CN104065552B - A kind of data transmission method and equipment - Google Patents
A kind of data transmission method and equipment Download PDFInfo
- Publication number
- CN104065552B CN104065552B CN201410298053.6A CN201410298053A CN104065552B CN 104065552 B CN104065552 B CN 104065552B CN 201410298053 A CN201410298053 A CN 201410298053A CN 104065552 B CN104065552 B CN 104065552B
- Authority
- CN
- China
- Prior art keywords
- port
- message
- vlan
- network equipment
- mark
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Landscapes
- Small-Scale Networks (AREA)
Abstract
The invention discloses a kind of data transmission method and equipment, it is related to the communications field, the network equipment for supporting port isolation technology is can solve the problem that, when double layered communication is carried out in the case of port isolation, broadcasting packet is exported again from the port of input, and then causes the problem of system fault.Concrete scheme is:The network equipment obtains the first message by first port, according to default mapping relations, the mark of a VLAN in the first message is changed to the mark of first port independence VLAN, first message is exported to bridging device by least one uplink port, and the first message that bridging device is transmitted is received by least one uplink port, according to mapping relations, determine that the port corresponding to the mark of first port independence VLAN in the first message, for first port, the first message is exported from least one of the downlink port in addition to first port downlink port.The present invention is used for data transfer.
Description
Technical field
The present invention relates to the communications field, more particularly to a kind of data transmission method and equipment.
Background technology
VLAN (Virtual Local Area Network, VLAN) be one kind by lan device logically
The network segment of division, the equipment in same physical LAN may belong to different VLAN, can so improve network management
Flexibility.
In VLAN, if individual terminal equipment carries virus, it is more likely that the other-end equipment in the VLAN is produced
Raw influence.In order to prevent the propagation of virus, in the prior art, as shown in figure 1, port isolation technology is used on network devices,
The network equipment shown in Fig. 1, in this way it can be ensured that belonging to same VLAN, is not connected to same port by taking interchanger as an example
Terminal device between can not carry out double layered communication, herein, double layered communication refers to entering without Internet between terminal device
Row communication.In Fig. 1, terminal device 1011 belongs to VLAN101 with terminal device 1012, and the terminal for being connected to first port sets
Standby 1011 cannot carry out double layered communication with the terminal device 1012 for being connected to second port after port isolation, and this may refrain from
Virus propagation between terminal devices.But, this port separation method causes that the terminal device in each VLAN is connected
Double layered communication can not be all carried out during different port, cannot thus meet belong to same VLAN and connection different port terminal set
The standby demand for carrying out proper communication.For example, when the terminal device 1011 and terminal device 1012 that belong to VLAN101 need isolation,
And the terminal device 1021 and terminal device 1022 for belonging to VLAN102 need communication when, the demand of user cannot just be met.
The demand above-mentioned in order to meet user, in the prior art, the message of reception is unrolled to network by other equipment
Exported from destination interface again in equipment, double layered communication can be realized in the case of port isolation, that is, caused in port isolation feelings
Under condition, the terminal device of part VLAN can carry out double layered communication, but for broadcasting packet, when broadcasting packet unrolls to network
After equipment, can be from all of the port output, including the port that the broadcasting packet is input into, this can cause the end that broadcasting packet is input into from it
Mouth is exported again, so as to cause system fault.
The content of the invention
Embodiments of the invention provide a kind of data transmission method and equipment, can solve the problem that the net for supporting port isolation technology
Network equipment, when double layered communication is carried out in the case of port isolation, broadcasting packet from input port export again, and then cause be
The problem of system error.
To reach above-mentioned purpose, embodiments of the invention are adopted the following technical scheme that:
In a first aspect, a kind of data transmission method, the network equipment includes:At least two downlink ports and at least one up
Port, wherein, at least two downlink port include first port and isolate with the first port other are descending
Port, the data transmission method includes:
The network equipment obtains the first message that first terminal equipment sends by the first port, and described first eventually
End equipment belongs to the first virtual LAN VLAN, and first message includes the mark of a VLAN;
Be changed to for the mark of a VLAN described in first message according to default mapping relations by the network equipment
The mark of first port independence VLAN, wherein, the default mapping relations are used to indicate to include the first port independence VLAN
With the corresponding relation of the first port;
The network equipment according to the mark of the first port independence VLAN by least one uplink port to
The bridging device for belonging to the first port independence VLAN exports first message, and by least one uplink port
Receive the first message of the bridging device transmission;
The network equipment determines the mark of first port independence VLAN in first message according to the mapping relations
Corresponding port is the first port;
The network equipment is by first message from least one of downlink port in addition to the first port
Downlink port is exported.
With reference in a first aspect, in the first possible implementation, the network equipment is by first message from removing
At least one of downlink port outside first port downlink port is exported, including:
The network equipment exports first message from all downlink ports in addition to the first port.
