CN102055639A - Method for establishing remote access virtual private network connection and local access concentrator - Google Patents

Method for establishing remote access virtual private network connection and local access concentrator Download PDF

Info

Publication number
CN102055639A
CN102055639A CN2009102373585A CN200910237358A CN102055639A CN 102055639 A CN102055639 A CN 102055639A CN 2009102373585 A CN2009102373585 A CN 2009102373585A CN 200910237358 A CN200910237358 A CN 200910237358A CN 102055639 A CN102055639 A CN 102055639A
Authority
CN
China
Prior art keywords
lns
link
lac
quality
quality parameter
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN2009102373585A
Other languages
Chinese (zh)
Inventor
刘洋
徐庆伟
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CN2009102373585A priority Critical patent/CN102055639A/en
Publication of CN102055639A publication Critical patent/CN102055639A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention provides a method for establishing remote access virtual private network (Access VPN) connection and a local access concentrator (LAC). The method comprises that: when determining that a legal remote user needs to access an Intranet, the LAC determines tunnel connection priority of each layer two tunneling network server (LNS) according to the quality of a link between each LNS and the LAC, an LNS with the highest tunnel connection priority is selected to establish tunnel connection with the LAC, and the LNS with the highest tunnel connection priority provides access service of the Intranet for a remote user. The load sharing among LNS is realized, and the access quality of service of the remote user and the utilization rate of network sources are improved.

