to request to release the public network address segment; and to release the public network address segment.
  • the third request may be a public network address segment release request.
  • the third request is not limited to the names given above, as long as the names with the above functions are within the protection scope of the embodiments of the present disclosure, the details will not be repeated here.
  • the method further includes:
  • a fourth request is sent to the forwarding plane, where the fourth request is used to query the status of at least one public network address in the public network address segment; a fourth response returned by the forwarding plane is received; wherein, the first The fourth response includes: the status of at least one public network address in the public network address segment.
  • the fourth request may be a public network address status query request.
  • the fourth request is not limited to the names given above, as long as the names with the above functions are within the protection scope of the embodiments of the present disclosure, details are not repeated here.
  • the method further includes: receiving a fifth request sent by the forwarding plane, where the fifth request is used to request to update the public network The right to use the address segment.
  • the fifth request may be a public network address segment usage right update request.
  • the fifth request is not limited to the names given above, as long as the names with the above functions are within the protection scope of the embodiments of the present disclosure, the details will not be repeated here.
  • first request, first response, second request, second response, third request, fourth request, and fifth request may be performed through the control interface channel between the forwarding plane and the control plane.
  • Send and receive may be performed through the control interface channel between the forwarding plane and the control plane.
  • an electronic device which includes:
  • At least one processor At least one processor
  • the memory has at least one program stored thereon, and when the at least one program is executed by the at least one processor, the at least one processor implements any one of the foregoing methods for implementing carrier-level network address translation.
  • the processor is a device with data processing capabilities, including but not limited to a central processing unit (CPU), etc.
  • the memory is a device with data storage capabilities, including but not limited to random access memory (RAM, more specifically such as SDRAM). , DDR, etc.), read-only memory (ROM), charged erasable programmable read-only memory (EEPROM), flash memory (FLASH).
  • RAM random access memory
  • ROM read-only memory
  • EEPROM charged erasable programmable read-only memory
  • FLASH flash memory
  • the processor and the memory are connected to each other through a bus, and further connected to other components of the computing device.
  • embodiments of the present disclosure provide a computer-readable storage medium on which a computer program is stored, and when the program is executed by a processor, any one of the above-mentioned methods for implementing carrier-level network address translation is implemented.
  • the method includes:
  • the forwarding plane of the broadband access system (vBRAS or DBNG) sends a public network address segment allocation request to the control plane through the control interface channel between the transfer control planes, and the public network address segment allocation request is used to The control plane applies for the public network address segment (or address mask);
  • the control plane of the broadband access system (vBRAS or DBNG) allocates a public network address segment (or address mask) to the forwarding plane, and issues the public network address segment (or address mask) through the control interface channel between the transfer control planes.
  • the public network address segment of the network address segment (or address mask) is assigned a response to the forwarding plane;
  • the control plane of the broadband access system (vBRAS or DBNG) allocates public network addresses and port ranges for users, and sends them to the forwarding plane through the control interface channel between the transfer control planes.
  • vBRAS or DBNG broadband access system
  • the control plane assigns a private network address to the user and sends it to the forwarding plane through the control interface channel between the transfer control planes;
  • the forwarding of the broadband access system (vBRAS or DBNG) performs public and private network address translation and forwarding for the user's upstream and downstream business traffic;
  • the forwarding of the broadband access system faces the control plane to upload user identity traceability information (user identity traceability information includes but not limited to public network address, private network address, port segment);
  • vBRAS or DBNG broadband access system
  • AAA Authentication Authorization Accounting
  • the control interface channel between the control plane of the broadband access system (vBRAS or DBNG) sends the public network address segment status query request to the forwarding plane (the status of the public network address segment can be used Or free);
  • the forwarding plane of the broadband access system detects the status of the public network address segment queried by the control plane in (7), and forwards the control interface channel between the control planes to the control plane to reply Public network address segment status query response; the public network address segment status query response includes the status of the public network address segment. If the status of the public network address segment is idle, a public network address segment release request is initiated at the same time;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for the status of all public network addresses in the public network address segment to be in use, and re-transfer the control interface channel between the control planes to the control plane Initiate a public network address segment allocation request, which is used to apply for a new public network address segment from the control plane;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for expiration of the public network address segment permission, and the control interface channel between the control planes initiates the public network address segment permission update to the control plane ask.
  • the method includes:
  • the forwarding plane of the broadband access system (vBRAS or DBNG) sends a public network address segment allocation request to the control plane through the control interface channel between the transfer control planes, and the public network address segment allocation request is used to The control plane applies for the public network address segment (or address mask);
  • the control plane of the broadband access system (vBRAS or DBNG) allocates a public network address segment (or address mask) to the forwarding plane, and issues the public network address segment (or address mask) through the control interface channel between the transfer control planes.
  • the public network address segment of the network address segment (or address mask) is assigned a response to the forwarding plane;
  • the control plane of the broadband access system (vBRAS or DBNG) allocates public network addresses and port ranges for users, and sends them to the forwarding plane through the control interface channel between the transfer control planes.
  • vBRAS or DBNG broadband access system
  • the control plane assigns a private network address to the user and sends it to the forwarding plane through the control interface channel between the transfer control planes;
  • the forwarding of the broadband access system (vBRAS or DBNG) performs public and private network address translation and forwarding for the user's upstream and downstream business traffic;
  • vBRAS broadband access systems
  • DBNG broadband access systems
  • user identity traceability information includes but is not limited to public network addresses, private network addresses, and port segments
  • the control interface channel between the control plane of the broadband access system (vBRAS or DBNG) sends the public network address segment status query request to the forwarding plane (the status of the public network address segment can be used Or free);
  • the forwarding plane of the broadband access system detects the status of the public network address segment queried by the control plane in (7), and forwards the control interface channel between the control planes to the control plane to reply Public network address segment status query response; the public network address segment status query response includes the status of the public network address segment. If the status of the public network address segment is idle, a public network address segment release request is initiated at the same time;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for the status of all public network addresses in the public network address segment to be in use, and re-transfer the control interface channel between the control planes to the control plane Initiate a public network address segment allocation request, which is used to apply for a new public network address segment from the control plane;
  • the method includes:
  • the forwarding plane of the broadband access system (vBRAS or DBNG) sends a public network address segment allocation request to the control plane through the control interface channel between the transfer control planes, and the public network address segment allocation request is used to The control plane applies for the public network address segment (or address mask);
  • the control plane of the broadband access system (vBRAS or DBNG) allocates a public network address segment (or address mask) to the forwarding plane, and issues the public network address segment (or address mask) through the control interface channel between the transfer control planes.
  • the public network address segment of the network address segment (or address mask) is assigned a response to the forwarding plane;
  • the control plane of the broadband access system (vBRAS or DBNG) allocates public network addresses and ports (ports) to users and sends them to the forwarding plane through the control interface channel between the transfer control planes, and the users use them dynamically
  • the above public network address and port are used for service access;
  • the control plane allocates private network addresses for users and sends them to the forwarding plane through the control interface channel between the transfer control planes;
  • the forwarding of the broadband access system (vBRAS or DBNG) performs public and private network address translation and forwarding for the user's upstream and downstream business traffic;
  • the forwarding of the broadband access system faces the control plane to upload user identity traceability information (user identity traceability information includes but is not limited to public network addresses, private network addresses, and ports);
  • the control of the broadband access system forwards the user identity traceability information received in (5) to the AAA system (user identity traceability information includes but is not limited to public network addresses, private network addresses, port);
  • the control interface channel between the control plane of the broadband access system (vBRAS or DBNG) sends the public network address segment status query request to the forwarding plane (the status of the public network address segment can be used Or free);
  • the forwarding plane of the broadband access system detects the status of the public network address segment queried by the control plane in (7), and forwards the control interface channel between the control planes to the control plane to reply Public network address segment status query response; the public network address segment status query response includes the status of the public network address segment. If the status of the public network address segment is idle, a public network address segment release request is initiated at the same time;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for the status of all public network addresses in the public network address segment to be in use, and re-transfer the control interface channel between the control planes to the control plane Initiate a public network address segment allocation request, which is used to apply for a new public network address segment from the control plane;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for expiration of the public network address segment permission, and the control interface channel between the control planes initiates the public network address segment permission update to the control plane ask.
  • the method includes:
  • the forwarding plane of the broadband access system (vBRAS or DBNG) sends a public network address segment allocation request to the control plane through the control interface channel between the transfer control planes, and the public network address segment allocation request is used to The control plane applies for the public network address segment (or address mask);
