CN114499793B - Method and device for screening data of signaling monitoring after centralized large-area center - Google Patents

Method and device for screening data of signaling monitoring after centralized large-area center Download PDF

Info

Publication number
CN114499793B
CN114499793B CN202011163366.2A CN202011163366A CN114499793B CN 114499793 B CN114499793 B CN 114499793B CN 202011163366 A CN202011163366 A CN 202011163366A CN 114499793 B CN114499793 B CN 114499793B
Authority
CN
China
Prior art keywords
province
mac layer
data
address
filtering
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN202011163366.2A
Other languages
Chinese (zh)
Other versions
CN114499793A (en
Inventor
韦薇
卫涛
张扬
赵辉
张欢
陈彦
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
China Mobile Group Design Institute Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
China Mobile Group Design Institute Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd, China Mobile Group Design Institute Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN202011163366.2A priority Critical patent/CN114499793B/en
Publication of CN114499793A publication Critical patent/CN114499793A/en
Application granted granted Critical
Publication of CN114499793B publication Critical patent/CN114499793B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L5/00Arrangements affording multiple use of the transmission path
    • H04L5/003Arrangements for allocating sub-channels of the transmission path
    • H04L5/0053Allocation of signaling, i.e. of overhead other than pilot signals
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02DCLIMATE CHANGE MITIGATION TECHNOLOGIES IN INFORMATION AND COMMUNICATION TECHNOLOGIES [ICT], I.E. INFORMATION AND COMMUNICATION TECHNOLOGIES AIMING AT THE REDUCTION OF THEIR OWN ENERGY USE
    • Y02D30/00Reducing energy consumption in communication networks
    • Y02D30/50Reducing energy consumption in communication networks in wire-line communication networks, e.g. low power modes or reduced link rate

Abstract

The embodiment of the invention provides a method and a device for screening data of signaling monitoring after centralized in a large area, wherein the method comprises the following steps: determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information. The method and the device provided by the embodiment of the invention realize screening of different provinces and different interface protocol data in signaling monitoring.

