CN102724127B - Method and system for port blocking - Google Patents

Method and system for port blocking Download PDF

Info

Publication number
CN102724127B
CN102724127B CN201210220222.5A CN201210220222A CN102724127B CN 102724127 B CN102724127 B CN 102724127B CN 201210220222 A CN201210220222 A CN 201210220222A CN 102724127 B CN102724127 B CN 102724127B
Authority
CN
China
Prior art keywords
priority
network equipment
stp
access device
network
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201210220222.5A
Other languages
Chinese (zh)
Other versions
CN102724127A (en
Inventor
子康
陈卫
冯海生
王辉
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN201210220222.5A priority Critical patent/CN102724127B/en
Publication of CN102724127A publication Critical patent/CN102724127A/en
Application granted granted Critical
Publication of CN102724127B publication Critical patent/CN102724127B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The embodiment of the invention discloses a method for port blocking. The method comprises the following step of: setting the equipment priority of the first network equipment in a ring network running on a spanning tree protocol (STP) to be the highest when first network equipment is virtual router redundancy protocol (VRRP) primary equipment, thereby enabling a blocking port of the STP ring network to be located on a link working between second network equipment and access equipment of VRRP backup equipment. The embodiment of the invention further provides a corresponding system. According to the technical scheme adopted by the embodiment of the invention, the state of a VRRP and the equipment priority of the STP are set to be in linkage, so that the blocked port can be enabled not to be located between the access equipment and the VRRP primary equipment, and traffic flows are caused not to flow through the link between the first network equipment and the second network equipment, thus the load of the link between the first network equipment and the second network equipment is reduced.

