Private network application identification system and method, SDN controller and P equipment
A technology of application identification and controller, which is applied in the field of data communication, can solve the problems of limited application, poor versatility, and great influence of MPLS message processing logic, etc., and achieve simple implementation, fast identification, good fault diagnosis and security defense Effect
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment 1
[0041] The embodiment of the present invention provides a private network application identification system, such as figure 1 As shown, the system includes at least a P device and an SDN controller, and the SDN controller establishes a communication connection with the P device. In order to better illustrate a private network application identification system provided by an embodiment of the present invention, figure 1 In the example, two CE devices CE1 and CE2 are provided, an ingress PE (or called IngressPE) device and an egress PE (or called Egress PE) device, and the SDN controller establishes communication connections with all PE devices in the network. A communication connection can be established between the SDN controller and devices such as P and PE through various protocols, such as a network configuration protocol (Network Configuration Protocol, NETCONF for short) connection.
[0042] When CE1 in the user network communicates with CE2 in the user network, CE1 sends...
Embodiment 2
[0062] The embodiment of the present invention provides a private network application identification method, such as image 3 As shown, the method includes:
[0063] Step 301, the P device receives the MPLS message sent by the ingress PE device, obtains the address of the egress PE device corresponding to the MPLS message, and parses the MPLS message to obtain the VPN label and message feature information assigned by the egress PE device; The egress PE device address, the VPN label assigned by the egress PE device, and packet feature information are sent to the SDN controller.
[0064] In the embodiment of the present invention, the egress PE device actively sends information such as the VPN label assigned by the egress PE device to the ingress PE device. After the ingress PE device receives the IP packet sent by the CE device in the user network, it encapsulates the IP packet with an MPLS label header, encapsulates the VPN label allocated by the egress PE device in the botto...
Embodiment 3
[0076] An embodiment of the present invention provides a private network application identification method, which is applied to an SDN controller, such as Figure 4 As shown, the method includes:
[0077] Step 401: Receive the egress PE device address corresponding to the MPLS message sent by the P device, and the VPN label and message feature information assigned by the egress PE device in the MPLS message. Wherein, the packet characteristic information may include IP quintuple information.
[0078] Step 402, comparing the received egress PE device address and the VPN label assigned by the egress PE device with the pre-acquired PE device address, the corresponding relationship between the PE device assigned VPN label and the VPN, and determining the VPN corresponding to the MPLS message, The private network application corresponding to the MPLS message is determined in combination with the message feature information. In this way, the visualization of private network applic...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com