CN103634217A - Method for issuing route information, method and device for transmitting massage - Google Patents

Method for issuing route information, method and device for transmitting massage Download PDF

Info

Publication number
CN103634217A
CN103634217A CN201310567457.6A CN201310567457A CN103634217A CN 103634217 A CN103634217 A CN 103634217A CN 201310567457 A CN201310567457 A CN 201310567457A CN 103634217 A CN103634217 A CN 103634217A
Authority
CN
China
Prior art keywords
vpn
route
sign
vxlan tunnel
address
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201310567457.6A
Other languages
Chinese (zh)
Other versions
CN103634217B (en
Inventor
庄顺万
白涛
闫长江
胡杰晖
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN201310567457.6A priority Critical patent/CN103634217B/en
Publication of CN103634217A publication Critical patent/CN103634217A/en
Priority to PCT/CN2014/086350 priority patent/WO2015070667A1/en
Application granted granted Critical
Publication of CN103634217B publication Critical patent/CN103634217B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4633Interconnection of networks using encapsulation techniques, e.g. tunneling
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4641Virtual LANs, VLANs, e.g. virtual private networks [VPN]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • H04L45/02Topology update or discovery
    • H04L45/04Interdomain routing, e.g. hierarchical routing

Abstract

The invention discloses a method for issuing route information, a method and a device for transmitting a message. The method for issuing the route information comprises the steps of receiving route issuing information issued by a first PE (Provider Edge) by a VPN (Virtual Private Network) server, and selecting a second PE which is used as the VPN mark of a destination end by the VPN; selecting a second VPN mark which is matched with a first VPN mark from VPN marks of the second PE by the VPN server according to the first VPN mark, adding the second VPN mark which is used as the VPN mark of the destination end in VPN topological connection information, and obtaining modified route issuing information; determining VXLAN (Virtual Extension Local Area Network) tunnel encapsulation information that the message is transmitted to the first PE by the second PE by the VPN server according to the first VPN mark and the second VPN mark; sending the VXLAN tunnel encapsulation information and the modified route issuing information to the second PE by the VPN server.