With reference in a first aspect, in second possible implementation, first message also includes the first physical address,
First physical address is the destination address of first message;
The network equipment is by first message from least one of downlink port in addition to the first port
Downlink port is exported, including:
The network equipment searches first report in stored address list according to first physical address
The numbering of the output port of text, wherein, the address list is used to indicate the destination address and described first of first message
Corresponding relation between the output port of message;
The network equipment is according to the numbering of the output port of first message by first message from described first
The output port output of message.
With reference to second possible implementation of first aspect, in the third possible implementation,
Before the network equipment obtains the first message that first terminal equipment sends by the first port, also wrap
Include:
The network equipment obtains the second message by second port, and second message includes described first physically
Location, first physical address is the source address of second message, and the second port is to isolate with the first port
Downlink port;
The network equipment is mutually corresponding with the second port by first physical address, and by first physics
The number record of address and the second port is in the address list;
The network equipment is by first message from least one of downlink port in addition to the first port
Downlink port is exported, including:
The network equipment finds the corresponding second port of first physical address in the address list
Numbering, using the second port as first message output port;
The network equipment exports first message from the second port.
With reference to any implementation in the third possible implementation of first aspect to first aspect, can at the 4th kind
Can implementation in, the network equipment by first message from the downlink port in addition to the first port to
Before few downlink port output, also include:
The mark of the first port independence VLAN is changed to the network equipment mark of a VLAN.
A kind of second aspect, network equipment, the network equipment includes the first transmitting element, the second transmitting element, first
Receiving unit, the second receiving unit, map unit, at least two downlink ports and at least one uplink port, wherein, it is described extremely
Few two downlink ports include first port and other downlink ports isolated with the first port;
First receiving unit, for obtaining the first message that first terminal equipment sends by the first port,
The first terminal equipment belongs to the first virtual LAN VLAN, and first message includes the mark of a VLAN;
The map unit, for according to default mapping relations, by first message of receiving unit reception
The mark of the first VLAN is changed to the mark of first port independence VLAN, wherein, the default mapping relations are used to indicate
Corresponding relation including the first port independence VLAN with the first port;
Second transmitting element, for passing through described at least one according to the mark of the first port independence VLAN
Row port exports first report after the map unit is changed to the bridging device for belonging to the first port independence VLAN
Text;
Second receiving unit, for receive that the bridging device transmits by least one uplink port the
One message;
The map unit, is additionally operable to according to the mapping relations, determine that second receiving unit receives described the
Port in one message corresponding to the mark of first port independence VLAN is the first port;
First transmitting element, for the map unit to be determined after first message from except the first end
The output of at least one of downlink port outside mouthful downlink port.
With reference to second aspect, in the first possible implementation,
Second transmitting element, specifically for by first message from all descending in addition to the first port
Port exports.
With reference to second aspect, in second possible implementation,
First message also includes the first physical address, and first physical address is the destination of first message
Location;
The network equipment also includes searching unit,
The searching unit, for searching described the according to first physical address in stored address list
The numbering of the output port of one message, wherein, the address list be used to indicating the destination address of first message with it is described
Corresponding relation between the output port of the first message;
Second transmitting element, also particularly useful for the output of first message found according to the searching unit
The numbering of port exports first message from the output port of first message.
With reference to second possible implementation of second aspect, in the third possible implementation,
First receiving unit, is additionally operable to obtain the second message by second port, and second message includes described
First physical address, first physical address is the source address of second message, and the second port is and described first
The downlink port of port isolation;
The map unit, is additionally operable to first physical address and described second for receiving first receiving unit
Port mutually corresponds to, and by the number record of first physical address and the second port in the address list;
The searching unit, specifically for finding described first in the address list that the map unit is recorded
The numbering of the corresponding second port of physical address, using the second port as first message output port;
Second transmitting element, exports also particularly useful for by first message from the second port.
With reference to any implementation in the third possible implementation of second aspect to second aspect, can at the 4th kind
In the implementation of energy,
The map unit, be additionally operable to second transmitting element by first message from except the first port it
Before the output of at least one of outer downlink port downlink port, the mark of the first port independence VLAN is changed to institute
State the mark of a VLAN.
A kind of data transmission method provided in an embodiment of the present invention and equipment, mark by by the VLAN in the first message
Note is revised as the mark of first port independence VLAN, and VLAN is mutually corresponding with first port for first port independence so that the first report
After bridging device wraps to the network equipment, the network equipment can go out this to text by the marker recognition of first port independence VLAN
The input port of the first message is first port, and first message is defeated from least one downlink port in addition to first port
Go out, this addresses the problem support port isolation technology the network equipment, when double layered communication is carried out in the case of port isolation, extensively
Report text to be exported again from the port of input, and then cause the problem of system fault.
Brief description of the drawings
In order to illustrate more clearly about the embodiment of the present invention or technical scheme of the prior art, below will to prior art and
The accompanying drawing to be used needed for embodiment description is briefly described, it should be apparent that, drawings in the following description are only this
Some embodiments of invention, for those of ordinary skill in the art, on the premise of not paying creative work, can be with
Other accompanying drawings are obtained according to these accompanying drawings.