Description

Set up method and LAC that remote access vpn connects
Technical field
The present invention relates to the network communications technology, particularly a kind of method and LAC (LAC) of setting up remote access vpn (Access VPN) connection.
Background technology
Virtual Private Network (VPN) is a kind of new technology that develops rapidly along with the extensive use of Internet this year, makes up private dedicated network on the community network in order to be implemented in.Layer 2 Tunneling Protocol (L2TP, Layer Two Tunneling Protocol) VPN belongs to remote access vpn (Access VPN), and its flow to going on business employee, telecommuting personnel and long-range small office provide and set up privately owned network by community network with Intranet (Intranet) and be connected.
There are two types in the connection of Access VPN, and a kind of is that Client-initiated Access VPN connects, and another kind is that NAS-initiated Access VPN connects.Wherein, Client-initiated Access VPN connects can be as shown in Figure 1, the long-distance user is linked on the LAC (LAC) of network access server (NAS) by certain access technology, when the long-distance user who inserts satisfies preset condition, when promptly being validated user, LAC initiates the tunnel to the two layer tunnel webserver (LNS) and connects.Usually in order to guarantee the reliability of network, can a plurality of LNS be set at Intranet, one of them LNS is as host apparatus, other LNS is as stand-by equipment, LAC is when initiating the tunnel connection to LNS, at first give tacit consent to main and initiate the tunnel connection request,, then set up the tunnel with LNS and be connected and make this long-distance user insert Intranet with main if mainly can use with LNS with LNS; If main unavailable, then initiate the tunnel to standby LNS and connect according to default order with LNS.
As seen above-mentioned foundation in the method that Access VPN connects, if the master can use with LNS, then all long-distance users are when inserting Intranet, LAC sets up the tunnel with the master with LNS and is connected, by the main access service that Intranet is provided for all long-distance users with LNS, obviously this can cause main processing burden with LNS, and long-distance user's access service quality can be subjected to main with LNS handling property and LAC and main with the influence of the bandwidth between the LNS, and has reduced utilization rate of network resource.
Summary of the invention
In view of this, the invention provides method and LAC that a kind of Access of foundation VPN connects,, improve long-distance user's access service quality and utilization rate of network resource so that realize the load balancing between a plurality of LNS.
A kind of method of setting up Access VPN, this method are applied to comprise the Access VPN of two above LNS that LAC is connected with this LAC, and this method comprises:
When described LAC determines that legal long-distance user need insert Intranet, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC, select connection priority the highest LNS in tunnel to set up the tunnel and be connected, the access service of Intranet is provided for described long-distance user by the highest LNS of described tunnel connection priority with described LAC.
A kind of LAC is applied to comprise the AccessVPN of two above LNS that this LAC is connected with this LAC, and this LAC comprises: insert processing unit, priority determining unit and be connected with first and set up the unit;
Described access processing unit when being used for determining that legal long-distance user need insert Intranet, sends the processing notice to priority determining unit;
Described priority determining unit, be used to receive described processing notice after, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC;
The unit is set up in described first connection, is used to select connection priority the highest LNS in tunnel to set up the tunnel with described LAC and is connected.
As can be seen from the above technical solutions, LAC is when definite legal long-distance user need insert Intranet among the present invention, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the LAC, select connection priority the highest LNS in tunnel to set up the tunnel and be connected, the access service of Intranet is provided for this long-distance user by the highest LNS of tunnel connection priority with LAC.That is to say, be implemented in load balancing between each LNS, thereby the bandwidth usage of the processing of balanced each LNS burden and each LNS link improves long-distance user's access service quality and utilization rate of network resource according to the link-quality between each LNS and the LAC.
Description of drawings
Fig. 1 is for setting up the schematic diagram that Access VPN connects in the prior art;
Fig. 2 is a detailed method flow chart provided by the invention;
Fig. 3 is the instance graph of setting up Access VPN connection provided by the invention;
Fig. 4 is the structural representation of LAC provided by the invention.
Embodiment
In order to make the purpose, technical solutions and advantages of the present invention clearer, describe the present invention below in conjunction with the drawings and specific embodiments.
Method provided by the invention mainly comprises: when LAC determines that legal long-distance user need insert Intranet, the tunnel connection priority of determining each LNS according to each LNS that this LAC connected and the link-quality between this LAC, select connection priority the highest LNS in tunnel to set up the tunnel and be connected, the access service of Intranet is provided for this long-distance user by the highest LNS of this tunnel connection priority with this LAC.
Because when LAC selects to set up the LNS that the tunnel connects, what need usually at first to consider is link-quality situation between LAC and the LNS, traffic conditions for example, and it can be by embodiments such as bandwidth and actual bandwidth occupancies.When LAC determined that legal long-distance user need insert Intranet, according to this link-quality situation, LAC can determine the tunnel connection priority of each LNS in real time, therefrom selected the tunnel the highest LNS of connection priority to set up the tunnel and connected.Below said method provided by the invention is described in detail.
The detailed method flow chart that Fig. 2 provides for the embodiment of the invention, as shown in Figure 2, this method can may further comprise the steps:
Step 201: the long-distance user inserts LAC, and LAC carries out the legitimacy authentication to this long-distance user.
The long-distance user can adopt the mode of dialing to insert LAC, for example, can use Ethernet bearing point-to-point protocol client (PPPoE CLIENT) software to carry out dial-up access LAC, in dialing procedure, the long-distance user imports user authentication informations such as username and password, and LAC utilizes this user authentication information that this long-distance user is carried out the legitimacy authentication, if authentication is passed through, determine that then this long-distance user is a validated user, otherwise determine that this long-distance user is the disabled user.