Description

The method of routing iinformation issue, method and the device of message transmission
Technical field
The present invention relates to field of computer technology, be specifically related to a kind of method of routing iinformation issue and method and the device of device and a kind of message transmission.
Background technology
Existing Virtual Private Network (Virtual Private Network is called for short VPN) need to be used multi-label protocol exchange (Multi Protocol Label Switch is called for short MPLS) technology conventionally; and VPN belongs to remote access technology; to utilize public network link to set up private network; conventionally can be by different autonomous system (Autonomous System is called for short AS); because VPN utilizes encryption technology to encapsulate out a data Communication tunnel on public network, security performance in by VPN message transmission process is improved.
But existing VPN is when carrying out route issue, publishing side can be transferred to the router being connected with described publishing side by the routing iinformation of described publishing side, described router is transmitted to described routing iinformation the next router being connected with described router again, and then described routing iinformation is forwarded successively, and then complete the issue of described route, cause route issue of the prior art need to carry out one by one routing forwarding, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, cause prior art when carrying out routing forwarding, the number of times of routing forwarding is more, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, make the time of route issue long, the efficiency of route issue is also low.
Summary of the invention
The embodiment of the present application is by the method for a kind of routing iinformation issue and method and the device of device and a kind of message transmission are provided, long for solving time of the route issue that prior art exists, the inefficient technical problem that route is issued.
According to a first aspect of the invention, a kind of method of routing iinformation issue is provided, described method comprises: the route that virtual private network server receives from first service provider edge PE releases news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE; Described vpn server is selected the 2nd PE as destination; Described vpn server is according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news; And described vpn server is according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE; Described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
In conjunction with first aspect, in the possible implementation of the first, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
In conjunction with first aspect or the possible implementation of the first, in the possible implementation of the second, described vpn server is according to a described VPN sign, select the two VPN sign marking matched with a described VPN, specifically comprise: described vpn server is according to a described VPN sign, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
In conjunction with first aspect or possible implementation or the possible implementation of the second of the first, in the third possible implementation, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
According to second aspect present invention, a kind of method of message transmission is provided, described method comprises: a PE receives the message sending from source CE, and the message sending according to described source CE, the target P E that determines described message transmissions is the 2nd PE; A described PE is according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, and from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the route of described the 2nd PE releases news and by vpn server, sends to a described PE with VXLAN tunnel encapsulation information; A described PE releases news and described VXLAN tunnel encapsulation information according to described route, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE; A described PE passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
In conjunction with second aspect, in the possible implementation of the first, a described PE releases news and described VXLAN tunnel encapsulation information according to described route, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE, specifically comprise:
A VPN sign of a described PE described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine a described PE by message transmissions the VPN route forwarding table to described the 2nd PE;
A described PE, according to the VXLAN tunnel encapsulation information corresponding with described object CE, determines the IP address of a described PE and the IP address of described the 2nd PE;
A described PE is according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE.
According to third aspect present invention, a kind of device of routing iinformation issue is provided, described device comprises:
Receiving element, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Selected cell, for selecting the 2nd PE as destination;
Route is revised unit, for receiving the described route of described receiving element transmission, release news and receive described the 2nd PE that described selected cell sends, according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news;
Tunnel selected cell, for receiving described route, revise a described VPN sign and described the 2nd VPN sign that unit sends, according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitting element, for receiving described route, revise amended described route that unit sends and release news and receive the described VXLAN tunnel encapsulation information that described tunnel selected cell sends, described VXLAN tunnel encapsulation information and amended described route are released news and send to described the 2nd PE.
In conjunction with the third aspect, in the possible implementation of the first, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
In conjunction with the third aspect or the possible implementation of the first, in the possible implementation of the second, described route is revised unit and is comprised VPN sign determining unit, for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
In conjunction with the third aspect or possible implementation or the possible implementation of the second of the first, in the third possible implementation, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
According to a forth aspect of the invention, provide a kind of vpn server, described server comprises:
Receiver, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Processor, for selecting the 2nd PE as destination, and according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news; And according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitter, for releasing news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
In conjunction with fourth aspect, in the possible implementation of the first, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
In conjunction with fourth aspect or the possible implementation of the first, in the possible implementation of the second, described processor, specifically for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
In conjunction with fourth aspect or possible implementation or the possible implementation of the second of the first, in the third possible implementation, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
According to fifth aspect present invention, a kind of device of message transmission is provided, described device comprises:
Receiving element, for receiving the message sending from source CE,
PE determining unit, the message sending for receiving described receiving element, according to described message, the object PE that determines described message transmissions is the 2nd PE;
Route Selection unit, the message sending for receiving described receiving element, according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, wherein, the route of described the 2nd PE releases news and sends to described Route Selection unit by vpn server;
Tunnel information acquiring unit, described the 2nd PE sending for receiving described PE determining unit, from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the VXLAN tunnel encapsulation information of described the 2nd PE sends to described tunnel selected cell by vpn server;
Tunnel determining unit, for receiving the route corresponding with described object CE of described Route Selection unit transmission, release news and receive the described VXLAN tunnel encapsulation information that described tunnel information acquiring unit sends, according to the route corresponding with described object CE, release news and described VXLAN tunnel encapsulation information, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE;
Message transmissions unit, the described VXLAN tunnel sending for receiving described tunnel determining unit, passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
In conjunction with the 5th aspect, in the possible implementation of the first, described tunnel determining unit, specifically for a VPN sign of the described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine that a described PE gives message transmissions the VPN route forwarding table of described the 2nd PE, again according to the VXLAN tunnel encapsulation information corresponding with described object CE, determine the IP address of a described PE and the IP address of described the 2nd PE, and according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine that a described PE gives message transmissions in the VXLAN tunnel of described the 2nd PE.
Beneficial effect of the present invention is as follows:
In the embodiment of the present invention, present techniques scheme is that the route that vpn server receives from a PE issue releases news, and select described vpn server to select to carry out with a described PE the 2nd PE of message transmissions, again according to a described VPN sign, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtaining amended described route releases news, described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE, so, the route of a described PE is released news and only by described vpn server, just can directly be transferred to described the 2nd PE as object PE, thereby realized the route issue of a described PE, and then make to have shortened route issuing time, improved the efficiency of route issue.
Accompanying drawing explanation
Fig. 1 is the method flow diagram of routing iinformation issue in the embodiment of the present invention;
Fig. 2 is the first structure chart that in the embodiment of the present invention, a PE carries out route issue;
Fig. 3 is that in the embodiment of the present invention, a PE carries out by the second structure chart of issuing;
Fig. 4 is the flow chart that in the embodiment of the present invention, a PE carries out route issue;
Fig. 5 is the method flow diagram of message transmission in the embodiment of the present invention;
Fig. 6 is the structure chart of the device of routing iinformation issue in the embodiment of the present invention;
Fig. 7 is the structure chart of vpn server in the embodiment of the present invention;
Fig. 8 is the structure chart of the device of message transmission in the embodiment of the present invention.
Embodiment
For existing route publishing policy, exist route issuing time long, the low technical problem of working effect of route issue, in the technical scheme that the embodiment of the present invention proposes, first the route that vpn server receives from a PE issue releases news, and select described vpn server to select to carry out with a described PE second service provider edge PE of message transmissions, again according to a described VPN sign, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtaining amended described route releases news, described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE, so, the route of a described PE is released news and only by described vpn server, just can directly be transferred to described the 2nd PE as object PE, thereby realized the route issue of a described PE, and then make to have shortened route issuing time, improved the efficiency of route issue.
Below in conjunction with each accompanying drawing, embodiment of the present invention technical scheme main realized to principle, embodiment and the beneficial effect that should be able to reach is at length set forth.
Embodiment mono-:
The embodiment of the present invention one has proposed a kind of method of routing iinformation issue, and as shown in Figure 1, the concrete processing procedure of the method is as follows:
Step 101: the route that virtual private network server receives from first service provider edge PE issue releases news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information only comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Step 102: described vpn server is selected the 2nd PE as destination;
Step 103: described vpn server is according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news;
Step 104: determine that described the 2nd PE gives message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information of a described PE;
Step 105: described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
Wherein, in step 101, the route that Virtual Private Network (Virtual Private Network is called for short VPN) server receives from first service provider edge (Provider Edge is called for short PE) issue releases news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information only comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE.
Wherein, described vpn server is connected with a plurality of PE, so that can realize a PE by described vpn server, to the route of another PE, issue, and a VPN sign is corresponding with the VPN route forwarding table (VPN Routing and Forwarding table is called for short VRF) in described source, and described source is a described PE, characterize a VPN sign corresponding with a VRF in a described PE.
In specific implementation process, a described PE can have one or more VRF, an and corresponding VRF of VPN sign, so that just identify and can determine corresponding VRF by VPN, the VPN topology link information that a described PE is corresponding only comprises the VPN identification field of source and the VPN identification field of destination, what receive due to described vpn server is that the route of a described PE releases news, the VPN identification field that causes the source in VPN corresponding to described PE topology link information is a described VPN sign, and the VPN identification field of described destination is empty, so, make the VPN topology link information that a described PE is corresponding comprise a described VPN sign, and the VPN that does not include described destination identifies.
Wherein, described VPN topology link information can represent with VPN_TOPO_CONNECTOR, the VPN sign of described source can be called for short L-TAG with Local VPN TAG() represent, the VPN sign of described destination can be called for short R-TAG with Remote VPN TAG() represent, for example, described VPN topology link information specifically can represent by following manner:
VPN_TOPO_CONNECTOR?Attribue:
Local?VPN?TAG
Remote?VPN?TAG。
Wherein, Local VPN TAG and Remote VPN TAG can represent by 4 bytes, also can represent by 8 bytes.