A kind of system structure diagram of port isolation that Fig. 1 is provided for prior art;
A kind of data transmission method schematic flow sheet that Fig. 2 is provided for embodiments of the invention;
A kind of system structure diagram of port isolation that Fig. 3 is provided for embodiments of the invention;
A kind of data transmission method schematic flow sheet that Fig. 4 is provided for another embodiment of the present invention;
A kind of network equipment infrastructure schematic diagram that Fig. 5 is provided for embodiments of the invention;
A kind of network equipment infrastructure schematic diagram that Fig. 6 is provided for another embodiment of the present invention.
Specific embodiment
Below in conjunction with the accompanying drawing in the embodiment of the present invention, the technical scheme in the embodiment of the present invention is carried out clear, complete
Site preparation is described, it is clear that described embodiment is only a part of embodiment of the invention, rather than whole embodiments.It is based on
Embodiment in the present invention, it is every other that those of ordinary skill in the art are obtained under the premise of creative work is not made
Embodiment, belongs to the scope of protection of the invention.
Embodiments of the invention provide a kind of data transmission method, are applied to the network equipment, and the network equipment is included at least
Two downlink ports and at least one uplink port, wherein, at least two downlink ports include first port and with this
Other downlink ports of Single port isolation, shown in reference picture 2, comprise the following steps:
201st, the network equipment obtains the first message that first terminal equipment sends by first port.
Wherein, first terminal equipment belongs to the first virtual LAN VLAN, and the first message includes the mark of a VLAN.Can
Choosing, the mark of a VLAN is used to indicate first message to be transmitted in a VLAN.
202nd, the mark of a VLAN in the first message is changed to first port by the network equipment according to default mapping relations
The mark of independent VLAN.
Wherein, the corresponding relation that mapping relations are used to indicate to include first port independence VLAN and first port is preset.Can
Choosing, each downlink port to the network equipment corresponds to an independent VLAN, between downlink port and independent VLAN one
One corresponding relation is default mapping relations.For the message received by first port, the VLAN marks of message are all changed
Being the mark of first port independence VLAN, thus equivalent to marked the message be input into from first port.
203rd, the network equipment according to the mark of first port independence VLAN by least one uplink port to belonging to first
The bridging device of port independence VLAN exports the first message, and receive that bridging device transmits by least one uplink port the
One message.
Optionally, the bridging device can include multiple equipment, as long as the first message can be made to wrap to the network set
Standby, the concrete form present invention for bridging device is not limited.
Herein, because the first message carries the mark of first port independence VLAN, first message is by
The network equipment is wrapped to after being transmitted in Single port independence VLAN, the bridging device falls within first port independence VLAN.
204th, the network equipment is determined corresponding to the mark of first port independence VLAN in the first message according to mapping relations
Port is first port.
205th, the network equipment is by the first message from least one of the downlink port in addition to first port downlink port
Output.
Optionally, first message can be broadcasting packet, and for broadcasting packet, with reference to step 203, first message leads to
Cross after bridging device wraps to the network equipment, have received first message equivalent to uplink port, it is necessary to carry out downlink transfer, because
For broadcasting packet does not have destination address, it is necessary to be exported from all downlink ports.
With reference to step 204 and 205, because carrying the mark of first port independence VLAN in the first message, and first port
The mark correspondence first port of independent VLAN, the network equipment is equal to identification after recognizing the mark of first port independence VLAN
Input port to first message is first port, would not be corresponding from first port independence VLAN by first message
Downlink port is first port output.It is specific optional, the network equipment can by the first message transmissions to each downlink port, when
Recognize the mark that first message carries first port independence VLAN, if the first message transmissions to first port independence
The corresponding first ports of VLAN, the network equipment will abandon the first message transmitted to first port, transmit to other downstream ends
First message of mouth continues to transmit.Herein, the network equipment is selected the first message not from the first port independence VLAN that it is carried
Mark corresponding to first port output, can be by programming realization, for specific logic implementation, the present invention does not do
Limitation.
Optionally, the first message from each downlink port export when, according to mapping relations, it is necessary to by the first message carry
It is the mark of a VLAN that the mark of first port independence VLAN is changeed back, and is transmitted in a VLAN in order to the first message.
The data transmission method that embodiments of the invention are provided, is revised as by the way that the VLAN in the first message is marked
The mark of first port independence VLAN, VLAN is mutually corresponding with first port for first port independence so that the first message passes through bridge
After the equipment of connecing wraps to the network equipment, the network equipment can go out first message by the marker recognition of first port independence VLAN
Input port be first port, by first message from addition to first port at least one downlink port output, so
Just solve the network equipment for supporting port isolation technology, when double layered communication is carried out in the case of port isolation, broadcasting packet
Exported again from the port of input, and then cause the problem of system fault.
