Abstract:
An approach is provided in which an information handling system matches packet properties of an egress data packet to a classification rule corresponding to differentiated services (DiffServ) parameters. The information handling system encapsulates the egress data packet with a network virtualization overlay header that includes a DiffServ classification identifier corresponding to the DiffServ classification rule. In turn, the information handling system sends the encapsulated egress data packet to a downstream network component.
Abstract:
A method includes obtaining, by one or more processor, data from a virtual network of a tenant and an identifier of the tenant, where the virtual network of the tenant is one of at least two virtual networks in a shared computing environment where the at least two virtual networks overlay a physical network. Based on obtaining the identifier of the tenant, the method includes setting, by one or more processor, the identifier in metadata of the data and based on the identifier in the metadata, identifying, by the one or more processor, a network connection associated with the tenant. The method also includes identifying, by the one or more processor, a policy of the network connection and processing the data with the policy to create processed data and transmitting, by the one or more processor, the processed data through the network connection.
Abstract:
An approach is provided in which an information handling system receives, at a network virtualization edge (NVE), a set of Diffserv parameters comprising at least one classifier parameter, at least one meter parameter, at least one marker parameter, and at least one shaper/dropper parameter. The NVE performs a deep inspection on a plurality of data packets to classify the plurality of data packets at one or more classification levels. In turn, the NVE passes the set of Diffserv parameters and the one or more classification levels to underlay switch hardware.
Abstract:
A method includes obtaining, by one or more processor, data from a virtual network of a tenant and an identifier of the tenant, where the virtual network of the tenant is one of at least two virtual networks in a shared computing environment where the at least two virtual networks overlay a physical network. Based on obtaining the identifier of the tenant, the method includes setting, by one or more processor, the identifier in metadata of the data and based on the identifier in the metadata, identifying, by the one or more processor, a network connection associated with the tenant. The method also includes identifying, by the one or more processor, a policy of the network connection and processing the data with the policy to create processed data and transmitting, by the one or more processor, the processed data through the network connection.
Abstract:
A method includes obtaining, by one or more processor, data from a virtual network of a tenant and an identifier of the tenant, where the virtual network of the tenant is one of at least two virtual networks in a shared computing environment where the at least two virtual networks overlay a physical network. Based on obtaining the identifier of the tenant, the method includes setting, by one or more processor, the identifier in metadata of the data and based on the identifier in the metadata, identifying, by the one or more processor, a network connection associated with the tenant. The method also includes identifying, by the one or more processor, a policy of the network connection and processing the data with the policy to create processed data and transmitting, by the one or more processor, the processed data through the network connection.
Abstract:
An approach is provided in which an information handling system matches packet properties of an egress data packet to a classification rule corresponding to differentiated services (DiffServ) parameters. The information handling system encapsulates the egress data packet with a network virtualization overlay header that includes a DiffServ classification identifier corresponding to the DiffServ classification rule. In turn, the information handling system sends the encapsulated egress data packet to a downstream network component.
Abstract:
A method includes obtaining, by one or more processor, data from a virtual network of a tenant and an identifier of the tenant, where the virtual network of the tenant is one of at least two virtual networks in a shared computing environment where the at least two virtual networks overlay a physical network. Based on obtaining the identifier of the tenant, the method includes setting, by one or more processor, the identifier in metadata of the data and based on the identifier in the metadata, identifying, by the one or more processor, a network connection associated with the tenant. The method also includes identifying, by the one or more processor, a policy of the network connection and processing the data with the policy to create processed data and transmitting, by the one or more processor, the processed data through the network connection.