[go: up one dir, main page]

CN106375206A - Message forwarding method and device - Google Patents

Message forwarding method and device Download PDF

Info

Publication number
CN106375206A
CN106375206A CN201610795735.7A CN201610795735A CN106375206A CN 106375206 A CN106375206 A CN 106375206A CN 201610795735 A CN201610795735 A CN 201610795735A CN 106375206 A CN106375206 A CN 106375206A
Authority
CN
China
Prior art keywords
message
strategy
unit
virtual unit
vlan
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201610795735.7A
Other languages
Chinese (zh)
Inventor
肖海波
李艳华
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou DPTech Technologies Co Ltd
Original Assignee
Hangzhou DPTech Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou DPTech Technologies Co Ltd filed Critical Hangzhou DPTech Technologies Co Ltd
Priority to CN201610795735.7A priority Critical patent/CN106375206A/en
Publication of CN106375206A publication Critical patent/CN106375206A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L45/00Routing or path finding of packets in data switching networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4641Virtual LANs, VLANs, e.g. virtual private networks [VPN]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention provides a message forwarding method and device. The method and the device are applied to a forwarding device. The forwarding device is configured to be a plurality of virtual devices. The method comprises the steps of analyzing a VLAN identifier carried by a received message, wherein the VLAN identifier is used for marking a VLAN network in which a sender device of the message is located; determining a virtual device corresponding to the message according to the VLAN identifier carried by the message; and carrying out corresponding processing on the message according to a predefined strategy when the message matches with the predefined strategy in the corresponding virtual device. In this way, the virtual device can be managed independently, various pieces of service are differently processed, and various pieces of service do not influence each other.

Description

A kind of message forwarding method and device
Technical field
The application is related to network communication technology field, more particularly to a kind of message forwarding method and device.
Background technology
With Information Technology Development, each enterprise operation class of business gets more and more, and is in charge of the functional department of different business More and more, different functional departments, when accessing outer net, are required for through same forwarding unit, so having to be managed collectively Each functional department, however, because each functional department is in charge of business difference, lead to all departments' office worker's internet behavior different.
For example, during being on duty, the office worker of Finance Department may need to access Financial Network platform, the office worker of engineering department May not be needed to access Financial Network platform, and need the access technique network platform, so, if unified management all departments office worker The obvious underaction of internet behavior, the business that may result in all departments' operation cannot be distinguished by processing, and between multiple business May also can influence each other.
Content of the invention
In view of this, the application provides a kind of message forwarding method and device, can in the case of hardware resource sharing, By creating corresponding virtual unit and the independent management to virtual unit according to different business, realize the area to multiple business Office is managed, and is independent of each other between multiple business.
Specifically, the application is achieved by the following technical solution:
According to the first aspect of the invention it is proposed that a kind of message forwarding method, it is applied on forwarding unit, described forwarding Equipment is configured to several virtual units, and methods described includes:
The vlan mark entrained by message that parsing receives, described vlan identifies the sender for message described in labelling The vlan network that equipment is located;
The corresponding virtual unit of this message is determined according to the vlan mark that described message carries;
When being matched with the predefined strategy in corresponding virtual unit when described message, according to described predefined strategy to institute State message and carry out respective handling.
According to the second aspect of the invention it is proposed that a kind of apparatus for forwarding message, it is applied on forwarding unit, described forwarding Equipment is configured to several virtual units, and described device includes:
Resolution unit, the vlan mark entrained by message that parsing receives, described vlan identifies for reporting described in labelling The vlan network sending method, apparatus place of literary composition;
Determining unit, determines the corresponding virtual unit of this message according to the vlan mark that described message carries;
Processing unit, when being matched with the predefined strategy in corresponding virtual unit when described message, according to described predetermined Justice strategy carries out respective handling to described message.
From above technical scheme, the present invention is by becoming several virtual to set according to its functional configuration forwarding unit Standby, and vlan mark is set up corresponding relation with virtual unit, reach the purpose of device virtualization, in addition, by for above-mentioned The predefined strategy of virtual unit configuration, and this predefined strategy is just for carrying the vlan mark that above-mentioned virtual unit is comprised Message comes into force it is achieved that virtual unit individually manages, thus reached multiple business differentiation processing, and between multiple business mutually not The effect of impact.
Brief description
Fig. 1 is a kind of message forwarding method flow chart of the present invention one exemplary embodiment;
Fig. 2 is a kind of schematic diagram of network architecture of the present invention one exemplary embodiment;
Fig. 3 is another kind of message forwarding method flow chart of the present invention one exemplary embodiment;
Fig. 4 is a kind of apparatus for forwarding message schematic diagram of the present invention one exemplary embodiment.
Specific embodiment
Here will in detail exemplary embodiment be illustrated, its example is illustrated in the accompanying drawings.Explained below is related to During accompanying drawing, unless otherwise indicated, the same numbers in different accompanying drawings represent same or analogous key element.Following exemplary embodiment Described in embodiment do not represent all embodiments consistent with the application.On the contrary, they be only with such as appended The example of the consistent apparatus and method of some aspects being described in detail in claims, the application.
It is the purpose only merely for description specific embodiment in term used in this application, and be not intended to be limiting the application. " a kind of ", " described " and " being somebody's turn to do " of singulative used in the application and appended claims is also intended to including most Form, unless context clearly shows that other implications.It is also understood that term "and/or" used herein refers to and wraps Containing one or more associated any or all possible combination listing project.
It will be appreciated that though various information may be described using term first, second, third, etc. in the application, but this A little information should not necessarily be limited by these terms.These terms are only used for same type of information is distinguished from each other out.For example, without departing from In the case of the application scope, the first information can also be referred to as the second information, and similarly, the second information can also be referred to as One information.Depending on linguistic context, word as used in this " if " can be construed to " ... when " or " when ... When " or " in response to determining ".
In the related, process to realize multiple business differentiation, and multiple business is independent of each other, and often sets forwarding For distributing to each functional department by hardware resource, for example, certain adjacent several port are used for forwarding Finance Department to send Message, the message being transmitted with other adjacent port retransmission technique departments, however, in limited or specific group of hardware resource When in net environment, the inbound port of flow and exit port share, hardware resource possibly cannot correspond with functional department Come, so forward the message coming still cannot be distinguished process from all departments, thus leading to multiple business cannot be distinguished process, And may influence each other between multiple business.
Therefore, the present invention passes through to propose the improvement project that a kind of message forwards, and can solve in correlation technique above-mentioned asks Topic, illustrates with reference to embodiment.
Fig. 1 is a kind of message forwarding method flow chart of the present invention one exemplary embodiment, as shown in figure 1, the method should For forwarding unit, this forwarding unit is configured to several virtual units, and the method specifically includes following steps:
In a step 101, the vlan mark entrained by message that parsing receives, this vlan identifies report above-mentioned for labelling The vlan network sending method, apparatus place of literary composition.
In the present embodiment, the vlan mark entrained by message that forwarding unit parsing receives, above-mentioned forwarding unit can Think the equipment of transparent transmission, the equipment of this transparent transmission can include ips, and (intrusion prevention system, enters Invade system of defense) equipment or uag network log-in management and fluidic device;Certainly, the present invention is not limited to this.
In the present embodiment, above-mentioned vlan identifies the transmission method, apparatus place of the message receiving for labelling forwarding unit Vlan network, you can with by vlan mark the message sending from different departments is distinguished.
In a step 102, the corresponding virtual unit of this message is determined according to the vlan mark that message carries.
In the present embodiment, arbitrary virtual unit can obtain the vlan mark corresponding with each virtual unit, and works as When the vlan that above-mentioned message carries identifies identical with the vlan mark that any of the above-described virtual unit is assigned to, determine above-mentioned message Corresponding to any of the above-described virtual unit.
In step 103, when being matched with the predefined strategy in corresponding virtual unit when above-mentioned message, according to predefined Strategy carries out respective handling to message.
In the present embodiment, above-mentioned predefined strategy, may include that intrusion prevention system ips strategy, av (antivirus, anti-virus) strategy, access control policy, behavior auditing strategy, speed limit strategy or Bandwidth guaranteed strategy;Certainly, The present invention is not limited to this.
In the present embodiment, arbitrary virtual unit can be configured to predefine strategy accordingly in advance, and vlan is identified, Virtual unit and predefined strategy set up the mutual corresponding relation of three.When the message that forwarding unit receives does not match correspondence Virtual unit in predefined strategy when, forwarding unit directly forwards above-mentioned message;The message receiving when forwarding unit When being assigned in the predefined strategy in corresponding virtual unit, according to predefined strategy, respective handling is carried out to above-mentioned message, so Can realize individually managing virtual unit, distinguish and process multiple business.
From above technical scheme, the present invention is by becoming several virtual to set according to its functional configuration forwarding unit Standby, and vlan mark is set up corresponding relation with virtual unit, reach the purpose of device virtualization, in addition, by for above-mentioned The predefined strategy of virtual unit configuration, and this predefined strategy is just for carrying the vlan mark that above-mentioned virtual unit is comprised Message comes into force it is achieved that virtual unit individually manages, thus reached multiple business differentiation processing, and between multiple business mutually not The effect of impact.
In order to make it easy to understand, being described in further detail to technical scheme with reference to Fig. 2 and Fig. 3.Fig. 2 It is a kind of network architecture schematic diagram of the present invention one exemplary embodiment.Referring to Fig. 2: assume that certain enterprise can be drawn according to function Be divided into department a, department b, department c, department d and five departments of department e, these departments respectively be located at vlan1, vlan2, vlan3, In five VLANs of vlan4 and vlan5.It is assumed that the message spreading out of from department a, department b, department c, department d and department e divides Business that Dui Yingyu be not different, this message carries different vlan marks after two layers or three-tier switch are forwarded respectively (i.e. vlan-tag or vlan id), this vlan mark can be used for the vlan net sending method, apparatus place of the above-mentioned message of labelling Network, then forwards the above-mentioned message corresponding to different business by forwarding unit, the access to outer net for the final different departments of realization. Fig. 3 is another kind of message forwarding method flow chart of the present invention one exemplary embodiment, as shown in figure 3, methods described include with Lower step:
