Method and device for controlling internet protocol security (IPSEC) load sharing through user number
A technology of load sharing and number of users, which is applied in the field of network communication, can solve problems such as impracticability, and achieve the effect of uniform interface resource allocation and flexible interface allocation
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0034] Such as figure 1 As shown, this embodiment records a method for controlling IPSEC load sharing through the number of users, including the following steps:
[0035] S1: The network device is configured with a load sharing interface group, and each load sharing interface group includes multiple load sharing interfaces;
[0036] S2: Configuring multiple IPSEC tunnels to bind to the load sharing interface group;
[0037] S3: According to the difference in the number of established tunnels of each load-sharing interface in the load-sharing interface group, when creating a new connection, select the load-sharing interface with the least number of established tunnels for negotiation and establish a tunnel.
[0038] Wherein, the step S3 is specifically:
[0039] S31: Perform routing search on the message, if the outbound interface of the message is found to be a load-sharing interface group (wherein, if the outbound interface of the message is not a load-sharing interface gro...
Embodiment 2
[0056] Such as figure 2 As shown, this embodiment records a device for controlling IPSEC load sharing through the number of users, including:
[0057] The network device 201 is configured to configure a load sharing interface group, and each load sharing interface group includes a plurality of load sharing interfaces;
[0058] Tunnel configuration module 202, configured to configure multiple IPSEC tunnels to be bound to the load sharing interface group;
[0059] The tunnel establishment module 203 is used for selecting the load sharing interface with the least number of established tunnels for negotiation and establishing a tunnel according to the number of established tunnels of each load sharing interface in the load sharing interface group.
[0060] The network device 201 is one of a firewall, a router and a switch.
[0061] The present invention configures the IPSEC tunnel on the load-sharing interface group, and the interfaces in the group are selected according to the...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com