Marine ship integrated network scheduling management system and method
By adopting Panabit intelligent gateway SD-WAN networking technology in the offshore ship network, the selection of multi-line satellite lines and the real-time networking of the command center is realized, which solves the network interconnection problem between offshore ships and scheduling systems, and improves the stability and reliability of communication.
Patent Information
- Application Number
- CN202411247338.7
- Authority / Receiving Office
- CN · China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- Filing Date
- 2024-09-06
- Publication Date
- 2025-05-13
AI Technical Summary
The prior art is difficult to achieve efficient, flexible and secure network interconnection between offshore ships and dispatching systems, especially in the automatic signal selection and optimization switching between multiple satellite lines and command centers.
The Panabit intelligent gateway SD-WAN networking technology is adopted to realize the selection of multi-line satellite lines and the real-time networking of the command center. Combined with intelligent reconnection technology, it ensures the smoothness, timeliness and security of ship-strait communication services.
Through the functions of Panabit intelligent gateway link detection, intelligent switching, monitoring and management, flexible, fast and secure management and scheduling of offshore ship networks are realized, and the stability and reliability of ship-straight communications are improved.
Smart Images

Figure CN119996437A_ABST
Abstract
Description
Technical Field
[0001] The invention relates to the technical field of fixing a slewing wheel fender, and in particular to an integrated network dispatching management system and method for marine vessels. Background Art
[0002] With the improvement of the digitalization, intelligence and networking of ships, more and more control systems, communication and navigation systems, information management systems and equipment are continuously connected to the ship network to realize external information exchange.
[0003] The integrated network dispatching and management system for marine vessels needs to conduct intelligent routing control on the original marine vessels, and realize the automatic preferential switching function of multiple satellite line VSAT, FBB, Iridium, 4G / 5G and other link signals of the ship. In order to ensure the normal use of COSCO Shipping's freight business system, improve the security capabilities of the maritime business system, and improve the unified management and dispatching functions of various marine vessels and command centers, a marine ship integrated network dispatching and management system and method are proposed to perfectly solve the problem of interconnection between various marine vessels and dispatching systems. Compared with VPN, SD-WAN solution is more flexible, faster, and users are completely unaware; compared with the emergency mode of ships, Panabit intelligent gateway SD-WAN networking technology is adopted: multi-line satellite line preferential routing and command center are realized to realize real-time networking, intelligent reconnection technology, and ensure the smoothness, timeliness and security of ship-shore communication services. Summary of the invention
[0004] In response to the above technical problems, the present invention provides a comprehensive network dispatching and management system and method for marine vessels, which adopts Panabit intelligent gateway SD-WAN networking technology: realizes optimal routing of multi-line satellite lines and real-time networking of the command center, and intelligent reconnection technology to ensure the smoothness, timeliness and security of ship-to-shore communication services.
[0005] To achieve the above object, the technical solution of the present invention is as follows:
[0006] An integrated network dispatching and management system for marine vessels, characterized by comprising a Panabit intelligent gateway, a ship communication device and a ship local area network, wherein the ship communication device is connected to the ship local area network via the Panabit intelligent gateway.
[0007] The Panabit smart gateway has link detection, link intelligent switching, monitoring management, application identification, Internet authentication, intelligent flow control, network analysis, fault location, SD-WAN networking and built-in Bypass function.
[0008] The Panabit intelligent application gateway has dual OS system backup. When the main system fails, the backup system immediately takes over the business, so that the system can be switched in seconds without the user noticing. It has super high stability and high reliability.
[0009] A method for integrated network dispatching and management of marine vessels, the specific steps are as follows:
[0010] 1). Panabit smart gateway is deployed according to the network topology;
[0011] 2). When the user terminal connects to the network, it first obtains the intranet IP address through the DHCP server. When the user accesses the network, he / she must first authenticate on the pop-up login interface. The user enters the user name and password on the login page to initiate an authentication request. Then the Panabit smart gateway establishes NAT mapping for the user's intranet IP address, thereby enabling the user to access the Internet normally;
[0012] 3). Monitor users' online behavior in real time, refresh the online monitoring screen according to the users' online status, and help users selectively control the online status of IP terminals to control which network software employees are prohibited or allowed to use;
[0013] 4). End-to-end monitoring, management and maintenance of branch offices’ access to key applications at the headquarters;
[0014] 5) Centralized remote monitoring management and auditing of Internet logs, deploying a log service center in the cloud network to centrally monitor each enterprise area;
[0015] 6). Carry out traffic collection and realize traffic visualization management;
[0016] 7). Collect statistics on users' online behavior records, record all network sessions, and sort out the access status of the entire network traffic according to personnel, time, website, traffic, application layer protocol, etc., to find out which websites, time, and applications are frequently used by users. In addition to providing first-hand data for network optimization, once there is an abnormal situation such as a sudden increase in access volume, an increase or decrease in concurrency, an alarm will be immediately issued and the administrator will be notified to conduct a thorough investigation of the situation in a timely manner.
