Method, apparatus, and system for providing network traversing service

US9838261B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9838261-B2
Application numberUS-201414488663-A
CountryUS
Kind codeB2
Filing dateSep 17, 2014
Priority dateNov 19, 2012
Publication dateDec 5, 2017
Grant dateDec 5, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Embodiments of the present invention provide a method, an apparatus, and a system for providing a network traversing service. A resource management center sends a network traversing tunnel resource creating instruction to a secure traversing server according to a received network traversing tunnel resource leasing request sent by a management server of a carrier. After the secure traversing server creates a network traversing tunnel resource, the information of the network traversing tunnel resource is sent to the management server of the carrier through the resource management center. The information of the network traversing tunnel resource includes virtual access point information and service channel information. Thus, the management server of the carrier can provide a network traversing service for a terminal according to the virtual access point information and the service channel information. Network expandability of the carrier and reliability of network traversing can be improved by using the method.

First claim

Opening claim text (preview).

What is claimed is: 1. A system for providing a network traversing service comprising; a resource management center configured to: receive a network traversing tunnel resource leasing request sent by a management server of a communication carrier, wherein the network traversing tunnel resource leasing request includes information about a quantity of virtual access points to be leased and a quantity of users to be served by each of the virtual access points; send a network traversing tunnel resource creating instruction to a secure traversing server according to the network traversing tunnel resource leasing request, wherein the network traversing tunnel resource creating instruction comprises the information about the quantity of the virtual access points and the quantity of the users; receive information of a network traversing tunnel resource created by the secure traversing server according to the quantity of the virtual access points and the quantity of the users, wherein the information of the network traversing tunnel resource comprises virtual access point information and service channel information for providing tunneling for accessing a core network of the communication carrier; and send the information of the network traversing tunnel resource to the management server of the communication carrier; and the secure traversing server configured to: receive the network traversing tunnel resource creating instruction sent by the resource management center; create, according to the quantity of the virtual access points and the quantity of the users, the network traversing tunnel resource that satisfies a leasing requirement of the communication carrier, wherein the network traversing tunnel resource comprises a virtual access point and a service channel interconnected to the virtual access point that is a virtualized secure traversing gateway for (i) establishing a virtual private network (VPN) tunnel with a terminal belonging to the communication carrier and (ii) providing the terminal with a capability to access the VPN tunnel; and return the information of the created network traversing tunnel resource to the resource management center; receive from the terminal a network traversing tunnel registering request carrying information of (i) a first virtual access point to be accessed by the terminal, (ii) an identifier of the communication carrier to which the terminal belongs and (iii) an address of the core network of the communication carrier; and determine whether the first virtual access point is a virtual access point selected by the secure traversing server for the terminal and, when the first virtual access point is not the virtual access point selected by the secure traversing server for the terminal (i) selecting in accordance with the identifier of the communication carrier and within the network traversing tunnel resource leased by the carrier, a second virtual access point for the terminal and (ii) returning to the terminal a network traversing tunnel registration success message comprising information of the second virtual access point. 2. The system according to claim 1 , wherein the secure traversing server is deployed in a network of the communication carrier and has a largest number of idle resources among a plurality of secure traversing servers deployed in the network of the communication carrier. 3. The system according to claim 1 , wherein when the first virtual access point is selected by the secure traversing server for the terminal, the secure traversing server is further configured to return the network traversing tunnel registration success message to the terminal. 4. The system according to claim 1 , wherein the second virtual access point comprises one of the following: a smallest user load amount, a closest access position, and a fastest probe response in the network traversing tunnel resources leased by the communication carrier. 5. A system for providing a network traversing service comprising; a resource management center configured to: receive a network traversing tunnel resource leasing request sent by a management server of a communication carrier, wherein the network traversing tunnel resource leasing request includes information about a quantity of virtual access points to be leased and a quantity of users to be served by each of the virtual access points; send a network traversing tunnel resource creating instruction to a secure traversing server according to the network traversing tunnel resource leasing request, wherein the network traversing tunnel resource creating instruction comprises the information about the quantity of the virtual access points and the quantity of the users; receive information of a network traversing tunnel resource created by the secure traversing server according to the quantity of the virtual access points and the quantity of the users, wherein the information of the network traversing tunnel resource comprises virtual access point information and service channel information for providing tunneling for accessing a core network of the communication carrier; and send the information of the network traversing tunnel resource to the management server of the communication carrier; and the secure traversing server configured to: receive the network traversing tunnel resource creating instruction sent by the resource management center; create, according to the quantity of the virtual access points and the quantity of the users, the network traversing tunnel resource that satisfies a leasing requirement of the communication carrier, wherein the network traversing tunnel resource comprises a virtual access point and a service channel interconnected to the virtual access point that is a virtualized secure traversing gateway for (i) establishing a virtual private network (VPN) tunnel with a terminal belonging to the communication carrier and (ii) providing the terminal with a capability to access the VPN tunnel; and return the information of the created network traversing tunnel resource to the resource management center; receive an access point querying request from the terminal, wherein the access point querying request carries the identifier of the communication carrier to which the terminal belongs; select, in the network traversing tunnel resource leased by the communication carrier, a target virtual access point according to the identifier of the communication carrier; return a query response message to the terminal, wherein the query response message comprises information of the target virtual access point; receive a tunnel registering request from the terminal, wherein the tunnel registering request comprises the information of the target virtual access point and the address of the core network of the communication carrier which provides converged communications services; and determine whether the target virtual access point is a virtual access point selected by the secure traversing server for the terminal and, when the target virtual access point is not the virtual access point selected by the secure traversing server for the terminal, (i) select in accordance with the identifier of the communication carrier and within the network traversing tunnel resource leased by the carrier, a first virtual access point for the terminal and (ii) return a network traversing tunnel registration success message to the terminal comprising information of the first virtual access point. 6. The system according to claim 5 , wherein the secure traversing server is configured to: according to the identifier of the communication carrier, select, in the network traversing tunnel resource leased by the communication carrier, the target virtual access point that comprises one of the following: a smallest user load amount, a closest

Assignees

Inventors

Classifications

  • H04L41/12Primary

    Discovery or management of network topologies · CPC title

  • Allocation of payload; Allocation of data channels, e.g. PDSCH or PUSCH · CPC title

  • Initialisation or configuration control {(processor initialisation G06F9/4405)} · CPC title

  • Virtual LANs, VLANs, e.g. virtual private networks [VPN] (LAN interconnection over a bridge based backbone H04L12/462; encapsulation techniques H04L12/4633; routing of packets H04L45/00; packet switches H04L49/00; virtual private networks for security H04L63/0272) · CPC title

  • Firewall traversal, e.g. tunnelling or, creating pinholes · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9838261B2 cover?
Embodiments of the present invention provide a method, an apparatus, and a system for providing a network traversing service. A resource management center sends a network traversing tunnel resource creating instruction to a secure traversing server according to a received network traversing tunnel resource leasing request sent by a management server of a carrier. After the secure traversing ser…
Who is the assignee on this patent?
Huawei Tech Co Ltd
What technology area does this patent fall under?
Primary CPC classification H04L41/12. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Dec 05 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).