  • the control plane of the broadband access system (vBRAS or DBNG) allocates a public network address segment (or address mask) to the forwarding plane, and issues the public network address segment (or address mask) through the control interface channel between the transfer control planes.
  • the public network address segment of the network address segment (or address mask) is assigned a response to the forwarding plane;
  • the control plane of the broadband access system (vBRAS or DBNG) allocates public network addresses and ports (ports) to users and sends them to the forwarding plane through the control interface channel between the transfer control planes, and the users use them dynamically
  • the above public network address and port are used for service access;
  • the control plane allocates private network addresses for users and sends them to the forwarding plane through the control interface channel between the transfer control planes;
  • the forwarding of the broadband access system (vBRAS or DBNG) performs public and private network address translation and forwarding for the user's upstream and downstream business traffic;
  • vBRAS broadband access systems
  • DBNG broadband access systems
  • user identity traceability information includes but is not limited to public network addresses, private network addresses, and ports
  • the control interface channel between the control plane of the broadband access system (vBRAS or DBNG) sends the public network address segment status query request to the forwarding plane (the status of the public network address segment can be used Or free);
  • the forwarding plane of the broadband access system detects the status of the public network address segment queried by the control plane in (7), and forwards the control interface channel between the control planes to the control plane to reply Public network address segment status query response; the public network address segment status query response includes the status of the public network address segment. If the status of the public network address segment is idle, a public network address segment release request is initiated at the same time;
  • the forwarding plane of the broadband access system (vBRAS or DBNG) has applied for the status of all public network addresses in the public network address segment to be in use, and re-transfer the control interface channel between the control planes to the control plane Initiate a public network address segment allocation request, which is used to apply for a new public network address segment from the control plane;
  • Fig. 7 is a block diagram of another device for implementing carrier-level network address translation according to an embodiment of the disclosure.
  • an embodiment of the present disclosure provides an apparatus for implementing carrier-level network address translation, including:
  • the public network address segment application module 701 is configured to send a first request to the control plane of the broadband access system with separate transfer and control, where the first request is used to apply for a public network address segment from the control plane; and receive the control plane The returned first response; wherein, the first response includes: allocated public network address segment information;
  • the user address obtaining module 702 is configured to receive the public network address allocated by the control plane to the user according to the public network address segment information; receive the private network address allocated by the control plane to the user;
  • the service traffic processing module 703 is configured to perform public and private network address translation on the received service traffic of the user according to the public network address and the private network address.
  • the public network address segment information includes: a public network address segment, or an address mask.
  • the user address obtaining module 702 is also used to:
  • the service flow processing module 703 is also used to:
  • the service traffic after public and private network address translation is performed.
  • the user address obtaining module 702 is also used to:
  • the user identity traceability information includes: the public network address, the private network address, and the port segment; or, the user identity traceability information includes: the public network address, the private network address, and the The port.
  • the public network address segment application module 701 is also used to:
  • the state of the public network address segment is idle, and the public network address segment application module 701 is further configured to:
  • the public network address segment application module 701 is also used to:
  • a fourth request sent by the control plane is received, where the fourth request is used to query the status of at least one public network address in the public network address segment; a fourth response is returned to the control plane; wherein, the first The fourth response includes: the status of at least one public network address in the public network address segment.
  • the status of all public network addresses in the public network address segment is in use, and the public network address segment application module 701 is further configured to: resend the first request to the control plane.
  • the public network address segment application module 701 is further configured to: send a fifth request to the control plane, where the fifth request is used to request an update The right to use the public network address segment.
  • FIG. 8 is a block diagram of another device for implementing carrier-level network address translation according to an embodiment of the disclosure.
  • an embodiment of the present disclosure provides another device for implementing carrier-level network address translation, including:
  • the public and private network address management module 801 is configured to receive a first request sent by the forwarding plane of the broadband access system with separate transfer and control, where the first request is used to apply for a public network address segment; and assign a public network address to the forwarding plane Segment information, returning a first response to the forwarding plane; wherein, the first response includes: assigned public network address segment information; according to the public network address segment information, a user is assigned a public network address, and the public network The address is sent to the forwarding plane; a private network address is assigned to the user, and the private network address is sent to the forwarding plane.
  • the public network address segment information includes: a public network address segment, or an address mask.
  • the public and private network address management module 801 is also used to:
  • the public and private network address management module 801 is also used to:
  • the user identity traceability information includes: the public network address, the private network address, and the port segment; or, the user identity traceability information includes: the public network address, the private network address, and the The port.
  • the public and private network address management module 801 is also used to:
  • a second response returned by the forwarding plane is received; where the second response includes: the status of the public network address segment.
  • the state of the public network address segment is idle, and the public and private network address management module 801 is further configured to:
  • a third request sent by the forwarding plane is received, where the third request is used to request to release the public network address segment; and to release the public network address segment.
  • the public and private network address management module 801 is also used to:
  • a fourth response returned by the forwarding plane is received; where the fourth response includes: the status of at least one public network address in the public network address segment.
  • the public and private network address management module 801 is further configured to: receive a fifth request sent by the forwarding plane, and the fifth request is used to request Update the right to use the public network address segment.
  • Fig. 9 is a block diagram of a system for implementing carrier-level network address translation according to an embodiment of the disclosure.
  • an embodiment of the present disclosure provides a system for implementing carrier-level network address translation, including: a forwarding plane 901 and a control plane 902;
  • the forwarding plane 901 and the control plane 902 are respectively set in different electronic devices;
  • the forwarding plane 901 is used for:
  • control plane 902 is used for:
  • Receiving the first request sent by the forwarding plane assign public network address segment information to the forwarding plane, and return a first response to the forwarding plane; assign a public network address to the user according to the public network address segment information, and transfer the The public network address is sent to the forwarding plane; the private network address is assigned to the user, and the private network address is sent to the forwarding plane.
  • the public network address segment information includes: a public network address segment, or an address mask.
  • the forwarding plane 901 is also used to:
  • the control plane 902 is also used for:
  • the forwarding plane 901 is also used to:
  • the control plane 902 is also used for:
  • Receiving the user identity traceability information sent by the forwarding plane forwarding the user identity traceability information to the verification, authorization and accounting system;
  • the user identity traceability information includes: the public network address, the private network address, and the port segment; or, the user identity traceability information includes: the public network address, the private network address, and the The port.
  • the forwarding plane 901 is also used to:
  • the control plane 902 is also used for:
  • the state of the public network address segment is idle, and the forwarding plane 901 is further configured to: send a third request to the control plane, and the third request is used to request the release of the public network.
  • Network address segment
  • the control plane 902 is further configured to: receive a third request sent by the forwarding plane.
  • the forwarding plane 901 is also used to:
  • a fourth request sent by the control plane is received, where the fourth request is used to query the status of at least one public network address in the public network address segment; a fourth response is returned to the control plane; wherein, the first The fourth response includes: the status of at least one public network address in the public network address segment;
  • the control plane 902 is also used for:
  • the forwarding plane 901 is further configured to: resend the first request to the control plane.
  • the forwarding plane 901 is further configured to: send a fifth request to the control plane, and the fifth request is used to request to update the The right to use the public network address segment;
  • the control plane 902 is further configured to: receive the fifth request sent by the forwarding plane.
  • control plane can be deployed in a centralized manner, responsible for centralized management of users and addresses; the forwarding plane can be deployed in a distributed manner, close to users, and handle the upstream and downstream forwarding of user service traffic nearby.
  • Such software may be distributed on a computer-readable medium, and the computer-readable medium may include a computer storage medium (or a non-transitory medium) and a communication medium (or a transitory medium).
  • the term computer storage medium includes volatile and non-volatile memory implemented in any method or technology for storing information (such as computer-readable instructions, data structures, program modules, or other data). Sexual, removable and non-removable media.
  • Computer storage media include but are not limited to RAM, ROM, EEPROM, flash memory or other memory technologies, CD-ROM, digital versatile disk (DVD) or other optical disk storage, magnetic cassettes, tapes, magnetic disk storage or other magnetic storage devices, or Any other medium used to store desired information and that can be accessed by a computer.
  • a communication medium usually contains computer-readable instructions, data structures, program modules, or other data in a modulated data signal such as a carrier wave or other transmission mechanism, and may include any information delivery medium. .
  • the method for implementing operator-level network address translation realizes a broadband access system with separation of transfer and control (such as virtual broadband remote access server (vBRAS, Virtual Broadband Remote Access Server), classified broadband network gateway (DBNG) , CGN in Disaggregated Broadband Network Gateway).
  • vBRAS virtual broadband remote access server
  • DBNG classified broadband network gateway
  • CGN Disaggregated Broadband Network Gateway