Description

Method and device for screening data of signaling monitoring after centralized large-area center
Technical Field
The invention relates to the technical field of signaling monitoring, in particular to a method and a device for screening data of signaling monitoring after centralized in a large area.
Background
The existing operator signaling monitoring system is built by taking provinces as units, and each province finishes decoding, analysis and statistics of the message after collecting the original code stream of the network element of the province. Each province realizes the collection of the original flow by connecting a beam splitter in series on the physical links of different interface protocols between the traditional physical network element and the CMNet CE and PTN. Along with the centralized construction process of the operator network large area, the network architecture of the traditional network element is greatly adjusted: the original physical network elements are arranged in the center of the large area in a centralized way, deployed in a resource pool and built in a virtualized way, each provincial signaling monitoring system needs to acquire the interface protocol data required by the provincial center, and the original acquisition way cannot finish screening of different provincial and different interface protocol data.
Therefore, how to avoid the problem that the existing signaling monitoring cannot screen different provinces and different interface protocol data is still a urgent problem to be solved by the skilled person.
Disclosure of Invention
The embodiment of the invention provides a method and a device for screening data of signaling monitoring after centralized in a large area, which are used for solving the problem that the existing signaling monitoring cannot screen data of different provinces and different interface protocols.
In a first aspect, an embodiment of the present invention provides a method for screening data for signaling monitoring after centralized in a large area, including:
determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table;
intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool;
filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information;
and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information.
Preferably, in the method, the determining a matching rule for filtering the provincial signaling based on the mapping static table of the IP address, the provincial number and the interface type specifically includes:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
Preferably, in the method, the updating of the MAC layer is performed on the original code stream obtained by filtering, and the new MAC layer includes data source information, which specifically includes:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
Preferably, in the method, the new MAC layer includes a sending province number, a receiving province number, and a timestamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
In a second aspect, an embodiment of the present invention provides a screening data apparatus for centralized signaling monitoring after a large area, including:
the rule unit is used for determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table;
the intercepting unit is used for intercepting the full data obtained by splitting the links by the network outlet of the central cloud resource pool of the large area;
the updating unit is used for filtering the full data based on the matching rule, and updating an MAC layer of the filtered original code stream, wherein a new MAC layer comprises data source information;
and the forwarding unit is used for outputting the code stream after updating the MAC layer to gateway equipment so as to enable the gateway equipment to carry out data encryption packaging and forward according to the data source information.
Preferably, in the device, the rule unit is specifically configured to:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
Preferably, in the apparatus, the updating of the MAC layer is performed on the filtered original code stream, and the new MAC layer includes data source information, which specifically includes:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
Preferably, in the apparatus, the new MAC layer includes a transmission province number, a reception province number, and a time stamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
In a third aspect, an embodiment of the present invention provides an electronic device, including a memory, a processor, and a computer program stored on the memory and executable on the processor, the processor implementing the steps of the method for screening data for centralized signaling monitoring of a large area center as provided in the first aspect when the program is executed.
In a fourth aspect, embodiments of the present invention provide a non-transitory computer readable storage medium having stored thereon a computer program which, when executed by a processor, implements the steps of a method of screening data for centralized post-signaling monitoring of a large area as provided in the first aspect.
The method and the device provided by the embodiment of the invention determine the matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information. In this way, the matching rule for screening the specific province signaling is extracted from the mapping static table of the IP address and the province and interface type, the corresponding signaling is screened based on the matching rule, the MAC address of the signaling is updated by adding the data source information, and the signaling is output to the gateway equipment for forwarding according to the data source information, so that the signaling data can be screened based on the province information and the interface type. Therefore, the method and the device provided by the embodiment of the invention realize screening of different provinces and different interface protocol data in signaling monitoring.
Drawings
In order to more clearly illustrate the embodiments of the present invention or the technical solutions in the prior art, a brief description will be given below of the drawings required for the embodiments or the prior art descriptions, and it is obvious that the drawings in the following description are some embodiments of the present invention, and other drawings may be obtained according to these drawings without inventive effort for a person skilled in the art.
Fig. 1 is a flow chart of a method for screening data for signaling monitoring after centralized in a large area according to an embodiment of the present invention;
fig. 2 is a schematic diagram of an updated MAC address space structure according to an embodiment of the present invention;
fig. 3 is a schematic structural diagram of a signaling monitoring screening data device after centralized in a large area according to an embodiment of the present invention;
fig. 4 is a schematic diagram of an entity structure of an electronic device according to an embodiment of the present invention.
Detailed Description
For the purpose of making the objects, technical solutions and advantages of the embodiments of the present invention more apparent, the technical solutions of the embodiments of the present invention will be clearly and completely described below with reference to the accompanying drawings in the embodiments of the present invention, and it is apparent that the described embodiments are some embodiments of the present invention, but not all embodiments of the present invention. All other embodiments, which can be made by those skilled in the art based on the embodiments of the invention without any inventive effort, are intended to be within the scope of the invention.
