-
1.
公开(公告)号:EP4459960A1
公开(公告)日:2024-11-06
申请号:EP22919983.1
申请日:2022-12-09
发明人: XU, Yanping , XIAO, Yaqun , LI, Yunxing
IPC分类号: H04L69/22
摘要: Embodiments of this application disclose a packet sending method. A first IP packet may be obtained, where a packet header of the first IP packet includes a tenant identifier of a tenant corresponding to the first IP packet. After the first IP packet is obtained, the first IP packet is sent to a VAS device, where the VAS device is configured to perform, based on the tenant identifier, a value-added service corresponding to the tenant. Because the packet header of the first IP packet includes the tenant identifier of the tenant corresponding to the first IP packet, after receiving the first IP packet, the VAS device may obtain the corresponding tenant identifier of the tenant by parsing the first IP packet, and further perform, based on the tenant identifier, the value-added service corresponding to the tenant. It can be learned that, according to this solution, there is no need to plan a network in advance to distinguish between tenants. The tenant identifier corresponding to the tenant may be directly obtained from the packet, so that different tenants are distinguished.
-
公开(公告)号:EP4239973A1
公开(公告)日:2023-09-06
申请号:EP21896055.7
申请日:2021-01-25
发明人: LIU, Shuying , FANG, Sheng , WEI, Xiugang , XIAO, Yaqun , GAO, Fang , XU, Guoqi , HU, Zhibo
IPC分类号: H04L45/74
摘要: A packet sending method and a related device are disclosed, to reduce a quantity of traffic engineering tunnels in a network and avoid complex configuration or management. This application includes a packet sending method, including: A network device obtains a first packet, where an internet protocol extension header of the first packet includes a first identifier, and the first identifier indicates a service requirement corresponding to the first packet. The network device determines, based on the first identifier and a second identifier, path indication information corresponding to the first packet, where a destination address of the first packet includes the second identifier, and the path indication information herein includes one or more of a network slice identifier and a segment identifier list. The network device updates the first packet based on the path indication information to obtain a second packet, and sends the second packet.
-
公开(公告)号:EP4203425A1
公开(公告)日:2023-06-28
申请号:EP21863485.5
申请日:2021-08-11
发明人: BAO, Lei , LIAO, Ting , XIAO, Yaqun , XU, Juhua , ZHENG, Juan , CHEN, Xinjun
摘要: A packet forwarding method, a system, an apparatus, and a network device are provided, and pertain to the field of communications technologies. The method is performed by a network device, and includes: obtaining first identification information of a first network resource required for forwarding first traffic to which a first packet belongs; determining a target port set based on the first identification information and a destination address of the first packet, where the target port set is associated with the first network resource; and selecting a first port from the target port set to forward the first packet. According to this method, it can be ensured that the network device forwards service traffic by using a network resource allocated to the service traffic, so that quality of service for a service is improved.
-
公开(公告)号:EP4102789A1
公开(公告)日:2022-12-14
申请号:EP20924929.1
申请日:2020-12-11
发明人: BAO, Lei , GU, Rui , XU, Juhua , CHEN, Xinjun , XIAO, Yaqun , FANG, Sheng , ZHANG, Jie
IPC分类号: H04L12/741 , H04L12/911 , H04W28/26
摘要: Embodiments of this application disclose a packet transmission method and apparatus, and a network device. Specifically, a first network device obtains identification information corresponding to a service flow, and reserves a forwarding resource based on the identification information. The forwarding resource is used by the first network device to forward the service flow to a second network device. The first network device further sends a packet including the identification information to the second network device, and the second network device reserves a corresponding forwarding resource based on the identification information in the packet. Network devices perform resource reservation hop by hop by sending the packet including the identification information, and do not need to perform resource reservation based on a transmission path that is pre-calculated and planned, so that load of the network device or a controller is reduced, and resource reservation flexibility is improved.
-
公开(公告)号:EP4373048A3
公开(公告)日:2024-07-17
申请号:EP23220203.6
申请日:2020-01-22
发明人: LI, Cheng , LI, Zhenbin , XIA, Yang , TIAN, Taixu , XIAO, Yaqun
IPC分类号: H04L45/00 , H04L45/02 , H04L45/74 , H04L45/50 , H04L69/04 , H04L69/22 , H04L45/741 , H04L45/745 , H04L45/748 , H04L69/167
CPC分类号: H04L45/34 , H04L45/02 , H04L45/74 , H04L69/22 , H04L69/04 , H04L45/50 , H04L45/741 , H04L45/745 , H04L45/748 , H04L69/325
摘要: A method for processing a packet on an SR network is provided, including: receiving a packet, where a packet header of the packet includes a destination address field, a first pointer, a second pointer, and a list used to process the packet, the list includes a plurality of sequentially arranged identifiers, the plurality of identifiers are one-to-one mapped to a plurality of segments on the SR network, and a value of the first pointer and a value of the second pointer jointly indicate a location of a first identifier in the plurality of identifiers in the list; determining the first identifier based on the value of the first pointer and the value of the second pointer; and copying the first identifier to the destination address field. In this method, a CL pointer is set in the packet header to jointly form a two-dimensional pointer with an SL pointer, to indicate a location of a C-SID in a SID list. This reduces a packet length and improves transmission and processing efficiency of the network.
