Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

2676 results about "Ip address" patented technology

Network security threat research and judgment method, system and equipment and storage medium

The invention discloses a network security threat research and judgment method, system and device and a storage medium, and the method comprises the following steps: S1, obtaining network traffic, terminal logs, application program interface calling records and threat intelligence data in real time, carrying out the standardized cleaning and format conversion of the data, and building a unified data lake; s2, matching, identifying and determining threats through a preset known threat feature library, constructing a normal behavior baseline by using an unsupervised learning algorithm, and marking suspicious events deviating from the baseline; s3, for the suspicious event marked in the step S2, mining a potential attack path and an attack intention by combining knowledge graph technology associated asset information, a historical attack chain and a homologous IP address; and S4, based on the attack success probability, the influence asset importance and the diffusion speed, calculating a threat level by adopting a fuzzy comprehensive evaluation model, and generating a research and judgment report containing disposal suggestions.
Owner:CRCC DEV GRP CO LTD +1

Methods and systems for providing network connectivity to a secure access service edge (SASE) domain

Methods and systems for providing network connectivity are disclosed. In an embodiment, a method for providing network connectivity involves receiving from a Mobile Network Operator (MNO) an access ID, an IP address, and an Access Point Name (APN) at a SASE domain, wherein the access ID, the IP address, and the APN correspond to a wireless device, updating IP address-to-tenant mappings at the SASE domain in response to the access ID, the IP address, and the APN, and forwarding traffic received at the SASE domain from the wireless device via the MNO according to the updated IP address-to-tenant mappings.
Owner:VERSA NETWORKS

Cloud platform docking service implementation method and system based on adaptation layer, equipment and medium

The invention provides a cloud platform docking service implementation method, system and device based on an adaptation layer and a medium, belongs to the technical field of cross-platform resource management and service integration, and particularly relates to a method for configuring an adapter for each cloud platform and mapping an API (Application Program Interface) of the platform to a standard RESTful API interface; performing standardization processing on interface return formats of different cloud platforms through a data conversion module, converting a heterogeneous format into a unified format, and outputting a unified data format; packaging and abstracting services of different cloud platforms; identity authentication is realized by randomly generating a secret key in cooperation with an encryption and decryption algorithm, and a verification mechanism of a source request IP is preset; and recording an operation log and an error log in the docking process, and recording an interface calling frequency, a requester IP and error information of an abnormal logic node. According to the method, the adaptation layer is introduced, the isomerism of the bottom cloud platform is shielded, and unified interfaces and services are provided, so that efficient and flexible cloud platform docking is realized.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

Aggregation analysis method for whole network file and external black and grey product detection

The invention discloses an aggregation analysis method for whole-network file and external black and grey production detection. The method comprises the following steps: S1, collecting original data related to black and grey production and generating structured log data; s2, constructing a heterogeneous graph containing multiple types of nodes such as files, IP addresses, domain names and accounts; s3, constructing node feature vectors and fusing node type information; s4, inputting a heterogeneous graph neural network to extract node cross-type aggregation features; s5, inputting the adaptive multi-channel graph convolutional network, and combining the structure attention and the attribute attention to generate a high-order semantic representation of the node; and S6, based on the semantic residual error and the path structure, reasoning and identifying a high-risk node and a propagation path map thereof. According to the method, graph neural modeling and behavior path reasoning capabilities are fused, and the method is suitable for black-gray link detection and abnormal node identification tasks in a large-scale network environment.
Owner:GUANGXI POWER GRID CORP

Door lock and card cooperative processing method and system

The invention discloses a door lock and card cooperative processing method and system, and the method comprises the steps: triggering a robot calling process according to preset times of doorbell button operation detected by a first door lock and read neighbor RFID card information, verifying a matching result of an RFID card and a resident registration form, and generating an authority verification passing signal; calculating a target multicast address based on the ID number of the RFID card, and converting the ID number of the RFID card into a false source IP address to obtain a communication parameter set; sending an IGMPv3 report message to the router according to the communication parameter set; according to the triggering operation of the same RFID card detected by the assisted second door lock, an assistance multicast request message is generated, the (S, G) forwarding table item is matched through the router and forwarded to the first door lock, the first door lock sends an assistance confirmation message to the second door lock, and robot calling authorization is completed. By utilizing the embodiment of the invention, efficient, safe and low-delay cross-door-lock cooperative operation can be realized.
Owner:HANGZHOU DIANZI UNIV +1

