Machine learning prediction of virtual computing instance transfer performance

    公开(公告)号:US10853116B2

    公开(公告)日:2020-12-01

    申请号:US16040272

    申请日:2018-07-19

    Applicant: VMware, Inc.

    Abstract: The disclosure provides an approach for preventing the failure of virtual computing instance transfers across data centers. In one embodiment, a flow control module collects performance information primarily from components in a local site, as opposed to components in a remote site, during the transfer of a virtual machine (VM) from the local site to the remote site. The performance information that is collected may include various performance metrics, each of which is considered a feature. The flow control module performs feature preparation by normalizing feature data and imputing missing feature data, if any. The flow control module then inputs the prepared feature data into machine learning model(s) which have been trained to predict whether a VM transfer will succeed or fail, given the input feature data. If the prediction is that the VM transfer will fail, then remediation actions may be taken, such as slowing down the VM transfer.

    SYSTEM AND METHOD FOR DISTRIBUTION OF POLICY ENFORCEMENT POINT
    2.
    发明申请
    SYSTEM AND METHOD FOR DISTRIBUTION OF POLICY ENFORCEMENT POINT 审中-公开
    分配政策执行点的系统和方法

    公开(公告)号:US20160191396A1

    公开(公告)日:2016-06-30

    申请号:US14968890

    申请日:2015-12-14

    Applicant: VMware, Inc.

    Abstract: The disclosure herein describes an edge device of a network for distributed policy enforcement. During operation, the edge device receives an initial packet for an outgoing traffic flow, and identifies a policy being triggered by the initial packet. The edge device performs a reverse lookup to identify at least an intermediate node that is previously traversed by the initial packet and traffic parameters associated with the initial packet at the identified intermediate node. The edge device translates the policy based on the traffic parameters at the intermediate node, and forwards the translated policy to the intermediate node, thus facilitating the intermediate node in applying the policy to the traffic flow.

    Abstract translation: 本文的公开内容描述了用于分布式策略实施的网络的边缘设备。 在操作期间,边缘设备接收用于出站业务流的初始分组,并且识别由初始分组触发的策略。 边缘设备执行反向查找以识别先前由初始分组穿过的中间节点和与所识别的中间节点处的初始分组相关联的业务参数。 边缘设备根据中间节点的流量参数转换策略,并将转换的策略转发到中间节点,从而便于中间节点将策略应用于业务流。

    Distributed Identity-Based Firewalls
    3.
    发明申请
    Distributed Identity-Based Firewalls 审中-公开
    分布式基于身份的防火墙

    公开(公告)号:US20150096007A1

    公开(公告)日:2015-04-02

    申请号:US14043714

    申请日:2013-10-01

    Applicant: VMware, Inc.

    CPC classification number: H04L63/0218 G06F9/45558 G06F2009/45595 H04L67/327

    Abstract: Systems and techniques are described for monitoring network communications using a distributed firewall. One of the techniques includes receiving, at a driver executing in a guest operating system of a virtual machine, a request to open a network connection from a process associated with a user, wherein the driver performs operations comprising: obtaining identity information for the user; providing the identity information and data identifying the network connection to an identity module external to the driver; and receiving, by a distributed firewall, data associating the identity information with the data identifying the network connection from the identity module, wherein the distributed firewall performs operations comprising: receiving an outgoing packet from the virtual machine; determining that the identity information corresponds to the outgoing packet; and evaluating one or more routing rules based at least in part on the identity information.

    Abstract translation: 描述了使用分布式防火墙监控网络通信的系统和技术。 其中一种技术包括:在虚拟机的客户操作系统中执行的驱动程序接收从与用户相关联的进程打开网络连接的请求,其中所述驱动程序执行操作,包括:获得用户的身份信息; 将身份信息和标识网络连接的数据提供给驾驶员外部的身份模块; 并且由分布式防火墙接收将所述身份信息与从所述身份模块识别所述网络连接的数据相关联的数据,其中所述分布式防火墙执行操作,包括:从所述虚拟机接收输出数据包; 确定所述身份信息对应于所述传出分组; 以及至少部分地基于所述身份信息来评估一个或多个路由规则。

    Method of diagnosing data delivery over a network between data centers

    公开(公告)号:US10911294B2

    公开(公告)日:2021-02-02

    申请号:US16184658

    申请日:2018-11-08

    Applicant: VMware, Inc.

    Abstract: The disclosure provides an approach for diagnosing a data plane of a network, wherein the network spans a first data center and a second data center, and wherein the second data center is remote to the first, the method comprising: accessing a secure connection between the first data center and the second data center; modifying, by the first performance controller, firewall settings of the first data center from a first setting to a second setting; opening on the second data center an instance of a performance tool; opening on the first data center a client of the instance of the performance tool; sending data packets over the data plane of the network; receiving the data packets; generating metrics associated with the data packets; and modifying firewall settings of the first data center from the second setting to the first setting.

    Dynamic flow control for transferring data efficiently and effectively over non-linear buffered network paths

    公开(公告)号:US10754577B2

    公开(公告)日:2020-08-25

    申请号:US15701387

    申请日:2017-09-11

    Applicant: VMware, Inc.

    Abstract: A method of transferring data between local and remote computing systems includes the step of transferring data between the local and remote computing systems via a local buffer in the local computing system and a series of steps carried out during transferring of data from the local to the remote computing system. The steps include receiving a statistic from the remote computing system, computing an average transfer rate of the data transfer between the local and remote computing systems based on the statistic, determining whether or not a throttle condition is in effect based on the computed average transfer rate, and upon determining that the throttle condition is in effect, throttling the transferring of data into the local buffer.

    PLUGGABLE DIAGNOSTIC TOOL FOR TELCO RAN TROUBLESHOOTING

    公开(公告)号:US20230195489A1

    公开(公告)日:2023-06-22

    申请号:US17583148

    申请日:2022-01-24

    Applicant: VMware Inc.

    Abstract: A computer-implemented method, medium, and system for implementing a pluggable diagnostic tool for Telco radio access network (RAN) troubleshooting are disclosed. In one computer-implemented method, one or more containerized network function (CNF) instances are generated in a container orchestration platform by a test system and by using a telecommunication cloud automation (TCA) platform executed in the container orchestration platform, where the test system is onboarded to the TCA platform, and the one or more CNF instances are associated with 5G RAN. A customer resources (CR) file is received by the test system, where the CR file defines multiple test cases associated with validation of the TCA platform. The CR file is transmitted to a cluster of nodes in the container orchestration platform. The validation of the TCA platform is executed at the cluster of nodes based on the one or more CNF instances and the CR file.

Patent Agency Ranking