Specifically, described PE is directly connected with user network boundary device (Customer Edge is called for short CE), described CE can be router or switch, also can be a main frame, when described PE receives the request of described CE, described PE just can carry out route issue, so, when the route that described vpn server reception is issued from a described PE releases news, described route releases news and comprises the IP address of the user network boundary device CE being connected with a described PE, the agreement interconnecting between described VPN topology link information and the IP(Internet Protocol full name network of a described PE) address, and a described VPN sign is corresponding with described CE.
For example, referring to Fig. 2, take a described PE as PE1 be example, PE1 is directly connected with CE3 with CE2 with CE1 respectively, supposes that CE3 is 163 servers, in order to make user can find 163 servers, CE3 can ask PE1 to carry out route issue, and then the route that makes vpn server receive PE1 releases news, wherein, the IP address that includes CE3 during described route releases news, the VPN topology link information that PE1 is corresponding and the IP address of PE1.
Wherein, PE1 has VRF1, VRF2 and VRF3, and in PE1, the VPN corresponding with VRF1 is designated TAG1, and the VPN corresponding with VRF2 is designated TAG2, and the VPN corresponding with VRF3 be designated TAG3, and the corresponding one or more CE of each TAG.
For example TAG1 is corresponding with CE3, TAG1 can also be corresponding with CE1 and CE2, and TAG1 can also be corresponding with CE1, CE2 and CE3, for example, at TAG1 and CE3 at once, when if CE3 request PE1 carries out route issue, the VPN topology link information that can determine PE1 is that Local VPN TAG is TAG1, Remote VPN TAG is that sky represents with R-RULL, and wherein, the IP address of CE3 is private network IP address, be for example 192.168.1.102, the IP address of PE1 is public network IP address, for example, while being 4.4.4.4, the route of PE1 release news into:
VPN_TOPO_CONNECTOR:
Local?VPN?TAG:TAG1;
Remote?VPN?TAG:NULL;
NLRI(Network Layer Reachability Information Network Layer Reachable Information): 192.168.1.102;
NHP(Next Hop Prefix down hop public network address): 4.4.4.4;
Then being packaged into Border Gateway Protocol (Border Gateway Protocol is called for short BGP) message issues.
Wherein, VPN_TOPO_CONNECTOR is specially: Local VPN TAG:TAG1; Remote VPN TAG:NULL; Can also use VPNATR(L-TAG1, R-RULL) represent.
Certainly, at TAG2 and CE3, at once, if when CE3 request PE1 carries out route issue, can determine that the VPN topology link information of PE1 is VPNATR(L-TAG2, R-RULL).
Next perform step 102, in this step, described vpn server is selected the 2nd PE as destination.
In specific implementation process, in described vpn server, dispose other PE that carries out VPN traffic with a described PE, and the tunnel encapsulation information that disposes a described PE and described other PE, so, make the IP address of the described PE of described vpn server in releasing news according to described route, selection is as described the 2nd PE of destination, and the described VPN in also can releasing news according to described route identifies, and selecting described the 2nd PE is destination.
For example,, referring to Fig. 2, owing to can carrying out message transmissions by VPN between PE1 and PE2, vpn server can carry out associated with PE1 by PE2, when the route that makes vpn server receive PE1 transmission releases news, the IP address of the PE1 in releasing news according to described route, selection PE2 is destination.
Again for example, referring to Fig. 3, PE1 can also and PE3 between by VPN message transmissions, vpn server PE2 and PE1 are carried out associated in, also can PE3 be carried out associated with PE1, while making vpn server receive route that PE1 sends to release news, the IP address of the PE1 in releasing news according to described route, can determine that described the 2nd PE that carries out message transmissions with PE1 is PE2 or PE3.
Also for example, referring to Fig. 2, PE2 has VRF4 and VRF5, the VPN corresponding with VRF4 is designated TAG4, the VPN corresponding with VRF5 is designated TAG5, and TAG4 is corresponding with TAG1, by VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, and TAG5 is corresponding with TAG2, by VRF5 and VRF2, also can determine that PE2 is to the VRF of PE1, so, cause vpn server that PE1 is carried out associated with PE2, TAG5 is corresponding with TAG2, and TAG4 is corresponding with TAG1, due to the route of PE1, the VPN in releasing news is designated TAG1, because the TAG1 in vpn server is corresponding with TAG4, and TAG4 belongs to PE2, can determine that described the 2nd PE is PE2.
Next perform step 103, in this step, described vpn server is according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news.
In specific implementation process, described vpn server is in the process of the described PE of configuration and described other PE, also configure the corresponding relation of the VPN sign of a described PE and the VPN sign of described other PE, thereby obtain and preserve the TAG corresponding relation between a described PE and described other PE, so, described vpn server can be identified according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN in described PE sign and described the 2nd PE.
For example, referring to Fig. 3, PE2 has VRF4 and VRF5, the VPN corresponding with VRF4 is designated TAG4, the VPN corresponding with VRF5 is designated TAG5, and TAG4 is corresponding with TAG1, by VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, and TAG5 is corresponding with TAG2, by VRF5 and VRF2, also can determine that PE2 is to the VRF of PE1, so, cause vpn server that PE1 is carried out associated with PE2, TAG5 is corresponding with TAG2, and TAG4 is corresponding with TAG1, specifically can be expressed as: { vPE1:TAG1, vPE2:TAG4}, { vPE1:TAG2, vPE2:TAG5}.
Wherein, PE3 has VRF6 and VRF7, the VPN corresponding with VRF6 is designated TAG6, the VPN corresponding with VRF7 is designated TAG7, and TAG6 is corresponding with TAG2, by VRF6 and VRF2, can determine that PE3 is to the VRF of PE1, and TAG7 is corresponding with TAG3, by VRF7 and VRF3, also can determines that PE3 is to the VRF of PE1, so, cause in vpn server, PE1 and PE3 being carried out associated, TAG6 is corresponding with TAG2, and TAG7 is corresponding with TAG3, specifically can be expressed as: { vPE1:TAG2, vPE3:TAG6}, { vPE1:TAG3, vPE3:TAG7}.
Further, the VRF selecting while carrying out route issue due to CE3 request PE1 is VRF1, cause the route of PE1 to release news as { NLRI:192.168.1.102, VPNATR(L-TAG1, R-RULL), NHP:4.4.4.4}, at this moment, because a described TAG is TAG1, according to the configuration { vPE1:TAG1 in vpn server, vPE2:TAG4}, { vPE1:TAG2, vPE2:TAG5}, { vPE1:TAG2, vPE3:TAG6} and { vPE1:TAG3, vPE3:TAG7}, can determine that described the 2nd TAG is TAG4, by VPNATR(L-TAG1, R-RULL) be revised as VPNATR(L-TAG1, R-TAG4).
Next perform step 104, in this step, described vpn server is according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE.
In specific implementation process, because described vpn server disposes the tunnel encapsulation information of a described PE and described other PE, and then can be according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the VXLAN tunnel encapsulation information to a described PE.
Wherein, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on VXLAN interface IP address in described the 2nd PE, so that the entrance of message points to VXLAN interface IP address in described the 2nd PE, the VXLAN interface IP address in a described PE is pointed in the outlet of message, and then message is transmitted by the VXLAN tunnel between a described PE and described the 2nd PE.
Specifically, when described vpn server configures the tunnel encapsulation information of a described PE and described other PE, can be configured to virtual network example (Virtual Network Instance is called for short vni), according to described vni, just can determine described tunnel encapsulation information.
For example, referring to Fig. 2, in vpn server, dispose { vPE1:TAG1, vPE2:TAG4} and corresponding vni thereof are vni1, vni1 comprises the virtual extended lan interfaces corresponding with TAG1 (Virtual Extensible Local Area Network interface is called for short vxlanif), and the IP address corresponding with TAG1 in virtual extended local area network (LAN) (Virtual Extensible Local Area Network is called for short VXLAN), and the vxlanif corresponding with TAG4, and the IP address corresponding with TAG4 in VXLAN
Specifically can represent by following manner:
vxlan?vni1
vPE1(PE1)
interface?vxlanif1
ip?address?uip1
vPE2(PE2)
interface?vxlanif4
ip?address?uip4
Wherein, vxlanif1 represents the vxlanif corresponding with TAG1, vxlanif4 represents the vxlanif corresponding with TAG4, further, uip is writing a Chinese character in simplified form of Underlying network IP, uip1 represents the IP address corresponding with TAG1 in VXLAN, and uip4 represents the IP address corresponding with TAG4 in VXLAN.
In like manner, in vpn server, dispose vPE1:TAG2, vPE2:TAG5} and corresponding vni thereof are vni2, specifically can represent by following manner:
vxlan?vni2
vPE1(PE1)
interface?vxlanif2
ip?address?uip2
vPE2(PE2)
interface?vxlanif5
ip?address?uip5
Described the 2nd VPN that vpn server is determined according to the request of CE3 is designated TAG4, according to TAG1 and TAG4, determines that the vni mating with TAG1 and TAG4 is vni1, can determine that the tunnel encapsulation information of described VXLAN is:
vxlan?vni1
vPE1(PE1)
interface?vxlanif1
ip?address?uip1
vPE2(PE2)
interface?vxlanif4
ip?address?uip4。
Next perform step 105, in this step, described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
In specific implementation process, described VXLAN tunnel encapsulation information and amended described route are released news and send to described the 2nd PE, so that described the 2nd PE identifies according to R-VPN, find with described R-VPN and identify corresponding VRF, again according to described VXLAN tunnel encapsulation information, generate the VXLAN tunnel of message from described the 2nd PE to a described PE, the message then described the 2nd PE being received passes through described VXLAN tunnel transmission to a described PE.
For example, referring to Fig. 4, private network IP address at CE3 is 192.168.1.102, and when request PE1 carries out route issue, PE1 has generated route and has released news, and described route releases news as { NLRI:192.168.1.102, VPNATR:(L_TAG1, NULL), NHP:4.4.4.4}, at this moment, performs step 401, PE1 issue route is to vpn server, will NLRI:192.168.1.102, VPNATR:(L_TAG1, NULL), NHP:4.4.4.4} is packaged into BGP message 1, and described BGP message 1 is called for short BGP1.
Next perform step 402, PE1 and send BGP1, so that vpn server receives BGP1.
Next perform step 403, vpn server receives the BGP1 of PE1 issue, according to the configuration in vpn server, obtain amended route release news and VXLAN tunnel information be: NLRI:192.168.1.102, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4}, and by { NLRI:192.168.1.102, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4} is packaged into BGP message 2, and described BGP message 2 is called for short BGP2.
Next perform step 404, vpn server sends BGP2 to PE2, so that PE2 receives BGP2.
Next perform step 405, PE2 receives the BGP2 that vpn server sends, according to the local corresponding VRF of R-TAG indicia matched, uip4 address and uip1 according to carrying, find vxlanif1 and vxlanif4, by the entrance vxlanif1 of message, the outlet of message is pointed to vxlanif4, and generate the vxlan tunnel table of associated PEI and PE2, and and then form vxlan tunnel, so that receiving the message that the CE that is connected with PE2 sends, PE2 passes through described vxlan tunnel transmission to PE1.
Referring to Fig. 3, while carrying out route issue due to PE1 in prior art, the route of PE1 releases news and first can be distributed to AS1 and AS3, AS1 releases news the route of PE1 to issue router-A 1 again, router-A 1 releases news the route of PE1 to issue router-A 2 again again, router-A 2 releases news the route of PE1 to issue AS2 again, then AS2 releases news the route of PE1 to be distributed to PE2 again, and AS3 releases news the route of PE1 to issue router-A 3 again, router-A 3 releases news the route of PE1 to issue router-A 4 again again, router-A 4 releases news the route of PE1 to issue AS4 again, then AS4 releases news the route of PE1 to be distributed to PE3 again, when the route that all receives PE1 as PE2 and PE3 releases news, make that PE1's completed route issue.
Wherein, AS is writing a Chinese character in simplified form of Autonomous System, and Chinese is autonomous system.
In the embodiment of the present application, the route of PE1 releases news and is directly transferred to vpn server, vpn server releases news according to the route of PE1, determine that object PE is PE2, the TAG of adding purpose end, the route that obtains amended PE1 releases news, and according to the TAG of the PE2 mating with the TAG of PE1, determine VXLAN tunnel encapsulation information, amended PE1 route is released news and sends to PE2 with described VXLAN tunnel encapsulation information, and then the route that completes PE1 is issued, and route issue of the prior art need to be carried out routing forwarding one by one, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, cause prior art when carrying out routing forwarding, the number of times of routing forwarding is more, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, make the time of route issue longer, the efficiency of route issue is low technical problem also, and making the application only need just can to complete route by vpn server, the application issues, only need just to have completed route issue by a routing forwarding, and without realizing routing forwarding by cross-domain technology, and then can shorten the time that route is issued, improve the efficiency of route issue.
Embodiment bis-:
Technical conceive based on identical with said method, the embodiment of the present invention two has proposed a kind of method of message transmission, and as shown in Figure 5, the concrete processing procedure of the method is as follows:
Step 501 a: PE receives the message sending from source CE, and the message sending according to described source CE, the object PE that determines described message transmissions is the 2nd PE;
Step 502: a described PE is according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, and from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the route of described the 2nd PE releases news and by vpn server, sends to a described PE with VXLAN tunnel encapsulation information;
Step 503: a described PE releases news and VXLAN tunnel encapsulation information according to the route corresponding with described object CE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE;
Step 504: a described PE passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
Wherein, in step 501, a PE receives the message sending from source CE, and the message sending according to described source CE, and the object PE that determines described message transmissions is the 2nd PE, and wherein, described source CE is connected with a described PE.
