Dynamic service path creation
    12.
    发明授权

    公开(公告)号:US09755959B2

    公开(公告)日:2017-09-05

    申请号:US13944050

    申请日:2013-07-17

    CPC classification number: H04L45/30 H04L67/16 H04L67/18

    Abstract: Presented herein are techniques for dynamic creation of a unique service path for a service chain. In one example, a service controller and a plurality of service nodes are provided, each service node configured to apply a service function to traffic that passes through the respective service node. The service controller defines a service chain identifying a set of service functions and an order in which they are applied. The service controller receives an indication that the service chain has been instantiated at a classifier, and creates a unique service path for the service chain, wherein the unique service path includes the service chain and the classifier at which the service chain is instantiated.

    INFRASTRUCTURE-EXCLUSIVE SERVICE FORWARDING
    14.
    发明申请

    公开(公告)号:US20170163531A1

    公开(公告)日:2017-06-08

    申请号:US15143253

    申请日:2016-04-29

    CPC classification number: H04L45/74 H04L45/00 H04L45/7453 H04L49/3009

    Abstract: A method is provided in one example embodiment and includes receiving at a network element a packet including a Network Services Header (“NSH”), in which the NSH includes an Infrastructure (“I”) flag and a service path header comprising a Service Index (“SI”), and a Service Path ID (“SPI”) and determining whether the I flag is set to a first value. The method further includes, if the I flag is set to the first value, setting the I flag to a second value and forwarding the packet to the service function that corresponds to the SI for processing. The method still further includes, if the I flag is not set to the first value, decrementing the SI and making a forwarding decision based on a new value of the SI and the SPI.

    SYSTEM AND METHOD FOR SCALING MULTICLOUDS IN A HYBRID CLOUD ARCHITECTURE
    15.
    发明申请
    SYSTEM AND METHOD FOR SCALING MULTICLOUDS IN A HYBRID CLOUD ARCHITECTURE 有权
    用于在混合云建筑中扩展多个系统的方法和系统

    公开(公告)号:US20160373378A1

    公开(公告)日:2016-12-22

    申请号:US14743714

    申请日:2015-06-18

    Abstract: According to one aspect, a method includes an Intercloud Fabric Switch (ICS) included in a public cloud and an ICS cluster obtaining a packet, and determining if the packet is obtained from a site-to-site link that links the ICS to an enterprise datacenter. If the packet is obtained from the site-to-site link, it is determined whether the packet is an unknown unicast packet. If the packet is an unknown unicast packet, the packet is dropped, and if not, the packet is provided to an access link that links the ICS to a virtual machine. If the packet is not obtained from the site-to-site link, it is determined whether the packet is obtained from an inter-ICS link that allows the ICS to communicate with the ICS cluster. If the packet is obtained from the inter-ICS link, the packet is dropped if it is an unknown unicast packet.

    Abstract translation: 根据一个方面,一种方法包括:公共云中包括的云间结构交换机(ICS)和获取分组的ICS集群,并且确定是否从将ICS链接到企业的站点到站点链路获得分组 数据中心。 如果从站点到站点链路获得分组,则确定分组是否是未知的单播分组。 如果分组是未知单播分组,则分组被丢弃,如果不是,则将分组提供给将ICS链接到虚拟机的接入链路。 如果没有从站点到站点链路获得分组,则确定分组是否从允许ICS与ICS集群通信的ICS间链路获得。 如果从ICS链路获取分组,则如果是未知的单播分组,则分组被丢弃。

    PROGRAMMABLE INFRASTRUCTURE GATEWAY FOR ENABLING HYBRID CLOUD SERVICES IN A NETWORK ENVIRONMENT
    16.
    发明申请
    PROGRAMMABLE INFRASTRUCTURE GATEWAY FOR ENABLING HYBRID CLOUD SERVICES IN A NETWORK ENVIRONMENT 有权
    在网络环境中启用混合云服务的可编程基础设施网关

    公开(公告)号:US20150295731A1

    公开(公告)日:2015-10-15

    申请号:US14297436

    申请日:2014-06-05

    Abstract: An example method for a programmable infrastructure gateway for enabling hybrid cloud services in a network environment is provided and includes receiving an instruction from a hybrid cloud application executing in a private cloud, interpreting the instruction according to a hybrid cloud application programming interface, and executing the interpreted instruction in a public cloud using a cloud adapter. The method is generally executed in the infrastructure gateway including a programmable integration framework allowing generation of various cloud adapters using a cloud adapter software development kit, the cloud adapter being generated and programmed to be compatible with a specific public cloud platform of the public cloud. In specific embodiments, identical copies of the infrastructure gateway can be provided to different cloud service providers who manage disparate public cloud platforms; each copy of the infrastructure gateway can be programmed differently to generate corresponding cloud adapters compatible with the respective public cloud platforms.

