Methods and apparatus for scalable, distributed management of virtual private networks
    4.
    发明授权
    Methods and apparatus for scalable, distributed management of virtual private networks 有权
    虚拟专用网可扩展,分布式管理的方法和设备

    公开(公告)号:US07403980B2

    公开(公告)日:2008-07-22

    申请号:US09844693

    申请日:2001-04-26

    IPC分类号: G06F15/173

    摘要: A groupware management system for collaborative groups is disclosed that is scalable to support large, dynamic, multiple, and other virtual VPNs. The system may introduce a graph (or hierarchical) structure to the VPN, providing multiple master nodes controlling membership in subsets of the collaborative group. Use of multiple master nodes in a graph-structured (or hierarchical) network topology often relaxes the need for a single, centralized, globally consistent view of VPN group membership, and enables distribution of the management burden among multiple master nodes. Membership in the VPN may be changed dynamically by the second master node for the member nodes of the second subset, without requiring the first master node to dynamically update its group membership records to reflect the change and in many cases without even having to notify the first master node (and vice versa), for example. In further embodiments, the use of multiple master nodes may increase the reliability and efficiency of VPNs, such as by enabling load balancing of master node tasks. Fail-over mechanisms may also be used to transparently re-route management tasks to an alternate master node especially in the case of failure of the current master node serving a given member node.

    摘要翻译: 公开了一种用于协作组的组件管理系统,其可扩展以支持大型,动态的,多个虚拟VPN以及其他虚拟VPN。 该系统可以向VPN引入图形(或分层)结构,从而提供控制协作组的子集中的成员资格的多个主节点。 在图形结构化(或分级)网络拓扑中使用多个主节点通常会放松对单个集中的,全局一致的VPN组成员资格视图的需求,并且可以在多个主节点之间分配管理负担。 可以由第二主节点为第二子集的成员节点动态地更改VPN中的成员资格,而不需要第一主节点动态地更新其组成员资格记录以反映该变化,并且在许多情况下甚至不必通知第一子节点 主节点(反之亦然)。 在另外的实施例中,使用多个主节点可以增加VPN的可靠性和效率,例如通过启用主节点任务的负载平衡。 故障切换机制也可用于将管理任务透明地重新路由到备用主节点,特别是在给定成员节点的当前主节点发生故障的情况下。