In specific implementation process, first the route that a described PE can receive vpn server transmission releases news and VXLAN tunnel encapsulation information, when a described PE receives the message of described source CE transmission, owing to thering is the IP address of object CE in described message, can be according to the IP address of described object CE, the route that can send from the vpn server receiving releases news and determines and direct-connected described the 2nd PE of described object CE, and described the 2nd PE is described object PE.
For example, referring to Fig. 2, take PE2 as a described PE be example, the route that first PE2 can receive the PE1 of vpn server transmission releases news and tunnel encapsulation information, the route of described PE1 releases news and tunnel encapsulation information can comprise CE1, the route that CE2 and CE3 are corresponding releases news and corresponding tunnel encapsulation information, then when PE2 receives the message of described source CE transmission, can obtain the IP address of the object CE in described message, if the IP address that the IP of described object CE is CE3, according to the route of the PE1 receiving, release news, can determine that described object PE is PE1.
Next perform step 502, in this step, a described PE is according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, and from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the route of described the 2nd PE releases news and by vpn server, sends to a described PE with VXLAN tunnel encapsulation information.
In specific implementation process, because described the 2nd PE is when carrying out route issue, during the route that described the 2nd PE of the request IP address that carry out the CE of route issue can be write to described the 2nd PE releases news, thereby make a described PE after determining described the 2nd PE by step 501, can release news from the route of described the 2nd PE and VXLAN tunnel encapsulation information select the route corresponding with described object CE to release news and VXLAN tunnel encapsulation information.
For example, referring to Fig. 2, take PE2 as a described PE be example, after the route of carrying out at CE3 request PE1 releases news, the route that makes PE2 receive vpn server transmission releases news and VXLAN tunnel information comprises: { NLRI:192.168.1.102, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4}, if and the IP address of CE2 is 192.168.1.95, and after the route of having asked PE1 to carry out releases news, the route that makes PE2 receive vpn server transmission releases news and VXLAN tunnel information comprises: { NLRI:192.168.1.95, VPN ATR:(L_TAG2, R_TAG5), VXLAN ATR:(vni2, uip2, uip5), NHP:4.4.4.4}.
Wherein, when PE2 receives the message of source CE, if the IP address of the object CE of described message is 192.168.1.102, can determine that described the 2nd PE is that PE1 and described object CE are CE3, then the route that receives from PE2 the PE1 that vpn server sends release news and VXLAN tunnel information determine that it is { NLRI:192.168.1.102 that the route corresponding with CE3 releases news with VXLAN tunnel information, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4}.
Next perform step 503, in this step, a described PE releases news and VXLAN tunnel encapsulation information according to the route corresponding with described object CE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE.
In specific implementation process, R-VPN sign during a described PE releases news according to the route corresponding with described object CE, find with described R-VPN and identify corresponding VRF, again according to described VXLAN tunnel encapsulation information, determine that a described PE gives message transmissions in the VXLAN tunnel of described the 2nd PE, the message then a described PE being received by described VXLAN tunnel transmission to described the 2nd PE.
Specifically, a VPN sign of a described PE described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine a described PE by message transmissions the VPN route forwarding table to described the 2nd PE; A described PE, according to the VXLAN tunnel encapsulation information corresponding with described object CE, determines the IP address of a described PE and the IP address of described the 2nd PE; A described PE is according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE.
For example, referring to Fig. 2, PE2 receives the message of CE, the IP address of the object CE of described message is 192.168.1.102, can determine that described the 2nd PE is that PE1 and described object CE are CE3, then the route that receives from PE2 the PE1 that vpn server sends release news and VXLAN tunnel information determine that it is { NLRI:192.168.1.102 that the route corresponding with CE3 releases news with VXLAN tunnel information, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4}, according to R-TAG4, in VRF from PE2, determine the VRF4 corresponding with TAG4, and the VRF1 corresponding according to TAG1, according to VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, again according to the uip4 address and the uip1 that carry in VXLAN tunnel information, find vxlanif1 and vxlanif4, by the entrance vxlanif1 of message, the outlet of message is pointed to vxlanif4, then generate the VXLAN tunnel table of associated PEI and PE2, and then acquisition VXLAN tunnel, so that receiving the message of described source CE transmission, PE2 passes through described VXLAN tunnel transmission to PE1.
Next perform step 504, in this step, a described PE passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
In specific implementation process, get described VXLAN tunnel by step 503 after, a described PE passes through described VXLAN tunnel transmission to described the 2nd PE by the message of the described source CE receiving, so that described the 2nd PE is according to the object IP address in described message, by described message transmissions to object CE.
For example, referring to Fig. 2, the message that PE2 receives CE transmission passes through described VXLAN tunnel transmission to PE1, PE1 is the packaging information with described VXLAN tunnel by removal, the object IP address of reading in described message is 192.168.1.102, PE1 is according to described object IP address, and finding the CE corresponding with 192.168.1.102 is CE3, by described message transmissions to CE3.
Owing to normally adopting MPLS technology to realize when building VPN in prior art, referred to as MPLS/VPN, but existing MPLS/VPN need to dispose tag distribution protocol (Label Distribution Protocol is called for short LDP) as tunnel, dispose again BGP multi-protocols expansions (Multiprotocol Extensions for BGP is called for short MP-BGP) and propagate VPN route, and carry out decentralized configuration, PE/VPN of every increase need to adjust the configuration of other each PE, because MPLS/VPN is by passing through different AS, cause also needing to dispose various cross-domain technology, and increase VPN service in a new area, also need to be at network design MPLS, guarantee that MPLS is connective, cause the vpn service of prior art to expand poor performance, need to carry out the technical problem of cross-domain configuration.
And the embodiment of the present application is carried out on the basis of routing forwarding at vpn server, source PE the route that receives vpn server release news and VXLAN tunnel information after, can release news and VXLAN tunnel information according to the route of vpn server, obtain VXLAN tunnel, and message is passed through to VXLAN tunnel transmission to destination PE, and then do not need to carry out cross-domain configuration, and when a new area increase VPN service, only need newly-increased PE and other PE to be configured, and not be used at network design MPLS, improved the expansion performance of vpn service, make vpn service open and safeguard also convenient.
Embodiment tri-:
Technical conceive based on identical with said method, the embodiment of the present invention three has proposed a kind of device of routing iinformation issue, and referring to Fig. 6, described device comprises:
Receiving element 601, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Selected cell 602, for selecting the 2nd PE as destination;
Route is revised unit 603, for receiving the described route of receiving element 601 transmissions, release news and receive described the 2nd PE that selected cell 602 sends, according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news;
Tunnel selected cell 604, for receiving route, revise a described VPN sign and described the 2nd VPN sign that unit 603 sends, according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitting element 605, for receiving route, revise amended described route that unit 603 sends and release news and receive the described VXLAN tunnel encapsulation information that described tunnel selected cell sends, described VXLAN tunnel encapsulation information and amended described route are released news and send to described the 2nd PE.
Wherein, the device of described routing iinformation issue is connected with a plurality of PE, so that can realize a PE by described device, to the route of another PE, issue, and a VPN sign is corresponding with a VRF in described source, and described source is a described PE, characterize a VPN sign corresponding with a VRF in a described PE.
In specific implementation process, a described PE can have one or more VRF, an and corresponding VRF of VPN sign, so that just identify and can determine corresponding VRF by VPN, the VPN topology link information that a described PE is corresponding only comprises the VPN identification field of source and the VPN identification field of destination, what receive due to described vpn server is that the route of a described PE releases news, the VPN identification field that causes the source in VPN corresponding to described PE topology link information is a described VPN sign, and the VPN identification field of described destination is empty, so, make the VPN topology link information that a described PE is corresponding comprise a described VPN sign, and the VPN that does not include described destination identifies.
Concrete, described route releases news and also comprises the IP address of the CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
For example, referring to Fig. 2, take a described PE as PE1 be example, PE1 is directly connected with CE3 with CE2 with CE1 respectively, supposes that CE3 is 163 servers, in order to make user can find 163 servers, CE3 can ask PE1 to carry out route issue, and then the route that makes vpn server receive PE1 releases news, wherein, the IP address that includes CE3 during described route releases news, the VPN topology link information that PE1 is corresponding and the IP address of PE1 are for example 159.226.1.1.
Preferably, route is revised unit 603 and is comprised VPN sign determining unit 606, for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
Concrete, the device of described routing iinformation issue is in the process of the described PE of configuration and described other PE, also configure the corresponding relation of the VPN sign of a described PE and the VPN sign of described other PE, thereby obtain and preserve the TAG corresponding relation between a described PE and described other PE, so, described vpn server can be identified according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN in described PE sign and described the 2nd PE, wherein, described TAG represents the meaning of sign.
For example, referring to Fig. 3, PE2 has VRF4 and VRF5, the VPN corresponding with VRF4 is designated TAG4, the VPN corresponding with VRF5 is designated TAG5, and TAG4 is corresponding with TAG1, by VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, and TAG5 is corresponding with TAG2, by VRF5 and VRF2, also can determine that PE2 is to the VRF of PE1, so, cause vpn server that PE1 is carried out associated with PE2, TAG5 is corresponding with TAG2, and TAG4 is corresponding with TAG1, specifically can be expressed as: { vPE1:TAG1, vPE2:TAG4}, { vPE1:TAG2, vPE2:TAG5}.
Concrete, in device due to described routing iinformation issue, dispose the tunnel encapsulation information of a described PE and described other PE, and then make the tunnel selected cell 604 can be according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the VXLAN tunnel encapsulation information to a described PE.
Preferably, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
Preferably, transmitting element 605 releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE, so that described the 2nd PE identifies according to R-VPN, find with described R-VPN and identify corresponding VRF, again according to described VXLAN tunnel encapsulation information, generate the VXLAN tunnel of message from described the 2nd PE to a described PE, the message then described the 2nd PE being received passes through described VXLAN tunnel transmission to a described PE.
In the embodiment of the present application, the route of PE1 releases news and is directly transferred to vpn server, vpn server releases news according to the route of PE1, determine that object PE is PE2, the TAG of adding purpose end, the route that obtains amended PE1 releases news, and according to the TAG of the PE2 mating with the TAG of PE1, determine VXLAN tunnel encapsulation information, amended PE1 route is released news and sends to PE2 with described VXLAN tunnel encapsulation information, and then the route that completes PE1 is issued, and route issue of the prior art need to be carried out routing forwarding one by one, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, cause prior art when carrying out routing forwarding, the number of times of routing forwarding is more, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, make the time of route issue longer, the efficiency of route issue is low technical problem also, and making the application only need just can to complete route by vpn server, the application issues, only need just to have completed route issue by a routing forwarding, and without realizing routing forwarding by cross-domain technology, and then can shorten the time that route is issued, improve the efficiency of route issue.
Embodiment tetra-:
Technical conceive based on identical with said method, the embodiment of the present invention four has proposed a kind of vpn server, and referring to Fig. 7, described server comprises:
Receiver 701, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Processor 702, for selecting the 2nd PE as destination, and according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news; And according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitter 703, for releasing news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
Wherein, receiver 701 is such as being the electronic equipments such as wireless antenna, wifi module, and further, processor 702 is such as being the electronic equipments such as independent process chip, single-chip microcomputer, and further, transmitter 703 is such as being the electronic equipments such as wireless antenna.
Concrete, described vpn server is connected with a plurality of PE, so that can realize a PE by described vpn server, to the route of another PE, issue, and a VPN sign is corresponding with the VPN route forwarding table (VPN Routing and Forwarding table is called for short VRF) in described source, and described source is a described PE, characterize a VPN sign corresponding with a VRF in a described PE.