Another embodiment of the present invention provides a kind of data transmission method, is applied to the network equipment, and the network equipment can be with
It is interchanger, including at least two downlink ports and at least one uplink port, wherein, at least two downlink ports include
Single port and second port, the first port are mutually isolated with second port, and certain network equipment can also include that other are descending
Port, in this regard, the present embodiment is not limited.Optionally, shown in reference picture 3, for the network equipment 30 distributes two independent VLAN,
That is first port independence VLAN31 and second port independence VLAN32, first port independence VLAN31 are mutual with first port 301
Correspondence, second port independence VLAN32 is mutually corresponding with second port 302.Shown in reference picture 4, the data transmission method include with
Lower step:
401st, the network equipment obtains the first message that first terminal equipment sends by first port.
Wherein, first terminal equipment belongs to the first virtual LAN VLAN, and the first message includes the mark of a VLAN, the
The mark of one VLAN is used to indicate first message to be transmitted in a VLAN.Optionally, first message is unicast message, also
Including the first physical address and the second physical address, the first physical address is the destination address of the first message, the second physical address
It is the source address of the first message.
Optionally, shown in reference picture 3, first terminal equipment 35 is connected by the first downlink network 33 with first port 301,
Second terminal equipment 36 is connected by the second downlink network 34 with second port 302.First terminal equipment 35 sets with second terminal
Standby 36 belong to a VLAN, and first terminal equipment 35 sends the first message by the network equipment 30 to second terminal equipment 36.
Specifically, the first physical address can be the physical address of second terminal equipment 36, the second physical address can be first terminal
The physical address of equipment 35.
402nd, the mark of a VLAN in the first message is changed to first port by the network equipment according to default mapping relations
The mark of independent VLAN.
Wherein, the corresponding relation that mapping relations are used to indicate to include first port independence VLAN and first port is preset.Can
Choosing, each downlink port to the network equipment corresponds to an independent VLAN, between downlink port and independent VLAN one
One corresponding relation is default mapping relations.For the message received by first port, the VLAN marks of message are all changed
Being the mark of first port independence VLAN, thus equivalent to marked the message be input into from first port.
Optionally, shown in reference picture 3, the message being input into by first port 301, the mark of its VLAN for carrying all is repaiied
It is changed to the mark of first port independence VLAN31.The message being input into by second port 302, its carry VLAN mark all by
The mark of second port independence VLAN32 is revised as, certainly, if other downlink ports can also be other downlink ports point
The mark of the VLAN with independent VLAN and the message carrying for changing port input.Herein, the mark of a VLAN can be
The VID (VLAN Identity, VLAN identity) of one VLAN, the mark of first port independence VLAN31 can be
The VID of first port independence VLAN31.
403rd, the network equipment is mutually corresponding with first port by the second physical address, and by the second physical address and first end
The number record of mouth is in address list.
When the network equipment needs the message that transfer destination address is the second physical address, it is possible to by searching address column
Table, the output port for determining the message is first port.Optionally, for the message that each is input into, by the source address of message
Carried out with the input port of message it is corresponding, and by the number record of message source address and input port in address list.
404th, the network equipment according to the mark of first port independence VLAN by least one uplink port to belonging to first
The bridging device of port independence VLAN exports the first message, and receive that bridging device transmits by least one uplink port the
One message.
Optionally, the bridging device can include multiple equipment, as long as the first message can be made to wrap to the network set
Standby, the concrete form present invention for bridging device is not limited.
Optionally, shown in reference picture 3, because the first message carries the mark of first port independence VLAN31, should
First message wraps to the network equipment 30 after being transmitted in first port independence VLAN31, and the bridging device 37 falls within this
First port independence VLAN31.In figure 3, bridging device 37 belongs to all independent VLAN, so, no matter defeated by which port
The message for entering, the mark of the VLAN that can all carry message is revised as being input into the corresponding independent VLAN's of downlink port of the message
Mark, message can be transmitted by bridging device 37 and wrap to the network equipment 30, and this allows for the situation in port isolation
Under, it is not necessary to the terminal device of isolation can still carry out double layered communication.
405th, the network equipment searches the output of the first message in stored address list according to the first physical address
The numbering of port.
Wherein, address list is used for corresponding between the destination address of the first message of instruction and the output port of the first message
Relation.
Optionally, the network equipment obtains the second message by second port, and the second message includes the first physical address, first
Physical address is the source address of the second message.The network equipment is mutually corresponding with second port by the first physical address, and by first
The number record of physical address and second port is in address list.So, the network equipment transmit the first message when, Ke Yi
The first physical address carried in the first message, i.e. port corresponding to the destination address of the first message are found in address list
Be second port, using second port as the first message output port.Optionally, with reference to step 403, address list can be as
Shown in table one:
Table one
First physical address | The mark of first port independence VLAN | Second port |
First physical address | The mark of second port independence VLAN | Second port |
Second physical address | The mark of first port independence VLAN | First port |
Second physical address | The mark of second port independence VLAN | First port |
In table one, first row represents the destination address of message, and secondary series represents the independent VLAN of message input port, the 3rd
Row represent the output port of message, can not optionally, in address list include the secondary series in table one, also may be used in address list
Including other guide, not to be limited to this present invention.
406th, the network equipment according to the numbering of the output port of the first message by the first message from the output end of the first message
Mouth output.