Text and image fused online comment toxicity detection and filtering method and system

The invention discloses a text and image fused online comment toxicity detection and filtering method and system, and relates to the technical field of natural language processing, and the method comprises the steps: extracting a semantic vector of a comment text through a RoBERTa-Marge model; the visual features of the image are extracted through an OfficientNet-V2 model; aligning heterogeneous modal features by adopting a double-flow contrast loss function; self-adaptive decision making of culture sensitivity: loading a regional sensitive rule table according to a user IP address, and dynamically adjusting symbolic semantics; calculating an intimacy correction factor based on the social relationship between the publisher and the receiver; and performing context weighted toxicity scoring, calculating a user historical behavior weight, and outputting a final toxicity probability. According to the method, a deep dynamic mapping mechanism of text and visual features is constructed, heterogeneous features are extracted through RoBERTa-Large and OfficientNet-V2 double-flow architectures, semantic space alignment is forced by utilizing comparative learning, and the problem of image-text splitting detection in the traditional technology is solved.
Owner:XIAN ZHITONG ZHONG SOFTWARE TECH CO LTD

Real-time data desensitization method and system based on context awareness

The invention relates to the technical field of data security, and particularly discloses a real-time data desensitization method and system based on context awareness, and the method comprises the steps: intercepting an HTTP / HTTPS request through a gateway, and extracting a user authentication token, URL parameters, an IP address, a timestamp and request body data in a request header; analyzing user role information based on the user authentication token, extracting access environment characteristics based on an IP address and a timestamp, and performing sensitive field identification and grading on request volume data to determine a data sensitive level; according to the user role information, the access environment characteristics and the data sensitivity level, matching a predefined desensitization strategy template through a rule engine, and generating a real-time desensitization strategy containing a field-level desensitization instruction; verifying the access authority based on the user authentication token, and dynamically adjusting the desensitization degree in combination with the access environment characteristics; and according to the real-time desensitization strategy and the desensitization strength, performing real-time desensitization processing on the sensitive fields in the corresponding data.
Owner:BEIJING JIANGRONGXIN TECH CO LTD

Security vulnerability management method and system based on big data

The invention relates to the technical field of security vulnerability analysis, in particular to a big data-based security vulnerability management method, which comprises the following steps of: constructing a real-time data acquisition strategy, capturing an internal source network equipment log, a server running state and application system flow data through a distributed log collection component, and storing the internal source network equipment log, the server running state and the application system flow data; meanwhile, vulnerability information of the exogenous threat intelligence platform is synchronized through an API interface; constructing a dynamic risk assessment model, and updating the risk assessment of the security vulnerability in real time by taking the four-dimensional model [IP address, service type, port number and software version] as a reference; and triggering a response strategy according to risk value grading, wherein the response strategy comprises automatic isolation of high-risk equipment, dynamic configuration of firewall rules and generation of a repair work order. According to the invention, through the synergistic effect of real-time data acquisition, dynamic asset modeling, intelligent risk assessment, a hierarchical response mechanism and a closed-loop verification system, the accuracy, efficiency and defense capability of security vulnerability management are significantly improved.
Owner:ZHENGZHOU BIG DATA DEV CO LTD

End-to-end encryption with per-hop path-selection based on unique edge identities for sd-wan and multi-hop networks

A system and associated methods provide solutions for end-to-end privacy and per-hop routing and policy decision in multi-hop and Software-Defined Wide Area Networks (SD-WANs) by leveraging unique SDWAN edge identities of edge devices. The system enables end-to-end encryption between traffic source and destination sites using IPsec ESP tunnel mode, with System IPs as the outer IP addresses. The system further enables per-hop integrity protection using IPsec AH transport mode, with WAN IPs as the outer IP addresses. By having some information encrypted between a source device and a destination device and other information encapsulated between hops (e.g., between source device and an intermediate device), the system enables route and policy lookup based on destination site System-IP, along with integrity protection based on SLA-class in packet metadata for independent path selection at intermediate hops.
Owner:CISCO TECHNOLOGY INC

Unmanned aerial vehicle communication data feature extraction method and unknown type intrusion detection method