The existing signaling monitoring generally has the problem that data of different provinces and different interface protocols cannot be screened. In this regard, the embodiment of the invention provides a method for screening data for signaling monitoring after centralized in a large area. Fig. 1 is a flow chart of a method for screening data for signaling monitoring after centralized in a large area, which is provided by the embodiment of the invention, as shown in fig. 1, and the method includes:
step 110, determining a matching rule for filtering province signaling based on the IP address and the mapping static table of province and interface types.
Specifically, a mapping static table storing an IP address, a province and an interface type is stored in advance, and the IP address for screening can be found out from the static table through the province and the interface type of the signaling to be screened. The IP address is used as a matching rule for subsequent signaling screening.
And 120, intercepting the full data obtained by carrying out light splitting on the links by a network outlet of the central cloud resource pool of the large area.
Specifically, the links are split on a large-area central cloud resource pool network exit router, and the total data on the links are obtained.
And 130, filtering the full data based on the matching rule, and updating an MAC layer of the filtered original code stream, wherein a new MAC layer comprises data source information.
Specifically, filtering the full data based on the matching rule, that is, screening signaling corresponding to the specified identity from the full data according to the specified province information and interface type, and then performing MAC layer address updating in the process of signaling code stream analysis, specifically, adding data source information into the MAC layer, where the data source information includes sending province information and receiving province information of the signaling, and the data source information is also obtained based on the IP address, province and interface type mapping static table in step 110, and in general, the sending province information and receiving province information of the signaling are numbers for uniquely identifying the province.
And 140, outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to encrypt and package data and forwarding according to the data source information.
Specifically, the code stream after updating the MAC layer is output to the gateway equipment, and the gateway equipment extracts the data source information in the MAC layer after receiving the code stream after updating the MAC layer, encrypts and encapsulates the data, marks a time stamp, and then forwards the data according to the sending province information and the receiving province information provided by the data source information.
The method provided by the embodiment of the invention determines the matching rule for filtering province signaling based on the IP address, the province and the mapping static table of the interface type; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information. In this way, the matching rule for screening the specific province signaling is extracted from the mapping static table of the IP address and the province and interface type, the corresponding signaling is screened based on the matching rule, the MAC address of the signaling is updated by adding the data source information, and the signaling is output to the gateway equipment for forwarding according to the data source information, so that the signaling data can be screened based on the province information and the interface type. Therefore, the method provided by the embodiment of the invention realizes screening of different provinces and different interface protocol data in signaling monitoring.
Based on the above embodiment, in the method, the determining a matching rule for filtering province signaling based on the mapping static table of the IP address, province and interface type specifically includes:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
Specifically, the matching rule provided by the embodiment of the invention is to screen and filter the original code stream based on a specific IP address, and the specific IP address is determined by searching and searching based on the sending province, the receiving province and the interface type corresponding to the preset filtering province from the mapping static table of the IP address, the province and the interface. The IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces. For most interfaces (except Mw, N5 and other interfaces) which cannot cross the provinces, directly using a tuple (such as a source address or a destination address) as a matching rule, namely judging the province of a service according to network element information of a network element at one end in an original code stream, and filling the province into two province numbers in an MAC address; for interfaces such as Mw interfaces that may be cross-provincial, two tuples need to be used as matching rules, the specific rules are as follows: (1) If the two provinces belong to the same area, filling the numbers of the two different provinces into the MAC address; (2) If only one province belongs to the local area, filling in two province numbers in the MAC address as the province numbers of the province; for interfaces needing broadcast transmission, such as an N5 interface, the provincial number needs to be specially identified.
Now, an example is described: 1. take Beijing city as an example for an interface that is unlikely to cross provinces; 2. for the interface of possible trans-province, two cases of trans-province in the same large area and trans-province in different large areas are respectively taken as examples of Beijing and Hebei provinces and Beijing and Guangdong provinces; 3. for broadcast messages, the N5 interface is taken as an example. The matching rule is exemplified by an IP address. Table 1 is a matching rule table, and the specific contents are as follows:
table 1 matching rule table
Figure BDA0002744956720000071
Figure BDA0002744956720000081
Based on any one of the above embodiments, in the method, the updating of the MAC layer is performed on the original code stream obtained by filtering, and the new MAC layer includes data source information, which specifically includes:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
Specifically, the data source information may be represented by the sending province information and the receiving province information of the signaling, and the sending province information and the receiving province information generally use preset numbers for uniquely identifying the sending province information and the receiving province information, so that the province number and the receiving province number can be inserted and sent in a new MAC layer, meanwhile, the structure of an old MAC layer is changed, bytes except for the sending province number and the receiving province number information are designed to be a time stamp information filling position, and are used for stamping a time stamp when a code stream is sent to a corresponding province device for packaging. And after receiving the original code stream from the convergence and distribution equipment, the data gateway equipment fills in the time stamp information, encrypts and packages the data, completes copying according to the province identification, and finally forwards the data to the data attribution province through the IP network.
Based on any one of the above embodiments, in the method, the new MAC layer includes a sending province number, a receiving province number, and a timestamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
Specifically, details of updating the MAC layer address are specifically described herein, and the MAC layer address updating manner is specifically as follows:
fig. 2 is a schematic diagram of an updated MAC address space structure provided in an embodiment of the present invention, as shown in fig. 2, each MAC address length of a MAC layer before updating is 6 bytes, so that a total of 12 bytes space is occupied by a source MAC address and a destination MAC address, and then after the MAC layer is updated, 4 bytes are occupied by data source information, seconds in a timestamp, and nanoseconds in a timestamp, respectively, and a network byte order is adopted. Specifically, 32 bits of data source information, starting from the MSB, the meanings of the parts are respectively: bits 0-3 represent the area number where the current special shunting equipment is located, bits 4-13 represent the home province number at one end of the original signaling, bits 14-23 represent the home province number at the other end of the original signaling, and bits 24-31 represent the interface type.
Based on any one of the foregoing embodiments, an embodiment of the present invention provides a screening data device for centralized signaling monitoring in a large area, and fig. 3 is a schematic structural diagram of the screening data device for centralized signaling monitoring in a large area according to the embodiment of the present invention. As shown in fig. 3, the apparatus includes a rule unit 310, an intercept unit 320, an update unit 330, and a forwarding unit 340, wherein,
the rule unit 310 is configured to determine a matching rule for filtering provincial signaling based on the IP address, the provincial number, and the mapping static table of the interface type;
the intercepting unit 320 is configured to intercept full data obtained by splitting the link at the network outlet of the central cloud resource pool of the large area;
the updating unit 330 is configured to filter the full-size data based on the matching rule, update the MAC layer of the filtered original code stream, where the new MAC layer includes data source information;
the forwarding unit 340 is configured to output the code stream after updating the MAC layer to a gateway device, so that the gateway device performs data encryption and encapsulation and forwards the data according to the data source information.
The device provided by the embodiment of the invention determines the matching rule for filtering province signaling based on the IP address, the province and the mapping static table of the interface type; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information. In this way, the matching rule for screening the specific province signaling is extracted from the mapping static table of the IP address and the province and interface type, the corresponding signaling is screened based on the matching rule, the MAC address of the signaling is updated by adding the data source information, and the signaling is output to the gateway equipment for forwarding according to the data source information, so that the signaling data can be screened based on the province information and the interface type. Therefore, the device provided by the embodiment of the invention realizes screening of different provinces and different interface protocol data in signaling monitoring.
Based on any one of the foregoing embodiments, in the apparatus, the rule unit is specifically configured to:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
Based on any one of the foregoing embodiments, in the apparatus, the updating of the MAC layer is performed on the original code stream obtained by filtering, and the new MAC layer includes data source information, and specifically includes:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
Based on any one of the above embodiments, in the device, the new MAC layer includes a sending province number, a receiving province number, and a timestamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
Fig. 4 is a schematic physical structure diagram of an electronic device according to an embodiment of the present invention, as shown in fig. 4, where the electronic device may include: a processor (processor) 401, a communication interface (Communications Interface) 402, a memory (memory) 403 and a communication bus 404, wherein the processor 401, the communication interface 402 and the memory 403 complete communication with each other through the communication bus 404. The processor 401 may invoke a computer program stored in the memory 403 and executable on the processor 401 to perform the method of screening data for centralized signaling monitoring of a large area provided by the above embodiments, for example, including: determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information.
Further, the logic instructions in the memory 403 may be implemented in the form of software functional units and stored in a computer readable storage medium when sold or used as a stand alone product. Based on such understanding, the technical solution of the embodiments of the present invention may be embodied in essence or a part contributing to the prior art or a part of the technical solution, in the form of a software product stored in a storage medium, including several instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to perform all or part of the steps of the method described in the embodiments of the present invention. And the aforementioned storage medium includes: a U-disk, a removable hard disk, a Read-Only Memory (ROM), a random access Memory (RAM, random Access Memory), a magnetic disk, or an optical disk, or other various media capable of storing program codes.
The embodiments of the present invention also provide a non-transitory computer readable storage medium having stored thereon a computer program, which when executed by a processor, is implemented to perform the method for screening data for centralized signaling monitoring after a large area center provided in the foregoing embodiments, for example, including: determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table; intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool; filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information; and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information.
The system embodiments described above are merely illustrative, wherein the elements illustrated as separate elements may or may not be physically separate, and the elements shown as elements may or may not be physical elements, may be located in one place, or may be distributed over a plurality of network elements. Some or all of the modules may be selected according to actual needs to achieve the purpose of the solution of this embodiment. Those of ordinary skill in the art will understand and implement the present invention without undue burden.
From the above description of the embodiments, it will be apparent to those skilled in the art that the embodiments may be implemented by means of software plus necessary general hardware platforms, or of course may be implemented by means of hardware. Based on this understanding, the foregoing technical solution may be embodied essentially or in a part contributing to the prior art in the form of a software product, which may be stored in a computer readable storage medium, such as ROM/RAM, a magnetic disk, an optical disk, etc., including several instructions for causing a computer device (which may be a personal computer, a server, or a network device, etc.) to execute the method described in the respective embodiments or some parts of the embodiments.
Finally, it should be noted that: the above embodiments are only for illustrating the technical solution of the present invention, and are not limiting; although the invention has been described in detail with reference to the foregoing embodiments, it will be understood by those of ordinary skill in the art that: the technical scheme described in the foregoing embodiments can be modified or some technical features thereof can be replaced by equivalents; such modifications and substitutions do not depart from the spirit and scope of the technical solutions of the embodiments of the present invention.

