PROVIDING SSL CONNECTIVITY INSIDE SOFTWARE DEFINED DATACENTERS WITH HYPERCONVERGED INFRASTRUCTURE

    公开(公告)号:US20230412585A1

    公开(公告)日:2023-12-21

    申请号:US17894194

    申请日:2022-08-24

    Applicant: VMWare, Inc.

    CPC classification number: H04L63/0823 H04L63/1416 H04L63/0236

    Abstract: The present disclosure is related to devices, systems, and methods for providing SSL connectivity inside SDDCs with hyperconverged infrastructure. An example method can include configuring a primary Secure Sockets Layer (SSL) certificate on an endpoint of a hyperconverged infrastructure (HCI), configuring a secondary SSL certificate on the endpoint, securing data communicated between the endpoint and another endpoint of the HCI using the primary certificate, securing data communicated between the endpoint and the other endpoint using the secondary certificate, instead of the primary certificate, responsive to determining a fault in the primary certificate, and securing data communicated between the endpoint and the other endpoint using a new primary certificate configured on the endpoint, instead of the secondary certificate, responsive to the new primary certificate being configured on the endpoint.

    Seamless certificate replacement for endpoints in hyperconverged infrastructure

    公开(公告)号:US11190364B2

    公开(公告)日:2021-11-30

    申请号:US16416307

    申请日:2019-05-20

    Applicant: VMWARE, INC.

    Abstract: Techniques for seamless certificate replacement for endpoints in hyperconverged infrastructure are disclosed. In one example, a certificate replacement request for an endpoint may be received. Upon receiving the certificate replacement request, a new certificate may be placed in the endpoint such that the endpoint includes an old certificate and the new certificate. Further, dependent endpoints having communication with the endpoint using the old certificate may be discovered and monitored. Furthermore, the new certificate of the endpoint may be placed in the discovered dependent endpoints and existing communication between the endpoint and each of the discovered dependent endpoints using the old certificate may be maintained. Upon completion of the existing communication, next communication between the endpoint and each of the discovered dependent endpoints may be enabled using the new certificate. Then, the old certificate may be decommissioned from the endpoint and the discovered dependent endpoints.

    MULTI-TENANT RESOURCE MANAGEMENT IN A GATEWAY

    公开(公告)号:US20210044539A1

    公开(公告)日:2021-02-11

    申请号:US16547633

    申请日:2019-08-22

    Applicant: VMWARE, INC.

    Abstract: Described herein are systems, methods, and software to manage resources in a gateway shared by multiple tenants. In one example, a system may monitor usage of resources by a tenant of the gateway and compare the usage with usage limits associated with the resources. The system may further determine when the usage of a resource exceeds a usage limit associated with the resource and, when the usage of the resource exceeds the usage limit, identify an operation associated with causing the usage limit to be exceeded and blocking the operation.

    TEAMING APPLICATIONS EXECUTING ON MACHINES OPERATING ON A COMPUTER WITH DIFFERENT INTERFACES OF THE COMPUTER

    公开(公告)号:US20220400151A1

    公开(公告)日:2022-12-15

    申请号:US17384803

    申请日:2021-07-26

    Applicant: VMware, Inc.

    Abstract: Some embodiments provide a method for associating data message flows from applications executing on a host computer with network interfaces of the computer. The method of some embodiments identifies a set of applications operating on a machine executing on the host computer, identifies candidate teaming policies for associating each identified application with a subset of one or more interfaces, and generates a report to display the identified candidate teaming policies per application to a user. In response to user input selecting a first teaming policy for a first application, the method generates a rule, and distributes the rule, to the host computer to associate the first application with a first subset of the network interfaces specified by the first teaming policy. Similarly, in response to user input selecting a second teaming policy for a second application executing on the machine, the method generates a second rule, and distributes the second rule, to the host computer to associate the second application with a second subset of the network interfaces specified by the second teaming policy.

    TEAMING APPLICATIONS EXECUTING ON MACHINES OPERATING ON A COMPUTER WITH DIFFERENT INTERFACES OF THE COMPUTER

    公开(公告)号:US20220400056A1

    公开(公告)日:2022-12-15

    申请号:US17384800

    申请日:2021-07-26

    Applicant: VMware, Inc.

    Abstract: Some embodiments provide a method for associating data message flows from applications executing on a host computer with network interfaces of the computer. The method of some embodiments identifies a set of applications operating on a machine executing on the host computer, identifies candidate teaming policies for associating each identified application with a subset of one or more interfaces, and generates a report to display the identified candidate teaming policies per application to a user. In response to user input selecting a first teaming policy for a first application, the method generates a rule, and distributes the rule, to the host computer to associate the first application with a first subset of the network interfaces specified by the first teaming policy. Similarly, in response to user input selecting a second teaming policy for a second application executing on the machine, the method generates a second rule, and distributes the second rule, to the host computer to associate the second application with a second subset of the network interfaces specified by the second teaming policy.

    Teaming applications executing on machines operating on a computer with different interfaces of the computer

    公开(公告)号:US11469960B1

    公开(公告)日:2022-10-11

    申请号:US17384802

    申请日:2021-07-26

    Applicant: VMware, Inc.

    Abstract: Some embodiments provide a method for associating data message flows from applications executing on a host computer with network interfaces of the computer. The method of some embodiments identifies a set of applications operating on a machine executing on the host computer, identifies candidate teaming policies for associating each identified application with a subset of one or more interfaces, and generates a report to display the identified candidate teaming policies per application to a user. In response to user input selecting a first teaming policy for a first application, the method generates a rule, and distributes the rule, to the host computer to associate the first application with a first subset of the network interfaces specified by the first teaming policy. Similarly, in response to user input selecting a second teaming policy for a second application executing on the machine, the method generates a second rule, and distributes the second rule, to the host computer to associate the second application with a second subset of the network interfaces specified by the second teaming policy.

Patent Agency Ranking