Step 202:LAC judges whether the load balancing condition is satisfied, if, execution in step 203; Otherwise LAC directly sets up the tunnel with the master with LNS and is connected, and the access service of Intranet is provided for the long-distance user with LNS by this master.
In the present invention, can set in advance the load balancing condition, the load balancing condition that is provided with can adopt multiple mode, the master for example can be set whether reach the preset bandwidth condition threshold with the shared bandwidth conditions of current customer flow on the link between LNS and the LAC, if, then triggering LAC begins to need the long-distance user who inserts Intranet to carry out load balancing at current on each LNS, promptly continue execution in step 203, otherwise LAC still sets up the tunnel with the master with LNS to be connected, and the access service of Intranet is provided for the long-distance user with LNS by this master.
Step 203:LAC determines the link-quality between each LNS and this LAC.
In this step, be designated the link-quality Q of link (at the follow-up link that is designated j that abbreviates as) between the LNS of j and the LAC jCan pass through formula
Figure B2009102373585D0000041
Calculate, wherein A is a positive constant; S jBe the sum of products of each link quality parameter value in the link that is designated j with the corresponding weights of this link quality parameter value, i.e. Q jWith S jInversely proportional relation, S jValue more little, link-quality Q jHigh more.
Above-mentioned link quality parameter value can be the absolute value of each link quality parameter, also can be the grade point of each link quality parameter.The link quality parameter value is that the situation of absolute value is easier to understand, and no longer specifically describes at this.Adopt the situation of the grade point of link quality parameter to be described link-quality to the link quality parameter value below, the S of this moment jCan for:
Figure B2009102373585D0000042
Wherein, Rank IjBe the grade point of i link quality parameter in the link that is designated j, W IjBe the weights of i link quality parameter correspondence in the link that is designated j, n is the number of link quality parameter.
Wherein, link quality parameter can comprise: one or combination in any in the equipment jumping figure in the link, message return time, link bandwidth or the link cost.
When comprising all above-mentioned link quality parameter, S j=Rank j(RTT) * W j(RTT)+Rank j(TLL) * W j(TLL)+Rank j(BD) * W j(BD)+Rank j(Cost) * W j(Cost), wherein, RTT is the message return time, can send heartbeat (Ping) message to the time that receives the Ping message that this LNS returns to LNS for LAC; TLL is the equipment jumping figure in the link; BD is a link bandwidth; Cost is a link cost, can reflect the congestion condition of current link.
Equipment jumping figure in message return time, the link and link bandwidth can obtain by the flow analysis process, for example, network traffics analysis (NTA) software and Network Quality Analysis (NQA) software records by being installed, in addition, link bandwidth also can be gone up the physical port that is connected with LNS from LAC and read, the test of these link quality parameter value values only requires a very short time, and can't bring long delay to Access VPN establishment of connection process.The link cost of each link can be the numerical value of user according to the congestion condition setting of link.The obtain manner of these link quality parameter values is prior arts of the prior art, does not repeat them here.
Be designated the grade point Rank of the link quality parameter that is designated i of the link of j IjCan for: be designated difference between the least absolute value of this link quality parameter in the absolute value of the link quality parameter that is designated i of link of j and each link divided by the resulting merchant of the basic value of this link quality parameter.Formula can for:
Figure B2009102373585D0000051
Wherein, A Ij(x) for being designated the absolute value of the link quality parameter of i, A on the link that is designated j i(min) for being designated the least absolute value of the link quality parameter of i, A in each link i(base) be the basic value that is designated the link quality parameter of i, this A i(base) can be an empirical value of presetting, this that also can adopt all links be designated the average absolute of the link quality parameter of i.
With the message return time is example,
Figure B2009102373585D0000052
RTT wherein j(x) be the absolute value of message return time of the link that is designated j, RTT (min) is the minimum value of the message return time of each link, and RTT (base) is the mean value of the message return time of each link.
The corresponding weights of link quality parameter can set in advance according to the actual state of network.
Step 204: utilize link-quality between each LNS and the LAC to determine the tunnel connection priority of each LNS.
In this step, can utilize each definite in the step 203 LNS and the link-quality between the LAC, determine that the tunnel connection priority of the LNS correspondence that link-quality is high more is high more.
More preferably, when definite tunnel connection priority, except considering the link-quality between each LNS and the LAC, can also further consider the package processing capability of each LNS.The package processing capability of each LNS can be considered factors such as the hardware configuration, equipment performance of LNS, these factors are assessed back package processing capability rank to each LNS to be provided with, for example, the package processing capability rank that each LNS can be set is carried out value between 1 to 100, the package processing capability of high more this LNS of expression of value is strong more.If the package processing capability of each LNS is suitable, can be not yet with the package processing capability of each LNS as Consideration.
At this moment, be designated the tunnel connection priority P of the LNS of j j=Q j* L j, L wherein jBe this package processing capability that is designated the LNS of j, be designated the LNS of j and the chain line between the LAC and also be j.
The LNS that step 205:LAC and connection priority are the highest sets up the tunnel and is connected, and the access service of Intranet is provided for this long-distance user by the highest LNS of this tunnel connection priority.
Citing an actual example below is described said method, as shown in Figure 3, supposes that an employee on business trip is that long-distance user 1 is connected to Internet by being linked on the LAC equipment, and LAC determines that long-distance user 1 for behind the validated user, begins to carry out the selection of LNS.