Preferably, a described PE can have one or more VRF, an and corresponding VRF of VPN sign, so that just identify and can determine corresponding VRF by VPN, the VPN topology link information that a described PE is corresponding only comprises the VPN identification field of source and the VPN identification field of destination, what receive due to described vpn server is that the route of a described PE releases news, the VPN identification field that causes the source in VPN corresponding to described PE topology link information is a described VPN sign, and the VPN identification field of described destination is empty, so, make the VPN topology link information that a described PE is corresponding comprise a described VPN sign, and the VPN that does not include described destination identifies.
Preferably, described route releases news and also comprises the IP address of the CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
For example, referring to Fig. 2, take a described PE as PE1 be example, PE1 is directly connected with CE3 with CE2 with CE1 respectively, supposes that CE3 is 163 servers, in order to make user can find 163 servers, CE3 can ask PE1 to carry out route issue, and then the route that makes vpn server receive PE1 releases news, wherein, the IP address that includes CE3 during described route releases news, the VPN topology link information that PE1 is corresponding and the IP address of PE1 are for example 159.226.1.1.
Preferably, processor 702, specifically for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
Concrete, described vpn server is in the process of the described PE of configuration and described other PE, also configure the corresponding relation of the VPN sign of a described PE and the VPN sign of described other PE, thereby obtain and preserve the TAG corresponding relation between a described PE and described other PE, so, described vpn server can be identified according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN in described PE sign and described the 2nd PE, wherein, described TAG represents the meaning of sign.
For example, referring to Fig. 3, PE2 has VRF4 and VRF5, the VPN corresponding with VRF4 is designated TAG4, the VPN corresponding with VRF5 is designated TAG5, and TAG4 is corresponding with TAG1, by VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, and TAG5 is corresponding with TAG2, by VRF5 and VRF2, also can determine that PE2 is to the VRF of PE1, so, cause vpn server that PE1 is carried out associated with PE2, TAG5 is corresponding with TAG2, and TAG4 is corresponding with TAG1, specifically can be expressed as: { vPE1:TAG1, vPE2:TAG4}, { vPE1:TAG2, vPE2:TAG5}.
Concrete, in device due to described routing iinformation issue, dispose the tunnel encapsulation information of a described PE and described other PE, and then make the processor 702 can be according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the VXLAN tunnel encapsulation information to a described PE.
Preferably, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
Preferably, transmitter 703, specifically for described VXLAN tunnel encapsulation information and amended described route are released news and send to described the 2nd PE, so that described the 2nd PE identifies according to R-VPN, find with described R-VPN and identify corresponding VRF, according to described VXLAN tunnel encapsulation information, generate the VXLAN tunnel of message from described the 2nd PE to a described PE again, the message then described the 2nd PE being received passes through described VXLAN tunnel transmission to a described PE.
In the embodiment of the present application, the route of PE1 releases news and is directly transferred to vpn server, vpn server releases news according to the route of PE1, determine that object PE is PE2, the TAG of adding purpose end, the route that obtains amended PE1 releases news, and according to the TAG of the PE2 mating with the TAG of PE1, determine VXLAN tunnel encapsulation information, amended PE1 route is released news and sends to PE2 with described VXLAN tunnel encapsulation information, and then the route that completes PE1 is issued, and route issue of the prior art need to be carried out routing forwarding one by one, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, cause prior art when carrying out routing forwarding, the number of times of routing forwarding is more, and while carrying out routing forwarding between different AS, also need to realize routing forwarding by cross-domain technology, make the time of route issue longer, the efficiency of route issue is low technical problem also, and making the application only need just can to complete route by vpn server, the application issues, only need just to have completed route issue by a routing forwarding, and without realizing routing forwarding by cross-domain technology, and then can shorten the time that route is issued, improve the efficiency of route issue.
Embodiment five:
Technical conceive based on identical with said method, the embodiment of the present invention five has proposed a kind of device of message transmission, and referring to Fig. 8, described device comprises:
Receiving element 801, for receiving the message sending from source CE,
PE determining unit 802, the message sending for receiving receiving element 801, according to described message, the object PE that determines described message transmissions is the 2nd PE;
Route Selection unit 803, the message sending for receiving receiving element 801, according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, wherein, the route of described the 2nd PE releases news and sends to Route Selection unit 803 by vpn server;
Tunnel information acquiring unit 804, described the 2nd PE sending for receiving PE determining unit 802, from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the VXLAN tunnel encapsulation information of described the 2nd PE sends to tunnel selected cell 804 by vpn server;
Tunnel determining unit 805, for receiving the route corresponding with described object CE of Route Selection unit 803 transmissions, release news and receive the described VXLAN tunnel encapsulation information that tunnel information acquiring unit 804 sends, according to the route corresponding with described object CE, release news and described VXLAN tunnel encapsulation information, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE;
Message transmissions unit 806, the described VXLAN tunnel sending for receiving tunnel determining unit 805, passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
Concrete, the route that the device of first described message transmission can receive vpn server transmission releases news and VXLAN tunnel encapsulation information, when the receiving element 801 in described device receives the message of described source CE transmission, owing to thering is the IP address of object CE in described message, make the PE determining unit 802 can be according to the IP address of described object CE, the route that can send from the vpn server receiving releases news and determines and direct-connected described the 2nd PE of described object CE, and described the 2nd PE is described object PE.
For example, referring to Fig. 2, take PE2 as a described PE be example, the route that first PE2 can receive the PE1 of vpn server transmission releases news and tunnel encapsulation information, the route of described PE1 releases news and tunnel encapsulation information can comprise CE1, the route that CE2 and CE3 are corresponding releases news and corresponding tunnel encapsulation information, then when PE2 receives the message of described source CE transmission, can obtain the IP address of the object CE in described message, if the IP address that the IP of described object CE is CE3, according to the route of the PE1 receiving, release news, can determine that described object PE is PE1.
Concrete, because described the 2nd PE is when carrying out route issue, during the route that described the 2nd PE of the request IP address that carry out the CE of route issue can be write to described the 2nd PE releases news, thereby make described PE determining unit 802 after determining described the 2nd PE, tunnel information acquiring unit 804 can release news from the route of described the 2nd PE, the selection route corresponding with described object CE releases news, and tunnel determining unit 805 can be selected the VXLAN tunnel encapsulation information corresponding with described object CE from the VXLAN tunnel encapsulation information of described the 2nd PE.
Preferably, tunnel determining unit 805, specifically for a VPN sign of the described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine that a described PE gives message transmissions the VPN route forwarding table of described the 2nd PE, again according to the VXLAN tunnel encapsulation information corresponding with described object CE, determine the IP address of a described PE and the IP address of described the 2nd PE, and according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine that a described PE gives message transmissions in the VXLAN tunnel of described the 2nd PE.
For example, referring to Fig. 2, PE2 receives the message of CE, the IP address of the object CE of described message is 192.168.1.102, can determine that described the 2nd PE is that PE1 and described object CE are CE3, then the route that receives from PE2 the PE1 that vpn server sends release news and VXLAN tunnel information determine that it is { NLRI:192.168.1.102 that the route corresponding with CE3 releases news with VXLAN tunnel information, VPN ATR:(L_TAG1, R_TAG4), VXLAN ATR:(vni1, uip1, uip4), NHP:4.4.4.4}, according to R-TAG4, in VRF from PE2, determine the VRF4 corresponding with TAG4, and the VRF1 corresponding according to TAG1, according to VRF4 and VRF1, can determine that PE2 is to the VRF of PE1, again according to the uip4 address and the uip1 that carry in VXLAN tunnel information, find vxlanif1 and vxlanif4, by the entrance vxlanif1 of message, the outlet of message is pointed to vxlanif4, then generate the VXLAN tunnel table of associated PEI and PE2, and then acquisition VXLAN tunnel, so that receiving the message of described source CE transmission, PE2 passes through described VXLAN tunnel transmission to PE1.
Preferably, message transmissions unit 806 by the message of the described source CE receiving by described VXLAN tunnel transmission to after described the 2nd PE, make described the 2nd PE according to the object IP address in described message, by described message transmissions to object CE.
For example, referring to Fig. 2, the message that PE2 receives CE transmission passes through described VXLAN tunnel transmission to PE1, PE1 is the packaging information with described VXLAN tunnel by removal, the object IP address of reading in described message is 192.168.1.102, PE1 is according to described object IP address, and finding the CE corresponding with 192.168.1.102 is CE3, by described message transmissions to CE3.
Owing to normally adopting MPLS technology to realize when building VPN in prior art, referred to as MPLS/VPN, but existing MPLS/VPN need to dispose LDP as tunnel, dispose again BGP and propagate VPN route, and carry out decentralized configuration, PE/VPN of every increase need to adjust the configuration of other each PE, because MPLS/VPN is by passing through different AS, cause also needing to dispose various cross-domain technology, and increase VPN service in a new area, also need to be at network design MPLS, guarantee that MPLS is connective, cause the vpn service of prior art to expand poor performance, need to carry out the technical problem of cross-domain configuration.
And the embodiment of the present application is carried out on the basis of routing forwarding at vpn server, source PE the route that receives vpn server release news and VXLAN tunnel information after, can release news and VXLAN tunnel information according to the route of vpn server, obtain VXLAN tunnel, and message is passed through to VXLAN tunnel transmission to destination PE, and then do not need to carry out cross-domain configuration, and when a new area increase VPN service, only need newly-increased PE and other PE to be configured, and not be used at network design MPLS, improved the expansion performance of vpn service, make vpn service open and safeguard also convenient.
It will be understood by those skilled in the art that embodiments of the invention can be provided as method, device (equipment) or computer program.Therefore, the present invention can adopt complete hardware implementation example, implement software example or in conjunction with the form of the embodiment of software and hardware aspect completely.And the present invention can adopt the form that wherein includes the upper computer program of implementing of computer-usable storage medium (including but not limited to magnetic disc store, CD-ROM, optical memory etc.) of computer usable program code one or more.
The present invention is with reference to describing according to flow chart and/or the block diagram of the method for the embodiment of the present invention, device (equipment) and computer program.Should understand can be in computer program instructions realization flow figure and/or block diagram each flow process and/or the flow process in square frame and flow chart and/or block diagram and/or the combination of square frame.Can provide these computer program instructions to the processor of all-purpose computer, special-purpose computer, Embedded Processor or other programmable data processing device to produce a machine, the instruction of carrying out by the processor of computer or other programmable data processing device is produced for realizing the device in the function of flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame appointments.
These computer program instructions also can be stored in energy vectoring computer or the computer-readable memory of other programmable data processing device with ad hoc fashion work, the instruction that makes to be stored in this computer-readable memory produces the manufacture that comprises command device, and this command device is realized the function of appointment in flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame.
These computer program instructions also can be loaded in computer or other programmable data processing device, make to carry out sequence of operations step to produce computer implemented processing on computer or other programmable devices, thereby the instruction of carrying out is provided for realizing the step of the function of appointment in flow process of flow chart or a plurality of flow process and/or square frame of block diagram or a plurality of square frame on computer or other programmable devices.
Although described the preferred embodiments of the present invention, once those skilled in the art obtain the basic creative concept of cicada, can make other change and modification to these embodiment.So claims are intended to all changes and the modification that are interpreted as comprising preferred embodiment and fall into the scope of the invention.
Obviously, those skilled in the art can carry out various changes and modification and not depart from the spirit and scope of the present invention the present invention.Like this, if within of the present invention these are revised and modification belongs to the scope of the claims in the present invention and equivalent technologies thereof, the present invention is also intended to comprise these changes and modification interior.