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

本公开实施例提供了一种实现运营商级网络地址转换的方法,该方法包括:向转控分离的宽带接入系统的控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译。本公开实施例提供了一种实现运营商级网络地址转换的装置和系统、电子设备、计算机可读存储介质。

Description

实现运营商级网络地址转换的方法、装置和系统 技术领域
本公开实施例涉及通信领域,特别涉及实现运营商级网络地址转换(CGN,Carrie Grade Network Address Translation)的方法、装置和系统、电子设备、计算机可读存储介质。
背景技术
有线宽带接入是家庭宽带、企业专线、公共无线保真(WiFi,Wireless Fidelity)等的基础接入业务,是除移动宽带之外的第二大主流宽带接入业务,随着交互式网络电视(IPTV,Internet Protocol Television)、高清视频等新兴接入业务的高速发展,有线宽带接入网络设备的转控面一体的传统模式越来越不适应云化网络架构、新业务的快速开发与交付等需求。基于软件定义网络(SDN,Software Defined Network)/网络功能虚拟化(NFV,Network Function Virtualization)的有线宽带接入网络设备的转控分离,已经成为业界的共识,并在一些国内国际市场获得商用部署,国际国内的相关标准组织也正在积极标准化,以实现接入设备的转发面和控制面的互联互通。
在互联网通信协议第四版(IPv4,Internet Protocol Version 4)公网地址不足的行业环境下,私网地址的应用是解决IPv4公网地址不足的一种有效的过渡解决方案,即电信级网络地址转换或运营商级网络地址转换(CGN,Carrie Grade Network Address Translation)。具体到运营商有线宽带接入网络设备中部署的CGN,随着有线宽带接入网络设备的转控分离,即转发面和控制面分离部署,尚未有有效解决方案实现转控分离情况下的CGN。
公开内容
本公开实施例提供一种实现运营商级网络地址转换的方法和装置、 电子设备、计算机可读介质。
第一方面,本公开实施例提供一种实现运营商级网络地址转换的方法,其包括:
向转控分离的宽带接入系统的控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;
接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;
根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译。
第二方面,本公开实施例提供一种实现运营商级网络地址转换的方法,其包括:
接收到转控分离的宽带接入系统的转发面发送的第一请求,所述第一请求用于申请公网地址段;为所述转发面分配公网地址段信息,向所述转发面返回第一响应;其中,所述第一响应包括:分配的公网地址段信息;
根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
第三方面,本公开实施例提供一种电子设备,其包括:
至少一个处理器;
存储器,其上存储有至少一个程序,当所述至少一个程序被所述至少一个处理器执行,使得所述至少一个处理器上述任意一种实现运营商级网络地址转换的方法。
第四方面,本公开实施例提供一种计算机可读存储介质,其上存储有计算机程序,所述程序被处理器执行时实现上述任意一种实现运营商级网络地址转换的方法。
第五方面,本公开实施例提供一种实现运营商级网络地址转换的系统,包括转发面和控制面;
其中,所述转发面和所述控制面分别设置在不同的电子设备中;
其中,所述转发面用于:
向控制面发送第一请求,所述第一请求用于向所述控制面申请公网 地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译;
其中,所述控制面用于:
接收到转发面发送的第一请求,为所述转发面分配公网地址段信息,向所述转发面返回第一响应;根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
本公开实施例提供的实现运营商级网络地址转换的方法,实现了转控分离的宽带接入系统(如虚拟宽带远程接入服务器(vBRAS,Virtual Broadband Remote Access Server)、分类宽带网络网关(DBNG,Disaggregated Broadband Network Gateway)中的转控分离)中CGN。
附图说明
附图用来提供对本公开实施例的进一步理解,并且构成说明书的一部分,与本公开的实施例一起用于解释本公开,并不构成对本公开的限制。通过参考附图对详细示例实施例进行描述,以上和其它特征和优点对本领域技术人员将变得更加显而易见,在附图中:
图1为本公开实施例提供的一种实现运营商级网络地址转换的方法的流程图;
图2为本公开实施例提供的另一种实现运营商级网络地址转换的方法的流程图;
图3为本公开实施例的示例1提供的实现运营商级网络地址转换的方法的流程图;
图4为本公开实施例的示例2提供的实现运营商级网络地址转换的方法的流程图;
图5为本公开实施例的示例3提供的实现运营商级网络地址转换的方法的流程图;
图6为本公开实施例的示例4提供的实现运营商级网络地址转换的 方法的流程图;
图7为本公开实施例提供的一种实现运营商级网络地址转换的装置的组成框图;
图8为本公开实施例提供的另一种实现运营商级网络地址转换的装置的组成框图;
图9为本公开实施例提供的一种实现运营商级网络地址转换的系统的组成框图。
具体实施方式
为使本领域的技术人员更好地理解本公开的技术方案,下面结合附图对本公开提供的实现运营商级网络地址转换的方法、装置和系统、电子设备、计算机可读存储介质进行详细描述。
在下文中将参考附图更充分地描述示例实施例,但是所述示例实施例可以以不同形式来体现且不应当被解释为限于本文阐述的实施例。反之,提供这些实施例的目的在于使本公开透彻和完整,并将使本领域技术人员充分理解本公开的范围。
在不冲突的情况下,本公开各实施例及实施例中的各特征可相互组合。
如本文所使用的,术语“和/或”包括至少一个相关列举条目的任何和所有组合。
本文所使用的术语仅用于描述特定实施例,且不意欲限制本公开。如本文所使用的,单数形式“一个”和“该”也意欲包括复数形式,除非上下文另外清楚指出。还将理解的是,当本说明书中使用术语“包括”和/或“由……制成”时,指定存在所述特征、整体、步骤、操作、元件和/或组件,但不排除存在或添加至少一个其它特征、整体、步骤、操作、元件、组件和/或其群组。
除非另外限定,否则本文所用的所有术语(包括技术和科学术语)的含义与本领域普通技术人员通常理解的含义相同。还将理解,诸如那些在常用字典中限定的那些术语应当被解释为具有与其在相关技术以及本公开的背景下的含义一致的含义,且将不解释为具有理想化或过度形式上的含 义,除非本文明确如此限定。
图1为本公开实施例的实现运营商级网络地址转换的方法的流程图。
第一方面,参照图1,本公开实施例提供一种实现运营商级网络地址转换的方法,应用于转控分离的宽带接入系统的转发面,转发面和控制面分别设置在不同的电子设备中,该方法包括:
步骤100、向转控分离的宽带接入系统的控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息。
在一些示例性实施例中,公网地址段信息可以是公网地址段,也可以是地址掩码。
在一些示例性实施例中,第一请求可以是公网地址段分配请求,第一响应可以是公网地址段分配响应。当然,第一请求和第一响应不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
步骤101、接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址。
在一些示例性实施例中,公网地址可以是公网IPv4地址,私网地址可以是IPv4或IPv6。
步骤102、根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译。
在一些示例性实施例中,公私网地址翻译可以是IPv4和公网IPv4地址之间的转换,即NAT44;也可以是IPv6和公网IPv4地址之间的转换,即NAT64。
在一些示例性实施例中,接收到上行业务流量后,将上行业务流量中源地址中的私网地址转换成公网地址;
接收到下行业务流量后,将下行业务流量中目的地址中的公网地址转换成私网地址。
在一些示例性实施例中,该方法还包括:
接收所述控制面为用户分配的静态端口段或为用户某个特定业务分配的动态端口;
根据所述端口段或端口转发进行公私网地址翻译后的业务流量。
在一些示例性实施例中,该方法还包括:
向所述控制面上传用户身份溯源信息;
或者,向第三方合法监听系统上传所述用户身份溯源信息;
其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
在一些示例性实施例中,该方法还包括:
接收到所述控制面发送的第二请求,所述第二请求用于查询所述公网地址段的状态;向所述控制面返回第二响应;其中,所述第二响应包括:所述公网地址段的状态。
在一些示例性实施例中,第二请求可以是公网地址段状态查询请求,第二响应可以是公网地址段状态查询响应。当然,第二请求和第二响应不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,所述公网地址段的状态为空闲,该方法还包括:向所述控制面发送第三请求,所述第三请求用于请求释放所述公网地址段。
在一些示例性实施例中,第三请求可以是公网地址段释放请求。当然,第三请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,该方法还包括:
接收到所述控制面发送的第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;向所述控制面返回第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
在一些示例性实施例中,第四请求可以是公网地址状态查询请求。当然,第四请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,所述公网地址段中所有公网地址的状态均为使用,该方法还包括:重新向所述控制面发送所述第一请求。
在一些示例性实施例中,所述公网地址段的使用权到期,该方法还包括:向所述控制面发送第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
在一些示例性实施例中,第五请求可以是公网地址段使用权更新请求。当然,第五请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
图2为本公开实施例的另一种实现运营商级网络地址转换的方法的流程图。
第二方面,参照图2,本公开实施例提供另一种实现运营商级网络地址转换的方法,应用于转控分离的宽带接入系统的控制面,控制面和转发面分别设置在不同的电子设备中,包括:
步骤200、接收到转控分离的宽带接入系统的转发面发送的第一请求,所述第一请求用于申请公网地址段;为所述转发面分配公网地址段信息,向所述转发面返回第一响应;其中,所述第一响应包括:分配的公网地址段信息。
在一些示例性实施例中,公网地址段信息可以是公网地址段,或者地址掩码。
在一些示例性实施例中,第一请求可以是公网地址段分配请求,第一响应可以是公网地址段分配响应。当然,第一请求和第一响应不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
步骤201、根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
在一些示例性实施例中,公网地址可以是公网IPv4地址,私网地址可以是IPv4或IPv6。
在一些示例性实施例中,该方法还包括:
为用户分配静态端口段或为用户某个特定业务分配动态端口,将所述端口段或端口发送给所述转发面。
在一些示例性实施例中,该方法还包括:
接收到所述转发面发送的用户身份溯源信息;
向验证、授权和记账系统转发所述用户身份溯源信息。
其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
在一些示例性实施例中,该方法还包括:
向所述转发面发送第二请求,所述第二请求用于查询所述公网地址段的状态;接收到所述转发面返回的第二响应;其中,所述第二响应包括:所述公网地址段的状态。
在一些示例性实施例中,第二请求可以是公网地址段状态查询请求,第二响应可以是公网地址段状态查询响应。当然,第二请求和第二响应不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,所述公网地址段的状态为空闲,该方法还包括:
接收到所述转发面发送的第三请求,所述第三请求用于请求释放所述公网地址段;释放所述公网地址段。
在一些示例性实施例中,第三请求可以是公网地址段释放请求。当然,第三请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,该方法还包括:
向所述转发面发送第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;接收到所述转发面返回的第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
在一些示例性实施例中,第四请求可以是公网地址状态查询请求。当然,第四请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,所述公网地址段的使用权到期,该方法还包括:接收到所述转发面发送的第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
在一些示例性实施例中,第五请求可以是公网地址段使用权更新请求。当然,第五请求不局限于上述给出的名称,只要是具有上述功能的名称均在本公开实施例的保护范围内,这里不再赘述。
在一些示例性实施例中,上述第一请求、第一响应、第二请求、第二响应、第三请求、第四请求、第五请求可以通过转发面与控制面之间的控制接口通道进行发送和接收。
第三方面,本公开实施例提供一种电子设备,其包括:
至少一个处理器;
存储器,其上存储有至少一个程序,当至少一个程序被至少一个处理器执行,使得至少一个处理器实现上述任意一种实现运营商级网络地址转换的方法。
其中,处理器为具有数据处理能力的器件,其包括但不限于中央处理器(CPU)等;存储器为具有数据存储能力的器件,其包括但不限于随机存取存储器(RAM,更具体如SDRAM、DDR等)、只读存储器(ROM)、带电可擦可编程只读存储器(EEPROM)、闪存(FLASH)。
在一些实施例中,处理器、存储器通过总线相互连接,进而与计算设备的其它组件连接。
第四方面,本公开实施例提供一种计算机可读存储介质,其上存储有计算机程序,程序被处理器执行时实现上述任意一种实现运营商级网络地址转换的方法。
下面通过几个具体例子详细说明本公开实施例的具体实现过程,所列举的例子仅仅是为了说明方便,不能用于限定本公开实施例的保护范围。
示例1
参照图3,该方法包括:
(1)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面通过转控面之间的控制接口通道向控制面发送公网地址段分配请求,公网地址段分配请求用于向控制面申请公网地址段(或地址掩码);
(2)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面为转发面分配公网地址段(或地址掩码),并通过转控面之间的控制接口通道下发包含公网地址段(或地址掩码)的公网地址段分配响应给转发面;
(3)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面为用户分配公网地址和端口段(port range)并通过转控面之间的控制接口通道下发给转发面,用户在特定的业务周期内静态使用上述公网地址和端口段,并进行业务接入;控制面为用户分配私网地址并通过转控面之间的控制接口通道下发给转发面;
(4)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面对用户的上下行业务流量进行公私网地址翻译和转发;
(5)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面向控制面上传用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口段);
(6)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面向验证、授权和记账(AAA,Authentication Authorization Accounting)系统转发(5)中接收到的用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口段);
(7)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面转控面之间的控制接口通道向转发面发送公网地址段状态查询请求(公网地址段的状态可以是使用或空闲);
(8)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面检测(7)中控制面查询的公网地址段的状态,并转控面之间的控制接口通道向控制面回复公网地址段状态查询响应;公网地址段状态查询响应包括公网地址段的状态,如公网地址段的状态为空闲,则同时发起公网地址段释放请求;
(9)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段中所有公网地址的状态均为使用,重新转控面之间的控制接口通道向控制面发起公网地址段分配请求,用于向控制面申请新的公网地址段;
(10)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段使用权限到期,转控面之间的控制接口通道向控制面发起公网地址段权限更新请求。
