Central namespace controller for multi-tenant cloud environments

    公开(公告)号:US10333889B2

    公开(公告)日:2019-06-25

    申请号:US15818584

    申请日:2017-11-20

    Applicant: VMware, Inc.

    Abstract: A centralized namespace controller allocates addresses in a distributed cloud infrastructure on-demand. Upon receiving a request to allocate addresses for a network to be provisioned by a cloud computing system included in the distributed cloud infrastructure, the centralized namespace controller allocates a network address that is unique within the distributed cloud infrastructure. Further, the centralized namespace controller allocates a range of virtual network interface cards (NIC) addresses that are unique within the network. The centralized namespace controller then allocates addresses from the range of virtual NIC addresses on an as-requested basis—when a virtual NIC is being created by the first cloud computing system on the network. Advantageously, by centralizing the allocation of addresses and dedicating independent NIC address ranges to different cloud computing systems, the centralized namespace controller enables stretched L2 networks between cloud computing systems while preventing duplicated addresses on the stretched networks.

    Cloud virtual machine defragmentation for hybrid cloud infrastructure

    公开(公告)号:US10282222B2

    公开(公告)日:2019-05-07

    申请号:US14528725

    申请日:2014-10-30

    Applicant: VMware, Inc.

    Abstract: A hybrid cloud computing system is managed by determining communication affinity between a cluster of virtual machines, where one virtual machine in the cluster executes in a virtualized computing system, and another virtual machine in the cluster executes in a cloud computing environment, and where the virtualized computing system is managed by a tenant that accesses the cloud computing environment. After determining a target location in the hybrid cloud computing system to host the cluster of virtual machines based on the determined communication affinity, at least one of the cluster of virtual machines is migrated to the target location.

    Central namespace controller for multi-tenant cloud environments

    公开(公告)号:US09825905B2

    公开(公告)日:2017-11-21

    申请号:US14664952

    申请日:2015-03-23

    Applicant: VMWARE, INC.

    Abstract: A centralized namespace controller allocates addresses in a distributed cloud infrastructure on-demand. Upon receiving a request to allocate addresses for a network to be provisioned by a cloud computing system included in the distributed cloud infrastructure, the centralized namespace controller allocates a network address that is unique within the distributed cloud infrastructure. Further, the centralized namespace controller allocates a range of virtual network interface cards (NIC) addresses that are unique within the network. The centralized namespace controller then allocates addresses from the range of virtual NIC addresses on an as-requested basis—when a virtual NIC is being created by the first cloud computing system on the network. Advantageously, by centralizing the allocation of addresses and dedicating independent NIC address ranges to different cloud computing systems, the centralized namespace controller enables stretched L2 networks between cloud computing systems while preventing duplicated addresses on the stretched networks.

    Managing link aggregation traffic in a virtual environment
    45.
    发明授权
    Managing link aggregation traffic in a virtual environment 有权
    管理虚拟环境中的链路聚合流量

    公开(公告)号:US09509615B2

    公开(公告)日:2016-11-29

    申请号:US13947952

    申请日:2013-07-22

    Applicant: VMware, Inc.

    CPC classification number: H04L47/125 H04L45/245 H04L47/32 Y02D50/30

    Abstract: Exemplary methods, apparatuses, and systems include a first host device determining that a first packet from a first virtual machine (VM) within the first host device is to be transmitted to a second VM on a second host device and that the first host device and the second host device each transmit or receive packets via ports within a first link aggregation group (LAG). In response to determining that the first host device and the second host device each transmit or receive packets via ports within the first LAG, the first host device transmits the first packet from a first synchronization port of the first host device to a second synchronization port of the second host device. The first and second synchronization ports are excluded from sharing a common LAG with any ports of another host device.

    Abstract translation: 示例性方法,装置和系统包括第一主机设备,确定来自第一主机设备内的第一虚拟机(VM)的第一分组将被发送到第二主机设备上的第二VM,并且第一主机设备和 第二主机设备经由第一链路聚合组(LAG)内的端口发送或接收分组。 响应于确定第一主机设备和第二主机设备各自经由第一LAG内的端口发送或接收分组,第一主机设备将第一分组从第一主机设备的第一同步端口发送到第一同步端口 第二主机设备。 第一和第二同步端口被排除在与另一主机设备的任何端口共享公共LAG之外。

    System and method for distribution of policy enforcement point
    46.
    发明授权
    System and method for distribution of policy enforcement point 有权
    分配政策执行点的制度和方法

    公开(公告)号:US09215177B2

    公开(公告)日:2015-12-15

    申请号:US13925483

    申请日:2013-06-24

    Applicant: VMware, Inc.

    Abstract: The disclosure herein describes an edge device of a network for distributed policy enforcement. During operation, the edge device receives an initial packet for an outgoing traffic flow, and identifies a policy being triggered by the initial packet. The edge device performs a reverse lookup to identify at least an intermediate node that is previously traversed by the initial packet and traffic parameters associated with the initial packet at the identified intermediate node. The edge device translates the policy based on the traffic parameters at the intermediate node, and forwards the translated policy to the intermediate node, thus facilitating the intermediate node in applying the policy to the traffic flow.

    Abstract translation: 本文的公开内容描述了用于分布式策略实施的网络的边缘设备。 在操作期间,边缘设备接收用于出站业务流的初始分组,并且识别由初始分组触发的策略。 边缘设备执行反向查找以识别先前由初始分组穿过的中间节点和与所识别的中间节点处的初始分组相关联的业务参数。 边缘设备根据中间节点的流量参数转换策略,并将转换的策略转发到中间节点,从而便于中间节点将策略应用于业务流。

    SYSTEM AND METHOD FOR DISTRIBUTION OF POLICY ENFORCEMENT POINT
    47.
    发明申请
    SYSTEM AND METHOD FOR DISTRIBUTION OF POLICY ENFORCEMENT POINT 有权
    分配政策执行点的系统和方法

    公开(公告)号:US20140376367A1

    公开(公告)日:2014-12-25

    申请号:US13925483

    申请日:2013-06-24

    Applicant: VMware, Inc.

    Abstract: The disclosure herein describes an edge device of a network for distributed policy enforcement. During operation, the edge device receives an initial packet for an outgoing traffic flow, and identifies a policy being triggered by the initial packet. The edge device performs a reverse lookup to identify at least an intermediate node that is previously traversed by the initial packet and traffic parameters associated with the initial packet at the identified intermediate node. The edge device translates the policy based on the traffic parameters at the intermediate node, and forwards the translated policy to the intermediate node, thus facilitating the intermediate node in applying the policy to the traffic flow.

    Abstract translation: 本文的公开内容描述了用于分布式策略实施的网络的边缘设备。 在操作期间,边缘设备接收用于出站业务流的初始分组,并且识别由初始分组触发的策略。 边缘设备执行反向查找以识别先前由初始分组穿过的中间节点和与所识别的中间节点处的初始分组相关联的业务参数。 边缘设备根据中间节点的流量参数来转换策略,并将转换的策略转发到中间节点,从而有助于中间节点将策略应用于业务流。

Patent Agency Ranking