The invention discloses an unmanned aerial vehicle communication data feature extraction method and an unknown type intrusion detection method. Physical layer information and network layer information of an unmanned aerial vehicle are acquired; wherein the physical layer information comprises the position, attitude, height and command type of the unmanned aerial vehicle, and the network layer information comprises an IP address, a port number, a protocol type and packet metadata; constructing an unmanned aerial vehicle state feature vector according to the physical layer information and the network layer information of the unmanned aerial vehicle; based on the trained CNN branch network, extracting communication data features used for intrusion detection in the unmanned aerial vehicle state feature vectors; a double-branch network structure of the convolutional neural network and the time sequence convolutional network is provided, a loss function is improved, an information entropy regularization item is introduced, efficient detection and distinguishing of unknown attack samples are achieved, the network structure has the advantages of being high in calculation efficiency and light in weight, and the method is suitable for large-scale popularization and application. The method is suitable for being deployed in resource-limited edge computing scenes such as unmanned aerial vehicles.
Owner:NORTHWESTERN POLYTECHNICAL UNIV

Optimal way to support device switchovers in cloud environments

The present application discloses a method, system, and computer system for performing failovers of traffic carrying devices. The method includes (i) generating, by one or more processors a virtual routing IP address that is common to a plurality of network nodes, and (ii) sending to an upstream device a physical IP address for a particular network node of the plurality of network nodes, wherein the physical IP address is sent as metadata in a packet to the upstream device.
Owner:PALO ALTO NETWORKS INC

Data filtering method and system for digital twin industrial control safety target range

The invention discloses a data filtering method and system for a digital twin industrial control safety target range. The method comprises the following steps: firstly, marking an IP address of an industrial control system network in a segmented manner; feature extraction is carried out on the network behavior data of each IP segment, and splicing is carried out on the IP segment label to serve as a feature sample for constructing an industrial control network security identification model; a plurality of inverted residual modules with the same structure are adopted as core construction units, network behavior features in the feature samples are extracted and learned, and classification training is carried out; deploying the trained industrial control network security identification model to a pre-filtering module of a digital twin industrial control security target range, and carrying out classification, identification and filtering on network behavior data flowing in each IP segment in real time; and the misjudged sample is subjected to backtracking analysis, and the IP marking rule is updated. According to the technical scheme, the accuracy of network behavior data identification can be improved, so that the effectiveness of industrial control system simulation is improved.
Owner:STATE GRID HENAN ELECTRIC POWER ELECTRIC POWER SCI RES INST +2

Addressing method for policy control network element, application side network element and control plane network element

The invention provides an addressing method for a strategy control network element, an application side network element and a control plane network element, and the method comprises the steps: obtaining a device address of a strategy binding network element retrieval database network element based on the local static data configuration information of the application side network element; retrieving a device address of a database network element according to the policy binding network element, and sending the control plane network element query message to a corresponding target policy binding network element retrieval database network element, so as to query an address of a target control plane network element in the target policy binding network element retrieval database network element according to the control plane network element query information; according to the address of the target control plane network element, sending the policy control network element address query request to the target control plane network element; and receiving a query result corresponding to the policy control network element address query request sent by the target control plane network element. According to the invention, the problem that the application side network element cannot acquire the IP address of the policy control network element according to the user IP address information is avoided.
Owner:CHINA MOBILE GROUP DESIGN INST +1

Internet-Exposed Device Discovery

A cloud-based, external attack surface management (or EASM) service identifies computers, servers, smartphones, and other devices that are exposed to the public Internet. Any device that can connect to the public Internet may be vulnerable to cybersecurity attacks. The EASM service identifies a device exposed to the public Internet by comparing connection notifications to an address scan of the entire Internet. The connection notifications are sent by cybersecurity sensory agents installed at client devices. When a connection notification and the address scan of the entire Internet references a matching IP address and / or a matching port within a timeframe, the corresponding device is identified as being exposed to the public Internet.
Owner:CROWDSTRIKE

Display equipment safety management system

The invention discloses a display equipment security management system for the problems of display equipment security, network security and data security, and the system comprises a network security protection module which is used between display equipment and an information issuing end, and carries out the management and control of flow data through judging whether an accessed IP address and a port are trusted or not; the data encryption and decryption module is used for encrypting and decrypting the released flow data; the sensitive image interception module is used for performing content identification on the decrypted to-be-displayed image data, and if the decrypted to-be-displayed image data is a sensitive image, intercepting the decrypted to-be-displayed image data to prevent the display equipment from playing the sensitive image; and the peripheral interface control module is used for preventing illegal access of the peripheral interface. According to the invention, data playing of the display device can be protected, and malicious behaviors are prevented.
Owner:CHINA TELECOM DIGITAL INTELLIGENCE TECH CO LTD

