Layer-3 switching device with port binding function and data packet forwarding method

A technology of port binding and three-layer switching, which is applied in the direction of data exchange network, digital transmission system, electrical components, etc. It can solve spoofing attacks, the inability to judge the legality and validity of ND messages, and the failure of normal forwarding of network messages, etc. problems, to achieve the effect of improving safety and reliability, ensuring stability and safety

Active Publication Date: 2016-02-24
北京神州数码云科信息技术有限公司
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Since the default communication link of the ND protocol is safe and reliable, and the nodes in the network cannot judge the legitimacy and validity of the ND message from the link, if a malicious node in the link forges its own identity and sends a specially constructed When a neighbor discovers a message, it can launch a spoofing attack on the target node, which will cause the host routing table entries generated by the ND to be unstable, which will cause the network message to not be forwarded normally and affect the reliability of the switching device.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Layer-3 switching device with port binding function and data packet forwarding method
  • Layer-3 switching device with port binding function and data packet forwarding method
  • Layer-3 switching device with port binding function and data packet forwarding method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0029] Embodiments of the present invention will be further described below in conjunction with the accompanying drawings.

[0030] Dynamic Host Configuration Protocol Version 6 (DHCPv6) is a protocol that automatically assigns IPv6 addresses and other options (such as DNS) to users. It is widely used in LANs. DHCPv6 simplifies network deployment and facilitates network maintenance. DHCPv6 Snooping (SNOOPING) is a private protocol that monitors the DHCPv6 address request and allocation process. This technology judges the legitimacy of DHCPv6 address requests and allocation messages by setting trusted ports on the switch. Identification (VLANID), lease time and other information are bound to form a user table entry, thereby forming a DHCPv6SNOOPING prefix database; The binding forms a user entry, thus forming the DHCPv6SNOOPING binding database. The present invention utilizes the above-mentioned characteristics of DHCPv6SNOOPING to realize

[0031] figure 1 It is a schemati...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a three-layer switching device with port binding function and a data forwarding method. The switching device includes a transceiver module, a switching module, a temporary binding module, a port binding module and a routing update module, wherein: the switching The module stores a routing table; the temporary binding module is used to create a temporary request binding including the unique identifier of the network node and the receiving port of the address allocation request message when receiving the address allocation request message of the network node Information; the port binding module is used to generate port binding information according to the address assignment response message of the same network node and the temporary request binding information, and the port binding information will be assigned to the address of the network node, The unique identifier of the network node is bound to the access port of the network node; the routing updating module is used to periodically update the routing table of the switching module according to the port binding information.

Description

technical field [0001] The invention relates to the field of Internet message exchange and forwarding, in particular to a three-layer switching device with port binding function and a data message forwarding method. Background technique [0002] With the continuous improvement of switching technology in data communication, equipment with three-layer switching function has been widely used. Three-layer switching equipment adds routing function on the basis of two-layer switching equipment, so that three-layer switching equipment can forward across VLAN wire speed IPv6 packets, thus greatly enhancing the performance of switching devices. [0003] The three-layer switching device contains IPv6 third-layer routing table items in the switching chip, including host routing table items and network segment routing table items. Next hop), the network segment routing table entry refers to the routing table entry with a prefix length less than 128 bits (2001:: / 16 next hop). In most c...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L12/70H04L45/74
Inventor 梁小冰向阳朝
Owner 北京神州数码云科信息技术有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products