Suppose that LNS1 is that main use LNS, LNS2 and LNS3 be standby LNS, default load balancing condition be main with the shared bandwidth of current customer flow on the link between LNS and the LAC above 30% of this link available bandwidth.If the shared bandwidth of current customer flow surpasses 30% of this link available bandwidth on the link between LNS1 and the LAC, then determine to satisfy the load balancing condition, LAC begins the link-quality between definite LAC and each LNS.The value of supposing the link-quality between LAC and the LNS1 is 60, the value of the link-quality between LAC and the LNS2 is 100, and the value of the link-quality between LAC and the LNS3 is 100, and the package processing capability value of LNS1 is 100, the package processing capability value of LNS2 is 80, and the package processing capability value of LNS3 is 50.At this moment, the tunnel connection priority of each LNS is respectively:
Tunnel connection priority P1=100 * 60=6000 of LNS1;
Tunnel connection priority P2=80 * 100=8000 of LNS2;
Tunnel connection priority P3=50 * 100=5000 of LNS3.
As can be seen, the tunnel connection priority of current LNS2 is the highest, and then LAC selects to initiate the tunnel connection request to LNS2, sets up the tunnel with LNS2 and is connected, and long-distance user 1 flow transmits on this tunnel of setting up.
More than be the detailed description that method provided by the present invention is carried out, below system provided by the present invention and device be described in detail.The Access vpn system that the present invention relates to comprises: LAC and two above LNS that are connected with this LAC, this system configuration can be referring to Fig. 3, is example with 3 LNS among Fig. 3.
Wherein, LAC when being used for determining that legal long-distance user need insert Intranet, determines the tunnel connection priority of each LNS according to the link-quality between each LNS and this LAC, and the highest LNS of selection tunnel connection priority sets up the tunnel with this LAC and is connected.
LNS is used for providing the access service of Intranet for the long-distance user after selected and LAC set up the tunnel and be connected.
Fig. 4 is the structural representation of LAC provided by the invention, and as shown in Figure 4, LAC can comprise: access processing unit 401, priority determining unit 402 are connected with first sets up unit 403.
Insert processing unit 401, when being used for determining that legal long-distance user need insert Intranet, send the processing notice to priority determining unit.
When the long-distance user logins this LAC, insert 401 couples of these long-distance users of processing unit and carry out the legitimacy authentication, authentication determines that by the back this long-distance user is legal, begins to connect for this long-distance user selects LNS to set up two layer tunnel.
Priority determining unit 402, be used to receive handle notice after, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the LAC.
Unit 403 is set up in first connection, is used to select connection priority the highest LNS in tunnel to set up the tunnel with LAC and is connected.
Particularly, priority determining unit 402 can at first be determined the link-quality between each LNS and the LAC, determines the tunnel connection priority of each LNS according to the high more principle of tunnel connection priority of the LNS of the high more link correspondence of link-quality; Perhaps, determine the link-quality between each LNS and the LAC, and determine the package processing capability of each LNS, the package processing capability of taking all factors into consideration link-quality and LNS is determined the tunnel connection priority of each LNS.
Wherein, priority determining unit 402 can be specifically according to formula
Figure B2009102373585D0000081
Determine to be designated the LNS of j and the link-quality Q between the LAC j, wherein, A is a positive constant, S jBe the value of each link quality parameter in the link between LNS and the LAC of sign j and the sum of products of the corresponding weights of this link quality parameter.
Above-mentioned link quality parameter can comprise: one or combination in any in the equipment jumping figure in the link, message return time, link bandwidth or the link cost.
In addition, the value of link quality parameter can be the absolute value of link quality parameter or the grade point of link quality parameter.
Wherein, be designated the grade point Rank of the link quality parameter that is designated i of the LNS of j and the link between the LAC IjFor:
Figure B2009102373585D0000082
A Ij(x) for being designated the absolute value that is designated the link quality parameter of i on the LNS of j and the link between the LAC, A i(min) for being designated the least absolute value of the link quality parameter of i, A in the link between each LNS and the LAC i(base) for being designated the average absolute of the link quality parameter of i in default empirical value or the link between each LNS and the LAC.
Further, this LAC can also comprise: load balancing trigger element 404 is connected with second sets up unit 405.
Load balancing trigger element 404 is used to receive and inserts the processing notice that processing unit 401 sends, and judges whether default load balancing condition is satisfied, if then will handle notice and send to priority determining unit; Otherwise, will handle notice and send to second and connect and to set up unit 405.
Default load balancing condition can for: main among the above-mentioned plural LNS reaches the preset bandwidth condition threshold with the shared bandwidth conditions of current customer flow on the link between LNS and the LAC.
Second connects and to set up unit 405, be used to receive handle notice after, set up the tunnel with master among two above LNS with LNS and be connected.
By above description as can be seen, LAC is when definite legal long-distance user need insert Intranet among the present invention, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the LAC, select connection priority the highest LNS in tunnel to set up the tunnel and be connected, the access service of Intranet is provided for this long-distance user by the highest LNS of tunnel connection priority with LAC.That is to say, be implemented in load balancing between each LNS, thereby the bandwidth usage of the processing of balanced each LNS burden and each LNS link improves long-distance user's access service quality and utilization rate of network resource according to the link-quality between each LNS and the LAC.
The above only is preferred embodiment of the present invention, and is in order to restriction the present invention, within the spirit and principles in the present invention not all, any modification of being made, is equal to replacement, improvement etc., all should be included within the scope of protection of the invention.