In step 301, receive the message carrying vlan mark.
In step 302, the vlan mark entrained by analytic message.
In the present embodiment, forwarding unit receives the message carrying different vlan marks, and this message can come from different Department, this department can be located in different vlan networks respectively.Wherein, above-mentioned forwarding unit is the equipment of transparent transmission, example As intrusion prevention system ips equipment or network log-in management and stream control uag equipment;Certainly, the present invention is not limited to this.
For example, as shown in Fig. 2 department a, department b, department c, department d and department e are located at VLAN respectively In vlan1, vlan2, vlan3, vlan4 and vlan5, the message from five different departments forwards through two layers or three-tier switch Carry different vlan mark (i.e. vlan-tag or vlan id) afterwards, this vlan mark can be used for the sender of labelling message Vlan network belonging to equipment.For example, because department a is located in vlan1 network, so what the message being derived from department a carried Vlan mark is vlan-tag1, then, the message from department a that forwarding unit receives also carries vlan-tag1, in the same manner, Department b is located in vlan2 network, then, the vlan that the message from department b that forwarding unit receives carries is designated vlan-tag2.
In step 303, obtaining is the vlan mark that each virtual unit distributes in advance.
In the present embodiment, forwarding unit can be configured to several virtual units, and vlan mark can in advance with Each virtual unit sets up corresponding relation, and this arbitrary virtual unit can be configured predefined strategy, therefore vlan can be identified, Virtual unit and predefined strategy set up corresponding relation.
In the present embodiment, above-mentioned predefined strategy may include that intrusion prevention system ips strategy, anti-virus Antivirus strategy, access control policy, behavior auditing strategy, speed limit strategy or Bandwidth guaranteed strategy;Certainly, the present invention is simultaneously This is not limited.
For example, it is assumed that certain enterprise can be divided into department a, department according to function in the network architecture as shown in Figure 2 B, department c, department d and five departments of department e, certain department office worker needs through intrusion prevention system ips equipment when accessing outer net Or network log-in management and stream control uag equipment, this intrusion prevention system ips equipment or network log-in management and stream control uag equipment Multiple virtual units can be configured to, and the virtual unit corresponding with above-mentioned five departments can be named as void respectively Propose standby a, virtual unit b, virtual unit c, virtual unit d and virtual unit e, in addition, the report sending from five different departments Literary composition carries different vlan marks, and this vlan mark can be used for identifying the vlan net that the above-mentioned five different departments of labelling are located Network, so, for the above-mentioned five different departments place vlan networks of labelling vlan mark can respectively with virtual unit a, void Propose standby b, virtual unit c, virtual unit d and virtual unit e and set up corresponding relation, and can be above-mentioned portions different from five The corresponding virtual unit of door is pre-configured with predefined strategy, therefore, it can to identify vlan, virtual unit and predefined strategy Corresponding relation is set up between three.In addition, it is assumed that virtual setting can be respectively when for virtual unit configuration predefined strategy Standby a configuration intrusion prevention system ips strategy, is virtual unit b configuration access control strategy, is that virtual unit c configuration behavior is examined Stratagem slightly, is virtual unit d configuration speed limit strategy and Bandwidth guaranteed strategy, is virtual unit e configuration speed limit strategy.
In step 304, judge whether message is matched with the predefined strategy in corresponding virtual unit.
In the present embodiment, can be according in step 303, vlan mark, virtual unit and predefined strategy three build Vertical corresponding relation, when the vlan mark vlan mark corresponding with arbitrary virtual unit that the message receiving carries is identical, Can determine that this message corresponds to any of the above-described virtual unit, then may determine that whether the above-mentioned message receiving is matched with this The corresponding predefined strategy of virtual unit.
For example, when the message that intrusion prevention system ips equipment or network log-in management and stream control uag equipment receive carries Vlan mark be vlan-tag1, in step 303, corresponding with virtual unit a vlan mark is also just vlan- Tag1, then it may be determined that the above-mentioned message receiving corresponds to virtual unit a.Now, when the above-mentioned message receiving of determination Corresponding to during virtual unit a it can be determined that whether the above-mentioned message receiving is matched with the intrusion prevention system in virtual unit a Ips strategy, if the message receiving is matched with the intrusion prevention system ips strategy in virtual unit a, can be according to following steps Rapid 305a carries out respective handling, otherwise, directly can be forwarded according to following step 305b.
In step 305a, this virtual unit carries out respective handling according to predefined strategy to message.
In the present embodiment, when being matched with the predefined strategy in corresponding virtual unit when the message receiving, according to Above-mentioned predefined strategy carries out respective handling to this message, and above-mentioned predefined strategy is for the vlan mark carrying and virtual unit The vlan mark identical message comprising comes into force, and so can realize virtual unit and individually manage.
