首页> 外国专利> A structure of MPLS VPN for passing a MPLS VPN packet to non MPLS VPN safely using preservation table and method thereof and method for producting the preservation table

A structure of MPLS VPN for passing a MPLS VPN packet to non MPLS VPN safely using preservation table and method thereof and method for producting the preservation table

机译:使用保存表将MPLS VPN数据包安全地传递到非MPLS VPN的MPLS VPN的结构及其方法和保存表的生成方法

摘要

PURPOSE: An MPLS(MultiPoint Label Switching) VPN(Virtual Private Network) structure for securely transmitting a packet to a non-MPLS VPN by a security table, a method thereof and a method for generating the security table are provided to encapsulate an MPLS VPN packet by an IP(Internet Protocol) header and securely and efficiently transmit the MPLS VPN packet by the security table. CONSTITUTION: The first PE(Provider Edge) receives an MPLS VPN packet generated in a CE(Customer Edge), adds a label of an object host and a label of a next transmitted hop to a header of the MPLS VPN packet, and transmits the MPLS VPN packet(S511). Routers which exist on an LSP(Label Switching Path) perform a label switching operation, and transmit the MPLS VPN packet transmitted to the LSP corresponding to destination information included in the header to the second PE located in the boundary surface of a non-MPLS VPN(S512). The second PE changes the label of the next transmitted hop to an IP of the second PE and an IP of the third PE connected to the object host, and transmits the MPLS VPN packet through the non-MPLS VPN(S513,S514). The four PE located in the boundary surface of the non-MPLS VPN receives the MPLS VPN packet through the non-MPLS VPN(S515). The four PE compares information of a security table with header information of the MPLS VPN packet, and passes the MPLS VPN packet when an source label, an IP address of an object PE and an IP address of a source PE are identical(S516-S519). The MPLS VPN packet through the four PE is transmitted to the corresponding object host through the third PE(S520).
机译:目的:提供一种用于通过安全表将分组安全地发送到非MPLS VPN的MPLS(多点标签交换)VPN(虚拟专用网)结构,其方法和生成安全表的方法以封装MPLS VPN通过IP(Internet协议)标头发送MPLS VPN数据包,并通过安全表安全有效地传输MPLS VPN数据包。组成:第一个PE(提供商边缘)接收在CE(客户边缘)中生成的MPLS VPN数据包,将对象主机的标签和下一传输跃点的标签添加到MPLS VPN数据包的报头中,并发送MPLS VPN分组(S511)。存在于LSP(标签交换路径)上的路由器执行标签交换操作,并将发送到与对应于报头中的目的地信息的LSP的MPLS VPN数据包发送到位于非MPLS VPN边界表面的第二PE。 (S512)。第二PE将下一发送的跳的标签改变为第二PE的IP和连接到对象主机的第三PE的IP,并通过非MPLS VPN发送MPLS VPN分组(S513,S514)。位于非MPLS VPN的边界表面中的四个PE通过非MPLS VPN接收MPLS VPN分组(S515)。四个PE将安全表的信息与MPLS VPN数据包的标头信息进行比较,并在源标签,对象PE的IP地址和源PE的IP地址相同时传递MPLS VPN数据包(S516-S519) )。通过四个PE的MPLS VPN分组通过第三PE被发送到对应的对象主机(S520)。

著录项

  • 公开/公告号KR20040001210A

    专利类型

  • 公开/公告日2004-01-07

    原文格式PDF

  • 申请/专利权人 KT CORPORATION;

    申请/专利号KR20020036343

  • 发明设计人 KANG SU JIN;KIM I HAN;LEE YEONG HUN;

    申请日2002-06-27

  • 分类号H04L12/28;

  • 国家 KR

  • 入库时间 2022-08-21 22:50:08

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号