Optionally, the output port of the first message is found in address list for second port, the network equipment is by first
The mark of the first port independence VLAN carried in the first message is changed back a VLAN's by message from before second port output
Mark, can be transmitted to second terminal equipment in order to the first message by a VLAN.
The data transmission method that embodiments of the invention are provided, the first message for being received first port by bridging device
The network equipment is wrapped to, the volume of the corresponding output port of the first physical address that the first message is included is found in address list
Number, export the first message from output port so that two layers can also be carried out in the case of port isolation, between terminal device and is led to
Letter.
Based on the corresponding embodiments of above-mentioned Fig. 2 and Fig. 4, embodiments of the invention provide a kind of network equipment, the institute of reference picture 5
Show, the network equipment 50 includes:First transmitting element 501, the second transmitting element 502, the first receiving unit 503, second are received
Unit 504, map unit 505, at least two downlink ports and at least one uplink port, wherein, at least two downlink ports
Include first port and other downlink ports isolated with first port.
First receiving unit 503, for obtaining the first message that first terminal equipment sends by first port, first eventually
End equipment belongs to the first virtual LAN VLAN, and the first message includes the mark of a VLAN.
Map unit 505, for according to default mapping relations, by a VLAN in the first message of receiving unit reception
Mark is changed to the mark of first port independence VLAN, wherein, default mapping relations are used to indicate to include first port independence
The corresponding relation of VLAN and first port.
Second transmitting element 502, for according to the mark of first port independence VLAN by least one uplink port to
Belong to the first message after the bridging device output change of map unit 505 of first port independence VLAN.
Second receiving unit 504, for receiving the first message that bridging device is transmitted by least one uplink port.
Map unit 505, is additionally operable to according to mapping relations, determines the in the first message that the second receiving unit 504 is received
Port corresponding to the mark of Single port independence VLAN is first port.
First transmitting element 501, for map unit 505 to be determined after the first message under in addition to first port
At least one of row port downlink port is exported.
Optionally, in a kind of application scenarios, the second transmitting element 502, specifically for by the first message from except first end
All downlink ports output outside mouthful.
Optionally, in another application scenarios, the first message also includes the first physical address, and the first physical address is the
The destination address of one message.
The network equipment 50 also includes searching unit 506,
Searching unit 506, for searching the first message according to the first physical address in stored address list
The numbering of output port, wherein, address list be used for indicate the first message destination address and the first message output port it
Between corresponding relation.
Second transmitting element 502, also particularly useful for the volume of the output port of the first message found according to searching unit
Number the first message is exported from the output port of the first message.
Further alternative, the first receiving unit 503 is additionally operable to obtain the second message, the second message by second port
Including the first physical address, the first physical address is the source address of the second message, and second port is under isolating with first port
Row port.
Map unit 505, the first physical address for being additionally operable to receive the first receiving unit 503 is mutually right with second port
Should, and by the number record of the first physical address and second port in address list.
Searching unit 506, specifically for finding the first physical address pair in the address list that map unit 505 is recorded
The numbering of the second port answered, using second port as the first message output port.
Second transmitting element 502, exports also particularly useful for by the first message from second port.
Optionally, in another application scenarios, the first message also includes the second physical address, and the second physical address is the
The source address of one message.
Map unit 505, be additionally operable to the second physical address is mutually corresponding with first port, and by the second physical address with
The number record of first port is in address list.
Map unit 505, is additionally operable to the first message from the downstream end in addition to first port in the second transmitting element 502
Before the output of at least one of mouth downlink port, the mark of first port independence VLAN is changed to the mark of a VLAN.
The network equipment that embodiments of the invention are provided, first is revised as by the way that the VLAN in the first message is marked
The mark of port independence VLAN, VLAN is mutually corresponding with first port for first port independence so that the first message is set by bridge joint
For after wrapping to the network equipment, the network equipment can go out the defeated of first message by the marker recognition of first port independence VLAN
Inbound port is first port, and first message from least one downlink port output in addition to first port is thus solved
Determine and supported the network equipment of port isolation technology, when double layered communication is carried out in the case of port isolation, broadcasting packet is from defeated
The port for entering exports again, and then causes the problem of system fault.
Another embodiment of the present invention provides a kind of network equipment 6001, and shown in reference picture 6, the equipment can be embedded in or this
Body is exactly microprocessor computer, such as:The portable equipments such as all-purpose computer, customization machine, mobile phone terminal or purl machine, the net
Network equipment 6001 includes:At least one processor 6011, memory 6012, bus 6013, transmitter 6014 and receiver 6015,
At least one processor 6011, memory 6012, transmitter 6014 and receiver 6015 are connected and completed by bus 6013
Mutual communication.