[0017] Preferably, the network topology in step 1 is deployed in an egress gateway network to implement a multi-link automatic switching function, and can provide functions such as unified Internet identity authentication, unified bandwidth management, and anomaly detection and analysis.
[0018] Preferably, the network topology in step 1 is a serial deployment, which can provide functions such as unified Internet identity authentication, unified bandwidth management, and anomaly detection and analysis.
[0019] Beneficial effects of the present invention:
[0020] The present invention sorts out the division and management and control capabilities of the security management domain of the ship-shore communication network through the traffic collection nodes and traffic security control levels of the marine ship integrated network dispatching and management system;
[0021] The present invention builds a dedicated network and establishes a dedicated tunnel between devices to achieve the interconnection of maritime ship-shore communication networks, which can provide a basis for quickly establishing a mobile command center network communication;
[0022] The present invention sorts out the business logic and development plan of the satellite network export and the application and service requirements of the Internet export of the integrated network dispatching and management system for marine ships, so as to reduce the complexity of physical facilities, minimize the direct dispatching of physical resources, greatly reduce the difficulty and cost of maintenance and management, and better support business and services;
[0023] The present invention realizes preferential switching among export links such as VSAT lines, FBB lines, 4G lines, etc., meeting the requirements of ship-to-shore communication networks;
[0024] The ship-to-shore communication network of the present invention performs load balancing to ensure the stability of the satellite network export of the ship-to-shore communication network;
[0025] The present invention realizes the functions of 1:1 full flow collection, network full protocol identification and restoration, network behavior knowledge base, etc. for the ship-to-shore communication network satellite network. By comprehensively recording the network flow log, event log, and account log, the invention realizes the detection, analysis, and discovery capabilities of network behavior, and meets the requirements of network security maintenance departments for network supervision.
[0026] The present invention realizes network performance management (NPM) for satellite network applications of ship-to-shore communication networks. The NPM application quality detection function can perform real-time and on-demand quality detection on common application protocols such as HTTP, ICMP and DNS, and monitor the quality of various applications through multiple dimensions such as throughput, jitter and latency, so as to change passive response into active monitoring and optimize operation and maintenance efficiency. BRIEF DESCRIPTION OF THE DRAWINGS
[0027] Figure 1 It is a statistical graph of network access by users of the present invention;
[0028] Figure 2 This is a schematic diagram of Panabit distinguishing different levels of delay in the present invention;
[0029] Figure 3 It is a schematic diagram of the delay analysis result of the present invention;
[0030] Figure 4 It is a schematic diagram of the flow visualization management of the present invention. DETAILED DESCRIPTION
[0031] The technical solution of the present invention will be described clearly and completely below in conjunction with the accompanying drawings. Obviously, the described embodiments are only part of the embodiments of the present invention, not all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by ordinary technicians in this field without creative work are within the scope of protection of the present invention.
[0032] Example 1
[0033] An integrated network dispatching and management system for marine vessels, the system includes a Panabit intelligent gateway, a ship communication device and a ship local area network. The ship communication device is connected to the ship local area network through the Panabit intelligent gateway.
[0034] Among them, Panabit smart gateway has link detection, link intelligent switching, monitoring management, application identification, Internet authentication, intelligent flow control, network analysis, fault location, SD-WAN networking and built-in Bypass function. Panabit smart gateway can adapt to a variety of grid devices of different models, and can simultaneously support multiple satellite line VSAT, FBB, Iridium, 4G / 5G and other link signals. The gateway also supports multi-device and multi-link simultaneous communication through NAT (Network Address Translation) technology; and has the function of automatic link switching management. The gateway not only supports manual link switching, but also has link detection and link intelligent switching functions;
[0035] In addition, the Panabit Intelligent Application Gateway also has dual OS system backup. When the main system fails, the backup system immediately takes over the business, so that the system can be switched in seconds without the user noticing. It has super high stability and high reliability.