Claims (15)

1. a method for routing iinformation issue, is characterized in that, described method comprises:
The route that virtual private network server receives from first service provider edge PE releases news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Described vpn server is selected the 2nd PE as destination;
Described vpn server is according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news; And
Described vpn server is according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Described vpn server releases news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
2. the method for claim 1, it is characterized in that, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
3. method as claimed in claim 1 or 2, is characterized in that, described vpn server, according to a described VPN sign, is selected the two VPN sign marking matched with a described VPN, specifically comprises:
Described vpn server is according to a described VPN sign, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
4. the method as described in claim 1-3 any one, is characterized in that, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
5. a method for message transmission, is characterized in that, described method comprises:
The one PE receives the message sending from source CE, and the message sending according to described source CE, and the object PE that determines described message transmissions is the 2nd PE;
A described PE is according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, and from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the route of described the 2nd PE releases news and by vpn server, sends to a described PE with VXLAN tunnel encapsulation information;
A described PE releases news and VXLAN tunnel encapsulation information according to the route corresponding with described object CE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE;
A described PE passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
6. method as claimed in claim 5, is characterized in that, a described PE releases news and described VXLAN tunnel encapsulation information according to described route, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE, specifically comprise:
A VPN sign of a described PE described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine a described PE by message transmissions the VPN route forwarding table to described the 2nd PE;
A described PE, according to the VXLAN tunnel encapsulation information corresponding with described object CE, determines the IP address of a described PE and the IP address of described the 2nd PE;
A described PE is according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE.
7. a device for routing iinformation issue, is characterized in that, described device comprises:
Receiving element, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Selected cell, for selecting the 2nd PE as destination;
Route is revised unit, for receiving the described route of described receiving element transmission, release news and receive described the 2nd PE that described selected cell sends, according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news;
Tunnel selected cell, for receiving described route, revise a described VPN sign and described the 2nd VPN sign that unit sends, according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitting element, for receiving described route, revise amended described route that unit sends and release news and receive the described VXLAN tunnel encapsulation information that described tunnel selected cell sends, described VXLAN tunnel encapsulation information and amended described route are released news and send to described the 2nd PE.
8. device as claimed in claim 7, it is characterized in that, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
9. install as claimed in claim 7 or 8, it is characterized in that, described route is revised unit and is comprised VPN sign determining unit, for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
10. the device as described in claim 7-9 any one, is characterized in that, described VXLAN tunnel encapsulation information comprises the VXLAN interface IP address being arranged in a described PE and is arranged on the VXLAN interface IP address in described the 2nd PE.
11. 1 kinds of vpn servers, is characterized in that, described server comprises:
Receiver, for the route receiving from a PE, release news, wherein, described route releases news and comprises the VPN topology link information that a described PE is corresponding, described VPN topology link information comprises the VPN sign of source, and the VPN of described source is designated the VPN sign in a described PE;
Processor, for selecting the 2nd PE as destination, and according to a described VPN sign, from the VPN sign of described the 2nd PE, select the two VPN sign marking matched with a described VPN, and in described VPN topology link information, increase described the 2nd VPN sign as the VPN sign of destination, obtain amended described route and release news; And according to a described VPN sign and described the 2nd VPN sign, determine described the 2nd PE by message transmissions the virtual extended local area network (LAN) VXLAN tunnel encapsulation information to a described PE;
Transmitter, for releasing news described VXLAN tunnel encapsulation information and amended described route to send to described the 2nd PE.
12. servers as claimed in claim 11, it is characterized in that, described route releases news and also comprises protocol IP address interconnected between the network of the user network boundary device CE being connected with a described PE, the IP address of described VPN topology link information and a described PE, and a described VPN sign is corresponding with described CE.
13. servers as described in claim 11 or 12, it is characterized in that, described processor, specifically for identifying according to a described VPN, in TAG corresponding relation from described VPN, select the described two VPN sign marking matched with a described VPN, described TAG corresponding relation comprises the corresponding relation of the VPN sign in VPN sign in a described PE and described the 2nd PE.
The device of 14. 1 kinds of message transmissions, is characterized in that, described device comprises:
Receiving element, for receiving the message sending from source CE,
PE determining unit, the message sending for receiving described receiving element, according to described message, the object PE that determines described message transmissions is the 2nd PE;
Route Selection unit, the message sending for receiving described receiving element, according to the IP address of the object CE in described message, from the route of described the 2nd PE that receives releases news, the selection route corresponding with described object CE releases news, wherein, the route of described the 2nd PE releases news and sends to described Route Selection unit by vpn server;
Tunnel information acquiring unit, described the 2nd PE sending for receiving described PE determining unit, from the VXLAN tunnel encapsulation information of described the 2nd PE that receives, select the VXLAN tunnel encapsulation information corresponding with described object CE, wherein, the VXLAN tunnel encapsulation information of described the 2nd PE sends to described tunnel selected cell by vpn server;
Tunnel determining unit, for receiving the route corresponding with described object CE of described Route Selection unit transmission, release news and receive the described VXLAN tunnel encapsulation information that described tunnel information acquiring unit sends, according to the route corresponding with described object CE, release news and described VXLAN tunnel encapsulation information, determine a described PE by message transmissions the VXLAN tunnel to described the 2nd PE;
Message transmissions unit, the described VXLAN tunnel sending for receiving described tunnel determining unit, passes through described VXLAN tunnel transmission to described the 2nd PE by described message.
15. devices as claimed in claim 14, it is characterized in that, described tunnel determining unit, specifically for a VPN sign of the described PE in releasing news according to the route corresponding with described object CE and the 2nd VPN sign of described the 2nd PE, determine that a described PE gives message transmissions the VPN route forwarding table of described the 2nd PE, again according to the VXLAN tunnel encapsulation information corresponding with described object CE, determine the IP address of a described PE and the IP address of described the 2nd PE, and according to the IP address of the IP address of described VPN route forwarding table and a described PE and described the 2nd PE, determine that a described PE gives message transmissions in the VXLAN tunnel of described the 2nd PE.
CN201310567457.6A 2013-11-13 2013-11-13 Method for issuing route information, method and device for transmitting massage Active CN103634217B (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN201310567457.6A CN103634217B (en) 2013-11-13 2013-11-13 Method for issuing route information, method and device for transmitting massage
PCT/CN2014/086350 WO2015070667A1 (en) 2013-11-13 2014-09-12 Method for issuing route information, and method and apparatus for transmitting packet