Such as, when being matched with the intrusion prevention system ips strategy in virtual unit a when the message receiving in step 304, Illustrate that this message is probably abnormal or have nocuous message, now, virtual unit a can adjust in time, isolate or Interrupt the message carrying vlan-tag1 receiving.
For another example it is assumed that in step 303 intrusion prevention system ips equipment or network log-in management and stream control uag equipment connect The vlan mark that the message receiving carries is vlan-tag3, and the corresponding vlan mark of virtual unit d is also vlan-tag3, and And this message is when being matched with speed limit strategy and Bandwidth guaranteed strategy in virtual unit d simultaneously, then can be by this message The measures such as delay forwarding or discarding are taken to reach the effect of speed limit and Bandwidth guaranteed.
In step 305b, this virtual unit directly forwards above-mentioned message.
In the present embodiment, when not matching the predefined strategy in corresponding virtual unit when the message receiving, should Message is directly forwarded.
For example, in step 303, intrusion prevention system ips equipment or network log-in management and stream control what uag equipment received The vlan mark that message carries is vlan-tag2, and the vlan mark corresponding with virtual unit c is also vlan-tag2, then, Can determine that the above-mentioned message receiving corresponds to virtual unit c, however, the behavior auditing plan in this message and virtual unit c Slightly mismatch, illustrate that the internet behavior of above-mentioned office worker does not need to be audited, intrusion prevention system ips equipment or network log-in management And stream control uag equipment directly forwards above-mentioned message.
Corresponding with the embodiment of aforementioned message forwarding method, present invention also provides the embodiment of apparatus for forwarding message.
The embodiment of the application apparatus for forwarding message can be applied on forwarding unit.Device embodiment can pass through software Realize it is also possible to be realized by way of hardware or software and hardware combining.As a example implemented in software, as on a logical meaning Device, be in computer program instructions corresponding in nonvolatile memory being read by the processor of its place equipment Deposit what middle operation was formed.For hardware view, except processor, internal memory, network interface and nonvolatile memory it Outward, the equipment that in embodiment, device is located, generally according to the actual functional capability of this equipment, can also include other hardware, to this no longer Repeat.
Fig. 4 is a kind of apparatus for forwarding message schematic diagram of the present invention one exemplary embodiment, and this device includes: resolution unit 401, determining unit 402 and processing unit 403.
Wherein, resolution unit 401, the vlan mark entrained by message that parsing receives, described vlan identifies for marking That remembers described message sends the vlan network that method, apparatus are located.
Determining unit 402, determines the corresponding virtual unit of this message according to the vlan mark that described message carries.
Processing unit 403, when being matched with the predefined strategy in corresponding virtual unit when described message, according to described pre- Definition strategy carries out respective handling to described message.
Optionally, described determining unit determines this message pair by following manner according to the vlan mark that described message carries The virtual unit answered:
Obtaining is the vlan mark that each virtual unit distributes in advance;
When the vlan mark that described message carries is identical with the vlan mark that arbitrary virtual unit is assigned to, determine institute State message and correspond to described arbitrary virtual unit.
Optionally, also include:
Retransmission unit 404, when not matching the predefined strategy in corresponding virtual unit when described message, forwards described Message.
Optionally, described predefined strategy, comprising:
Intrusion prevention system ips strategy, anti-virus antivirus strategy, access control policy, behavior auditing strategy, limit Speed strategy or Bandwidth guaranteed strategy.
Optionally, described forwarding unit is the equipment of transparent transmission, and the equipment of described transparent transmission includes intrusion prevention system System ips equipment or network log-in management and stream control uag equipment.
In said apparatus, the process of realizing of the function of unit and effect specifically refers to corresponding step in said method Realize process, will not be described here.
For device embodiment, because it corresponds essentially to embodiment of the method, thus real referring to method in place of correlation The part applying example illustrates.Device embodiment described above is only schematically, wherein said as separating component The unit illustrating can be or may not be physically separate, as the part that unit shows can be or can also It is not physical location, you can with positioned at a place, or can also be distributed on multiple NEs.Can be according to actual Need to select the purpose to realize application scheme for some or all of module therein.Those of ordinary skill in the art are not paying In the case of going out creative work, you can to understand and to implement.
The foregoing is only the preferred embodiment of the application, not in order to limit the application, all essences in the application Within god and principle, any modification, equivalent substitution and improvement done etc., should be included within the scope of the application protection.

Claims (10)

1. it is characterised in that being applied on forwarding unit, described forwarding unit is configured to several to a kind of message forwarding method Virtual unit, methods described includes:
The vlan mark entrained by message that parsing receives, described vlan identifies the transmission method, apparatus for message described in labelling The vlan network being located;
The corresponding virtual unit of this message is determined according to the vlan mark that described message carries;
When being matched with the predefined strategy in corresponding virtual unit when described message, according to described predefined strategy to described report Literary composition carries out respective handling.
2. method according to claim 1 was it is characterised in that described should according to the vlan mark determination that described message carries The corresponding virtual unit of message, comprising:
Obtaining is the vlan mark that each virtual unit distributes in advance;
When the vlan mark that described message carries is identical with the vlan mark that arbitrary virtual unit is assigned to, determine described report Literary composition corresponds to described arbitrary virtual unit.
3. method according to claim 1 is it is characterised in that also include:
When not matching the predefined strategy in corresponding virtual unit when described message, forward described message.
4. method according to claim 1 is it is characterised in that described predefined strategy, comprising:
Intrusion prevention system ips strategy, anti-virus antivirus strategy, access control policy, behavior auditing strategy, speed limit plan Omit or Bandwidth guaranteed strategy.
5. method according to claim 1 is it is characterised in that described forwarding unit is the equipment of transparent transmission, described The equipment of bright transmission includes intrusion prevention system ips equipment or network log-in management and stream control uag equipment.
6. it is characterised in that being applied on forwarding unit, described forwarding unit is configured to several to a kind of apparatus for forwarding message Virtual unit, described device includes:
Resolution unit, the vlan mark entrained by message that parsing receives, described vlan identifies for message described in labelling Send the vlan network that method, apparatus are located;
Determining unit, determines the corresponding virtual unit of this message according to the vlan mark that described message carries;
Processing unit, when being matched with the predefined strategy in corresponding virtual unit when described message, according to described predefined plan Slightly respective handling is carried out to described message.
7. device according to claim 6 is it is characterised in that described determining unit passes through following manner according to described message The vlan mark determination corresponding virtual unit of this message carrying:
Obtaining is the vlan mark that each virtual unit distributes in advance;
When the vlan mark that described message carries is identical with the vlan mark that arbitrary virtual unit is assigned to, determine described report Literary composition corresponds to described arbitrary virtual unit.
8. device according to claim 6 is it is characterised in that also include:
Retransmission unit, when not matching the predefined strategy in corresponding virtual unit when described message, forwards described message.
9. device according to claim 6 is it is characterised in that described predefined strategy, comprising:
Intrusion prevention system ips strategy, anti-virus antivirus strategy, access control policy, behavior auditing strategy, speed limit plan Omit or Bandwidth guaranteed strategy.
10. device according to claim 6 is it is characterised in that described forwarding unit is the equipment of transparent transmission, described The equipment of bright transmission includes intrusion prevention system ips equipment or network log-in management and stream control uag equipment.
CN201610795735.7A 2016-08-31 2016-08-31 Message forwarding method and device Pending CN106375206A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610795735.7A CN106375206A (en) 2016-08-31 2016-08-31 Message forwarding method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610795735.7A CN106375206A (en) 2016-08-31 2016-08-31 Message forwarding method and device

Publications (1)

Publication Number Publication Date
CN106375206A true CN106375206A (en) 2017-02-01

Family

ID=57900305

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610795735.7A Pending CN106375206A (en) 2016-08-31 2016-08-31 Message forwarding method and device

Country Status (1)

Country Link
CN (1) CN106375206A (en)

Cited By (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107733800A (en) * 2017-11-29 2018-02-23 郑州云海信息技术有限公司 A kind of SDN message transmitting method and its device
CN112511400A (en) * 2020-11-17 2021-03-16 新华三技术有限公司 Message processing method and device
CN112995179A (en) * 2021-02-25 2021-06-18 杭州迪普信息技术有限公司 Response message processing method and device
WO2021138815A1 (en) * 2020-01-07 2021-07-15 刘建新 Mobile terminal management and control system and service data processing method
CN114448752A (en) * 2022-04-07 2022-05-06 杭州优云科技有限公司 Message forwarding method and device

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2015081534A1 (en) * 2013-12-05 2015-06-11 华为技术有限公司 Data packet transmission system, transmission method and device thereof
CN105450603A (en) * 2014-08-22 2016-03-30 杭州迪普科技有限公司 Message-processing method and device

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2015081534A1 (en) * 2013-12-05 2015-06-11 华为技术有限公司 Data packet transmission system, transmission method and device thereof
CN105450603A (en) * 2014-08-22 2016-03-30 杭州迪普科技有限公司 Message-processing method and device

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107733800A (en) * 2017-11-29 2018-02-23 郑州云海信息技术有限公司 A kind of SDN message transmitting method and its device
WO2021138815A1 (en) * 2020-01-07 2021-07-15 刘建新 Mobile terminal management and control system and service data processing method
CN112511400A (en) * 2020-11-17 2021-03-16 新华三技术有限公司 Message processing method and device
CN112995179A (en) * 2021-02-25 2021-06-18 杭州迪普信息技术有限公司 Response message processing method and device
CN112995179B (en) * 2021-02-25 2022-08-26 杭州迪普信息技术有限公司 Response message processing method and device
CN114448752A (en) * 2022-04-07 2022-05-06 杭州优云科技有限公司 Message forwarding method and device

Similar Documents

Publication Publication Date Title
US20210132983A1 (en) Securing a managed forwarding element that operates within a data compute node
US9686301B2 (en) Method and system for virtual asset assisted extrusion and intrusion detection and threat scoring in a cloud computing environment
US11012420B2 (en) Third-party service chaining using packet encapsulation in a flow-based forwarding element
EP3491810B1 (en) System, method, apparatus and computer program for providing transmission of compliance requirements for cloud-based applications
US8416709B1 (en) Network data transmission analysis management
US9064121B2 (en) Network data transmission analysis
US8555383B1 (en) Network data transmission auditing
US10397277B2 (en) Dynamic data socket descriptor mirroring mechanism and use for security analytics
EP3494682B1 (en) Security-on-demand architecture
US8713628B2 (en) Method and system for providing cloud based network security services
US20120204219A1 (en) Method and system for providing network security services in a multi-tenancy format
CN106375206A (en) Message forwarding method and device
US20090265777A1 (en) Collaborative and proactive defense of networks and information systems
US20180302438A1 (en) Identifying and deceiving adversary nodes and maneuvers for attack deception and mitigation
CN107534568A (en) Synthetic Constraints for Network Policies
Nam et al. Secure inter-container communications using XDP/eBPF
CN105407099B (en) The verifying that Firewall Group is concentrated is shared
US10243988B2 (en) Configurable network security
Häckel et al. A Multilayered Security Infrastructure for Connected Vehicles--First Lessons from the Field
JP2003505934A (en) Secure network switch
US10785152B2 (en) Network switch device for routing network traffic through an inline tool
US20110030054A1 (en) Progressive wiretap
US20160306653A1 (en) Configurable workload optimization
US20090158386A1 (en) Method and apparatus for checking firewall policy
Keeriyattil Zero Trust Networks with VMware NSX: Build Highly Secure Network Architectures for Your Data Centers

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
CB02 Change of applicant information

Address after: Binjiang District and Hangzhou city in Zhejiang Province Road 310051 No. 68 in the 6 storey building

Applicant after: Hangzhou DPtech Technologies Co.,Ltd.

Address before: Binjiang District and Hangzhou city in Zhejiang Province Road 310051 No. 68 in the 6 storey building

Applicant before: Hangzhou Dptech Technologies Co.,Ltd.

CB02 Change of applicant information
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication

Application publication date: 20170201

RJ01 Rejection of invention patent application after publication