Virtual machine network connectivity test method and device, medium and product

The invention discloses a virtual machine network connectivity test method and device, a medium and a product, relates to the technical field of cloud computing, and is applied to a detection service, the detection service is configured with a single preset detection network card, the preset detection network card is connected with a plurality of l2gateway ports, each l2gateway port corresponds to a virtual router, the IP address and the MAC address of each l2gateway port are the same, and the IP address and the MAC address of each virtual router are the same. Comprising the following steps: determining a target network label corresponding to a to-be-tested target virtual machine from a preset mapping relation table; packaging based on the target network label to obtain a detection message, and sending the detection message to a target l2gateway port matched with the label by using a preset detection network card; and determining a target virtual router matched with the target l2gateway port, so that the target l2gateway port forwards the detection message to a target virtual machine in the target virtual router to perform a network connectivity test.
Owner:JINAN INSPUR DATA TECH CO LTD

Method for monitoring alarm information and related equipment

The invention relates to the technical field of wind power plant network operation and maintenance, in particular to a method and related equipment for monitoring alarm information, and the method comprises the steps: inputting basic information of a physical machine and a virtual machine, including an equipment model, an IP address, a deployment position and specified field information; a resource binding threshold value is set, and the resource binding threshold value covers the space utilization rate of a CPU, a memory and a disk; monitoring resource use conditions in real time, performing natural language processing on alarm information, and extracting key features; matching the key features with historical data by using a preset classification model, dividing alarm levels and allocating the alarm levels to corresponding processing queues in combination with a resource threshold exceeding degree; and pushing alarm information to the contact person through a multi-mode notification channel according to the alarm level.
Owner:YANCHI ZHONGYING CHUANGNENG NEW ENERGY CO LTD +2

Full-dimension intelligent sensing type firewall system

The invention provides a full-dimension intelligent perception type firewall system, and the system comprises a two-factor authentication module which is used for generating a digital identity certificate through living body detection, micro-expression analysis and dynamic token verification; the AI strategy management module is used for verifying the authority level of the digital identity credential and generating an access control rule with a digital signature according to the authority level; the traffic perception and analysis module is used for configuring traffic acquisition parameters according to the access control rule and generating an abnormal traffic report of the traffic acquisition parameters; the attack intention recognition module is used for generating a forbidding instruction containing a source IP, a target IP and a forbidding level based on the abnormal traffic report and in combination with service context information; and the infinite address governance module is used for performing duplicate checking comparison on the IP address in the forbidding instruction and the IP address in the intranet address library, and marking the compared risk address, so that the network attack can be accurately and effectively intercepted.
Owner:HUANENG XINDIAN POWER GENERATION CO LTD

Method and system for automatically collecting and cleaning public opinion experimental data

The invention relates to the field of data analysis and cleaning, in particular to a method and system for automatically collecting and cleaning public opinion experimental data. The method comprises the following steps of performing periodic data crawling on a public information website, performing public opinion hotspot analysis, and extracting a to-be-processed hotspot event stream; performing keyword detection and global content distribution analysis on the to-be-processed hot event stream to obtain a keyword frequency distribution diagram; performing negative emotion deep recognition according to the to-be-processed hot event stream, and extracting negative emotion public opinion data; performing negative public opinion evolution trend prediction based on the keyword frequency distribution diagram to obtain a negative public opinion propagation situation; and performing IP address tracing on the negative emotion public opinion data to obtain the negative public opinion region sensitivity. According to the method, comprehensive and accurate abnormal public opinion detection and deletion are realized, and the network information quality and the public governance level are improved.
Owner:SHANXI INTELLIGENT BIG DATA IND TECH INNOVATION RES INST

