Method for realizing packet traversal of network address translation equipment

A network address translation and message technology, which is applied in the field of network communication and can solve the problem that port address translation cannot be performed.

Inactive Publication Date: 2016-08-03
OPZOON TECH
View PDF5 Cites 2 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The technical problem solved by the present invention is the problem that the port address translation cannot be performed without adding UDP in the NAT traversal of the Internet protocol security (IPSec) tunnel

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for realizing packet traversal of network address translation equipment
  • Method for realizing packet traversal of network address translation equipment
  • Method for realizing packet traversal of network address translation equipment

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the drawings in the embodiments of the present invention.

[0023] The present invention proposes a method for realizing message traversal of network address translation equipment. The method is used for sending ESP (EncapsulateSecurityPayload) messages from the internal network to the external network first. When the internal network sends the ESP message to the external network, When sending a message, the ESP message carries the external network security parameter index, the internal network IP address and the internal network security parameter index (SecurityParameterIndex, SPI). When the ESP message passes through the NAT device, according to the external network Network security parameter index, intranet IP address and intranet security parameter index, form a mapping table between the intranet IP address, SPI and public network ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The present invention provides a method for realizing message passing through a network address translation device, including: S1, the intranet sends a message to the network address translation device, and the message carries the internal network IP address, the internal network security parameter index and the external network security Parameter index; S2. The network address translation device receives the message, and according to the internal network IP address carried in the message, the internal network security parameter index and the external network security parameter index and the public network Establish a mapping table for the IP address; S3. Convert the internal network IP address of the message to the public network IP address according to the mapping table, and send the message to the public network IP address through the public network IP address An external network device; the external network security parameter index is the security parameter index of the external network device. The present invention establishes NAT device address mapping, so that when the message in the IPSec tunnel performs NAT traversal, the port address translation can be performed without adding UDP.

Description

technical field [0001] The invention relates to the technical field of network communication, in particular to a method for realizing message traversal through network address conversion equipment. Background technique [0002] Network Address Translation (Network Address Translation, NAT) is a technology for accessing a wide area network (WAN). It is a conversion technology that converts an internal network IP address into a public network IP address. type of network. Due to the limited number of public network IP addresses in the network, a large number of NAT devices are used in the network to undertake the task of converting internal network and external network IP addresses and ports to alleviate the limited problem of public network IP addresses. [0003] In the prior art, a virtual private network (Virtual Private Network, VPN) device uses a method of adding a UDP4500 header to the ESP message to solve the problem that the port address translation cannot be performed...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L12/741H04L29/12H04L45/74
Inventor 陈海滨
Owner OPZOON TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products