Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Cross-IPv6 and IPv4 VPN inter-access method and system

A NAT64, ipv4 address technology, applied in the field of Internet communication, can solve the problems of difficulty in management, complicated implementation methods of IPv6 and IPv4 network mutual transmission between VPNs, etc., and achieves the effect of simple and convenient configuration and high security performance.

Active Publication Date: 2016-04-27
FENGHUO COMM SCI & TECH CO LTD
View PDF8 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] The purpose of the embodiments of the present invention is to provide a method and system for realizing VPN mutual access across IPv6 and IPv4, so as to solve the problems in the prior art that the implementation method of mutual transmission between IPv6 and IPv4 networks between VPNs is complex and difficult to manage

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Cross-IPv6 and IPv4 VPN inter-access method and system
  • Cross-IPv6 and IPv4 VPN inter-access method and system
  • Cross-IPv6 and IPv4 VPN inter-access method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0043] Such as figure 2 Shown is a schematic flow diagram of a method for realizing cross-IPv6 and IPv4 VPN mutual access provided by the present invention. When the IPv6-side VPN initiates a data access message for the IPv4-side VPN, refer to figure 1 As shown in the system architecture diagram, the method includes the following steps:

[0044] In step 201, the destination address is obtained by resolving the destination identifier according to the DNS64 server, and the destination address is carried in the data access message;

[0045] In step 202, obtain the NAT64 address pool bound by the serial number of the ACL according to the source IPv6 address carried in the access message of the data, and obtain the VPN on the IPv4 side according to the VPN bound by the serial number of the ACL;

[0046] In step 203, according to the NAT64 address pool, the source IPv6 address is converted into a source IPv4 address that can be used in the IPv4 side VPN, and an unused port is sele...

Embodiment 2

[0071] Such as image 3 Shown is a system architecture diagram for implementing cross-IPv6 and IPv4 VPN mutual access provided by the embodiment of the present invention, including an IPv6-side source terminal, an IPv6-side DNS64 server, a NAT64 server, and an IPv4-side destination terminal. The source terminal is connected to DNS64 server, and establish a data link with the destination terminal through the NAT64 server, wherein the destination terminal is connected to the DNS46 server, specifically:

[0072] The source terminal obtains the destination address through the DNS64 server, and carries it in the data access message and sends it to the NAT64 server;

[0073] The NAT64 server obtains the NAT64 address pool bound by the serial number of the ACL according to the source IPv6 address carried in the access message of the data, and obtains the VPN on the IPv4 side according to the VPN bound by the serial number of the ACL;

[0074] The NAT64 server converts the source IPv...

Embodiment 3

[0079] The embodiment of the present invention provides a method for mutual access from IPv6 networks to IPv4 networks between different VPNs. Specifically include the following steps:

[0080] S401. Configure a prefix (prefix), IPv6-side VPN and IPv4-side VPN, and configure a NAT64 address pool assigned to source IPv6.

[0081] In order to implement mutual access between IPv6IPv4 across VPNs, there must be an address or address pool for source IPv6 and destination IPv6 translation. Embodiments of the present invention realize configuring a VPN of IPv6 and a VPN of IPv4 in the network; Then configure one or more address pools for the IPv6 VPN, i.e. the NAT64 address pool, and this address pool is mainly used as source IPv6 to convert to IPv4 It is used for the source IPv4 of the network; prefix is ​​mainly used for matching the destination IPv6 address. When the destination address matches the prefix, the prefix is ​​stripped to obtain an IPv4 address as the destination addre...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention is suitable for the field of internet communication and provides a cross-IPv6 and IPv4 VPN inter-access method and system. When an IPv6-side VPN initiates an access message for data of an IPv4-side VPN, the method comprises the following steps: obtaining a target address according to target identification obtained through analysis of a DNS64 server, wherein the target address is carried in the data access message; obtaining an NAT64 address pool bound with the serial number of an ACL according to a source IPv6 address carried in the access message, and obtaining the VPN at the IPv4 side according to a VPN bound with the serial number of the ACL; converting the source IPv6 address into a source IPv4 address capable of being used in the VPN at the IPv4 side according to the NAT64 address pool; stripping the prefix of the target address to obtain a legal target IPv4 address; and carrying out data access message forwarding at the IPv4-side VPN through an IPv4 protocol stack according to the target IPv4 address. According to the method and system for NAT64 inter-access between different VPNs, inter-access between the different VPNs can be realized conveniently; and the system is simple and convenient to configure and high in safety performance.

Description

technical field [0001] The invention belongs to the field of Internet communication, and in particular relates to a method for realizing VPN mutual access across IPv6 and IPv4. Background technique [0002] IPv6 is the fundamental solution to the problem of IPv4 address exhaustion. However, due to the large number of existing IPv4 users, most existing networks do not yet support IPv6 applications, making it difficult to evolve from IPv4 to IPv6. In order to ensure smooth transition of users and services, we expect that the entire evolution cycle will be a long-term process, that is to say, IPv6 will coexist with IPv4 for a long time. Therefore, the IPv6 transition scheme is particularly important. Moreover, due to the rapid development of Internet technology, L3 VPNs have been widely used by enterprises, governments, etc., and are used for network isolation. However, in actual application scenarios, there may be mutual access between VPNs. demand. [0003] However, there ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L12/46H04L29/12
CPCH04L12/4641H04L61/103H04L61/251H04L61/2521H04L61/5061H04L61/4511
Inventor 杨帅刘磊
Owner FENGHUO COMM SCI & TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products