Public network-oriented global threat perception method and system

The invention provides a public network-oriented global threat perception method and system, and relates to the technical field of advanced persistent attack threat detection, and the specific technical scheme is as follows: setting a network trip line and a domain name trip line of a public network to establish honey point equipment, and establishing honey court equipment based on an IP address reputation mechanism; building a honey hole device based on a camouflage traceability technology and a reverse chain technology, and building a sub-honey array based on a honey point device, a honey court device and the honey hole device; generating a honey point template based on the sub-honey array to deploy honey point equipment, obtaining public network traffic based on a honey yard equipment preposition and combining with the honey point equipment, and detecting the public network traffic to obtain a detection result; and making a countering strategy of the honey hole device based on the behavior of the attacker in the detection result, obtaining threat intelligence of the attacker, and updating IP address resources of the honey point device and the honey court device based on the threat intelligence. According to the invention, a low-intrusive threat probing mechanism and a high-universality global threat sensing system are established through four-honey equipment.
Owner:GUANGZHOU UNIVERSITY

Container-based parallel computing system

A container-based parallel computing system for executing high-performance computing (HPC) applications. The system leverages container technology to package the applications executed at the nodes in a cluster. To load and execute a job in the parallel computing system, containers are deployed in a cluster that include all the application resources and configuration information that the particular HPC application needs to execute. An event-driven batch scheduler may be used to dynamically allocate resources for executing multi-node jobs in the container-based parallel computing system, handling the coordination of resource allocation for the customer. The scheduler insures that jobs begin executing as fast as possible, and handles failure conditions such as partial scaling. Virtual network interfaces are attached to the containers that allow the containers to connect to and communicate with other containers in the cluster directly through the network interfaces of host machines using IP addresses provided by the virtual network interfaces.
Owner:AMAZON TECH INC

Terminal self-discovery method, forwarding equipment and readable storage medium

The invention provides a terminal self-discovery method, forwarding equipment and a readable storage medium. The method comprises the steps that a first message sent by a first terminal is received, the first terminal is located in a first local area network, the first message comprises an identifier of the first local area network and an internet protocol IP address of the first terminal, and the first terminal needs to be self-discovered in a second local area network; multicast is carried out on a second message in the second local area network, and the second message comprises the identification of the second local area network and the IP address of the first terminal; a response message sent by a second terminal is received, the second terminal is located in the second local area network, and the destination IP address of the response message is the IP address of the first terminal. According to the method, terminal self-discovery can be realized across local area networks, that is, the first terminal in the first local area network can discover the second terminal in the second local area network through a self-discovery technology.
Owner:HUAWEI TECH CO LTD

Threat intelligence automatic line expanding method based on network surveying and mapping

The invention belongs to the technical field of network security, and particularly relates to a threat intelligence automatic extension method based on network surveying and mapping, which comprises the steps of automatically collecting and preprocessing multi-source threat intelligence by a large model, extracting key network identification information, generating standardized network asset characteristics, and obtaining a multi-dimensional asset characteristic matrix based on a network space surveying and mapping technology. Constructing a network asset fingerprint database, carrying out correlation verification, generating a set of verifiable network asset fingerprints, carrying out feature vectorization on the verifiable network asset fingerprints, carrying out homologous asset analysis through a weighted clustering algorithm, and outputting a threat entity topological graph comprising an IP address cluster, a domain name correlation group and a C2 infrastructure. According to the method, potential threats which are difficult to cover by traditional manual analysis can be automatically identified, an integrated multi-source threat intelligence platform and a network surveying and mapping tool are supported, diversified intelligence formats and feature requirements can be processed, the automation degree is high, threat paths can be rapidly expanded, and response time can be shortened.
Owner:XIANGTAN UNIV

Containerized multi-copy deployment management method and device, terminal equipment and storage medium

The invention is suitable for the technical field of computers, and provides a containerized multi-copy deployment management method and device, terminal equipment and a storage medium, and the method comprises the steps that after a container copy is started, state information of the container copy is periodically updated to a real-time state list, and the state information comprises an IP address and a node health level; reading state information of other container copies in the real-time state list; dynamically electing a master container copy according to a preset master-slave election rule based on the IP address and the node health level in the real-time state list; when it is detected that the current main container copy is abnormal, an automatic switching process is triggered, and the main container copy is elected again. According to the method and the device, the efficiency and the reliability of copy management in a containerized multi-copy deployment scene can be improved, so that the service continuity and the data consistency are guaranteed.
Owner:CYG SUNRI CO LTD +1

Systems and methods for verified communication between mobile applications

Systems and methods for using device data to validate a mobile user are disclosed. In accordance with aspects, a method may include receiving, at a backend processing infrastructure of a third party and from a backend processing infrastructure of a mobile application provider, a first copy of location information and an IP address, wherein the location information and the IP address are associated with a mobile device; receiving, at the backend processing infrastructure of the third party and from a mobile application provided by the third party, a second copy of the location information and the IP address, wherein the mobile application provided by the third party is executed on the mobile device; and verifying, by the backend processing infrastructure of the third party, that the first copy of the location information and the IP address matches the second copy of the location information and the IP address.
Owner:JPMORGAN CHASE BANK NA