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310567457.6A CN103634217B (en) 2013-11-13 2013-11-13 Method for issuing route information, method and device for transmitting massage

Publications (2)

Publication Number Publication Date
CN103634217A true CN103634217A (en) 2014-03-12
CN103634217B CN103634217B (en) 2017-02-08

Family

ID=50214858

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310567457.6A Active CN103634217B (en) 2013-11-13 2013-11-13 Method for issuing route information, method and device for transmitting massage

Country Status (2)

Country Link
CN (1) CN103634217B (en)
WO (1) WO2015070667A1 (en)

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103957160A (en) * 2014-05-12 2014-07-30 华为技术有限公司 Message sending method and device
CN104363233A (en) * 2014-11-20 2015-02-18 成都卫士通信息安全技术有限公司 Safety cross-domain communication method for application servers in VPN gateways
WO2015070667A1 (en) * 2013-11-13 2015-05-21 华为技术有限公司 Method for issuing route information, and method and apparatus for transmitting packet
CN105591872A (en) * 2015-10-23 2016-05-18 杭州华三通信技术有限公司 Method and device for realization of multi-data center interconnection
CN106257876A (en) * 2015-06-16 2016-12-28 中兴通讯股份有限公司 Label processing method, routing iinformation delivery method and device
CN106330605A (en) * 2016-08-23 2017-01-11 杭州华三通信技术有限公司 Message processing method and device
CN106921573A (en) * 2015-12-28 2017-07-04 华为技术有限公司 It is used to issue the method and device of tenant's route in NVo3 networks
WO2018000890A1 (en) * 2016-06-29 2018-01-04 华为技术有限公司 Method and device for establishing virtual private network
CN108259303A (en) * 2017-12-25 2018-07-06 新华三技术有限公司 A kind of message forwarding method and device
WO2018196633A1 (en) * 2017-04-25 2018-11-01 新华三技术有限公司 Routing control
CN109672619A (en) * 2017-10-17 2019-04-23 华为技术有限公司 A kind of method, equipment and system handling message
CN109756419A (en) * 2017-11-07 2019-05-14 中国电信股份有限公司 Routing iinformation distribution method, device and RR
CN111355661A (en) * 2015-12-31 2020-06-30 华为技术有限公司 VPN processing method, PE equipment and system
CN114765567B (en) * 2021-01-11 2024-04-16 中国电信股份有限公司 Communication method and communication system

