AUTHORIZATION AUTOMATION IN PROCUREMENT OF INTERCONNECTIONS WITHIN A DATA CENTER

    公开(公告)号:US20230319043A1

    公开(公告)日:2023-10-05

    申请号:US18329293

    申请日:2023-06-05

    申请人: Equinix, Inc.

    摘要: In some examples, a method includes obtaining, by a computing device operated by a data center provider for a data center, from a first customer of the data center provider, order information comprising a set of parameters defining an interconnection within the data center between a first customer network of the first customer and a second customer network of a second customer of the data center provider, wherein the first customer network and the second customer network are co-located in the data center; sending, by the computing device to the second customer, a communication comprising a unique identifier that maps to the set of parameters; and outputting, by the computing device, an indication of authorization for the interconnection based upon an authorization directive from the second customer, the authorization directive comprising the unique identifier.

    Controlling access to internet of things devices using verifiable credentials

    公开(公告)号:US11777932B1

    公开(公告)日:2023-10-03

    申请号:US17100399

    申请日:2020-11-20

    申请人: Equinix, Inc.

    IPC分类号: H04L9/40 G16Y30/10

    摘要: In general, this disclosure describes an IoT access control exchange for IoT devices. Verifiable credentials can be generated and used to grant access to IoT devices definitively identified using a Decentralized Identifier (DID). DIDs for IoT devices are registered by the IoT exchange hub acting as an Identity Hub. An organization interested in obtaining data from a collection of devices, the IoT Access Customer, contacts the IoT device owner agent via their mutual agents and obtains a verifiable credential with a request for access. The access request is submitted to the IoT exchange hub. The IoT exchange hub either enforces the access request itself if the devices do not have enough resources or submits the verifiable credential with the access request to the devices for them to enforce access. The IoT access customer agent, IoT device owner agent, and IoT exchange hub similarly identify themselves and prove authentication using DIDs.

    Distributed denial-of-service mitigation

    公开(公告)号:US11757928B2

    公开(公告)日:2023-09-12

    申请号:US17009283

    申请日:2020-09-01

    申请人: Equinix, Inc.

    摘要: The techniques described in this disclosure provide resilient and reactive on-demand Distributed Denial-of-Service (DDoS) mitigation services using an exchange. For example, an exchange comprises a first virtual network for switching mixed traffic (including dirty (DDoS) traffic and clean (non-DDoS) traffic)) from one or more networks to one or more DDoS scrubbing centers; and a second virtual network for switching the clean traffic from the one or more DDoS scrubbing centers to the one or more networks, wherein the exchange is configured to receive the mixed traffic from the one or more networks and switch, using the first virtual network, the mixed traffic to a selected DDoS scrubbing center of the one or more DDoS scrubbing centers, and wherein the exchange is configured to receive the clean traffic from the selected DDoS scrubbing center and switch, using the second virtual network, the clean traffic to the one or more networks.

    AGGREGATING UNUSED POWER IN A FACILITY
    124.
    发明公开

    公开(公告)号:US20230261480A1

    公开(公告)日:2023-08-17

    申请号:US17651378

    申请日:2022-02-16

    申请人: Equinix, Inc.

    IPC分类号: H02J7/00 H02J9/06

    摘要: A power supply system includes a multitude of independent electrical systems each comprising one or more power blocks, wherein each power block is configured to provide a respective power output and a converter comprising a multitude of inputs coupled to the multitude independent electrical systems and comprising a multitude of outputs coupled to a multitude of independent loads, the converter configured to aggregate the power output of each of the multitude of independent electrical systems and to output direct current (DC) power to the multitude of independent loads through the multitude of outputs based on the aggregated power output. The power supply system includes a power controller coupled to the converter and configured to allocate power to each of the multitude of independent loads based on input power from each of the multitude of independent electrical systems and power consumption from each of the multitude of independent loads.

    TENANT-DRIVEN DYNAMIC RESOURCE ALLOCATION FOR VIRTUAL NETWORK FUNCTIONS

    公开(公告)号:US20230231817A1

    公开(公告)日:2023-07-20

    申请号:US18186682

    申请日:2023-03-20

    申请人: Equinix, Inc.

    IPC分类号: H04L47/70 H04L47/80

    CPC分类号: H04L47/823 H04L47/80

    摘要: Techniques for tenant-driven dynamic resource allocation in network functions virtualization infrastructure (NFVI). In one example, an orchestration system is operated by a data center provider for a data center and that orchestration system comprises processing circuitry coupled to a memory; logic stored in the memory and configured for execution by the processing circuitry, wherein the logic is operative to: compute an aggregate bandwidth for a plurality of flows associated with a tenant of the data center provider and processed by a virtual network function, assigned to the tenant, executing on a server of the data center; and modify, based on the aggregate bandwidth, an allocation of compute resources of the server executing the virtual network function.

    VIRTUAL DOMAINS WITHIN A SHARED DEVICE
    126.
    发明公开

    公开(公告)号:US20230224278A1

    公开(公告)日:2023-07-13

    申请号:US18152016

    申请日:2023-01-09

    申请人: Equinix, Inc.

    IPC分类号: H04L9/40 H04L12/66 H04L12/46

    摘要: In one example, a method comprises receiving, by a computing device, configuration data defining: an external virtual domain for a network function, the external virtual domain connected to a public network and managed by a provider for the computing device; a virtual domain for the network function, the virtual domain separate from the external virtual domain, configured with a secure tunnel interface, connected to a customer network, and managed by a customer of the provider for the computing device; forwarding, by the external virtual domain implementing a route-based virtual private network, encrypted network traffic, received from the public network via a secure tunnel, to the secure tunnel interface configured in the virtual domain; decrypting, by the virtual domain, the encrypted network traffic to generate network traffic; and forwarding, by the virtual domain, the network traffic to the customer network.

    VIRTUAL NETWORK FUNCTION VIRTUAL DOMAIN ISOLATION

    公开(公告)号:US20230101909A1

    公开(公告)日:2023-03-30

    申请号:US18061731

    申请日:2022-12-05

    申请人: Equinix, Inc.

    摘要: Techniques for virtualized network functions (VNFs) that provide for domain isolation of networks coupled to the VNF are described. A virtual network function (VNF) includes a cloud virtual domain coupling the VNF to a cloud service, a management virtual domain coupling the VNF to a management service, and an external virtual domain having a public Internet Protocol (IP) address. The external virtual domain receives an authentication request providing access credentials for a VNF customer from a cloud client device, provides the authentication request to the management service via the management virtual domain, receives an authentication response from the management service, and, in response to determining that the VNF customer access credentials are valid, initiates application of a policy that allows the cloud client device to configure the cloud virtual domain or the cloud service and disallows configuration of the external virtual domain and the management virtual domain.