示例2
参照图4,该方法包括:
(1)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面通过转控面之间的控制接口通道向控制面发送公网地址段分配请求,公网地址段分配请求用于向控制面申请公网地址段(或地址掩码);
(2)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面为转发面分配公网地址段(或地址掩码),并通过转控面之间的控制接口通道下发包含公网地址段(或地址掩码)的公网地址段分配响应给转发面;
(3)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面为用户分配公网地址和端口段(port range)并通过转控面之间的控制接口通道下发给转发面,用户在特定的业务周期内静态使用上述公网地址和端口段,并进行业务接入;控制面为用户分配私网地址并通过转控面之间的控制接口通道下发给转发面;
(4)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面对用户的上下行业务流量进行公私网地址翻译和转发;
(5)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面向第三方合法监听系统上传用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口段);
(6)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面转控面之间的控制接口通道向转发面发送公网地址段状态查询请求(公网地址段的状态可以是使用或空闲);
(7)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面检测(7)中控制面查询的公网地址段的状态,并转控面之间的控制接口通道向控制面回复公网地址段状态查询响应;公网地址段状态查询响应包括公网地址段的状态,如公网地址段的状态为空闲,则同时发起公网地址段释放请求;
(8)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段中所有公网地址的状态均为使用,重新转控面之间的控制接口通道向控制面发起公网地址段分配请求,用于向控制面申请新的公网地址段;
(9)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面 已申请公网地址段使用权限到期,转控面之间的控制接口通道向控制面发起公网地址段权限更新请求。
示例3
参照图5,该方法包括:
(1)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面通过转控面之间的控制接口通道向控制面发送公网地址段分配请求,公网地址段分配请求用于向控制面申请公网地址段(或地址掩码);
(2)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面为转发面分配公网地址段(或地址掩码),并通过转控面之间的控制接口通道下发包含公网地址段(或地址掩码)的公网地址段分配响应给转发面;
(3)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面为用户分配公网地址和端口(port)并通过转控面之间的控制接口通道下发给转发面,用户动态使用上述公网地址和端口,进行业务接入;控制面为用户分配私网地址并通过转控面之间的控制接口通道下发给转发面;
(4)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面对用户的上下行业务流量进行公私网地址翻译和转发;
(5)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面向控制面上传用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口);
(6)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面向AAA系统转发(5)中接收到的用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口);
(7)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面转控面之间的控制接口通道向转发面发送公网地址段状态查询请求(公网地址段的状态可以是使用或空闲);
(8)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面检测(7)中控制面查询的公网地址段的状态,并转控面之间的控制接口通道向控制面回复公网地址段状态查询响应;公网地址段状态查询响应包括公网地址段的状态,如公网地址段的状态为空闲,则同时发起公网地址段释放请求;
(9)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段中所有公网地址的状态均为使用,重新转控面之间的控制接口通道向控制面发起公网地址段分配请求,用于向控制面申请新的公网地址段;
(10)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段使用权限到期,转控面之间的控制接口通道向控制面发起公网地址段权限更新请求。
示例4
参照图6,该方法包括:
(1)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面通过转控面之间的控制接口通道向控制面发送公网地址段分配请求,公网地址段分配请求用于向控制面申请公网地址段(或地址掩码);
(2)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面为转发面分配公网地址段(或地址掩码),并通过转控面之间的控制接口通道下发包含公网地址段(或地址掩码)的公网地址段分配响应给转发面;
(3)(用户流程)宽带接入系统(vBRAS或DBNG)的控制面为用户分配公网地址和端口(port)并通过转控面之间的控制接口通道下发给转发面,用户动态使用上述公网地址和端口,进行业务接入;控制面为用户分配私网地址并通过转控面之间的控制接口通道下发给转发面;
(4)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面对用户的上下行业务流量进行公私网地址翻译和转发;
(5)(用户流程)宽带接入系统(vBRAS或DBNG)的转发面向第三方合法监听系统上传用户身份溯源信息(用户身份溯源信息包括但不限于公网地址,私网地址,端口);
(6)(非用户流程)宽带接入系统(vBRAS或DBNG)的控制面转控面之间的控制接口通道向转发面发送公网地址段状态查询请求(公网地址段的状态可以是使用或空闲);
(7)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面检测(7)中控制面查询的公网地址段的状态,并转控面之间的控制接口通道向控制面回复公网地址段状态查询响应;公网地址段状态查询响应包 括公网地址段的状态,如公网地址段的状态为空闲,则同时发起公网地址段释放请求;
(8)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段中所有公网地址的状态均为使用,重新转控面之间的控制接口通道向控制面发起公网地址段分配请求,用于向控制面申请新的公网地址段;
(9)(非用户流程)宽带接入系统(vBRAS或DBNG)的转发面已申请公网地址段使用权限到期,转控面之间的控制接口通道向控制面发起公网地址段权限更新请求。
图7为本公开实施例的另一种实现运营商级网络地址转换的装置的组成框图。
第五方面,参照图7,本公开实施例提供一种实现运营商级网络地址转换的装置,包括:
公网地址段申请模块701,用于向转控分离的宽带接入系统的控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;
用户地址获取模块702,用于接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;
业务流量处理模块703,用于根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译。
在一些示例性实施例中,公网地址段信息包括:公网地址段,或者地址掩码。
在一些示例性实施例中,用户地址获取模块702还用于:
接收所述控制面为用户分配的静态端口段或为用户某个特定业务分配的动态端口;
业务流量处理模块703还用于:
根据所述端口段或端口转发进行公私网地址翻译后的业务流量。
在一些示例性实施例中,用户地址获取模块702还用于:
向所述控制面上传用户身份溯源信息;
或者,向第三方合法监听系统上传所述用户身份溯源信息;
其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