Description

The method and system of port blocked
Technical field
The present invention relates to communication technical field, be specifically related to a kind of method and system of port blocked.
Background technology
In enterprise network data center; through gateway device deploy Virtual Router Redundacy Protocol of being everlasting (Virtual Router Redundancy Protocol; VRRP) redundancy protecting is carried out; access device is linked on the active and standby gateway device of operation VRRP agreement in dual homed mode; active and standby gateway device forms a VRRP backup group; main gateway device is VRRP main equipment, and backup gateway equipment is VRRP alternate device, direct communication between active and standby gateway device.Connected port between active and standby gateway device and access device all belongs to a VLAN (Virtual Local Area Network; VLAN); thus make active and standby gateway device and access device belong in same Ethernet looped network; therefore need to start a kind of Ethernet looped network protection agreement and carry out brokenly ring; automatic calculating produces looped network port blocked, prevents double layer network loop.Such as, Spanning-Tree Protocol (Spanning Tree Protocol, STP) agreement can be started and carry out brokenly ring.
In prior art, STP according to the priority facility information of the STP of equipment each in looped network, can calculate the position of port blocked automatically.When port blocked is between access device and main gateway device, the situation that service traffics flow through access device-> backup gateway equipment-> main gateway device can be there is, add the burden of the link between active and standby gateway device.
Summary of the invention
The embodiment of the present invention provides a kind of method and system of port blocked, can solve because port blocked is between access device and main gateway device, cause service traffics to flow through access device-> backup gateway equipment-> main gateway device, add the burden of the link between active and standby gateway device.
On the one hand, the embodiment of the present invention provides a kind of method of port blocked, be applied to and comprise first network equipment, in the system of second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network equipment, establish a communications link between described access device and described second network equipment, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation Spanning-Tree Protocol STP, described method comprises:
When described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority; Described second network equipment is the alternate device in described VRRP backup group, and the priority facility that described second network equipment arranges the STP of described second network equipment in described looped network is the second priority; The priority facility that described access device arranges the STP of described access device in described looped network is the 3rd priority, described first priority higher than described 3rd priority and described first priority higher than described second priority;
When described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked on described second network equipment, and described first port blocked is positioned on the port that described second network equipment is connected with described access device;
When described second priority is higher than described 3rd priority, described access device produces the second port blocked on described access device, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
On the other hand, the embodiment of the present invention provides a kind of system of port blocked, comprise first network equipment, second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network equipment, establish a communications link between described access device and described second network equipment, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation Spanning-Tree Protocol STP,
Described first network equipment comprises the first processing unit;
Described second network equipment comprises the second processing unit and the first blocking unit;
Described access device comprises the 3rd processing unit and the second blocking unit;
Described first processing unit, for when described first network equipment is the main equipment in described VRRP backup group, the priority facility arranging the STP of described first network equipment in described looped network is the first priority;
Described second processing unit, for when described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is the second priority;
Described 3rd processing unit is the 3rd priority for arranging the priority facility of the STP of described access device in described looped network;
Wherein, described first priority higher than described 3rd priority and described first priority higher than described second priority;
Described first blocking unit, for when described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked, and described first port blocked is positioned on the port that described second network equipment is connected with described access device;
Described second blocking unit, for when described second priority is higher than described 3rd priority, described access device produces the second port blocked, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
The method and system of a kind of port blocked that the embodiment of the present invention provides, by when described first network equipment is the main equipment in described VRRP backup group, described first network equipment, described second network equipment and described access device arrange the priority facility in each comfortable STP looped network respectively, make the priority of described first network equipment the highest.STP is according to the setting of above-mentioned priority, produce the port blocked of described first looped network, this port blocked is by the link between described second network equipment and described access device, the path that service traffics are flowed through is access device and described first network equipment, and first network equipment described in second network equipment-> described in described access device-> can not be flowed through, thus decrease the burden of the link in the middle of described first network equipment and described second network equipment.
