- 专利标题: Migrating firewall connection state for a firewall service virtual machine
-
申请号: US16945748申请日: 2020-07-31
-
公开(公告)号: US11388139B2公开(公告)日: 2022-07-12
- 发明人: Chidambareswaran Raman , Subrahmanyam Manuguri , Todd Sabin
- 申请人: Nicira, Inc.
- 申请人地址: US CA Palo Alto
- 专利权人: Nicira, Inc.
- 当前专利权人: Nicira, Inc.
- 当前专利权人地址: US CA Palo Alto
- 代理机构: Adeli LLP
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F9/455 ; H04L9/40
摘要:
For a host that executes one or more guest virtual machines (GVMs), some embodiments provide a novel virtualization architecture for utilizing a firewall service virtual machine (SVM) on the host to check the packets sent by and/or received for the GVMs. In some embodiments, the GVMs connect to a software forwarding element (e.g., a software switch) that executes on the host to connect to each other and to other devices operating outside of the host. Instead of connecting the firewall SVM to the host's software forwarding element that connects its GVMs, the virtualization architecture of some embodiments provides an SVM interface (SVMI) through which the firewall SVM can be accessed to check the packets sent by and/or received for the GVMs.
信息查询