-
公开(公告)号:EP4236245A1
公开(公告)日:2023-08-30
申请号:EP21897166.1
申请日:2021-11-27
发明人: HU, Zhibo , XU, Guoqi , XIAO, Yaqun , GAO, Fang , BAO, Lei , FANG, Sheng , WANG, Zhenxing , YANG, Pingan , WANG, Cuijun
IPC分类号: H04L45/00
摘要: A route advertisement method and a related device are disclosed, to flexibly use network slices and reduce a network configuration. The method includes a route advertisement network system. The network system includes a first network device, a second network device, and a third network device. The first network device is configured to: obtain a first route advertisement message, where the first route advertisement message includes a first route prefix; and obtain a second route prefix based on the first route prefix, where the second route prefix corresponds to a first network slice, and the second route prefix is a subnet prefix of the first route prefix. The first network device advertises a second route advertisement message to the second network device, where the second route advertisement message includes the second route prefix.
-
公开(公告)号:EP4145790A1
公开(公告)日:2023-03-08
申请号:EP21808353.3
申请日:2021-03-10
发明人: LU, Dongjie , GU, Rui , WEN, Huizhi , XIAO, Yaqun
IPC分类号: H04L29/06
摘要: Embodiments of this application disclose a method for verifying an SRv6 packet. An egress node of an IPsec tunnel may receive an SRv6 packet, where the SRv6 packet is a packet encapsulated in an IPsec transport mode. The SRv6 packet includes an AH and at least one SRH. The SRv6 packet carries first indication information, where the first indication information indicates the egress node to perform AH verification on the SRv6 packet. A verification range of the AH verification includes the at least one SRH. The method may prevent a network hacker from performing a network attack by using an SRH. For example, the method may prevent a network hacker from performing a network attack by tampering with an SRH or inserting a new SRH. In addition, this solution has the following advantages: consuming less resources, preventing replay attacks, supporting key agreement, verifying an SRH of an SRv6 packet when the SRH is used to forward the SRv6 packet, and the like.
-
公开(公告)号:EP4287576A1
公开(公告)日:2023-12-06
申请号:EP21922651.1
申请日:2021-12-27
发明人: LI, Zhiyong , XIAO, Yaqun , HAO, Jianwu , FANG, Sheng , FAN, Li
IPC分类号: H04L43/0823
摘要: A fault detection method, a network device, and a system are provided. The method includes: After a first network device receives, through a first forwarding path in an SR policy, a BFD packet that is sent by a second network device and that includes indication information of a SID list, the first network device determines, based on the indication information of the SID list, a second forwarding path that is reversely co-routed with the first forwarding path, and sends a response packet of the BFD packet to the second network device through the second forwarding path, so that the second network device can perform fault detection on the first forwarding path based on the response packet. In this way, a transmitting end includes the indication information of the SID list in the BFD packet, so that a receiving end can determine a forwarding path that is reversely co-routed with a forwarding path through which the BFD packet is transmitted, and send the response packet of the BFD packet to the transmitting end through the determined forwarding path, to implement accurate fault detection on a specific forwarding path in the SR policy.
-
9.
公开(公告)号:EP4160950A1
公开(公告)日:2023-04-05
申请号:EP21831666.9
申请日:2021-06-24
发明人: WEN, Huizhi , XIAO, Yaqun , ZHAO, Keqiang
IPC分类号: H04L20060101
摘要: Embodiments of the present invention disclose a packet sending method and apparatus, a network device, a system, and a storage medium, and belong to the field of communication technologies. An edge network device of a tier-1 carrier that has upgraded to an SRv6 network establishes a mapping relationship between a segment identifier and an MPLS label. After receiving a packet that carries an MPLS label and that is sent by a network device of a tier-2 carrier, the edge network device generates, based on the mapping relationship, a packet carrying a segment identifier The packet carrying the segment identifier is forwarded in the SRv6 network of the tier-1 carrier. This resolves a problem that the tier-1 carrier that has upgraded to SRv6 cannot provide a CSC service for the tier-2 carrier running MPLS.
-
公开(公告)号:EP4117227A1
公开(公告)日:2023-01-11
申请号:EP21780133.1
申请日:2021-03-10
发明人: LU, Dongjie , XIAO, Yaqun , WEN, Huizhi , FU, Jianzhong
IPC分类号: H04L9/32 , H04L12/723
摘要: A packet forwarding method is disclosed. The method includes: After an edge node in a trusted domain receives an SRv6 packet whose destination address is a BSID, the edge node may verify the packet based on a BSID in the packet and a destination field in an SRH of the packet. If the packet passes the verification, the edge node forwards the packet. If the packet fails the verification, the edge node discards the packet. Not only a node outside the trusted domain is required to access the trusted domain by using the BSID, but also the packet entering the trusted domain needs to be verified with reference to the target field in the segment routing header. Compared with a solution of performing SRv6 boundary filtering on a packet by using only a BSID, the foregoing method can effectively reduce network resources occupied by an attack packet, and therefore can reduce security risks that are caused by forwarding a packet by using an SRv6 technology.
-
-
-
-
-
-
-
-
-