Accompanying drawing explanation
Fig. 1 is the networking schematic diagram of data center in one embodiment of the invention;
Fig. 2 is the method flow diagram of a kind of port blocked that one embodiment of the invention provides;
Fig. 3 is the schematic diagram of the system of a kind of port blocked that one embodiment of the invention provides;
Fig. 4 is the schematic diagram of the system of another port blocked that one embodiment of the invention provides;
Fig. 5 is the schematic diagram of the system of another port blocked that one embodiment of the invention provides.
Embodiment
Below by drawings and Examples, the technical scheme of the embodiment of the present invention is described in further detail.
As shown in Figure 1, the networking schematic diagram of data center in one embodiment of the invention, comprise first network equipment, the system of second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network devices communicating, establish a communications link between described access device and described second network devices communicating, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation STP.
Described first network equipment and described second network equipment are the equipment simultaneously supporting VRRP agreement and STP, such as, can be router, or Broadband Remote Access Server (Broadband Remote Access Server, BRAS) etc.
Described access device, being the equipment supporting STP, such as, can be router, switch etc.
It should be noted that, STP herein, comprise STP, RSTP (Rapid Spanning Tree Protocol, and Multiple Spanning Tree Protocol (Multiple Spanning Tree Protocol RSTP), MSTP), under normal circumstances, above-mentioned agreement can be referred to as STP.
Link between described first network equipment and described second network equipment can be ether binding (eth-trunk) link.
Between described access device and described first network equipment and the link of described second network equipment, it can be the ethernet link of 100,000,000 or gigabit.
From application scenarios, for example, described first network equipment and described second network equipment can be the gateway devices in data center, and described access device can be the customer access equipment in this data center.Described first network equipment comprises port one and port 2, and described second network equipment comprises port 3 and port 4, and described access device comprises port 5 and port 6.Port one to port 6 all belongs to a VLAN, such as, belongs to VLAN 10.To port 6, run STP at port one, thus make described first network equipment, described second network equipment and described access device all belong to same STP looped network.Described first network equipment configures VLAN interface (VLAN interface) 1, described first network equipment configures VLAN interface (VLAN interface) 2, bound by VLAN interface1 and VLAN 10, VLAN interface2 also binds with VLAN 10.Described first network equipment runs VRRP on VLAN interface1, described second network equipment runs VRRP on VLAN interface2, described first network equipment is VRRP main equipment, described second network equipment is VRRP alternate device, described first network equipment and described second network equipment composition VRRP backup group.
As shown in Figure 2, the embodiment of the present invention provides a kind of method of port blocked, is applied in networking scene as shown in Figure 1, comprises:
201, when described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority; Described second network equipment is the alternate device in described VRRP backup group, and the priority facility that described second network equipment arranges the STP of described second network equipment in described looped network is the second priority; The priority facility that described access device arranges the STP of described access device in described looped network is the 3rd priority, described first priority higher than described 3rd priority and described first priority higher than described second priority.
202, when described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked on described second network equipment, and described first port blocked is positioned on the port that described second network equipment is connected with described access device; When described second priority is higher than described 3rd priority, described access device produces the second port blocked on described access device, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
In STP, each network equipment on same STP looped network can transmit the priority facility information of respective STP each other, and STP can calculate the position of port blocked automatically according to following rule:
(1) port blocked is positioned on the minimum network equipment of the priority facility of STP;
(2) when the priority facility of the STP of two network equipments is identical, relatively system media access control (the Media Access Control of these two network equipments, MAC) address, port blocked is positioned on the maximum network equipment of system MAC Address.
When described first priority higher than described 3rd priority and described first priority higher than described second priority:
For example, when described 3rd priority is higher than described second priority, described second network equipment port 4 in FIG can produce port blocked; When described second priority is higher than described 3rd priority, described access device port 6 in FIG can produce port blocked.Further, when described 3rd priority equals described second priority, described second network equipment and described access device system MAC Address separately, the equipment that system MAC Address is large produces port blocked, if such as the system MAC Address of described second network equipment is greater than the system MAC Address of described access device, described second network equipment port 4 in FIG can produce port blocked.
For example, described first priority, described second priority and described 3rd priority are set, with make described first priority higher than described 3rd priority and described first priority higher than the method for described second priority, static configuration, the particular value adopting agreement to specify or the dynamic mode transmitted in advance can be comprised, be described respectively below:
(1) static configuration in advance: for example, before the main equipment that can become in described VRRP backup group at first network equipment, by order line or Simple Network Management Protocol (Simple Network Management Protocol, the mode such as SNMP), pre-configured described first priority and described second priority on described first network equipment, priority when the corresponding described first network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described first network equipment of described second priority is the alternate device in described VRRP backup group, described first priority is higher than described second priority, pre-configured described first priority and described second priority on described second network equipment, priority when the corresponding described second network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described second network equipment of described second priority is the alternate device in described VRRP backup group, pre-configured described 3rd priority on described access device, described 3rd priority is lower than described first priority.Such as, pre-configured described first priority is 50, and described second priority is 100, described 3rd priority be greater than 50 value, be such as 70, or 120, or 100.
Illustrate: in STP, numerical value is less shows that priority is higher.
(2) particular value adopting agreement to specify: STP agreement specifies that the value that limit priority is corresponding is 0, and the value that lowest priority is corresponding is 61440, and default value is 32768.For example, when described first network equipment is the main equipment in described VRRP backup group, it is 0 that described first network equipment arranges the priority of described first network equipment in described looped network; Described second network equipment is the alternate device in described VRRP backup group, and it is 61440 that described second network equipment arranges the priority of described second network equipment in described looped network; It is 32768 that described access device arranges the priority of described access device in described looped network.Again for example, when described first network equipment is the main equipment in described VRRP backup group, it is 0 that described first network equipment arranges the priority of described first network equipment in described looped network; Described second network equipment is the alternate device in described VRRP backup group, it is 32768 that described second network equipment arranges the priority of described second network equipment in described looped network, and it is 61440 that described access device arranges the priority of described access device in described looped network; Again for example, when described first network equipment is the main equipment in described VRRP backup group, it is 0 that described first network equipment arranges the priority of described first network equipment in described looped network; Described second network equipment is the alternate device in described VRRP backup group, it is 32768 that described second network equipment arranges the priority of described second network equipment in described looped network, and it is 32768 that described access device arranges the priority of described access device in described looped network.
(3) dynamically transmit: such as, when described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority, such as, be 50.Described first network equipment sends expansion STP BPDUs respectively to described second network equipment and described access device, carries described first priority and described second priority in described expansion STP BPDUs, is 100 citings below with described second priority:
After described second network equipment receives described STP BPDUs, determine it self is the alternate device in described VRRP backup group, arrange from the priority facility of STP in described looped network be described second priority, namely 100.
After described access device receives described STP BPDUs, arranging from the priority facility of the STP in described looped network is described 3rd priority, and described 3rd priority is lower than described first priority, and such as described 3rd priority can be set to 70, or 120, or 100.
Described expansion STP BPDUs, illustrate with MSTP agreement, bridge protocol data unit (the Bridge Protocol Data Unit of MSTP agreement can be expanded, BPDU), Multiple Spanning Tree Instance configuration messages (Multiple Spanning Tree Instance Configuration Messages in described BPDU, MSTI Configuration Messages) new field after field, in described new field, increase the information of described second priority.
The method of a kind of port blocked that the embodiment of the present invention provides, by when described first network equipment is the main equipment in described VRRP backup group, described first network equipment, described second network equipment and described access device arrange the priority facility in each comfortable STP looped network respectively, make the priority of described first network equipment the highest.STP is according to the setting of above-mentioned priority, produce the port blocked of described first looped network, this port blocked is by the link between described second network equipment and described access device, the path that service traffics are flowed through is described access device and described first network equipment, and first network equipment described in second network equipment-> described in described access device-> can not be flowed through, thus decrease the burden of the link in the middle of described first network equipment and described second network equipment.
Please refer to Fig. 3, one embodiment of the present of invention provide a kind of system of port blocked, comprise: first network equipment, second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network equipment, establish a communications link between described access device and described second network equipment, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation STP.
About described systematic difference scene, please refer to the description of the application scenarios in the embodiment of the method in Fig. 1, do not repeat them here.