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN113542111A (en) * 2020-04-20 2021-10-22 华为技术有限公司 Message forwarding method and network equipment
CN113328937B (en) * 2021-04-08 2022-05-24 新华三技术有限公司 Method and device for realizing distributed aggregation

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6339595B1 (en) * 1997-12-23 2002-01-15 Cisco Technology, Inc. Peer-model support for virtual private networks with potentially overlapping addresses
CN1708031A (en) * 2004-06-11 2005-12-14 华为技术有限公司 Method for realizing virtual special network
CN101052207A (en) * 2006-04-05 2007-10-10 华为技术有限公司 Realizing method and system for movable virtual special net

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100505674C (en) * 2007-09-06 2009-06-24 福建星网锐捷网络有限公司 Packet forwarding method, system and verge equipment in virtual private network
CN103634217B (en) * 2013-11-13 2017-02-08 华为技术有限公司 Method for issuing route information, method and device for transmitting massage

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6339595B1 (en) * 1997-12-23 2002-01-15 Cisco Technology, Inc. Peer-model support for virtual private networks with potentially overlapping addresses
CN1708031A (en) * 2004-06-11 2005-12-14 华为技术有限公司 Method for realizing virtual special network
CN101052207A (en) * 2006-04-05 2007-10-10 华为技术有限公司 Realizing method and system for movable virtual special net

Cited By (34)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2015070667A1 (en) * 2013-11-13 2015-05-21 华为技术有限公司 Method for issuing route information, and method and apparatus for transmitting packet
WO2015172574A1 (en) * 2014-05-12 2015-11-19 华为技术有限公司 Packet transmitting method and device
CN103957160A (en) * 2014-05-12 2014-07-30 华为技术有限公司 Message sending method and device
CN103957160B (en) * 2014-05-12 2017-04-19 华为技术有限公司 Message sending method and device
CN104363233A (en) * 2014-11-20 2015-02-18 成都卫士通信息安全技术有限公司 Safety cross-domain communication method for application servers in VPN gateways
CN106257876A (en) * 2015-06-16 2016-12-28 中兴通讯股份有限公司 Label processing method, routing iinformation delivery method and device
CN105591872B (en) * 2015-10-23 2019-04-05 新华三技术有限公司 A kind of method and apparatus for realizing multiple data centers interconnection
CN105591872A (en) * 2015-10-23 2016-05-18 杭州华三通信技术有限公司 Method and device for realization of multi-data center interconnection
CN106921573A (en) * 2015-12-28 2017-07-04 华为技术有限公司 It is used to issue the method and device of tenant's route in NVo3 networks
WO2017114158A1 (en) * 2015-12-28 2017-07-06 华为技术有限公司 Method and device for publishing tenant routing in nvo3 network
CN106921573B (en) * 2015-12-28 2020-04-14 华为技术有限公司 NVo3 method and device for issuing tenant route in network
CN112468398A (en) * 2015-12-31 2021-03-09 华为技术有限公司 VPN processing method, PE equipment and system
CN112468398B (en) * 2015-12-31 2022-03-25 华为技术有限公司 VPN processing method, PE equipment and system
CN111355661B (en) * 2015-12-31 2021-12-10 华为技术有限公司 VPN processing method, PE equipment and system
CN111355661A (en) * 2015-12-31 2020-06-30 华为技术有限公司 VPN processing method, PE equipment and system
US10855530B2 (en) 2016-06-29 2020-12-01 Huawei Technologies Co., Ltd. Method and apparatus for implementing composed virtual private network VPN
US11558247B2 (en) 2016-06-29 2023-01-17 Huawei Technologies Co., Ltd. Method and apparatus for implementing composed virtual private network VPN
CN107547333A (en) * 2016-06-29 2018-01-05 华为技术有限公司 For realizing the method and apparatus of combination virtual private network
CN111130980B (en) * 2016-06-29 2021-06-29 华为技术有限公司 Method and apparatus for implementing a combined virtual private network VPN
CN107547333B (en) * 2016-06-29 2020-02-21 华为技术有限公司 Method and apparatus for implementing a combined virtual private network VPN
WO2018000890A1 (en) * 2016-06-29 2018-01-04 华为技术有限公司 Method and device for establishing virtual private network
CN111130980A (en) * 2016-06-29 2020-05-08 华为技术有限公司 Method and apparatus for implementing a combined virtual private network VPN
CN106330605B (en) * 2016-08-23 2020-01-03 新华三技术有限公司 Message processing method and device
CN106330605A (en) * 2016-08-23 2017-01-11 杭州华三通信技术有限公司 Message processing method and device
US11451466B2 (en) 2017-04-25 2022-09-20 New H3C Technologies Co., Ltd. Controlling route
WO2018196633A1 (en) * 2017-04-25 2018-11-01 新华三技术有限公司 Routing control
CN109672619B (en) * 2017-10-17 2021-08-20 华为技术有限公司 Method, device and system for processing message
CN109672619A (en) * 2017-10-17 2019-04-23 华为技术有限公司 A kind of method, equipment and system handling message
US11349687B2 (en) 2017-10-17 2022-05-31 Huawei Technologies Co., Ltd. Packet processing method, device, and system
CN109756419B (en) * 2017-11-07 2021-09-14 中国电信股份有限公司 Routing information distribution method and device and RR
CN109756419A (en) * 2017-11-07 2019-05-14 中国电信股份有限公司 Routing iinformation distribution method, device and RR
CN108259303B (en) * 2017-12-25 2020-12-04 新华三技术有限公司 Message forwarding method and device
CN108259303A (en) * 2017-12-25 2018-07-06 新华三技术有限公司 A kind of message forwarding method and device
CN114765567B (en) * 2021-01-11 2024-04-16 中国电信股份有限公司 Communication method and communication system

Also Published As

Publication number Publication date
CN103634217B (en) 2017-02-08
WO2015070667A1 (en) 2015-05-21

Similar Documents

Publication Publication Date Title
CN103634217A (en) Method for issuing route information, method and device for transmitting massage
WO2017162095A1 (en) Communication method, device and system based on flow specification protocol
CN107026791B (en) Virtual private network VPN service optimization method and device
CN113411243B (en) Data transmission method and device
WO2015192501A1 (en) Address information publishing method and apparatus
WO2016173271A1 (en) Message processing method, device and system
WO2015165311A1 (en) Method for transmitting data packet and provider edge device
CN103607349A (en) Method for determining route in virtual network and provider edge equipment
CN107645433B (en) Message forwarding method and device
CN102801625A (en) Method and device for double layered mutual communication in heterogeneous network
CN112422398B (en) Message transmission method and communication device
CN103684959A (en) VPN realization method and PE device
US11296973B2 (en) Path information transmission device, path information transmission method and path information transmission program
CN102904814B (en) Data transmission method, source PE, object PE and data transmission system
CN108111413A (en) Method for routing, system and the equipment of stacking network
CN103326915A (en) Method, device and system for achieving three-layer VPN
CN102546433A (en) Data forwarding method based on MPLS (Multi Protocol Label Switching) VPN (Virtual Private Network) and PEs (Provider Edges)
CN102647328B (en) A kind of label distribution method, equipment and system
CN106713130B (en) A kind of routing table update method, EVPN control equipment and EVPN system
CN104780090A (en) VPN multicast transmission method and device PE equipment
CN103986654A (en) LSP generating method and device
CN103428252A (en) Method for cloud computing virtual machine migration, equipment and system
CN102739519B (en) Rooted multipoint service implementation method, device and system, and provider edge equipment
CN112910771B (en) Connection establishment method, device, equipment and storage medium
CN103095578A (en) Routing information control method and processing element (PE) device in multiple protocol label switching framework for layer 3 virtual private network (MPLS L3VPN)

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant