Supercharge Your Innovation With Domain-Expert AI Agents!

A method and device for isolating ports of a full network based on SDN

A network port and port technology, applied in the field of communication, can solve problems such as error-prone and complex configuration work, and achieve the effects of convenient modification, flexible networking, and centralized configuration work

Active Publication Date: 2018-06-19
湖州帷幄知识产权运营有限公司
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

It can be seen from the figure that the traditional port isolation technology is distributed, and the configuration task of port isolation needs to be based on each switch. If the constructed network is very large, the configuration work will be very complicated and error-prone

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method and device for isolating ports of a full network based on SDN
  • A method and device for isolating ports of a full network based on SDN
  • A method and device for isolating ports of a full network based on SDN

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0046] Such as figure 2 Shown, a kind of SDN-based whole network port isolation method, comprises steps:

[0047] The SDN switch establishes a channel with the controller;

[0048] The SDN switch reports its own MAC address and port information to the controller;

[0049] The controller sends a flow table to the SDN switch according to the MAC address, the port information and the isolation configuration task sequence;

[0050] The SDN switch realizes port isolation configuration of the whole network according to the flow table.

[0051] Specifically, the SDN switch first establishes a channel with the controller, and in this process, the SDN switch needs to initialize the OpenFlow channel. The SDN switch reports its own MAC address and port information through a private Experimenter message, wherein the MAC address of the SDN switch can be used as the identifier of the SDN switch. After receiving the MAC address and port information, the controller sends a flow table to ...

Embodiment 2

[0072] According to the SDN-based full-network port isolation method proposed in the foregoing embodiments, this embodiment proposes an SDN-based full-network port isolation device.

[0073] Such as Figure 5 Shown, a kind of device of the whole network port isolation method based on SDN, comprises:

[0074] a connection unit, configured to establish a connection channel between the SDN switch and the controller;

[0075] An information unit, connected to the connection unit, to obtain the MAC address and port information of the SDN switch;

[0076] A flow table unit, connected to the information unit, for obtaining a flow table according to the MAC address, the port information and the isolation configuration task sequence;

[0077] The isolation unit is connected to the flow table unit, and is used to realize the isolation of the entire network port configuration according to the flow table.

[0078] The connection unit, information unit, flow table unit and isolation uni...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention provides an SDN-based full-network port isolation method and device. The method comprises the steps as follows: a connection channel is established between an SDN switch and a controller; the SDN switch reports an MAC address and port information to the controller; the controller issues a flow table to the SDN switch according to the MAC address, the port information and an isolation configuration task sequence; and the SDN switch achieves full-network port configuration isolation according to the flow table. The device comprises a connection unit, an information unit, a flow table unit and an isolation unit, wherein the connection unit is used for establishing the connection channel between the SDN switch and the controller; the information unit is used for obtaining the MAC address and the port information of the SDN switch; the flow table unit is used for obtaining the flow table according to the MAC address, the port information and the isolation configuration task sequence; and the isolation unit is used for achieving full-network port configuration isolation according to the flow table. All port isolation configuration task sequences are concentrated on an SDN controller, so that the configuration work is very concentrated; modifying is convenient; and networking is flexible.

Description

technical field [0001] The present invention relates to the technical field of communication, in particular to a method and device for isolating ports of an entire network based on SDN. Background technique [0002] Traditional port isolation is an independent function based on ports, which acts between ports and isolates the traffic between each other. Using the port isolation feature, port isolation within a VLAN can be realized, thereby saving VLAN resources and increasing network security. . After the port isolation function is configured, ports in an isolation group are isolated from each other, and normal data forwarding can be performed between ports in different isolation groups or between ports that do not belong to any isolation group and other ports. [0003] Such as figure 1 As shown in , it is a schematic structural diagram of traditional port isolation, in which S1, S2 and S3 are switches, e1 / 0 / 0, e1 / 0 / 10 and e1 / 0 / 15 belong to VLAN 100, and e1 / 0 / 0 It belongs...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L12/24H04L12/46H04L29/06
CPCH04L12/4641H04L41/0803H04L63/0272
Inventor 翟跃
Owner 湖州帷幄知识产权运营有限公司
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More