The bus 6013 can be ISA (Industry Standard Architecture, industry standard architecture)
Bus, PCI (Peripheral Component, external equipment interconnection) buses or EISA (Extended Industry
Standard Architecture, extended industry-standard architecture) bus etc..The bus 6013 can be divided into address bus,
Data/address bus, controlling bus etc..For ease of represent, only represented with a thick line in Fig. 6, it is not intended that only one bus or
A type of bus.Wherein:
Memory 6012 is used to perform the application code of the present invention program, performs the application program generation of the present invention program
Code is preserved in memory, and is controlled to perform by processor 6011.
The memory can be read only memory ROM or the other kinds of static storage that can store static information and instruction
Equipment, random access memory ram or can storage information and instruction other kinds of dynamic memory, or electricity
EPROM EEPROM, read-only optical disc CD-ROM or other optical disc storages, laser disc storage (including squeezed light
Dish, laser disc, laser disc, Digital Versatile Disc, Blu-ray Disc etc.), magnetic disk storage medium or other magnetic storage apparatus or energy
Be enough in carry or storage have instruction or data structure form desired program code and can by computer access times
What his medium, but not limited to this.These memories are connected by bus with processor.
Processor 6011 be probably a central processing unit 6011 (Central Processing Unit, referred to as
CPU), or specific integrated circuit (Application Specific Integrated Circuit, referred to as ASIC),
Or it is arranged to implement one or more integrated circuits of the embodiment of the present invention.
Processor 6011, for calling the program code in memory 6012, is used to perform the corresponding equipment realities of above-mentioned Fig. 5
The operation of map unit in example is applied, the corresponding apparatus embodiments of reference picture 5 are specifically described, repeated no more here.
The network equipment that embodiments of the invention are provided, first is revised as by the way that the VLAN in the first message is marked
The mark of port independence VLAN, VLAN is mutually corresponding with first port for first port independence so that the first message is set by bridge joint
For after wrapping to the network equipment, the network equipment can go out the defeated of first message by the marker recognition of first port independence VLAN
Inbound port is first port, and first message from least one downlink port output in addition to first port is thus solved
Determine and supported the network equipment of port isolation technology, when double layered communication is carried out in the case of port isolation, broadcasting packet is from defeated
The port for entering exports again, and then causes the problem of system fault.
Through the above description of the embodiments, it is apparent to those skilled in the art that the present invention can be with
Realized with hardware, or firmware is realized, or combinations thereof mode is realized.When implemented in software, can be by above-mentioned functions
Storage is transmitted in computer-readable medium or as one or more instructions on computer-readable medium or code.Meter
Calculation machine computer-readable recording medium includes computer-readable storage medium and communication media, and wherein communication media includes being easy to from a place to another
Any medium of individual place transmission computer program.Storage medium can be any usable medium that computer can be accessed.With
As a example by this but it is not limited to:Computer-readable medium can include RAM (Random Access Memory, random access memory), ROM
(Read Only Memory, read-only memory), EEPROM (Electrically Erasable Programmable Read
Only Memory, EEPROM), CD-ROM (Compact Disc Read Only Memory, i.e., only
Read CD) or other optical disc storages, magnetic disk storage medium or other magnetic storage apparatus or can be used in carrying or storing tool
Have instruction or data structure form desired program code and can be by any other medium of computer access.In addition.Appoint
What connection can be appropriate as computer-readable medium.If for example, software is to use coaxial cable, optical fiber cable, multiple twin
Line, DSL (Digital Subscriber Line, digital subscriber line) or such as infrared ray, radio and microwave etc
Wireless technology is transmitted from website, server or other remote sources, then coaxial cable, optical fiber cable, twisted-pair feeder, DSL or
The wireless technology of person's such as infrared ray, wireless and microwave etc be included in affiliated medium it is fixing in.As used in the present invention,
Plate and dish include CD (Compact Disc, compress laser disc), laser disc, laser disc, DVD dish (Digital Versatile Disc,
Digital universal light), floppy disk and Blu-ray Disc, the replicate data of the usual magnetic of which disk, and dish is then with laser come optical duplication
Data.Above combination above should also be as being included within the protection domain of computer-readable medium.
The above, specific embodiment only of the invention, but protection scope of the present invention is not limited thereto, and it is any
Those familiar with the art the invention discloses technical scope in, change or replacement can be readily occurred in, should all contain
Cover within protection scope of the present invention.Therefore, protection scope of the present invention described should be defined by scope of the claims.
Claims (10)
1. a kind of data transmission method, it is characterised in that methods described is performed by the network equipment, the network equipment includes:At least two
Individual downlink port and at least one uplink port, wherein, at least two downlink port include first port and with institute
Other downlink ports of first port isolation are stated, the data transmission method includes:
The network equipment obtains the first message that first terminal equipment sends by the first port, and the first terminal sets
Standby to belong to the first virtual LAN VLAN, first message includes the mark of a VLAN;
The mark of a VLAN described in first message is changed to first by the network equipment according to default mapping relations
The mark of port independence VLAN, wherein, the default mapping relations are used to indicate to include the first port independence VLAN and institute
State the corresponding relation of first port;
The network equipment is according to the mark of the first port independence VLAN by least one uplink port to belonging to
The bridging device of the first port independence VLAN exports first message, and is received by least one uplink port
First message of the bridging device transmission;
The network equipment determines that the mark institute of first port independence VLAN in first message is right according to the mapping relations
The port answered is the first port;
The network equipment is descending from least one of the downlink port in addition to the first port by first message
Port exports.