在一些示例性实施例中,公网地址段申请模块701还用于:
接收到所述控制面发送的第二请求,所述第二请求用于查询所述公网地址段的状态;向所述控制面返回第二响应;其中,所述第二响应包括:所述公网地址段的状态。
在一些示例性实施例中,所述公网地址段的状态为空闲,公网地址段申请模块701还用于:
向所述控制面发送第三请求,所述第三请求用于请求释放所述公网地址段。
在一些示例性实施例中,公网地址段申请模块701还用于:
接收到所述控制面发送的第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;向所述控制面返回第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
在一些示例性实施例中,所述公网地址段中所有公网地址的状态均为使用,公网地址段申请模块701还用于:重新向所述控制面发送所述第一请求。
在一些示例性实施例中,所述公网地址段的使用权到期,公网地址段申请模块701还用于:向所述控制面发送第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
上述实现运营商级网络地址转换的装置的具体实现过程与前述实施例实现运营商级网络地址转换的方法的具体实现过程相同,这里不再赘述。
图8为本公开实施例的另一种实现运营商级网络地址转换的装置的组成框图。
第六方面,参照图8,本公开实施例提供另一种实现运营商级网络地址转换的装置,包括:
公私网地址管理模块801,用于接收到转控分离的宽带接入系统的转发面发送的第一请求,所述第一请求用于申请公网地址段;为所述转发面 分配公网地址段信息,向所述转发面返回第一响应;其中,所述第一响应包括:分配的公网地址段信息;根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
在一些示例性实施例中,公网地址段信息包括:公网地址段,或者地址掩码。
在一些示例性实施例中,公私网地址管理模块801还用于:
为用户分配静态端口段或为用户某个特定业务分配动态端口,将所述端口段或端口发送给所述转发面。
在一些示例性实施例中,公私网地址管理模块801还用于:
接收到所述转发面发送的用户身份溯源信息;
向验证、授权和记账系统转发所述用户身份溯源信息。
其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
在一些示例性实施例中,公私网地址管理模块801还用于:
向所述转发面发送第二请求,所述第二请求用于查询所述公网地址段的状态;
接收到所述转发面返回的第二响应;其中,所述第二响应包括:所述公网地址段的状态。
在一些示例性实施例中,所述公网地址段的状态为空闲,公私网地址管理模块801还用于:
接收到所述转发面发送的第三请求,所述第三请求用于请求释放所述公网地址段;释放所述公网地址段。
在一些示例性实施例中,公私网地址管理模块801还用于:
向所述转发面发送第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;
接收到所述转发面返回的第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
在一些示例性实施例中,所述公网地址段的使用权到期,公私网地 址管理模块801还用于:接收到所述转发面发送的第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
上述实现运营商级网络地址转换的装置的具体实现过程与前述实施例实现运营商级网络地址转换的方法的具体实现过程相同,这里不再赘述。
图9为本公开实施例的一种实现运营商级网络地址转换的系统的组成框图。
第七方面,参照图9,本公开实施例提供一种实现运营商级网络地址转换的系统,包括:转发面901和控制面902;
其中,所述转发面901和所述控制面902分别设置在不同的电子设备中;
其中,所述转发面901用于:
向控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译;
其中,所述控制面902用于:
接收到转发面发送的第一请求,为所述转发面分配公网地址段信息,向所述转发面返回第一响应;根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
在一些示例性实施例中,公网地址段信息包括:公网地址段,或者地址掩码。
在一些示例性实施例中,所述转发面901还用于:
接收所述控制面为用户分配的静态端口段或为用户某个特定业务分配的动态端口;根据所述端口段或端口转发进行公私网地址翻译后的业务流量;
所述控制面902还用于:
为用户分配静态端口段或为用户某个特定业务分配动态端口,将所述端口段或端口发送给所述转发面。
在一些示例性实施例中,所述转发面901还用于:
向所述控制面上传用户身份溯源信息;
或者,向第三方合法监听系统上传所述用户身份溯源信息;
所述控制面902还用于:
接收到所述转发面发送的用户身份溯源信息;向验证、授权和记账系统转发所述用户身份溯源信息;
其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
在一些示例性实施例中,所述转发面901还用于:
接收到所述控制面发送的第二请求,所述第二请求用于查询所述公网地址段的状态;向所述控制面返回第二响应;其中,所述第二响应包括:所述公网地址段的状态;
所述控制面902还用于:
向所述转发面发送第二请求;接收到所述转发面返回的第二响应。
在一些示例性实施例中,所述公网地址段的状态为空闲,所述转发面901还用于:向所述控制面发送第三请求,所述第三请求用于请求释放所述公网地址段;
所述控制面902还用于:接收到所述转发面发送的第三请求。
在一些示例性实施例中,所述转发面901还用于:
接收到所述控制面发送的第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;向所述控制面返回第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态;
所述控制面902还用于:
向所述转发面发送第四请求;接收到所述转发面返回的第四响应。
在一些示例性实施例中,所述公网地址段中所有公网地址的状态均为使用,所述转发面901还用于:重新向所述控制面发送所述第一请求。
在一些示例性实施例中,所述公网地址段的使用权到期,所述转发面901还用于:向所述控制面发送第五请求,所述第五请求用于请求更新所述公网地址段的使用权;
所述控制面902还用于:接收到所述转发面发送的第五请求。
在本公开实施例中,控制面可以集中式部署,负责用户及地址的集中管理;转发面可以分布式部署,靠近用户,就近处理用户业务流量的上下行转发。
上述实现运营商级网络地址转换的系统的具体实现过程与前述实施例实现运营商级网络地址转换的方法的具体实现过程相同,这里不再赘述。
本领域普通技术人员可以理解,上文中所公开方法中的全部或某些步骤、系统、装置中的功能模块/单元可以被实施为软件、固件、硬件及其适当的组合。在硬件实施方式中,在以上描述中提及的功能模块/单元之间的划分不一定对应于物理组件的划分;例如,一个物理组件可以具有多个功能,或者一个功能或步骤可以由若干物理组件合作执行。某些物理组件或所有物理组件可以被实施为由处理器,如中央处理器、数字信号处理器或微处理器执行的软件,或者被实施为硬件,或者被实施为集成电路,如专用集成电路。这样的软件可以分布在计算机可读介质上,计算机可读介质可以包括计算机存储介质(或非暂时性介质)和通信介质(或暂时性介质)。如本领域普通技术人员公知的,术语计算机存储介质包括在用于存储信息(诸如计算机可读指令、数据结构、程序模块或其它数据)的任何方法或技术中实施的易失性和非易失性、可移除和不可移除介质。计算机存储介质包括但不限于RAM、ROM、EEPROM、闪存或其它存储器技术、CD-ROM、数字多功能盘(DVD)或其它光盘存储、磁盒、磁带、磁盘存储或其它磁存储装置、或者可以用于存储期望的信息并且可以被计算机访问的任何其它的介质。此外,本领域普通技术人员公知的是,通信介质通常包含计算机可读指令、数据结构、程序模块或者诸如载波或其它传输机制之类的调制数据信号中的其它数据,并且可包括任何信息递送介质。
本文已经公开了示例实施例,并且虽然采用了具体术语,但它们仅用于并仅应当被解释为一般说明性含义,并且不用于限制的目的。在一些实例中,对本领域技术人员显而易见的是,除非另外明确指出,否则可单独使用与特定实施例相结合描述的特征、特性和/或元素,或可与其它实施例相结合描述的特征、特性和/或元件组合使用。因此,本领域技术人员将理解,在不脱离由所附的权利要求阐明的本公开的范围的情况下,可进行 各种形式和细节上的改变。
工业实用性
本公开实施例提供的实现运营商级网络地址转换的方法,实现了转控分离的宽带接入系统(如虚拟宽带远程接入服务器(vBRAS,Virtual Broadband Remote Access Server)、分类宽带网络网关(DBNG,Disaggregated Broadband Network Gateway)中的转控分离)中CGN。

Claims (20)

  1. 一种实现运营商级网络地址转换的方法,其包括:
    向转控分离的宽带接入系统的控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;
    接收所述控制面根据所述公网地址段信息为用户分配的公网地址;接收所述控制面为用户分配的私网地址;
    根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译。
  2. 根据权利要求1所述的方法,其中,所述公网地址段信息包括:公网地址段,或者地址掩码。
  3. 根据权利要求1或2所述的方法,该方法还包括:
    接收所述控制面为用户分配的静态端口段或为用户某个特定业务分配的动态端口;
    根据所述端口段或端口转发进行公私网地址翻译后的业务流量。
  4. 根据权利要求3所述的方法,该方法还包括:
    向所述控制面上传用户身份溯源信息;
    或者,向第三方合法监听系统上传所述用户身份溯源信息;
    其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
  5. 根据权利要求1或2所述的方法,该方法还包括:
    接收到所述控制面发送的第二请求,所述第二请求用于查询所述公网地址段的状态;
    向所述控制面返回第二响应;其中,所述第二响应包括:所述公网地址段的状态。
  6. 根据权利要求5所述的方法,其中,所述公网地址段的状态为空闲,该方法还包括:
    向所述控制面发送第三请求,所述第三请求用于请求释放所述公网 地址段。
  7. 根据权利要求1或2所述的方法,该方法还包括:
    接收到所述控制面发送的第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;
    向所述控制面返回第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
  8. 根据权利要求1或2所述的方法,其中,所述公网地址段中所有公网地址的状态均为使用,该方法还包括:重新向所述控制面发送所述第一请求。
  9. 根据权利要求1或2所述的方法,其中,所述公网地址段的使用权到期,该方法还包括:向所述控制面发送第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
  10. 一种实现运营商级网络地址转换的方法,其包括:
    接收到转控分离的宽带接入系统的转发面发送的第一请求,所述第一请求用于申请公网地址段;为所述转发面分配公网地址段信息,向所述转发面返回第一响应;其中,所述第一响应包括:分配的公网地址段信息;
    根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
  11. 根据权利要求10所述的方法,其中,所述公网地址段信息包括:公网地址段,或者地址掩码。
  12. 根据权利要求10或11所述的方法,该方法还包括:
    为用户分配静态端口段或为用户某个特定业务分配动态端口,将所述端口段或端口发送给所述转发面。
  13. 根据权利要求12所述的方法,该方法还包括:
    接收到所述转发面发送的用户身份溯源信息;
    向验证、授权和记账系统转发所述用户身份溯源信息。
    其中,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口段;或者,所述用户身份溯源信息包括:所述公网地址、所述私网地址、所述端口。
  14. 根据权利要求10或11所述的方法,该方法还包括:
    向所述转发面发送第二请求,所述第二请求用于查询所述公网地址段的状态;
    接收到所述转发面返回的第二响应;其中,所述第二响应包括:所述公网地址段的状态。
  15. 根据权利要求14所述的方法,其中,所述公网地址段的状态为空闲,该方法还包括:
    接收到所述转发面发送的第三请求,所述第三请求用于请求释放所述公网地址段;释放所述公网地址段。
  16. 根据权利要求10或11所述的方法,该方法还包括:
    向所述转发面发送第四请求,所述第四请求用于查询所述公网地址段中至少一个公网地址的状态;
    接收到所述转发面返回的第四响应;其中,所述第四响应包括:所述公网地址段中至少一个公网地址的状态。
  17. 根据权利要求10或11所述的方法,其中,所述公网地址段的使用权到期,该方法还包括:接收到所述转发面发送的第五请求,所述第五请求用于请求更新所述公网地址段的使用权。
  18. 一种电子设备,其包括:
    至少一个处理器;
    存储装置,其上存储有至少一个程序,当所述至少一个程序被所述至少一个处理器执行,使得所述至少一个处理器实现根据权利要求1~17任意一项所述的实现运营商级网络地址转换的方法。
  19. 一种计算机可读存储介质,其上存储有计算机程序,所述程序被处理器执行时实现根据权利要求1~17任意一项所述的实现运营商级网络地址转换的方法。
  20. 一种实现运营商级网络地址转换的系统,包括转发面和控制面;
    其中,所述转发面和所述控制面分别设置在不同的电子设备中;
    其中,所述转发面用于:
    向控制面发送第一请求,所述第一请求用于向所述控制面申请公网地址段;接收所述控制面返回的第一响应;其中,所述第一响应包括:分配的公网地址段信息;接收所述控制面根据所述公网地址段为用户分配的 公网地址;接收所述控制面为用户分配的私网地址;根据所述公网地址和所述私网地址对接收到的用户的业务流量进行公私网地址翻译;
    其中,所述控制面用于:
    接收到转发面发送的第一请求,为所述转发面分配公网地址段信息,向所述转发面返回第一响应;根据所述公网地址段信息为用户分配公网地址,将所述公网地址发送给所述转发面;为用户分配私网地址,将所述私网地址发送给转发面。
PCT/CN2020/140280 2020-03-24 2020-12-28 实现运营商级网络地址转换的方法、装置和系统 WO2021190029A1 (zh)