Claims (10)

1. The method for screening data of signaling monitoring after centralized in a large area is characterized by comprising the following steps:
determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table;
intercepting full data obtained by splitting links by a network outlet of a large-area central cloud resource pool;
filtering the full data based on the matching rule, and updating an MAC layer of an original code stream obtained by filtering, wherein a new MAC layer comprises data source information;
and outputting the code stream after updating the MAC layer to gateway equipment for the gateway equipment to carry out data encryption packaging and forwarding according to the data source information.
2. The method for screening data for centralized signaling monitoring after large area center according to claim 1, wherein the determining a matching rule for filtering provincial signaling based on the mapping static table of IP address, provincial number and interface type specifically comprises:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
3. The method for screening data for centralized signaling monitoring in a large area according to claim 1 or 2, wherein the filtering method is characterized in that the original code stream is updated in the MAC layer, and the new MAC layer includes data source information, and specifically includes:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
4. The method for screening data for centralized signaling monitoring after a large area center according to claim 3, wherein the new MAC layer includes a transmission province number, a reception province number, and a time stamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
5. A screening data device for centralized signaling monitoring in a large area, comprising:
the rule unit is used for determining a matching rule for filtering province signaling based on the IP address, the province and interface type mapping static table;
the intercepting unit is used for intercepting the full data obtained by splitting the links by the network outlet of the central cloud resource pool of the large area;
the updating unit is used for filtering the full data based on the matching rule, and updating an MAC layer of the filtered original code stream, wherein a new MAC layer comprises data source information;
and the forwarding unit is used for outputting the code stream after updating the MAC layer to gateway equipment so as to enable the gateway equipment to carry out data encryption packaging and forward according to the data source information.
6. The device for screening data for centralized signaling monitoring after centralized area according to claim 5, wherein the rule unit is specifically configured to:
searching a mapping static table of the IP address, the province and the interface based on the transmitting province, the receiving province and the interface type corresponding to the preset filtering province, and determining an IP address matching rule;
the IP address matching rule is an IP tuple or an IP tuple, the IP tuple is the IP address of the interface corresponding to the province when the sending province and the receiving province are the same province, and the IP tuple is the IP address of the interface of the sending province and the receiving province when the sending province and the receiving province are different provinces.
7. The method for screening data for centralized signaling monitoring after large area center according to claim 5 or 6, wherein the filtering the original code stream is performed with MAC layer update, and the new MAC layer includes data source information, specifically including:
updating the MAC layer for the original code stream obtained by filtering, so that the new MAC layer comprises a transmission province number, a receiving province number and a time stamp filling position;
correspondingly, the gateway device performs data encryption encapsulation and forwarding according to the data source information, and specifically comprises the following steps:
and the gateway equipment fills the time information into the time stamp filling position, and forwards the data to the sending province and the receiving province according to the sending province number and the receiving province number after the data are encrypted and packaged.
8. The method for screening data for centralized signaling monitoring after a large area center according to claim 7, wherein the new MAC layer includes a transmission province number, a reception province number, and a time stamp filling location, and specifically includes:
the first 4 bytes of the new MAC layer address comprise province numbers, large area numbers and interface types, and the middle 4 bytes and the tail 4 bytes of the new MAC layer address are filling positions of time stamp seconds and time stamp nanoseconds respectively.
9. An electronic device comprising a memory, a processor and a computer program stored on the memory and executable on the processor, characterized in that the processor implements the steps of the method for screening data for centralized post-regional signaling monitoring of any one of claims 1 to 4 when the program is executed by the processor.
10. A non-transitory computer readable storage medium having stored thereon a computer program, which when executed by a processor, implements the steps of the method of screening data for centralized post-sector signaling monitoring of any of claims 1 to 4.
CN202011163366.2A 2020-10-27 2020-10-27 Method and device for screening data of signaling monitoring after centralized large-area center Active CN114499793B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202011163366.2A CN114499793B (en) 2020-10-27 2020-10-27 Method and device for screening data of signaling monitoring after centralized large-area center

