Virtual machine message forwarding method, network switching equipment and communication system

A network switching device and message forwarding technology, applied in the field of communication, can solve problems such as potential safety hazards, unrealized logical channel isolation of virtual machines, and inability to distinguish virtual machines, so as to avoid potential safety hazards and improve network security.

Active Publication Date: 2012-11-28
RUIJIE NETWORKS CO LTD
View PDF4 Cites 35 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] When implementing multi-channel technology based on existing virtualized servers and external access network switches, even if the three virtual machine input and output (IO) modes of VEB, VEPA, and Director IO are deployed on the same virtualized server at the same time, when When the virtual machine packets are sent to the external access network switch, because the external access network switch cannot distinguish virtual machines of different IO modes, the logical channel isolation of virtual machines of different modes is not realized, so that any virtual machines are forwarded through the switch messages, able to communicate with each other, causing serious security risks

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Virtual machine message forwarding method, network switching equipment and communication system
  • Virtual machine message forwarding method, network switching equipment and communication system
  • Virtual machine message forwarding method, network switching equipment and communication system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0027] image 3 It is a schematic flowchart of a virtual machine message forwarding method according to an embodiment of the present invention. Such as image 3 As shown, the virtual machine message forwarding method includes:

[0028] Step 301, the network switching device obtains a virtual machine packet encapsulating logical channel information of an active virtual machine;

[0029] Step 302, if the destination virtual machine of the virtual machine message is a virtual machine associated with the network switching device, obtain logical channel information of the destination virtual machine according to the identifier of the destination virtual machine;

[0030] Step 303, the network switching device checks the validity of the virtual machine packet according to the logical channel information of the source virtual machine and the logical channel information of the destination virtual machine, and only when the verification is valid, Decapsulating the virtual machine pa...

Embodiment 2

[0041] Further, in the virtual machine packet forwarding method of the above embodiment, the acquisition of the logical channel information of the destination virtual machine according to the identifier of the destination virtual machine also includes:

[0042] The network switching device obtains the logical channel information of each virtual machine associated with itself, and stores the mapping relationship between the identifiers of the virtual machines and the logical channel information.

[0043] In this embodiment, taking a specific scenario as an example, a process of obtaining logical channel information of each virtual machine associated with the network switching device is described in detail.

[0044] Figure 4 It is an architectural diagram of an example of a communication system for implementing an embodiment of the present invention. like Figure 4 As shown, it includes virtualization servers, virtualization management servers, network agents, and external ac...

Embodiment 3

[0054] On the basis of the foregoing embodiments, in this embodiment, the encapsulation and decapsulation operations performed by the network switching device are described in an extended manner.

[0055] specifically, Figure 5 It is a schematic diagram of a communication process for realizing packet forwarding of a virtual machine in an embodiment of the present invention. Figure 5 In this section, the virtual machine packet forwarding between virtual machines associated with different network switching devices is taken as an example to describe the communication process of virtual machine packet forwarding. exist Figure 5 , it is assumed that the first network switching device SW1 is connected to the first virtualization server, and the second network switching device SW2 is connected to the second virtualization server, wherein both the first network switching device SW1 and the second network switching device SW2 can execute The virtual machine message forwarding meth...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a virtual machine message forwarding method, network switching equipment and a communication system. The method comprises the following steps: the network switching equipment acquires a virtual machine message in which information on a logic channel of a source virtual machine is capsulated; if the target virtual machine of the virtual machine message is a virtual machine related to the network switching equipment, the information of a logic channel of the target virtual machine is acquired according to a mark of the target virtual machine; and the network switching equipment achieves validity checkout of the virtual machine message according to the information of the logic channel of the source virtual machine and the information of the logic channel of the target virtual machine, and only when the virtual machine message is valid, the virtual machine message is de-capsulated and sent to the target virtual machine. By adopting the virtual machine message forwarding method, the network switching equipment and the communication system, which are provided by the invention, effective isolation of logic channels in the multi-channel technology is realized.

Description

technical field [0001] The invention relates to network communication technology, in particular to a virtual machine message forwarding method, network switching equipment and a communication system, and belongs to the field of communication technology. Background technique [0002] The emergence of virtual machines has led to the emergence of the concept of virtual Ethernet bridge (Virtual Ethernet Bridge, VEB) in the data center network access layer. Currently, the most common "VSwitch" deployed in a virtual machine monitor (Virtual Machine Monitor, VMM) in a server virtualization environment is a software VEB. figure 1 It is a schematic diagram of the virtual machine message sending process of VEB, such as figure 1 As shown, when the destination MAC address of the packet is on the external network, the VSwitch directly sends the packet from the physical NIC to the Ethernet switch on the external network; when the destination MAC address of the packet is a virtual machine...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L12/56
Inventor 刘璞
Owner RUIJIE NETWORKS CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products