Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A multi-tenant virtual network isolating method

A virtual network and multi-tenant technology, applied in the field of cloud computing, can solve problems such as poor flexibility, inconvenient global network configuration such as routers, and poor user experience, achieving high reliability and avoiding single-point failure problems

Active Publication Date: 2015-03-04
G CLOUD TECH
View PDF5 Cites 33 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] 1. The flexibility is poor. The administrator must configure the physical network in advance to provide the tenants with it. However, the needs of the tenants often change, which makes it very inconvenient to frequently modify the global network configurations such as physical switches and routers.
[0008] 2. The user experience is not good. Tenants generally want to be able to control the network of their own virtual machines, such as creating and deleting a subnet at any time according to their own needs, and assigning the private IP they want. The above methods cannot be satisfied at all.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A multi-tenant virtual network isolating method
  • A multi-tenant virtual network isolating method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0046] See figure 1 As shown, in the initialization process of the present invention, two virtual switches OVS-A and OVS-B are first created respectively on the network node and the computing node, as follows:

[0047] #ovs-vsctl add-br OVS-A / / Create an OVS bridge, a virtual machine switch

[0048] #ovs-vsctl add-br OVS-B / / Create an OVS bridge, a virtual machine switch

[0049] OVS-A is used to connect to the external network, and add a physical interface eth1 to connect to the external network:

[0050] #ovs-vsctl add-port OVS-A eth1

[0051] Then create a VETH device to connect OVS-A and OVS-B. In the following operations, vethA-1 and vethA-2 are the two ports of the VETH device vethA:

[0052] #ip link add vethA-1 type veth peer name vethA-2 / / Create vethA-1 and vethA-2

[0053] #ifconfig vethA-1 up / / Activate vethA-1 port

[0054] #ifconfig vethA-2 up / / Activate vethA-2 port

[0055] #ovs-vsctl add-port OVS-A vethA-1 / / vethA-1 is connected to bridge VOS-A

[0056]...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention relates to the technical field of cloud computing and particularly to a highly-flexible multi-tenant virtual network isolating method. In the invention, the method comprises: firstly creating two virtual switches OVS-A and OVS-B in an initialized process; then adding a physical interface eth1 connecting to an external network to the OVS-A; and then creating a VETH device to connect the OVS-A with the OVS-B. A process of creating a private network and starting a virtual machine comprises: (1) adding an internal port dhcp-N and setting an internal network VLAN-N; (2) creating private network space netns-N; (3) accessing the dhcp-N port to the netns-N; (4) setting an internal and external network VLAN converting rule at both ends of the VETH device connected to OVS-A and OVS-B of the network node and the computing node; (5) creating a linux network bridge at the computing node; (6) creating a VETH device to connect to the BR-N with the OVS-B; and (7) the virtual machine bridging to BR-N to be started and obtaining an IP through the dhcp service started at the step (3). The invention provides the highly flexible multi-tenant virtual network isolating method.

Description

technical field [0001] The invention relates to the technical field of cloud computing, in particular to a highly flexible multi-tenant virtual network isolation method. Background technique [0002] Network management and configuration is a very important function in cloud computing, and realizing a flexible, efficient and secure network virtualization has always been the goal pursued by various cloud platforms. For cloud platform tenants, it is the most important and necessary to ensure the security and availability of their virtual machine network. In this way, the virtual machine must first be required to access the external network, and secondly, the virtual machines of the same tenant can communicate with each other. Virtual machines created by different tenants cannot access each other. At present, the method of global VLAN isolation is generally used to set up the network for the virtual machine, and the method steps are as follows: [0003] 1. The cloud platform a...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06
CPCH04L63/0272
Inventor 熊梦杨松莫展鹏季统凯
Owner G CLOUD TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products