VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud

A virtual private cloud and virtualization technology, applied in the field of network communication, can solve the problems of resource waste, resource occupation, high cost, etc., and achieve the effect of saving costs and reducing resource occupation

Active Publication Date: 2013-01-23
CHINA TELECOM CLOUD TECH CO LTD
View PDF4 Cites 23 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, using this technology, IDC needs to establish IPSecVPN with each enterprise user. First, resources are wasted, and second, the cost is high.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud
  • VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud
  • VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0057] Such as figure 2 As shown, in order to realize the network configuration process, the cloud management platform adds an interface with the VPN management platform and an interface with the gateway management platform. The cloud management platform is a configuration and management platform for cloud resources in the data center. It is used to uniformly divide the QinQ VLAN tags of VPCs and gateways in the data center. The cloud management platform contains MPLS VPN information leased by enterprise users, including MPLS ID; The VLAN tag and MPLS VPN ID are sent to the VPN management platform as configuration information, the QinQ VLAN tag of the gateway is sent to the gateway management platform as QinQ parameters, and the QinQ VLAN tag and corresponding VPC information are sent to the CE.

[0058] CE is the edge device of the MPLS user network, deployed at the egress of the data center, and supports QinQ label transmission.

[0059] The gateway management platform sen...

Embodiment 2

[0074] Figure 4 A schematic diagram of the uplink data forwarding process provided by Embodiment 2 of the present invention, that is, an enterprise user accesses a VPC, such as Figure 4 shown, including the following processes:

[0075] Step 401: The gateway tags the data flow from the enterprise user accessing the VPC with a QinQ VLAN tag and forwards it to the BNG.

[0076] Since the gateway has stored the QinQ VLAN tag corresponding to the enterprise user in the configuration process described in the first embodiment, after receiving the data flow from the enterprise user accessing the VPC, the data flow is marked with the QinQ VLAN tag.

[0077] Step 402: After receiving the data flow, the BNG tags the data flow with an MPLS label and forwards it through the MPLS VPN corresponding to the QinQ VLAN label.

[0078] Since the BNG has stored the MPLS VPN information, QinQ VLAN label, gateway IP, IDC corresponding IP and QoS parameters in the configuration process described...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a VPN (Virtual Private Network) virtualization method and system of visiting a virtual private cloud. The VPN virtualization method comprises the following steps of: pre-allocating a correspondence relationship between a QingQ VLAN (Virtual Local Area Network) and an MPLS (Multi Protocol Label Switch) VPN which are applied by an enterprise user; and transmitting a data stream in the MPLS VPN applied by the enterprise user in a mode of marking a QingQ VLAN label on the data stream of the enterprise user, which is interacted with the virtual private cloud of a data center. According to the VPN virtualization method and system provided by the invention, the purpose of visiting the virtual private clouds by a plurality of enterprise users is achieved just by hiring one MPLS VPN from an operator, so that the occupancy of resources is reduced and the cost is saved; and high QoS (Quality of Service) requirement of the enterprise users can be ensured, the transmission expenditure is saved because encryption is not needed, and in addition, the purpose of communication while opening can be achieved without complex configuration.

Description

【Technical field】 [0001] The invention relates to the technical field of network communication, in particular to a VPN virtualization method and system for accessing a virtual private cloud. 【Background technique】 [0002] Virtual Private Cloud (VPC) is a private cloud network created for small and medium-sized enterprises in the public cloud. Enterprise users can directly connect to the virtual server infrastructure in the public cloud data center (IDC) through a virtual private network (VPN) on the Internet. . At present, the VPN provided by VPC generally adopts IPSec VPN technology. This VPN technology only requires enterprise user gateways (hereinafter referred to as gateways) and IDC two-point egress network devices to support IPSec, and does not require any services provided by telecom operators, such as figure 1 As shown in the figure, enterprise user 1 establishes IPSec VPN tunnel 1 with the IDC egress CE (hereinafter referred to as CE) through gateway 1, accesses V...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/46H04L29/08
Inventor 谢朝阳侯光华广小明
Owner CHINA TELECOM CLOUD TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products