Claims (12)

1. method of setting up remote access vpn Access VPN, this method are applied to comprise the Access VPN of two above two layer tunnel webserver LNS that LAC LAC is connected with this LAC, it is characterized in that this method comprises:
When described LAC determines that legal long-distance user need insert Intranet Intranet, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC, select connection priority the highest LNS in tunnel to set up the tunnel and be connected, the access service of Intranet is provided for described long-distance user by the highest LNS of described tunnel connection priority with described LAC.
2. method according to claim 1, it is characterized in that, the tunnel connection priority of determining each LNS according to the link-quality between each LNS and the described LAC comprises: described LAC determines the link-quality between each LNS and the described LAC, determines the tunnel connection priority of each LNS according to the high more principle of tunnel connection priority of the LNS of the high more link correspondence of link-quality; Perhaps,
Described LAC determines the link-quality between each LNS and the described LAC, and determines the package processing capability of each LNS, and the package processing capability of taking all factors into consideration link-quality and LNS is determined the tunnel connection priority of each LNS.
3. method according to claim 2 is characterized in that, the link-quality between described definite each LNS and the described LAC comprises: according to formula
Figure F2009102373585C0000011
Determine to be designated the LNS of j and the link-quality Q between the described LAC j, wherein, A is a positive constant, S jBe the value of each link quality parameter in the link between LNS and the described LAC of sign j and the sum of products of the corresponding weights of this link quality parameter.
4. method according to claim 3 is characterized in that, the value of described link quality parameter comprises: the absolute value of link quality parameter or the grade point of link quality parameter;
Wherein, be designated the grade point Rank of the link quality parameter that is designated i of the LNS of j and the link between the described LAC IjFor:
Figure F2009102373585C0000012
Wherein, A Ij(x) for being designated the absolute value that is designated the link quality parameter of i on the LNS of j and the link between the described LAC, A i(min) for being designated the least absolute value of the link quality parameter of i, A in the link between each LNS and the described LAC i(base) for being designated the average absolute of the link quality parameter of i in default empirical value or the link between each LNS and the described LAC.
5. according to claim 3 or 4 described methods, it is characterized in that described link quality parameter comprises: one or combination in any in the equipment jumping figure in the link, message return time, link bandwidth or the link cost.
6. according to the described method of the arbitrary claim of claim 1 to 4, it is characterized in that, before determining the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC, also comprise: described LAC judges whether default load balancing condition is satisfied, if continue to carry out the step of determining the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC; Otherwise described LAC sets up the tunnel with master among described two above LNS with LNS and is connected, and mainly provides the access service of Intranet, process ends with LNS for described long-distance user by described.
7. method according to claim 6 is characterized in that, described load balancing condition is: described master reaches the preset bandwidth condition threshold with the shared bandwidth conditions of current customer flow on the link between LNS and the described LAC.
8. LAC is applied to comprise the Access VPN of two above LNS that this LAC is connected with this LAC, it is characterized in that this LAC comprises: insert processing unit, priority determining unit and be connected with first and set up the unit;
Described access processing unit when being used for determining that legal long-distance user need insert Intranet, sends the processing notice to priority determining unit;
Described priority determining unit, be used to receive described processing notice after, determine the tunnel connection priority of each LNS according to the link-quality between each LNS and the described LAC;
The unit is set up in described first connection, is used to select connection priority the highest LNS in tunnel to set up the tunnel with described LAC and is connected.
9. LAC according to claim 8, it is characterized in that, described priority determining unit is determined the link-quality between each LNS and the described LAC, determines the tunnel connection priority of each LNS according to the high more principle of tunnel connection priority of the LNS of the high more link correspondence of link-quality; Perhaps, determine the link-quality between each LNS and the described LAC, and determine the package processing capability of each LNS, the package processing capability of taking all factors into consideration link-quality and LNS is determined the tunnel connection priority of each LNS.
10. LAC according to claim 9 is characterized in that described priority determining unit is specifically according to formula
Figure F2009102373585C0000031
Determine to be designated the LNS of j and the link-quality Q between the described LAC j, wherein, A is a positive constant, S jBe the value of each link quality parameter in the link between LNS and the described LAC of sign j and the sum of products of the corresponding weights of this link quality parameter;
Described link quality parameter comprises: one or combination in any in the equipment jumping figure in the link, message return time, link bandwidth or the link cost.
11. LAC according to claim 10 is characterized in that, the value of described link quality parameter comprises: the absolute value of link quality parameter or the grade point of link quality parameter;
Wherein, be designated the grade point Rank of the link quality parameter that is designated i of the LNS of j and the link between the described LAC IjFor:
Figure F2009102373585C0000032
Wherein, A Ij(x) for being designated the absolute value that is designated the link quality parameter of i on the LNS of j and the link between the described LAC, A i(min) for being designated the least absolute value of the link quality parameter of i, A in the link between each LNS and the described LAC i(base) for being designated the average absolute of the link quality parameter of i in default empirical value or the link between each LNS and the described LAC.
12. to the described LAC of 11 arbitrary claims, it is characterized in that this LAC also comprises according to Claim 8: the load balancing trigger element is connected with second sets up the unit;
Described load balancing trigger element is used to receive the processing notice that described access processing unit sends, and judges whether default load balancing condition is satisfied, if then described processing notice is sent to described priority determining unit; Otherwise, described processing notice is sent to described second connection sets up the unit;
Described second connects and to set up the unit, be used to receive handle notice after, set up the tunnel with master among described two above LNS with LNS and be connected.
CN2009102373585A 2009-11-10 2009-11-10 Method for establishing remote access virtual private network connection and local access concentrator Pending CN102055639A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN2009102373585A CN102055639A (en) 2009-11-10 2009-11-10 Method for establishing remote access virtual private network connection and local access concentrator

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN2009102373585A CN102055639A (en) 2009-11-10 2009-11-10 Method for establishing remote access virtual private network connection and local access concentrator

Publications (1)

Publication Number Publication Date
CN102055639A true CN102055639A (en) 2011-05-11

Family

ID=43959593

Family Applications (1)

Application Number Title Priority Date Filing Date
CN2009102373585A Pending CN102055639A (en) 2009-11-10 2009-11-10 Method for establishing remote access virtual private network connection and local access concentrator

Country Status (1)

Country Link
CN (1) CN102055639A (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102710520A (en) * 2012-06-01 2012-10-03 浙江宇视科技有限公司 Method and device for backing up lonworks network service (LNS)
CN102917408A (en) * 2012-10-26 2013-02-06 迈普通信技术股份有限公司 Downlink flow control method and system of LNS (L2TP network server) device in 3G (third-generation) network
CN103227773A (en) * 2012-03-31 2013-07-31 杭州华三通信技术有限公司 Method and system for establishing virtual private dial-up network connection
CN103973706A (en) * 2014-05-23 2014-08-06 杭州华三通信技术有限公司 Standby LNS (L2TP Network Server) optimization method and device
CN104601431A (en) * 2014-12-31 2015-05-06 华为技术有限公司 Access method of VPN business and network device
CN105591869A (en) * 2015-07-22 2016-05-18 杭州华三通信技术有限公司 Method and device for selecting Layer2 Tunneling Protocol (L2TP) network server

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103227773A (en) * 2012-03-31 2013-07-31 杭州华三通信技术有限公司 Method and system for establishing virtual private dial-up network connection
CN103227773B (en) * 2012-03-31 2016-05-11 杭州华三通信技术有限公司 A kind of method and system thereof of setting up VPDN connection
CN102710520A (en) * 2012-06-01 2012-10-03 浙江宇视科技有限公司 Method and device for backing up lonworks network service (LNS)
CN102710520B (en) * 2012-06-01 2015-07-15 浙江宇视科技有限公司 Method and device for backing up lonworks network service (LNS)
CN102917408A (en) * 2012-10-26 2013-02-06 迈普通信技术股份有限公司 Downlink flow control method and system of LNS (L2TP network server) device in 3G (third-generation) network
CN102917408B (en) * 2012-10-26 2015-05-20 迈普通信技术股份有限公司 Downlink flow control method and system of LNS (L2TP network server) device in 3G (third-generation) network
CN103973706A (en) * 2014-05-23 2014-08-06 杭州华三通信技术有限公司 Standby LNS (L2TP Network Server) optimization method and device
CN104601431A (en) * 2014-12-31 2015-05-06 华为技术有限公司 Access method of VPN business and network device
CN104601431B (en) * 2014-12-31 2018-04-20 华为技术有限公司 The cut-in method and the network equipment of a kind of vpn service
CN105591869A (en) * 2015-07-22 2016-05-18 杭州华三通信技术有限公司 Method and device for selecting Layer2 Tunneling Protocol (L2TP) network server
CN105591869B (en) * 2015-07-22 2019-03-01 新华三技术有限公司 A kind of method and apparatus selecting L2TP Network Server

Similar Documents

Publication Publication Date Title
US20220131740A1 (en) Method and system of a dynamic high-availability mode based on current wide area network connectivity
CN107852604B (en) System for providing Global Virtual Network (GVN)
Bet Congestion Control
US10404657B2 (en) Method and device for accessing website
CN102055639A (en) Method for establishing remote access virtual private network connection and local access concentrator
US9762493B2 (en) Link aggregation (LAG) information exchange protocol
CN103973728B (en) The method and device of load balancing under a kind of multiple data centers environment
WO2016081171A1 (en) Systems and methods for dynamic connection paths for devices connected to computer networks
CN103117946A (en) Flow sharing method based on combined application of isolating device and isolation gateway
US9769136B2 (en) System and method for providing proactive VPN establishment
CN104518936B (en) Link dynamic aggregation method and apparatus
CN103124290B (en) Based on the load-balancing method of reverse isolation device with isolation gateway connected applications
CN101112046A (en) System and method for detecting and interception of ip sharer
CN101075924B (en) Method for accessing server by customer end
CN103701928A (en) Method applied to load balancer for improving operating efficiency of servers and SSL (Secure Sockets Layer) gateway
EP3096492B1 (en) Page push method and system
CN102281263B (en) Method for establishing Internet small computer system interface (iSCSI) session and iSCSI initiator
CN103124227B (en) Forward spacer assembly and the Link State detection method of isolating gateway connected applications
CN106302205A (en) A kind of how main conflict processing method based on LLDP agreement and device
CN112040170B (en) Remote off-site bid evaluation system based on 5G
Ramana et al. Multipath transmission control protocol for live virtual machine migration in the cloud environment
CN112953932A (en) Identity authentication gateway integration design method and system based on CA certificate
Hadi et al. Ethernet Link Network Design Using Auto Failover and Load Balancing Technology in Throughput Optimization
CN113055427A (en) Service-based server cluster access method and device
CN104521320B (en) User management device, BNG, BNG user loading method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20110511