Priority Applications (2)

Application Number Priority Date Filing Date Title
US17/914,424 US11863516B2 (en) 2020-03-24 2020-12-28 Method, apparatus and system for realizing carrier grade network address translation
EP20927639.3A EP4117251A4 (en) 2020-03-24 2020-12-28 METHOD, APPARATUS AND SYSTEM FOR PERFORMING OPERATOR-CLASS NETWORK ADDRESS TRANSLATION

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN202010216614.9A CN112511658B (zh) 2020-03-24 2020-03-24 实现运营商级网络地址转换的方法、装置和系统
CN202010216614.9 2020-03-24

Publications (1)

Publication Number Publication Date
WO2021190029A1 true WO2021190029A1 (zh) 2021-09-30

Family

ID=74953263

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2020/140280 WO2021190029A1 (zh) 2020-03-24 2020-12-28 实现运营商级网络地址转换的方法、装置和系统

Country Status (4)

Country Link
US (1) US11863516B2 (zh)
EP (1) EP4117251A4 (zh)
CN (1) CN112511658B (zh)
WO (1) WO2021190029A1 (zh)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114338599A (zh) * 2021-12-27 2022-04-12 中国电信股份有限公司 数据处理方法、装置及设备

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104040966A (zh) * 2012-11-09 2014-09-10 华为技术有限公司 处理报文的方法、转发面装置及网络设备
US20170195256A1 (en) * 2015-12-31 2017-07-06 Hughes Network Systems, Llc Method and system of providing carrier grade nat (cgn) to a subset of a subscriber base
CN107079060A (zh) * 2014-09-09 2017-08-18 思杰系统有限公司 用于运营商级nat优化的系统和方法
CN107896182A (zh) * 2017-11-30 2018-04-10 新华三技术有限公司 报文转发方法及装置
CN108259632A (zh) * 2017-05-24 2018-07-06 新华三技术有限公司 一种cgn实现方法及装置

Family Cites Families (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102957754A (zh) * 2011-08-22 2013-03-06 中国电信股份有限公司 运营级网络地址转换方法、设备及网络系统
US9258272B1 (en) * 2011-10-21 2016-02-09 Juniper Networks, Inc. Stateless deterministic network address translation
CN102594933B (zh) * 2011-12-20 2015-04-08 华为技术有限公司 一种公网地址分配的方法、装置及系统
CN102447630B (zh) * 2011-12-28 2018-02-27 中兴通讯股份有限公司 协议报文的传输方法、家庭网关及运营商级网络转换设备
US8891540B2 (en) * 2012-05-14 2014-11-18 Juniper Networks, Inc. Inline network address translation within a mobile gateway router
CN104219334B (zh) * 2013-05-30 2017-09-29 中国联合网络通信集团有限公司 用户溯源方法、装置及宽带接入服务器
CN106790732B (zh) * 2015-11-24 2020-04-10 中兴通讯股份有限公司 地址转换方法、装置及系统、网络标识控制方法及装置
US10469446B1 (en) * 2016-09-27 2019-11-05 Juniper Networks, Inc. Subscriber-aware network address translation
CN107547689B (zh) * 2017-09-20 2020-12-04 新华三技术有限公司 一种运营商级的网络地址转换cgn方法和装置
CN107682226B (zh) * 2017-10-19 2020-05-12 新华三技术有限公司 Nat板的监控方法及装置
US11159344B1 (en) * 2019-11-29 2021-10-26 Amazon Technologies, Inc. Connectivity of cloud edge locations to communications service provider networks
US10999242B1 (en) * 2020-08-18 2021-05-04 Juniper Networks, Inc. Carrier grade NAT subscriber management
US20220200952A1 (en) * 2020-12-21 2022-06-23 Oracle International Corporation Network address translation between networks

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104040966A (zh) * 2012-11-09 2014-09-10 华为技术有限公司 处理报文的方法、转发面装置及网络设备
CN107079060A (zh) * 2014-09-09 2017-08-18 思杰系统有限公司 用于运营商级nat优化的系统和方法
US20170195256A1 (en) * 2015-12-31 2017-07-06 Hughes Network Systems, Llc Method and system of providing carrier grade nat (cgn) to a subset of a subscriber base
CN108259632A (zh) * 2017-05-24 2018-07-06 新华三技术有限公司 一种cgn实现方法及装置
CN107896182A (zh) * 2017-11-30 2018-04-10 新华三技术有限公司 报文转发方法及装置

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP4117251A4 *

Also Published As

Publication number Publication date
CN112511658B (zh) 2024-04-30
CN112511658A (zh) 2021-03-16
EP4117251A4 (en) 2024-02-28
US11863516B2 (en) 2024-01-02
EP4117251A1 (en) 2023-01-11
US20230130514A1 (en) 2023-04-27

Similar Documents

Publication Publication Date Title
US11963242B2 (en) Communication method and apparatus
US10042665B2 (en) Customer premises equipment (CPE) with virtual machines for different service providers
EP3836577B1 (en) Session management method and device for user groups
JP7427082B2 (ja) サービスオフロード方法、装置、システム、電子機器、及びコンピュータプログラム
WO2017206572A1 (zh) 一种多dhcp服务器网络环境下的ip地址管理方法和dhcp客户机
WO2016179950A1 (zh) 互联网协议ip地址的分配方法及装置
US10873562B2 (en) IP address allocation system and method
WO2016197689A1 (zh) 处理报文的方法、装置和系统
WO2020038325A1 (zh) 网络接入方法、无线终端接入设备以及下接设备
WO2020042899A1 (zh) 一种重复地址检测方法及装置、计算机可读存储介质
US20200252239A1 (en) Managing network packet flows based on device information
US20200259783A1 (en) Method and apparatus for determining ethernet mac address
CN109714376B (zh) 一种固网报文的发送方法、装置及系统
JP2023520800A (ja) メディアストリーミングタスクの伝送を制御する方法、電子機器、ユーザー端末、ネットワークノード、システム及びコンピュータプログラム
WO2018161795A1 (zh) 一种路由优先级配置方法、设备以及控制器
WO2021190029A1 (zh) 实现运营商级网络地址转换的方法、装置和系统
WO2011095079A1 (zh) 一种ip地址分配方法、装置及系统
US20120300776A1 (en) Method for creating virtual link, communication network element, and ethernet network system
US20160028650A1 (en) Method and system for a user to create favorite server lists for multiple services
CN108989173B (zh) 一种报文传输的方法及装置
WO2016177185A1 (zh) 媒体访问控制mac地址的处理方法及装置
WO2015096734A1 (zh) 一种业务数据的下行传输方法及分组数据网关
WO2022068484A1 (zh) 一种业务链地址池切片处理方法、装置及系统
WO2018223304A1 (zh) 一种数据传输的方法和装置
US10862849B2 (en) Address resolution system

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 20927639

Country of ref document: EP

Kind code of ref document: A1

ENP Entry into the national phase

Ref document number: 2020927639

Country of ref document: EP

Effective date: 20221006

NENP Non-entry into the national phase

Ref country code: DE