Described first network equipment comprises the first processing unit 301, and described second network equipment comprises the second processing unit 302 and the first blocking unit 305, and described access device comprises the 3rd processing unit 303 and the second blocking unit 307.
Described first processing unit 301, for when described first network equipment is the main equipment in described VRRP backup group, the priority facility arranging the STP of described first network equipment in described looped network is the first priority.
Described second processing unit 302, for when described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is the second priority.
Described 3rd processing unit 303 is the 3rd priority for arranging the priority facility of the STP of described access device in described looped network.
Wherein, described first priority higher than described 3rd priority and described first priority higher than described second priority.
For example, described first priority is the limit priority specified in described STP, described second priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP, and described 3rd priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP.
Described first blocking unit 305, for when described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked, and described first port blocked is positioned on the port that described second network equipment is connected with described access device.
Described second blocking unit 307, for when described second priority is higher than described 3rd priority, described access device produces the second port blocked, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
For example, as shown in Figure 4,
Alternatively, first network equipment can also comprise:
First dispensing unit 308, for described first priority pre-configured on described first network equipment and described second priority, priority when the corresponding described first network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described first network equipment of described second priority is the alternate device in described VRRP backup group, described first priority is higher than described second priority.
Described second network equipment can also comprise:
Second dispensing unit 309, for described first priority pre-configured on described second network equipment and described second priority, priority when the corresponding described second network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described second network equipment of described second priority is the alternate device in described VRRP backup group.
Described access device can also comprise:
3rd dispensing unit 310, for described 3rd priority pre-configured on described access device, described 3rd priority is lower than described first priority.
For example, as shown in Figure 5,
Alternatively, described first network equipment also comprises:
Transmitting element 311, for when described first network equipment is the main equipment in described VRRP backup group, described first network equipment sends expansion STP BPDUs respectively to described second network equipment and described access device, carry described first priority and described second priority in described expansion STP BPDUs, described first priority is higher than described second priority.
Correspondingly, described second processing unit 302 is also for after described second network equipment receives described expansion STP BPDUs, determine that described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is described second priority.
Correspondingly, described 3rd processing unit is also 303 for after receiving described expansion STP BPDUs at described access device, the priority facility arranging the STP of described access device in described looped network is described 3rd priority, and described 3rd priority is lower than described first priority.
The system of a kind of port blocked that the embodiment of the present invention provides, by when described first network equipment is the main equipment in described VRRP backup group, described first network equipment, described second network equipment and described access device arrange the priority facility in each comfortable STP looped network respectively, make the priority of described first network equipment the highest.STP is according to the setting of above-mentioned priority, produce the port blocked of described first looped network, this port blocked is by the link between described second network equipment and described access device, the path that service traffics are flowed through is described access device and described first network equipment, and first network equipment described in second network equipment-> described in described access device-> can not be flowed through, thus decrease the burden of the link in the middle of described first network equipment and described second network equipment.
If the Ethernet looped network protection agreement of loop-net operation is G.8032 agreement; when described second network equipment Inspection is when as alternate device in described VRRP backup group; the port 4 arranged in Fig. 1 is the port blocked G.8032 in agreement; the link making service traffics can not flow through described first network equipment and described second network equipment room can be arrived equally, thus decrease the object of the burden of the link of described first network equipment and described second network equipment room.
For example, Fig. 3 to and embodiment illustrated in fig. 5 in unit can merge into one or more unit.
Again for example, described unit or subelement all realize by hardware.One of ordinary skill in the art will appreciate that all or part of step in the various methods of above-described embodiment is that the hardware that can carry out instruction relevant by program has come, this program can be stored in a computer-readable recording medium, for example, storage medium can comprise: read-only memory, read memory, disk or CD etc. immediately.
Above the method and system of the port blocked that the embodiment of the present invention provides is described in detail, but the explanation of above embodiment just understands method of the present invention and core concept thereof for helping, and should not be construed as limitation of the present invention.Those skilled in the art are in the technical scope that the present invention discloses, and the change that can expect easily or replacement, all should be encompassed within protection scope of the present invention.

