Background technology
Fast development along with science and technology field, the modern industry network is more and more higher to the requirement of the reliability of the network equipment and validity, and mostly at present network application generally is to adopt bus type structure or star-like isostructural single network-in-dialing mode, and wherein the most network equipment all is in the same machine room.These network systems are relatively simple, but have following defective: (1) network system carrying Single Point of Faliure, irresistible bust is such as machine room outage, equipment paralysis etc.(2) network equipment and network link exist Single Point of Faliure, wherein link/the parts of network failure have: switch or its port, network interface card, cable and connector etc., network equipment failure comprises that hardware fault and software fault (collapse such as operating system, internal memory overflows, and Routing Protocol is not restrained etc.).Therefore when local circuit or network node break down, network can't proper communication, to real-time, industry (such as finance/security, aviation/space flight, shipbuilding, railway, defence equipment etc.) that reliability requirement is higher, this situation is unacceptable for some for this.
For addressing the above problem, at present redundant technique commonly used is two Redundant Ethernet technology in the industrial circle, its principle as shown in Figure 1, switch A and switch b interconnection consist of a group of switches, client host adopts double card a, b to link to each other with switch b with switch A respectively, forms the dual link passage.Network is in when operation, a passage job, and another one is switched when network breaks down as alternate channel.The method can effectively realize network redundancy, guarantees the proper communication of whole network.But exist simultaneously certain defective, client host is being responsible for the professional transmission of all integrated networks in the method, comprise data information transfer, video information transmission, transmission of speech information etc., because all business datums are by the unified standard transmission, and every kind of desired transmission performance of Network differs (such as real-time, reliability etc.), for example in the transmission of video voice, " hair fastener, pause " phenomenon usually appears in transfer of data.This will cause the reliability of network, real-time to affect adversely, and along with the increase of communication node number and Network in the network application, the failure rate of network is corresponding higher.Therefore, be badly in need of that a kind of diverse network transport service separately ensures, real-time, comprehensive integrated network system that reliability is high.
Summary of the invention
The technical problem to be solved in the present invention is to provide a kind of multi-service integrated pair of redundant network system, raising network reliability and real-time.
The present invention solves the problems of the technologies described above the technical scheme of taking to be: integrated pair of redundant network system of a kind of multi-service is characterized in that: it is formed by connecting by Ethernet by network core layer, network access layer and network user's layer; Wherein the network core layer comprises manyly to the core layer switch, and network access layer comprises 4 kinds of access-layer switch dividing by type of service, and every kind of access-layer switch is connected with a pair of core layer switch after the configuration in pairs, and 4 kinds of Network interfaces are provided; Network user's layer is by type of service and the in pairs two redundancy links of corresponding access-layer switch.
Press such scheme, described network core layer is formed by several core layer exchange rack full mesh interconnection, and each core layer exchange rack is comprised of the core layer switch concatenation.
Press such scheme, described network user's layer is comprised of node computer and out-out business equipment, the in pairs two redundancy links of node computer and access-layer switch, and out-out business equipment is connected with node computer by type of service.
Press such scheme, described 4 kinds of access-layer switch are data traffic exchange machine, transducer video traffic switch, television video service switch and speech business switch.
Beneficial effect of the present invention is:
1, the present invention is summarized as four kinds of Networks to all-network exchange transmission, is used for realizing the multi-service integrated design of a plurality of systems, by the business setting network node; Reduced each other influencing each other between business, be easy to manage respectively, and determine relevant data traffic/data bandwidth/network characteristics such as data delay/failure recovery time according to the transmission feature of every kind of business, adopt the service differentiation strategy, satisfied integrated network information carrying demand, realized with the preferential purpose of service communication performance.
2, network access layer of the present invention is connected two Redundant Ethernet to connect with network user's layer, when local circuit or network node break down, automatically switches to redundant network, guarantees the proper communication of whole network; Network core layer and network access layer use the modes such as machine room backup, equipment redundancy, physical link redundancy, virtual link binding further to improve the reliability of network simultaneously.
3, the present invention has been contained all Network application according to four large business of network transmission function division, no longer pays close attention to these business specifically for which system, and real-time is good, and reliability is high, can be applicable to multiple industry field.
Embodiment
Below in conjunction with accompanying drawing the present invention is further elaborated and illustrates:
As shown in Figure 2, the present invention adopts carrier class ethernet network constructing technology, mainly comprises: network core layer 1, be used for to support High-speed Switching Fabrics communication, connect many to the network access layer service switch; Network access layer 2 is used to network user's layer that four kinds of Network interfaces are provided, and the realization network is divided by function service and transmitted; Network user's layer 3 with the in pairs two redundancy links of Access Layer service switch, is realized the network redundancy backup, and the processing of responsible service data information and transmission.