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202011163366.2A CN114499793B (en) 2020-10-27 2020-10-27 Method and device for screening data of signaling monitoring after centralized large-area center

Publications (2)

Publication Number Publication Date
CN114499793A CN114499793A (en) 2022-05-13
CN114499793B true CN114499793B (en) 2023-04-28

Family

ID=81471035

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202011163366.2A Active CN114499793B (en) 2020-10-27 2020-10-27 Method and device for screening data of signaling monitoring after centralized large-area center

Country Status (1)

Country Link
CN (1) CN114499793B (en)

Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6219694B1 (en) * 1998-05-29 2001-04-17 Research In Motion Limited System and method for pushing information from a host system to a mobile data communication device having a shared electronic address
CN1728750A (en) * 2004-07-27 2006-02-01 邓里文 Method of packet voice communication
CN1728721A (en) * 2004-07-27 2006-02-01 邓里文 Adaptation method in use for syncretizing Internet and Ethernet
CN101730101A (en) * 2009-04-15 2010-06-09 中兴通讯股份有限公司 Realizing method, system and device for separating identify label from position
CN103248995A (en) * 2012-02-01 2013-08-14 上海博路信息技术有限公司 Data broadcasting system based on signaling monitoring
CN103354633A (en) * 2013-07-31 2013-10-16 上海欣方软件有限公司 Signaling data mining and analyzing-based specific mobile subscriber coarse positioning system and method thereof
CN103731415A (en) * 2013-12-09 2014-04-16 乐视网信息技术(北京)股份有限公司 High code stream data transmitting method and device
CN104955097A (en) * 2015-06-23 2015-09-30 珠海世纪鼎利通信科技股份有限公司 Mobile network signaling monitoring method based on kernel density distribution
CN105491532A (en) * 2015-11-25 2016-04-13 交科院(北京)交通技术有限公司 Mobile phone signaling filtering method and device used for analyzing operating state of road network
CN105830473A (en) * 2014-08-11 2016-08-03 华为技术有限公司 Communication method, user equipment, access network device and application server
CN110139275A (en) * 2019-04-11 2019-08-16 珠海高凌信息科技股份有限公司 A kind of credible calling authorization method and its system
CN110730111A (en) * 2019-10-23 2020-01-24 北京锐安科技有限公司 Network quality monitoring method, device, server and medium