Claims (9)

1. the method for a port blocked, it is characterized in that, be applied to and comprise first network equipment, in the system of second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network equipment, establish a communications link between described access device and described second network equipment, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation Spanning-Tree Protocol STP, described method comprises:
When described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority; Described second network equipment is the alternate device in described VRRP backup group, and the priority facility that described second network equipment arranges the STP of described second network equipment in described looped network is the second priority; The priority facility that described access device arranges the STP of described access device in described looped network is the 3rd priority, described first priority higher than described 3rd priority and described first priority higher than described second priority;
When described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked on described second network equipment, and described first port blocked is positioned on the port that described second network equipment is connected with described access device;
When described second priority is higher than described 3rd priority, described access device produces the second port blocked on described access device, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
2. method according to claim 1, is characterized in that, before when described first network equipment is the main equipment in described VRRP backup group, described method also comprises:
Pre-configured described first priority and described second priority on described first network equipment, priority when the corresponding described first network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described first network equipment of described second priority is the alternate device in described VRRP backup group;
Pre-configured described first priority and described second priority on described second network equipment, priority when the corresponding described second network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described second network equipment of described second priority is the alternate device in described VRRP backup group;
Pre-configured described 3rd priority on described access device.
3. method according to claim 1, it is characterized in that, described when described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority; Described second network equipment is the alternate device in described VRRP backup group, and the priority facility that described second network equipment arranges the STP of described second network equipment in described looped network is the second priority; The priority facility that described access device arranges the STP of described access device in described looped network is the 3rd priority, described first priority higher than described 3rd priority and described first priority higher than described second priority, specifically comprise:
When described first network equipment is the main equipment in described VRRP backup group, the priority facility that described first network equipment arranges the STP of described first network equipment in described looped network is the first priority;
Described first network equipment sends expansion STP BPDUs respectively to described second network equipment and described access device, carries described first priority and described second priority in described expansion STP BPDUs;
After described second network equipment receives described expansion STP BPDUs, determine that described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is described second priority;
After described access device receives described expansion STP BPDUs, the priority facility arranging the STP of described access device in described looped network is described 3rd priority.
4. method according to claim 1, is characterized in that, described first priority higher than described 3rd priority and described first priority higher than described second priority, specifically comprise:
Described first priority is the limit priority specified in described STP, described second priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP, and described 3rd priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP.
5. method according to claim 3, is characterized in that, when described STP is Multiple Spanning Tree Protocol MSTP, carries the mode of described second priority, comprising in described expansion STP BPDUs:
New field after the Multiple Spanning Tree Instance configuration messages field MSTI of the bridge protocol data unit BPDU of MSTP, carries described second priority by described new field.
6. the system of a port blocked, it is characterized in that, comprise first network equipment, second network equipment and access device, establish a communications link between described first network equipment and described second network equipment, described first network equipment and described second network devices enable Virtual Router Redundacy Protocol VRRP, thus make described first network equipment and described second network equipment composition VRRP backup group, establish a communications link between described access device and described first network equipment, establish a communications link between described access device and described second network equipment, described first network equipment, described second network equipment and described access device belong to same looped network, described loop-net operation Spanning-Tree Protocol STP,
Described first network equipment comprises the first processing unit;
Described second network equipment comprises the second processing unit and the first blocking unit;
Described access device comprises the 3rd processing unit and the second blocking unit;
Described first processing unit, for when described first network equipment is the main equipment in described VRRP backup group, the priority facility arranging the STP of described first network equipment in described looped network is the first priority;
Described second processing unit, for when described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is the second priority;
Described 3rd processing unit is the 3rd priority for arranging the priority facility of the STP of described access device in described looped network;
Wherein, described first priority higher than described 3rd priority and described first priority higher than described second priority;
Described first blocking unit, for when described 3rd priority is higher than described second priority, described second network equipment produces the first port blocked, and described first port blocked is positioned on the port that described second network equipment is connected with described access device;
Described second blocking unit, for when described second priority is higher than described 3rd priority, described access device produces the second port blocked, and described second port blocked is positioned on the port that described access device is connected with described second network equipment.
7. system according to claim 6, is characterized in that,
Described first network equipment also comprises:
First dispensing unit, for described first priority pre-configured on described first network equipment and described second priority, priority when the corresponding described first network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described first network equipment of described second priority is the alternate device in described VRRP backup group;
Described second network equipment also comprises:
Second dispensing unit, for described first priority pre-configured on described second network equipment and described second priority, priority when the corresponding described second network equipment of described first priority is the main equipment in described VRRP backup group, priority when the corresponding described second network equipment of described second priority is the alternate device in described VRRP backup group;
Described access device also comprises:
3rd dispensing unit, for described 3rd priority pre-configured on described access device.
8. system according to claim 6, is characterized in that,
Described first network equipment also comprises:
Transmitting element, for when described first network equipment is the main equipment in described VRRP backup group, described first network equipment sends expansion STP BPDUs respectively to described second network equipment and described access device, carries described first priority and described second priority in described expansion STP BPDUs;
Correspondingly, described second processing unit is also for after described second network equipment receives described expansion STP BPDUs, determine that described second network equipment is the alternate device in described VRRP backup group, the priority facility arranging the STP of described second network equipment in described looped network is described second priority;
Correspondingly, described 3rd processing unit is also for after receiving described expansion STP BPDUs at described access device, and the priority facility arranging the STP of described access device in described looped network is described 3rd priority.
9. system according to claim 6, is characterized in that, described first priority higher than described 3rd priority and described first priority higher than described second priority, specifically comprise:
Described first priority is the limit priority specified in described STP, described second priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP, and described 3rd priority is the lowest priority that specifies in described STP or the default priorities for specifying in described STP.
CN201210220222.5A 2012-06-29 2012-06-29 Method and system for port blocking Active CN102724127B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210220222.5A CN102724127B (en) 2012-06-29 2012-06-29 Method and system for port blocking