An edge device-based media streaming method, device and electronic device

The application discloses a media stream transmission method and device based on an edge device and electronic equipment, and the method comprises the following steps: an edge all-in-one machine receives a live broadcast request message sent by a site device management cloud module from a first network, the edge all-in-one machine is connected to a second network, the edge all-in-one machine generates media stream service information according to a camera module identifier, and the media stream service information is sent to the site device management cloud module, so that the site device management cloud module requests a target network video recorder corresponding to the camera module identifier to acquire a media stream according to an edge live broadcast address, an IP address and a port; when the target network video recorder feeds back a successful request, the edge all-in-one machine receives the media stream recorded by the target network video recorder through the camera module, and transmits the media stream to a client according to the edge live broadcast address. According to the method, the media stream data is transmitted through the second network LAN, public network bandwidth resources are saved, and the stability and fluency of video playing are improved.
Owner:SHANGHAI GEWU ZHIYUAN NETWORK TECH CO LTD

Wildcard based private application access

ActiveUS12470520B2Networks interconnectionSecuring communicationDomain nameFully qualified domain name
Techniques for wildcard based private application access are disclosed. In some embodiments, a system, a process, and / or a computer program product for wildcard based private application access includes receiving a request for access to an application over a secure access service edge (SASE) network for a user associated with an enterprise; determining if the request for access to the application matches a wildcard (e.g., the wildcard can be configured by an administrator of the enterprise for matching a fully qualified domain name (FQDN) for the application); and automatically configuring access information (e.g., IP address, protocol, and destination port) for the application that matches the wildcard.
Owner:PALO ALTO NETWORKS INC

Method and apparatus for providing edge service

Embodiments of the present disclosure provide methods and apparatus for providing edge service. A method performed at a first network function comprises: receiving, a request for querying information associated to a location of a terminal device; wherein the request includes an internet protocol, IP, address of the terminal device; obtaining, from a second network function, a global identifier of the terminal device, based on the IP address of the terminal device; obtaining a location of the terminal device, based on the global identifier or the IP address of the terminal device; and transmitting, information associated to the location of the terminal device.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Systems and methods for cloud-native network slicing and testing-as-a-service with continuous integration and continuous delivery (CI / CD) capabilities

A topology-reprogrammable test environment is provided that can support the needs of CI / CD / CV in the field. The system disclosed provides a highly scalable network architecture to simplify the implementation of network slicing, TaaS and network CI / CD, and solves problems related to the complexity of cloud-native network (CNN) deployments. A Network Cell (NC), comprises or consists of a Containerized Network Function (CNF), a Containerized Digital Twin (CDT), and a Containerized Test Agent (CTA). The CDT has at least two personalities, e.g., an emulator of the CNF in the same NC or a nodal of the CNF. The choice of personality of the CDT is controlled by the CTA of the NC. A number of NCs use a 3D IP address to interconnect and form a new kind of CNN over the infrastructure of VRs.
Owner:BOOST SUBSCRIBERCO LLC

Intelligent computing center path distribution method, data transmission method and network system

The invention provides an intelligent computing center path distribution method, a data transmission method and a network system. According to the technical scheme, based on the time sequence characteristics of the AI training data flow and the characteristic that each set communication library only selects one communication algorithm to drive data flow transmission in the same communication period, the data flow identification capable of identifying the data flow and the communication algorithm corresponding to the data flow identification are obtained, and path planning is carried out based on the communication algorithm. In this way, during actual communication, data streams driven by different communication algorithms on the same path cannot be transmitted at the same time, the link congestion risk is reduced, and idle links are reserved for subsequent data streams of the same communication algorithm; different links are allocated to data flow identifiers with the same source IP address or the same destination IP address corresponding to the same communication algorithm in the same set communication domain, multi-path load sharing is carried out, data flow dispersed transmission based on the same communication algorithm drive is ensured, the congestion risk of a single link is further reduced, and the transmission efficiency is improved. The communication efficiency of an intelligent computing center network is expected to be improved.
Owner:NEW H3C TECH CO LTD