[0036] A method for integrated network dispatching and management of marine vessels, the specific steps are as follows:
[0037] First, the Panabit intelligent gateway in the integrated network dispatching and management system should be deployed according to the network topology. There are two situations:
[0038] In the first case, Panabit is deployed in the egress gateway network. The Panabit intelligent application gateway is deployed at the egress to realize the multi-link automatic switching function, which can provide unified Internet identity authentication, unified bandwidth management, and anomaly detection and analysis functions. The Panalog big data log analysis system is deployed in bypass mode to collect and store logs in a centralized manner, conduct Internet data audits, and form network access big data analysis; a network operation situation awareness system is formed to detect and analyze unknown new network attacks;
[0039] In the second case, Panabit is deployed in series with the network and Panabit intelligent applications, which can provide unified Internet identity authentication, unified bandwidth management, anomaly detection and analysis, and other functions. The Panalog big data log analysis system is deployed in bypass mode to collect and store logs in a centralized manner, conduct Internet data audits, and form network access big data analysis. A network operation situation awareness system is formed to detect and analyze unknown new network attacks.
[0040] After the management system is deployed, when users access the network, they must first authenticate on the pop-up login interface. The user enters the user name and password on the login page to initiate an authentication request. Then the Panabit smart gateway establishes NAT mapping for the user's intranet IP address, thereby enabling the user to access the Internet normally.
[0041] The Panabit intelligent gateway in the system will monitor the user's online behavior in real time, and refresh the online monitoring screen according to the user's online situation. All online situations in the unit network will be displayed on the monitoring screen in a timely manner, and managers can also check which groups or users are online in a certain period of time in the network at any time, as well as the historical online records of each user. Therefore, managers can not only understand the online situation of employees in the unit in real time, the main sites visited by employees, and common network activities, such as whether there are often online behaviors such as downloading games and watching online TV online that consume network resources and affect key applications such as OA, ERP, CRM, and video conferencing, but also help users selectively control the online situation of IP terminals; for some machines that are not allowed to access the Internet, managers can directly remotely operate and prohibit them from connecting to the Internet. It can also provide user online policies, such as online time, online IP, and online address. At the same time, it can prohibit and block online addresses, such as game IP addresses and IP addresses of bad information on the Internet, to control which network software employees are prohibited or allowed to use; for example, QQ, MSN, stock trading software, chat software, etc., can be set to control any type of application software, allowing grouping with different permission restrictions.
[0042] The Panabit smart gateway in the management system will count the user's online behavior records, record all network sessions, and sort out the access situation of the entire network traffic according to personnel, time, website, traffic, application layer protocol, etc., which websites, time, and applications are frequently used by users. In addition to providing first-hand data for network optimization, once there is an abnormal situation such as a sudden increase in access volume, an increase or decrease in concurrency, an alarm will be immediately issued and the administrator will be notified to conduct a thorough investigation of the situation in a timely manner. For example, Figure 1 .
[0043] The most important thing is the end-to-end monitoring and management of branch offices’ access to key applications at the headquarters. Traditional networks lack the ability to perceive the application layer, which makes it impossible to locate and trace problems, let alone solve them. Panabit’s network performance monitoring (NPM) module can clearly show the latency of data packets at different levels, analyze the reasons for slow access to specific services, and implement network fault location analysis.
[0044] like Figure 2 Panabit can distinguish the “client-side delay”, “service response delay” and “application delay” of each service in SD-WAN.
[0045] Client-side latency: refers to the latency from the client's intranet to Panabit. If this latency is large, the problem can be basically located in the intranet poisoning or intranet network equipment failure.
[0046] Server response delay: refers to the delay of the service returning from the server through Panabit. If this delay is too large and the service delay is very small, it means that there is a problem on the operator's network side.
[0047] Application latency: refers to the latency of a service staying on the server and responding. If this latency is too large, it indicates that the server providing the service is overloaded or faulty.
[0048] The benefit of distinguishing these is that when network and business problems occur, this function can be used to quickly locate the source of the problem, making problem location more targeted and efficient.
[0049] To detect the quality of users' Internet access, Panabit's Network Performance Monitoring (NPM) module divides network latency into three stages: client latency refers to the network latency from the final client to the Panabit monitoring point, service latency refers to the network latency from Panabit to the server, and application latency refers to the time difference between the first uplink and downlink packets of the session accessing the server (an indicator of the server's response speed). Through Panabit's Network Performance Monitoring (NPM) module, you can clearly see the latency of data packets at different levels and analyze the reasons for the slow network. The results are as follows: Figure 3 shown.
[0050] Centralized remote monitoring management and auditing of Internet logs, deploying a log service center in the cloud network to centrally monitor each enterprise area, so that managers can uniformly monitor, audit, configure and manage the network status of enterprises in each region and the Internet behavior of teachers and students at any time and anywhere with network access. These data can also be retained in logs to provide reference content for the acquisition of big data.
[0051] Carry out traffic collection and realize visual traffic management. By monitoring the traffic of different applications, you can understand the bandwidth usage of various applications in network traffic. At the same time, you can monitor whether the application is running normally, monitor the running status of the server and provide corresponding statistical reports and logs, as well as find out which IPs generate abnormal data to discover network problems in time. Monitoring statistics provide a variety of rich application monitoring and analysis functions, including application traffic reports based on all priorities, all application traffic reports based on configuration policies, and application traffic reports in various formats generated according to source IP address, destination IP address, source port, destination port, protocol, etc. Reports can be generated based on bandwidth size, bandwidth percentage, total number of bytes, total number of packets, number of connections, etc. Such as Figure 4 , using intuitive analysis graphics and reports to display the traffic distribution of network operations, business applications, and network status at a glance.
[0052] The above shows and describes the basic principles and main features of the present invention and the advantages of the present invention. The various components mentioned in the present invention are common technologies in the existing field. Those skilled in the art should understand that the present invention is not limited to the above embodiments. The above embodiments and descriptions are only to illustrate the principles of the present invention. Without departing from the spirit and scope of the present invention, the present invention may have various changes and improvements, which fall within the scope of the present invention to be protected. The scope of protection claimed by the present invention is defined by the attached claims and their equivalents.
Claims
1. A marine vessel integrated network dispatching and management system, characterized in that It includes a Panabit intelligent gateway, ship communication equipment and a ship local area network. The ship communication equipment is connected to the ship local area network through the Panabit intelligent gateway.
2. A marine vessel integrated network dispatching and management system according to claim 1, characterized in that The Panabit intelligent gateway has link detection, intelligent link switching, monitoring management, application identification, Internet authentication, intelligent flow control, network analysis, fault location, SD-WAN networking and built-in Bypass function.
3. The integrated network dispatching and management system for marine vessels according to claim 1 is characterized in that The Panabit intelligent application gateway has dual OS system backup.
4. A method for integrated network dispatching and management of marine vessels, the specific steps are as follows: 1). Panabit smart gateway is deployed according to the network topology; 2). When the user terminal connects to the network, it first obtains the intranet IP address through the DHCP server. When the user accesses the network, he / she must first authenticate on the pop-up login interface. The user enters the user name and password on the login page to initiate an authentication request. Then the Panabit smart gateway establishes NAT mapping for the user's intranet IP address, thereby enabling the user to access the Internet normally; 3). Monitor users’ online behaviors in real time, refresh the online monitoring screen according to users’ online behaviors, and control which network software employees are prohibited or allowed to use; 4). Help users selectively control the Internet access of IP terminals, and monitor and maintain the end-to-end access of branches to key applications of the headquarters; 5) Centralized remote monitoring management and auditing of Internet logs, deploying a log service center in the cloud network to centrally monitor each enterprise area; 6). Carry out traffic collection and realize traffic visualization management; 7). Collect statistics on users' online behavior records, record all network sessions, and sort out the access status of the entire network traffic according to personnel, time, website, traffic, application layer protocol, etc., to find out which websites, time, and applications are frequently used by users. In addition to providing first-hand data for network optimization, once there is an abnormal situation such as a sudden increase in access volume, an increase or decrease in concurrency, an alarm will be immediately issued and the administrator will be notified to conduct a thorough investigation of the situation in a timely manner.
5. A method for integrated network scheduling and management of marine vessels according to claim 4, characterized in that The network topology in step 1 is deployed in the egress gateway network.
6. A method for integrated network scheduling and management of marine vessels according to claim 4, characterized in that The network topology in step 1 is a serial deployment.
Citation Information
Cited By
Converged communication gateway suitable for polar navigation
CN121968169A