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210220222.5A CN102724127B (en) 2012-06-29 2012-06-29 Method and system for port blocking

Publications (2)

Publication Number Publication Date
CN102724127A CN102724127A (en) 2012-10-10
CN102724127B true CN102724127B (en) 2015-01-21

Family

ID=46949792

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210220222.5A Active CN102724127B (en) 2012-06-29 2012-06-29 Method and system for port blocking

Country Status (1)

Country Link
CN (1) CN102724127B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106604253B (en) * 2015-10-15 2020-08-11 福建省华渔教育科技有限公司 Wireless networking method and system

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7209435B1 (en) * 2002-04-16 2007-04-24 Foundry Networks, Inc. System and method for providing network route redundancy across Layer 2 devices
CN101051951A (en) * 2006-05-29 2007-10-10 华为技术有限公司 Method and device for securing server connection reliability
CN101557343A (en) * 2009-04-03 2009-10-14 联想天工网络(深圳)有限公司 Detecting and protecting method of double-layer loop in VRRP topological network
CN101588304A (en) * 2009-06-30 2009-11-25 杭州华三通信技术有限公司 Implementation method of VRRP
US7760668B1 (en) * 2006-06-20 2010-07-20 Force 10 Networks, Inc. Self-reconfiguring spanning tree

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7209435B1 (en) * 2002-04-16 2007-04-24 Foundry Networks, Inc. System and method for providing network route redundancy across Layer 2 devices
CN101051951A (en) * 2006-05-29 2007-10-10 华为技术有限公司 Method and device for securing server connection reliability
US7760668B1 (en) * 2006-06-20 2010-07-20 Force 10 Networks, Inc. Self-reconfiguring spanning tree
CN101557343A (en) * 2009-04-03 2009-10-14 联想天工网络(深圳)有限公司 Detecting and protecting method of double-layer loop in VRRP topological network
CN101588304A (en) * 2009-06-30 2009-11-25 杭州华三通信技术有限公司 Implementation method of VRRP

Also Published As

Publication number Publication date
CN102724127A (en) 2012-10-10

Similar Documents

Publication Publication Date Title
RU2530338C2 (en) Prepared connection based on state of communication lines of providers (plsb) with routed redundancy
EP1974485B1 (en) Vpls failure protection in ring networks
US8854982B2 (en) Method and apparatus for managing the interconnection between network domains
US9655232B2 (en) Spanning tree protocol (STP) optimization techniques
US9088484B1 (en) Method and apparatus for preventing loops in a network by controlling broadcasts
US8737198B1 (en) Method and apparatus for controlling a set of ethernet nodes interconnected to form one or more closed loops
EP2842278B1 (en) Three stage folded clos optimization for 802.1aq
US20120113835A1 (en) Inter-network carrier ethernet service protection
KR20100114025A (en) Evolution of ethernet networks
CN105743734A (en) Virtual machine mirror image flow transmission control method and virtual machine mirror image flow transmission control device
CN111935013B (en) Flow forwarding control method and device, flow forwarding method and chip, and switch
US20170118105A1 (en) Connectivity fault management in a communication network
CN102223312B (en) Flow control method and equipment based on link status
CN104144143B (en) Method and control device that network is set up
US20170063617A1 (en) Seamless migration from rapid spanning tree protocol to ethernet ring protection switching protocol
JP2016103724A (en) Relay system and switch device
CN102437967B (en) Method and device for forwarding messages
CN101631060B (en) Method and device for managing edge port
EP2677702A2 (en) A method and apparatus for load balance
JP4467500B2 (en) Network relay device
US20150036508A1 (en) Method and Apparatus For Gateway Selection In Multilevel SPB Network
CN102724127B (en) Method and system for port blocking
EP3068082B1 (en) Fault processing method and apparatus for edge route bridge in trill network
US9923731B1 (en) Seamless migration from multiple spanning tree protocol to ethernet ring protection switching protocol
CN111786805B (en) Configuration method, equipment and storage medium of private line service

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant