Tunnel connection request distribution method and device

A connection request and tunnel connection technology, applied in the field of data communication, can solve the problems of incompatibility with standard methods and unfavorable large-scale commercial applications

CN102917071AActive Publication Date: 2013-02-06ZHEJIANG UNIVIEW TECH CO LTD
4 Cites 1 Cited by

Patent Information

Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Publication Date
2013-02-06

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The invention provides a tunnel connection request distribution method which is applied to an NAT (Network Address Translation) gateway to dispatch an L2TP connection request from a user outside the NAT gateway. The method comprises the steps of judging whether an L2TP connection request message from the user requires local authentication according to a preset policy, conducting local processing if required, otherwise returning an authentication failure message to the user, storing session characteristics of the authentication failure message in a session table when the authentication failure message is received, acquiring the session characteristics of a request message when the request message is received subsequently, and searching whether the preposed session table contains a corresponding table entry according to the session characteristics, and forwarding the message to an LNS (Lonworks Network Service) server in the NAT gateway if the table contains the entry, otherwise locally processing the L2TP connection request message. A service network served by the LNS server is different from a local service network. According to the tunnel connection request distribution method, the objective LNS server to which the user is intended to access can be identified intelligently while the existing standard protocol is followed.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to the field of data communication, in particular to a method and device for distributing tunnel connection requests in an enterprise network environment. Background technique

[0002] With the continuous development of standardized and easily expandable network technology, especially IP technology, intelligent video surveillance technology based on IP network has developed rapidly, and IP surveillance has become the mainstream of current surveillance. For security and cost reasons, most surveillance networks are deployed in private networks. Many mobile users or public network users use the decoding client (such as VC) to access the monitoring resources in the private network (such as the live resources on the encoder EC). private network access, figure 1 It is such a typical application scenario. For related technologies of using tunnels to traverse the monitoring network NAT, reference may be made to related patent applicatio...

Examples

Embodiment Construction

[0017] The present invention performs special processing in the authentication stage of the L2TP connection request, and under the premise of basically guaranteeing the user experience, intelligently identifies the user's L2TP connection request, and distributes the user's L2TP connection request to different service network front-end LNS servers for processing . The detailed implementation in the preferred embodiments of the present invention will be described below in conjunction with the accompanying drawings.

[0018] Please refer to figure 2 , image 3 as well as Figure 4 , The present invention provides a device for distributing tunnel connection requests. In a preferred embodiment, the present invention is realized by using a computer program, the device runs on the NAT gateway, and includes a pre-matching unit and an LNS service unit. The following describes the processing flow of the device running on the NAT gateway and cooperating with the existing functions o...