2. method according to claim 1, it is characterised in that the network equipment is by first message from except described the
At least one of downlink port outside Single port downlink port is exported, including:
The network equipment exports first message from all downlink ports in addition to the first port.
3. method according to claim 1, it is characterised in that
First message also includes the first physical address, and first physical address is the destination address of first message;
The network equipment is descending from least one of the downlink port in addition to the first port by first message
Port exports, including:
The network equipment searches first message in stored address list according to first physical address
The numbering of output port, wherein, the address list is used to indicate the destination address and first message of first message
Output port between corresponding relation;
The network equipment is according to the numbering of the output port of first message by first message from first message
Output port output.
4. method according to claim 3, it is characterised in that
Before the network equipment obtains the first message that first terminal equipment sends by the first port, also include:
The network equipment obtains the second message by second port, and second message includes first physical address, institute
The source address that the first physical address is second message is stated, the second port is the downstream end isolated with the first port
Mouthful;
The network equipment is mutually corresponding with the second port by first physical address, and by first physical address
With the number record of the second port in the address list;Additionally, the network equipment is obtained by the first port
Take first terminal equipment transmission the first message after,
The network equipment is descending from least one of the downlink port in addition to the first port by first message
Port exports, including:
The network equipment finds the volume of the corresponding second port of first physical address in the address list
Number, using the second port as first message output port;
The network equipment exports first message from the second port.
5. the method according to claim any one of 1-4, it is characterised in that the network equipment by first message from
Before the output of at least one of downlink port in addition to first port downlink port, also include:
The mark of the first port independence VLAN is changed to the network equipment mark of a VLAN.
6. a kind of network equipment, it is characterised in that the network equipment includes the first transmitting element, the second transmitting element, first
Receiving unit, the second receiving unit, map unit, at least two downlink ports and at least one uplink port, wherein, it is described extremely
Few two downlink ports include first port and other downlink ports isolated with the first port;
First receiving unit, it is described for obtaining the first message that first terminal equipment sends by the first port
First terminal equipment belongs to the first virtual LAN VLAN, and first message includes the mark of a VLAN;
The map unit, for according to default mapping relations, described in first message of receiving unit reception
The mark of the first VLAN is changed to the mark of first port independence VLAN, wherein, the default mapping relations include for instruction
The corresponding relation of the first port independence VLAN and the first port;
Second transmitting element, for according to the mark of the first port independence VLAN by least one upstream ends
Mouth exports first message after the map unit is changed to the bridging device for belonging to the first port independence VLAN;
Second receiving unit, for receiving the first report that the bridging device is transmitted by least one uplink port
Text;
The map unit, is additionally operable to according to the mapping relations, determines first report that second receiving unit is received
Port in text corresponding to the mark of first port independence VLAN is the first port;
First transmitting element, for by the map unit determine after first message from except the first port it
At least one of outer downlink port downlink port is exported.
7. equipment according to claim 6, it is characterised in that
Second transmitting element, specifically for by first message from all downlink ports in addition to the first port
Output.
8. equipment according to claim 6, it is characterised in that
First message also includes the first physical address, and first physical address is the destination address of first message;
The network equipment also includes searching unit,
The searching unit, for searching first report according to first physical address in stored address list
The numbering of the output port of text, wherein, the address list is used to indicate the destination address and described first of first message
Corresponding relation between the output port of message;
Second transmitting element, also particularly useful for the output port of first message found according to the searching unit
Numbering first message is exported from the output port of first message.
9. equipment according to claim 8, it is characterised in that
First receiving unit, is additionally operable to obtain the second message by second port, and second message includes described first
Physical address, first physical address is the source address of second message, and the second port is and the first port
The downlink port of isolation;
The map unit, is additionally operable to first physical address and the second port of first receiving unit reception
Mutual correspondence, and by the number record of first physical address and the second port in the address list;
The searching unit, specifically for finding first physics in the address list that the map unit is recorded
The numbering of the corresponding second port in address, using the second port as first message output port;
Second transmitting element, exports also particularly useful for by first message from the second port.