    Abstract translation: 提供了一种用于在网络环境中实现混合云服务的可编程基础设施网关的示例性方法,并且包括从在私有云中执行的混合云应用接收指令,根据混合云应用编程接口解释该指令,以及执行 使用云适配器在公共云中进行解释性说明。 该方法通常在基础设施网关中执行,包括可编程集成框架,允许使用云适配器软件开发工具包生成各种云适配器,生成并编程云适配器以与公共云的特定公共云平台兼容。 在具体实施例中,基础设施网关的相同副本可以被提供给管理不同的公共云平台的不同的云服务提供者; 可以对基础设施网关的每个副本进行不同的编程,以生成与相应的公共云平台兼容的相应的云适配器。

    Elastic Service Chains
    17.
    发明申请
    Elastic Service Chains 有权
    弹性服务链

    公开(公告)号:US20150222640A1

    公开(公告)日:2015-08-06

    申请号:US14170750

    申请日:2014-02-03

    CPC classification number: H04L47/125 H04L41/50 H04L45/38 H04L47/782 H04L63/20

    Abstract: Presented herein are elastic service chain techniques. In one example, a network element receives data traffic to be processed by a service chain that specifies an ordered sequence of service pools including a first service pool and second service pool, wherein each service pool comprises a plurality of network services. A network service is determined from the first service pool to be applied to the data traffic, and data traffic is forwarded to the network service in the first service pool.

    Abstract translation: 这里提出的是弹性服务链技术。 在一个示例中,网络元件接收要由服务链处理的数据流量,所述服务链指定包括第一服务池和第二服务池的服务池的有序序列,其中每个服务池包括多个网络服务。 从要应用于数据流量的第一服务池确定网络服务,并将数据流量转发到第一服务池中的网络服务。

    Service-Function Chaining
    18.
    发明申请
    Service-Function Chaining 有权
    服务功能链

    公开(公告)号:US20150215172A1

    公开(公告)日:2015-07-30

    申请号:US14168447

    申请日:2014-01-30

    CPC classification number: H04L43/026 H04L41/5041

    Abstract: Presented herein are service-function chaining techniques. In one example, a service controller in a network comprising a plurality of service nodes receives one is configured to identify one or more service-functions hosted by each of the service nodes. The service controller defines a service-function chain in terms of service-functions to be applied to traffic in the network and provides information descriptive of the service-function chain to a classifier node.

    Abstract translation: 这里提供的是服务功能链接技术。 在一个示例中,包括多个服务节点的网络中的服务控制器接收一个服务控制器被配置为识别由每个服务节点托管的一个或多个服务功能。 服务控制器根据服务功能定义服务功能链,以应用于网络中的流量,并向分类器节点提供描述服务功能链的信息。

    Zone-based firewall policy model for a virtualized data center
    19.
    发明授权
    Zone-based firewall policy model for a virtualized data center 有权
    虚拟化数据中心基于区域的防火墙策略模型

    公开(公告)号:US08990885B2

    公开(公告)日:2015-03-24

    申请号:US13945091

    申请日:2013-07-18

    Abstract: Techniques are provided for implementing a zone-based firewall policy. At a virtual network device, information is defined and stored that represents a security management zone for a virtual firewall policy comprising one or more common attributes of applications associated with the security zone. Information representing a firewall rule for the security zone is defined and comprises first conditions for matching common attributes of applications associated with the security zone and an action to be performed on application traffic. Parameters associated with the application traffic are received that are associated with properly provisioned virtual machines. A determination is made whether the application traffic parameters satisfy the conditions of the firewall rule and in response to determining that the conditions are satisfied, the action is performed.

    Abstract translation: 提供了实现基于区域的防火墙策略的技术。 在虚拟网络设备处,定义和存储表示虚拟防火墙策略的安全管理区域的信息,该虚拟防火墙策略包括与安全区域相关联的应用的一个或多个公共属性。 定义表示安全区域的防火墙规则的信息,并且包括用于匹配与安全区域相关联的应用的通用属性的第一条件以及要对应用流量执行的动作。 接收到与正确配置的虚拟机相关联的与应用程序流量相关联的参数。 确定应用业务参数是否满足防火墙规则的条件,并且响应于确定满足条件,执行动作。

Patent Agency Ranking