Network visibility appliances for cloud computing architectures

    公开(公告)号:US09906401B1

    公开(公告)日:2018-02-27

    申请号:US15433864

    申请日:2017-02-15

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: With exponential growth in virtualized traffic within physical data centers, many end users (e.g., individuals and enterprises) have begun moving work processes and data to cloud computing platforms. However, accessing virtualized traffic traversing the cloud computing platforms for application, network, and security analysis is a challenge. Introduced here, therefore, are visibility platforms for monitoring virtualized traffic traversing a cloud computing platform, such as Amazon Web Services, VMware, and OpenStack. A visibility platform can be integrated into a cloud computing platform to provide a coherent view of virtualized traffic in motion across the cloud computing platform for a given end user. Said another way, a visibility platform can intelligently select, filter, and forward virtualized traffic belonging to an end user to a monitoring infrastructure, thereby eliminating traffic blind sports.

    Graph-based network fabric for a network visibility appliance

    公开(公告)号:US10965515B2

    公开(公告)日:2021-03-30

    申请号:US15805460

    申请日:2017-11-07

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: With exponential growth in virtualized traffic within physical data centers, many end users (e.g., individuals and enterprises) have begun moving work processes and data to cloud computing platforms. A visibility platform can be used to monitor virtualized traffic traversing a cloud computing platform, such as Amazon Web Services, VMware, or OpenStack. But it can be difficult to manage how the visibility platform handles incoming virtualized traffic. Introduced here, therefore, are graphs that visually represent the network fabric of a visibility platform. When the network fabric of the visibility platform is represented as a graph, an end user can easily modify the network fabric, for example, by adding, removing, or modifying nodes that represent network objects, adding, removing, or modifying connections between pairs of nodes that represent traffic flows between pairs of network objects, etc.

    Dynamic service chaining and late binding

    公开(公告)号:US10917285B2

    公开(公告)日:2021-02-09

    申请号:US15805487

    申请日:2017-11-07

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: A visibility platform can be used to monitor traffic traversing private cloud infrastructures and/or public cloud infrastructures. In some instances, the traffic is provided to a set of network services that are accessible to the visibility platform. These network services can be provisioned in a serial or parallel fashion. Network service chaining can be used to ensure that traffic streams skip unnecessary network services and receive only those network services that are needed. For example, an email service chain can include virus, spam, and phishing detection, while a video streaming service chain can include traffic shaping policies to satisfy quality of service (QoS) guarantees. When the visibility platform is represented as a graph that makes use of action sets, network service chains can be readily created or destroyed on demand.

    In-fabric traffic analysis
    5.
    发明授权

    公开(公告)号:US10764162B2

    公开(公告)日:2020-09-01

    申请号:US14668813

    申请日:2015-03-25

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: An apparatus for a network includes: a processing unit having a filter generation module configured for: receiving an indication that a packet matches a user-defined filter; and creating one or more derivative filters based at least in part on the received indication, wherein a first derivative filter of the one or more derivative filters provides a finer grade of filtration compared to the user-defined filter; and a non-transitory medium configured for storing the one or more derivative filters.

    Network Visibility Appliances for Cloud Computing Architectures

    公开(公告)号:US20190116082A1

    公开(公告)日:2019-04-18

    申请号:US16212486

    申请日:2018-12-06

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: With exponential growth in virtualized traffic within physical data centers, many end users (e.g., individuals and enterprises) have begun moving work processes and data to cloud computing platforms. However, accessing virtualized traffic traversing the cloud computing platforms for application, network, and security analysis is a challenge. Introduced here, therefore, are visibility platforms for monitoring virtualized traffic traversing a cloud computing platform, such as Amazon Web Services, VMware, and OpenStack. A visibility platform can be integrated into a cloud computing platform to provide a coherent view of virtualized traffic in motion across the cloud computing platform for a given end user. Said another way, a visibility platform can intelligently select, filter, and forward virtualized traffic belonging to an end user to a monitoring infrastructure, thereby eliminating traffic blind sports.

    Elastic modification of application instances in a network visibility infrastructure

    公开(公告)号:US11750518B2

    公开(公告)日:2023-09-05

    申请号:US17104893

    申请日:2020-11-25

    申请人: Gigamon Inc.

    发明人: Anil Rao

    CPC分类号: H04L47/12 H04L45/7453

    摘要: Introduced here are network visibility platforms having total processing capacity that can be dynamically varied in response to determining how much network traffic is currently under consideration. A visibility platform can include one or more network appliances, each of which includes at least one instance of an application configured to process data packets. Rather than forward all traffic to a single application instance for processing, the traffic can instead be distributed amongst a pool of application instances to collectively ensure that no data packets are dropped due to over-congestion. Moreover, the visibility platform can be designed such that application instances are elastically added/removed, as necessary, based on the volume of traffic currently under consideration.

    Dynamic service chaining and late binding

    公开(公告)号:US11595240B2

    公开(公告)日:2023-02-28

    申请号:US17142145

    申请日:2021-01-05

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: A visibility platform can be used to monitor traffic traversing private cloud infrastructures and/or public cloud infrastructures. In some instances, the traffic is provided to a set of network services that are accessible to the visibility platform. These network services can be provisioned in a serial or parallel fashion. Network service chaining can be used to ensure that traffic streams skip unnecessary network services and receive only those network services that are needed. For example, an email service chain can include virus, spam, and phishing detection, while a video streaming service chain can include traffic shaping policies to satisfy quality of service (QoS) guarantees. When the visibility platform is represented as a graph that makes use of action sets, network service chains can be readily created or destroyed on demand.

    Distributed visibility fabrics for private, public, and hybrid clouds

    公开(公告)号:US10892941B2

    公开(公告)日:2021-01-12

    申请号:US16598416

    申请日:2019-10-10

    申请人: Gigamon Inc.

    发明人: Anil Rao

    摘要: Improved network visibility may be achieved by deriving network traffic information from numerous visibility platforms that are communicatively coupled to one another. In some embodiments, an end user interacts with a distributed visibility fabric via a user interface, which can include a high-level representation of each visibility platform. The end user can then map the network objects of each visibility platform onto a series of network visibility appliances. This technique allows certain network objects (e.g., maps) to be intelligently distributed amongst the series of network visibility appliances.

    Elastic modification of application instances in a network visibility infrastructure

    公开(公告)号:US10855590B2

    公开(公告)日:2020-12-01

    申请号:US16119093

    申请日:2018-08-31

    申请人: Gigamon Inc.

    发明人: Anil Rao

    IPC分类号: H04L12/801 H04L12/743

    摘要: Introduced here are network visibility platforms having total processing capacity that can be dynamically varied in response to determining how much network traffic is currently under consideration. A visibility platform can include one or more network appliances, each of which includes at least one instance of an application configured to process data packets. Rather than forward all traffic to a single application instance for processing, the traffic can instead be distributed amongst a pool of application instances to collectively ensure that no data packets are dropped due to over-congestion. Moreover, the visibility platform can be designed such that application instances are elastically added/removed, as necessary, based on the volume of traffic currently under consideration.