SCALABLE AND SEGREGATED NETWORK VIRTUALIZATION
    1.
    发明公开
    SCALABLE AND SEGREGATED NETWORK VIRTUALIZATION 有权
    中介设备和方法,用于使可扩展性和单独的网络虚拟化

    公开(公告)号:EP3008860A1

    公开(公告)日:2016-04-20

    申请号:EP14738940.7

    申请日:2014-06-10

    IPC分类号: H04L12/46

    摘要: One embodiment of the present invention provides a switch 101, 102, 103, 104, 105 in a network 100. The switch includes a virtual network module and a forwarding module. The virtual network module includes a global virtual local area network (VLAN) tag in a packet. The global VLAN tag is mapped to an edge VLAN tag in the packet and is associated with a datacenter domain 172, 174, wherein a VLAN 152, 154 associated with a packet received from an edge port of the switch can be referred to as an edge VLAN and a corresponding identifier or tag can be referred to as an edge VLAN tag. The datacenter domain indicates a set of ports associated with a datacenter 120 130. The forwarding module identifies an egress edge port for the packet based on the global VLAN tag. Preferably, the global VLAN tag is mapped to an internal virtual identifier (IVID), which is internal and local to the switch. Moreover, the forwarding module preferably is further adapted to identify the egress edge port based on a mapping between the egress port and the internal virtual identifier. The global VLAN tag may be mapped to a media access control (MAC) address in the packet. In an embodiment, the switch is member of a TRILL network 100 (Transparent Interconnection of Lots of Links) and the global VLAN tag can be included in an encapsulation header such as a TRILL header.

    摘要翻译: 本发明的一个实施例提供的开关。 该开关包括一个虚拟网络模块和转发模块。 虚拟网络模块包括在分组中的全球虚拟局域网(VLAN)标签。 全局VLAN标签在分组映射到上边缘VLAN标签,并与数据中心域相关联。 数据中心域指示一组与数据中心相关联的端口。 转发模块识别出边缘端口基于全局VLAN标记的数据包。

    SCALABLE AND SEGREGATED NETWORK VIRTUALIZATION
    3.
    发明公开
    SCALABLE AND SEGREGATED NETWORK VIRTUALIZATION 审中-公开
    可扩展和分离的网络虚拟化

    公开(公告)号:EP3261301A1

    公开(公告)日:2017-12-27

    申请号:EP17181928.7

    申请日:2014-06-10

    IPC分类号: H04L12/46 H04L12/741

    摘要: One embodiment of the present invention provides a switch 700 comprising a storage device 750 to store a port profile in association with a datacenter domain. The datacenter domain indicates a set of ports associated with a datacenter. The port profile includes configuration information associated with one or more media access control (MAC) addresses. The switch further comprises a port profile module 740 to identify the port profile in response to identifying that a source MAC address of a packet is associated with the datacenter domain, wherein the source MAC address is in the one or more MAC addresses. The port profile module 740 applies the port profile to an ingress port of the packet. A port profile can contain the entire configuration needed for a virtual machine to gain access to a LAN or WAN, which can include: Fibre Channel over Ethernet (FCoE) configuration, VLAN configuration, QoS related configuration, and security related configuration, such as access control lists (ACLs). In one embodiment, a port profile can be capable of operating as a self contained configuration container. In other words, if a port profile is applied to a new switch without any additional configuration, the port profile should be sufficient to set the switch's global and local (interface level) configuration and allow the switch to start carrying traffic.In an example, a switch segregates port profiles for a respective datacenter domain.

    摘要翻译: 本发明的一个实施例提供了一种交换机700,其包括存储设备750以存储与数据中心域相关联的端口配置文件。 数据中心域指示与数据中心关联的一组端口。 端口配置文件包括与一个或多个媒体访问控制(MAC)地址相关联的配置信息。 交换机还包括端口简档模块740,用于响应于识别出分组的源MAC地址与数据中心域相关联来识别端口简档,其中源MAC地址在一个或多个MAC地址中。 端口简档模块740将端口简档应用于分组的入口端口。 端口配置文件可以包含虚拟机访问局域网或广域网所需的全部配置,其中包括:以太网光纤通道(FCoE)配置,VLAN配置,QoS相关配置以及安全相关配置,如访问 控制列表(ACL)。 在一个实施例中,端口配置文件能够作为独立配置容器进行操作。 换句话说,如果一个端口配置文件没有任何附加配置应用于新交换机,端口配置文件应足以设置交换机的全局和本地(接口级别)配置,并允许交换机开始传输流量。在一个示例中, 交换机会为相应的数据中心域隔离端口配置文件。