10. the equipment according to claim any one of 6-9, it is characterised in that
The map unit, is additionally operable to first message in second transmitting element from addition to the first port
Before the output of at least one of downlink port downlink port, the mark of the first port independence VLAN is changed to described the
The mark of one VLAN.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410298053.6A CN104065552B (en) | 2014-06-26 | 2014-06-26 | A kind of data transmission method and equipment |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410298053.6A CN104065552B (en) | 2014-06-26 | 2014-06-26 | A kind of data transmission method and equipment |
Publications (2)
Publication Number | Publication Date |
---|---|
CN104065552A CN104065552A (en) | 2014-09-24 |
CN104065552B true CN104065552B (en) | 2017-06-23 |
Family
ID=51553092
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201410298053.6A Active CN104065552B (en) | 2014-06-26 | 2014-06-26 | A kind of data transmission method and equipment |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN104065552B (en) |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN106302263B (en) * | 2015-05-22 | 2019-12-03 | 中兴通讯股份有限公司 | A kind of routing mouth and two layers of method, apparatus being isolated of non-routing mouth and interchanger |
CN109768909B (en) * | 2019-03-26 | 2021-04-27 | 杭州迪普科技股份有限公司 | Message forwarding method and device |
Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101572655A (en) * | 2008-04-29 | 2009-11-04 | 华为技术有限公司 | Method and equipment for port isolation |
CN101702679A (en) * | 2009-11-26 | 2010-05-05 | 福建星网锐捷网络有限公司 | Message processing method and exchange apparatus based on virtual local area network |
CN102710468A (en) * | 2011-03-28 | 2012-10-03 | 华为技术有限公司 | Customer service access method and system and access equipment |
CN103095654A (en) * | 2011-10-31 | 2013-05-08 | 华为技术有限公司 | Virtual local area network (VLAN) configuration method, wireless access point and network control point |
CN103281205A (en) * | 2013-05-23 | 2013-09-04 | 浙江宇视科技有限公司 | Method for configuring isolating information at ports, and network equipment |
Family Cites Families (1)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US8660075B2 (en) * | 2011-01-10 | 2014-02-25 | Brocade Communications Systems, Inc. | Congestion notification in private VLANs |
-
2014
- 2014-06-26 CN CN201410298053.6A patent/CN104065552B/en active Active
Patent Citations (5)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101572655A (en) * | 2008-04-29 | 2009-11-04 | 华为技术有限公司 | Method and equipment for port isolation |
CN101702679A (en) * | 2009-11-26 | 2010-05-05 | 福建星网锐捷网络有限公司 | Message processing method and exchange apparatus based on virtual local area network |
CN102710468A (en) * | 2011-03-28 | 2012-10-03 | 华为技术有限公司 | Customer service access method and system and access equipment |
CN103095654A (en) * | 2011-10-31 | 2013-05-08 | 华为技术有限公司 | Virtual local area network (VLAN) configuration method, wireless access point and network control point |
CN103281205A (en) * | 2013-05-23 | 2013-09-04 | 浙江宇视科技有限公司 | Method for configuring isolating information at ports, and network equipment |
Also Published As
Publication number | Publication date |
---|---|
CN104065552A (en) | 2014-09-24 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN104243010B (en) | A kind of intermediate station wireless interconnected method, system and intermediate station | |
EP2936749A1 (en) | Bridging network devices in a hybrid communication network | |
JP2017525205A5 (en) | ||
CN101741657A (en) | Method, system and device for limiting position of home base station | |
CN110536285A (en) | Interfere control, message transmission, retransmission method, device, communication equipment and system | |
CN106385710A (en) | System information transmission method and transmission apparatus | |
US9800739B2 (en) | Method and apparatus for allocating power levels to a transmission in a digital subscriber line network | |
CN108024339A (en) | A kind of method and apparatus of the time-domain resource of definite reference signal mapping | |
CN110505152A (en) | Route filtering method, device and electronic equipment | |
CN103415084A (en) | Mobile terminal internet surfing method and mobile terminal | |
CN102484611B (en) | Link state identifier collision handling | |
CN104065552B (en) | A kind of data transmission method and equipment | |
CN102318322A (en) | Device and method for distributing MAC address | |
CN111464261A (en) | Signal transmission and detection method and device | |
CN104812053A (en) | D2D communication synchronization channel transmission method, D2D communication synchronization channel transmission system, sender and receiver | |
CN111083120B (en) | Data transmission method and device, electronic equipment and storage medium | |
CN106605436A (en) | Resource allocation method, access point and station | |
CN102065018A (en) | Method and system for transmitting message | |
CN105681572A (en) | Mobile terminal and ringtone response method thereof | |
CN103647780B (en) | The method and the network equipment of Lawful Interception | |
CN110351044A (en) | A kind of transmission method, device and the network side equipment of access control information | |
CN104219159A (en) | Method and device for performing link aggregation based on virtual interface of virtual local area network | |
CN106576023A (en) | Method, device, and system for information transmission | |
CN103812707A (en) | Forwarding processing method of line identity messages | |
KR20150121115A (en) | System and method for enabling g.hn nodes to support 1905.1 relaying (mac relaying) while supporting legacy g.hn relaying according to the g.hn standards |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
CP01 | Change in the name or title of a patent holder |
Address after: Cangshan District of Fuzhou City, Fujian province 350002 Jinshan Road No. 618 juyuanzhou Industrial Park, 19 floor Patentee after: RUIJIE NETWORKS CO., LTD. Address before: Cangshan District of Fuzhou City, Fujian province 350002 Jinshan Road No. 618 juyuanzhou Industrial Park, 19 floor Patentee before: Fujian Xingwangruijie Network Co., Ltd. |
|
CP01 | Change in the name or title of a patent holder |