In the present embodiment, the network core layer is become by the 10G core layer switch group of four full mesh interconnection.Described core layer exchange rack is comprised of core layer switch (or core layer network element) cascade, and the core switch cabinet of four 10G can be ruined policy installation in different machine rooms according to the safety that the position disperses is anti-.Connect by gigabit multimode optical cable full mesh between the core layer exchange rack, can be with taking full advantage of network bandwidth resources such as Trunk technology and multilink bundling technology.
In the present embodiment, network access layer is comprised of 1G access-layer switch (or network element) required many of concrete application, be four kinds of service access switches according to the Internet Transmission delineation of activities, and be grouped into configuration, interconnect with a pair of core layer exchange rack by twisted-pair feeder or optical cable.Simultaneously, interconnect by telecommunication cable between a pair of access-layer switch of responsible homogeneous networks transport service.
In order to prevent that core layer exchange fault (such as outage, engine inefficacy, port damage etc.) from affecting the network high-speed switched communication, adopt dual power supply redundancy, ups power, engine redundancy and module redundancy technology at core layer switch and access-layer switch, carry out load balancing by the chip controls power supply, when a power supply breaks down, another power supply can be taken over its work at once, after changing power supply, be again that two power supplys are worked simultaneously.
Network user's layer is comprised of node computer and out-out business equipment, and the in pairs two redundancy links of node computer and Access Layer service switch consist of two Redundant Ethernet; Out-out business equipment (data processor, radar video, infrared video, television video, microphone, phone etc.) is connected with node computer, according to delineation of activities, the information data transmission that collects is carried out data processing, Internet Transmission etc. to the corresponding node computer, can be different business and formulate different qos policys.The node computer of network user's layer can be taken the circumstances into consideration according to service needed (nonessential) and is divided into different virtual net VLAN, and can take the circumstances into consideration (nonessential) and adopt the technology realization application isolation such as MPLS/VPN, makes things convenient for management and the maintenance of network system.Described network user's layer can be application server, database server, WEB server network interface is provided.
The network exchange transport service is divided into four kinds of Networks according to function: data service, transducer video traffic, television video business and speech business, thereby access-layer switch is categorized as: data traffic exchange machine, transducer video traffic switch, television video service switch and speech business switch.The data message that data information business is responsible for transmitting mainly comprises sensing data, software interactive data, control data, state feedback data, measurement and positioning data, management data etc.; The professional transducer video information of being responsible for transmission of transducer video information mainly comprises radar video, infrared video, weather video etc.; The professional tv video information of being responsible for transmission of tv video information mainly comprises on-site supervision video, meeting video etc.; The voice messaging that voice information service is responsible for transmitting mainly comprises telex network voice, software synthetic speech, monitoring voice etc.
The node computer of network user's layer uses dual network interface (for example sharing two network interface card single port or the Single NIC twoport of single IP address) to realize two redundant interconnections with access-layer switch, and a passage wherein moves, other one as Hot Spare.During the network operation, whether the primary network interface monitoring network link of node computer is normal, and whether the state that operates in the special-purpose drive software monitoring network interface on the network interface is normal.Whether node computer carries out reachability test by the ICMP agreement to access-layer switch at the IP layer, normal with the network link of judging current use, if undesired another link that then automatically switches to.According to the needs of practical application, also can specify as one sees fit a certain node interim as test initiation node, adopt broadcast mode cycle to send the heart-beat test Izvestia by this node.If network node can normally receive the heart-beat test Izvestia, think that then current link is normal; If continuous several cycle is not received the heart-beat test Izvestia, then think current link failure, and automatically switch to another link.
If cause link failure owing to switch, the communications cable or network interface break down, node computer can be transferred to the backup network interface to MAC Address with all connections from primary network interface automatically, and this backup network interface is exported letter flow broadcast away, rebuild link by another access-layer switch, so that communication is proceeded down.
Described network node computer can adopt the IP address of the mode specified network interface of dynamic binding, make the network interface that is moving use an IP address, make dynamically the MAC Address of network interface and fixing IP address binding by ARP(Address Resolution Protocol).Can make node computer all be in par by using with upper type, avoid relevant fault, be easy to system development and maintenance.
The native system information security is secure, and in network terminal, the network switching equipment can patch the firewall hardware card or the network security hardware module is installed, and can carry out based on agreement, based on Mac address, IP address-based packet filtering control function, realizes information filtering; At user side, support autonomous access control policy, can use such as the protecting information safety mechanism take intrusion detection graded access made safe transfer of data as the basis, refusal unauthorized access.
The network equipment that arrives involved in the present invention, network technology system, procotol and networking, service strategy etc. are according to the needs of practical application, all can adopt as one sees fit commercial standard (CS) technology and ready-made goods shelf equipment ripe on the market, use Hierarchical Design, support international standard network interface and agreement.
Below in conjunction with Fig. 3, Fig. 4, Fig. 5, Fig. 6, Fig. 7 the network connection between each level of the present invention is done and to be further explained in detail.
As shown in Figure 3, the network core layer is made of four 10G core layer exchange rack C, interconnects by gigabit lightguide cable link full mesh between the core layer exchange rack C.Described core layer exchange rack is comprised of core layer switch (or core layer network element) cascade, and the core switch cabinet of four 10G can be ruined policy installation in different machine rooms according to the safety that the position disperses is anti-.Can be with taking full advantage of network bandwidth resources such as Trunk technology and multilink bundling technology between the core layer switch.Can move on the core layer switch such as VRRP agreement formation Hot Spare and provide redundant for network access layer.Network access layer is comprised of 1G access-layer switch (or network element) many, can be divided into data traffic exchange machine D, transducer video traffic switch S, television video service switch T and speech business switch V according to the Internet Transmission delineation of activities, every kind of access-layer switch is grouped into configuration, by twisted-pair feeder or optical cable and the interconnection of a pair of core layer exchange rack, wherein interconnect by telecommunication cable between a pair of access-layer switch of responsible homogeneous networks transport service, form loop network.Whole network topology becomes symmetrical structure, has realized equipment redundancy and the link redundancy of network service.In addition, can be in access-layer switch configuration HSRP agreement, for virtual net VLAN provides the gateway backup.
Core layer switch and access-layer switch all adopt dual power supply redundancy, ups power, engine redundancy and module redundancy technology so that more redundancy protectings to be provided.
Fig. 4, Fig. 5, Fig. 6, Fig. 7 are the concrete connection diagram between network user's layer and each service access switch.As shown in FIG., network user's layer is comprised of node computer e and out-out business equipment, and the in pairs two redundancy links of node computer e and access-layer switch consist of two Redundant Ethernet; (transducer video traffic equipment s, television video business device t's out-out business equipment v) are connected with node computer e with speech business equipment, according to delineation of activities, the information data transmission that collects is carried out data processing, Internet Transmission etc. to the service node computer, and be that different business is formulated different qos policys, thereby provide different service quality.Node computer can be taken the circumstances into consideration according to service needed (nonessential) and is divided into different virtual net VLAN, and can take the circumstances into consideration (nonessential) and adopt the technology realization application isolation such as MPLS/VPN, makes things convenient for management and the maintenance of network system.
Two redundancy link technical schemes that network access layer and network user's layer use are specially: every pair of service access switch passes through communications cable interconnection, node computer uses dual network interface (for example sharing two network interface card single port or the Single NIC twoport of single IP address) to realize two redundancy links with access-layer switch, passage operation wherein, other one as Hot Spare.Enable dynamic routing protocol at nucleus equipment and gateway, network is when operation, and whether the primary network interface monitoring network link of node computer is normal, and whether the state that operates in the special-purpose drive software monitoring network interface on the network interface is normal.Whether node computer carries out reachability test by the ICMP agreement to access-layer switch at the IP layer, normal with the network link of judging current use, if undesired another link that then automatically switches to.According to the needs of practical application, also can specify as one sees fit a certain node interim as test initiation node, adopt broadcast mode cycle to send the heart-beat test Izvestia by this node.If network node can normally receive the heart-beat test Izvestia, think that then current link is normal; If continuous several cycle is not received the heart-beat test Izvestia, then think current link failure, and automatically switch to another link.If cause link failure owing to switch, the communications cable or network interface break down, node computer is transferred to the backup network interface to MAC Address with all connections from primary network interface automatically, and this backup network interface is exported letter flow broadcast away, rebuild link by another access-layer switch, so that communication is proceeded down.
Described network node computer can adopt the IP address of the mode specified network interface of dynamic binding, make the network interface that is moving use an IP address, make dynamically the MAC Address of network interface and fixing IP address binding by ARP(Address Resolution Protocol).Can make network user's layer computer all be in par by using with upper type, avoid relevant fault, be easy to system development and maintenance.