Patent Citations (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6219694B1 (en) * 1998-05-29 2001-04-17 Research In Motion Limited System and method for pushing information from a host system to a mobile data communication device having a shared electronic address
CN1728750A (en) * 2004-07-27 2006-02-01 邓里文 Method of packet voice communication
CN1728721A (en) * 2004-07-27 2006-02-01 邓里文 Adaptation method in use for syncretizing Internet and Ethernet
CN101730101A (en) * 2009-04-15 2010-06-09 中兴通讯股份有限公司 Realizing method, system and device for separating identify label from position
CN103248995A (en) * 2012-02-01 2013-08-14 上海博路信息技术有限公司 Data broadcasting system based on signaling monitoring
CN103354633A (en) * 2013-07-31 2013-10-16 上海欣方软件有限公司 Signaling data mining and analyzing-based specific mobile subscriber coarse positioning system and method thereof
CN103731415A (en) * 2013-12-09 2014-04-16 乐视网信息技术(北京)股份有限公司 High code stream data transmitting method and device
CN105830473A (en) * 2014-08-11 2016-08-03 华为技术有限公司 Communication method, user equipment, access network device and application server
CN104955097A (en) * 2015-06-23 2015-09-30 珠海世纪鼎利通信科技股份有限公司 Mobile network signaling monitoring method based on kernel density distribution
CN105491532A (en) * 2015-11-25 2016-04-13 交科院(北京)交通技术有限公司 Mobile phone signaling filtering method and device used for analyzing operating state of road network
CN110139275A (en) * 2019-04-11 2019-08-16 珠海高凌信息科技股份有限公司 A kind of credible calling authorization method and its system
CN110730111A (en) * 2019-10-23 2020-01-24 北京锐安科技有限公司 Network quality monitoring method, device, server and medium

Non-Patent Citations (6)

* Cited by examiner, † Cited by third party
Title
孙媛 ; 金毅 ; .七号信令网IP化的演进分析.电信工程技术与标准化.2007,(第01期),全文. *
孙德丰 ; .No.7信令网IP化的关键问题.通信管理与技术.2013,(第06期),全文. *
曹嘉成 ; 张宇 ; 杨旭 ; .移动通信网络信令监测***及其扩展应用探讨.电信技术.2013,(第06期),全文. *
牛芳 ; 卜忠贵 ; 李雪芳 ; .Diameter信令网组网方案研究.电信工程技术与标准化.2017,(第03期),全文. *
王震华 ; 余万水 ; .CDMA2000 1x EV-DO分组域信令监测***方案设计.现代电信科技.2013,(第Z1期),全文. *
闫超 ; 龚露阳 ; 李达标 ; 于泽浩 ; .基于手机信令数据的旅客联程出行时空特征分析方法.交通运输研究.2019,(第06期),全文. *

Also Published As

Publication number Publication date
CN114499793A (en) 2022-05-13

Similar Documents

Publication Publication Date Title
US9037710B2 (en) Method and apparatus for correlating end to end measurements through control plane monitoring of wireless traffic
CN108270699B (en) Message processing method, shunt switch and aggregation network
CN106488508B (en) A kind of data transmission method, apparatus and system
CN105024985A (en) Message processing method and apparatus
US10505759B2 (en) Access layer-2 virtual private network from layer-3 virtual private network
CN103618733B (en) A kind of data filtering system and method for being applied to mobile Internet
US20150296399A1 (en) Event Management in Telecommunications Networks
CN109995588B (en) Flexible Ethernet link management method and system
CN109861897B (en) Method, device and system for obtaining corresponding relation
US10146682B2 (en) Method and apparatus for improving non-uniform memory access
CN107181605B (en) Message detection method and system, content extraction device and flow matching device
CN111786869B (en) Data transmission method between servers and server
Nguyen et al. Providing CCN functionalities over OpenFlow switches
CN108173763B (en) Message processing method, device and system
US20230006937A1 (en) Packet flow identification with reduced decode operations
US9270561B2 (en) Method and apparatus for applying uniform hashing to wireless traffic
CN113489652A (en) Data stream amplification method and device, convergence splitter and storage medium
CN115174676A (en) Convergence and shunt method and related equipment thereof
CN111786868B (en) Data transmission method between servers and strongswan server
US8611343B2 (en) Method and apparatus for providing a two-layer architecture for processing wireless traffic
CN114499793B (en) Method and device for screening data of signaling monitoring after centralized large-area center
CN113179229A (en) Verification method, verification device, storage medium and electronic equipment
EP2996303A1 (en) Input parameter generation method and device
CN102124698B (en) System and method for exporting structured data in a network management environment
CN101895522A (en) Host identity tag acquisition method and system

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant