DYNAMIC GPU-ENABLED VIRTUAL MACHINE PROVISIONING ACROSS CLOUD PROVIDERS

    公开(公告)号:US20230236902A1

    公开(公告)日:2023-07-27

    申请号:US17676397

    申请日:2022-02-21

    申请人: VMware, Inc.

    IPC分类号: G06F9/50 G06N20/00

    摘要: Systems and methods are provided for dynamic GPU-enabled VM provisioning across cloud service providers. An example method can include providing a VM pool that includes a GPU-optimized VM and a non-GPU-optimized VM operating in different clouds. A control plane can receive an indication that a user has submitted a machine-learning workload request, determine whether a GPU-optimized VM is available and instruct the non-GPU-optimized VM to send the workload to the GPU-optimized VM in a peer-to-peer manner. The GPU-optimized VM computes the workload and returns a result to the requesting VM. The control plane can instantiate a new GPU-optimized VM (or terminate it when the workload is complete) to dynamically maintain a desired number of available GPU-optimized VMs.

    Accessing an authentication service from a cloud domain in a network zone different from that of the authentication service

    公开(公告)号:US11411927B2

    公开(公告)日:2022-08-09

    申请号:US16793802

    申请日:2020-02-18

    申请人: VMware, Inc.

    摘要: A method of establishing a secure communication channel from a first edge device that is in a first network zone across a secure overlay network to a second edge device that is in a second network zone, so that access to a computing device that is in the second network zone can be authenticated by an authentication service that is in the first network zone, includes the steps of establishing a first secure communication channel from the first edge device to the secure overlay network, receiving a request to join the secure overlay network along with administrator credential information and, responsive to the request, transmitting the administrator credential information to the authentication service for authentication through the first secure communication channel and the first edge device, and establishing a second secure communication channel from the second edge device to the secure overlay network if the authentication is received from the authentication service.

    Application attachment based firewall management

    公开(公告)号:US11070521B2

    公开(公告)日:2021-07-20

    申请号:US15591538

    申请日:2017-05-10

    申请人: VMware, Inc.

    IPC分类号: G06F21/00 H04L29/06

    摘要: Described herein are systems, methods, and software to enhance network traffic management for virtual machines. In one implementation, a network policy controller may maintain firewall rules at one or more hosts of a computing environment, wherein the firewall rules define network packet forwarding policies for application groups available to virtual machines in the environment. The network policy controller further identifies an application group for attachment to one or more virtual machines, and in response to the identification, adds the one or more virtual machines to a security group for a firewall wall rule corresponding to the application group.

    Methods and systems that collect and manage latency data in an automated resource-exchange system

    公开(公告)号:US10652092B2

    公开(公告)日:2020-05-12

    申请号:US15637943

    申请日:2017-06-29

    申请人: VMware, Inc.

    IPC分类号: H04L12/24 H04L29/08 H04L12/26

    摘要: The current document is directed a resource-exchange system that facilitates resource exchange and sharing among computing facilities. The currently disclosed methods and systems employ efficient, distributed-search-based auction methods and subsystems within distributed computer systems that include large numbers of geographically distributed data centers to locate resource-provider computing facilities that match the resource needs of resource-consumer computing facilities. In one implementation, the resource-exchange system continuously collects communications-latency data for pairs of resource-exchange participants, in order to support latency constraints associated with potential resource exchanges. The collected data facilitates efficient, rapid, automated candidate-resource-provider selection during auction-based matching of resource consumers to resource providers.

    Application based network traffic management

    公开(公告)号:US10484332B2

    公开(公告)日:2019-11-19

    申请号:US15367441

    申请日:2016-12-02

    申请人: VMware, Inc.

    IPC分类号: H04L29/06 G06F9/455

    摘要: Described herein are systems, methods, and software to enhance network traffic management for virtual machines. In one implementation, a host for a virtual machine may identify applications available for execution on the virtual machine from mounted application volumes and identify firewall rules for the applications. Once identified, the host may identify network traffic for the virtual machine, and forward or block the network traffic for the virtual machine based on the firewall rules.

    PER-APPLICATION VPN IN CONTAINER BASED ENVIRONMENTS

    公开(公告)号:US20190222559A1

    公开(公告)日:2019-07-18

    申请号:US15870025

    申请日:2018-01-12

    申请人: VMware, Inc.

    IPC分类号: H04L29/06 G06F9/54 G06F9/455

    摘要: One or more VPN tunnels are established in a site-to-site configuration. A VPN transition subnet is defined and associated with each VPN tunnel. Once the VPN tunnel(s) and the LAN(s) have been configured, a per-application VPN policy can be specified for any applications that require site-to-site VPN access. Whenever a new application is launched, a container is created for executing the VM. The VPN management system reads the VPN policy to determine whether the application is permitted to access any VPN tunnels. If the application is permitted to access a VPN tunnel, a vNIC is generated on the VM for the container of the application and/or a new IP address on the vNIC is assigned to the container. The new IP address and/or the new vNIC are then added to the VPN transition subnet associated with the VPN tunnel to enable the application to access the VPN tunnel.