VLAN (Virtual Local Area Network) isolation method

A virtual network and virtual machine technology, applied in network interconnection, data exchange through path configuration, electrical components, etc., can solve problems such as poor versatility and uncontrollable network connection, achieve good protection and facilitate troubleshooting , highly controllable effect

Active Publication Date: 2015-04-01
G CLOUD TECH
View PDF5 Cites 35 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0009] The technical problem solved by the present invention is to provide a virtual network isolation method, which solve...

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • VLAN (Virtual Local Area Network) isolation method

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0038] As shown in the figure, the present invention installs a virtual switch module, i.e. open vSwitch software, on all host machines of the cloud platform, creates a tunnel bridge and an intranet bridge and connects them through interfaces, and the specific process is as follows:

[0039] / / Install open vSwitch

[0040] #rpm-ivh kmod-openvswitch-2.3.0-1.el6.x86_64.rpm

[0041] #rpm-ivh openvswitch-2.3.0-1.x86_64.rpm

[0042] / / Create tunnel bridge and intranet bridge and start

[0043] #ovs-vsctl add-br br-tun

[0044] #ovs-vsctl add-br br-int

[0045] #ifconfig br-tun up

[0046] #ifconfig br-int up

[0047] Add the peer device to connect the tunnel and the intranet bridge. The peer device here takes the patch device as an example:

[0048] #ovs-vsctl add-port br-int patch-tun

[0049] #ovs-vsctl set interface patch-tun type=patch

[0050] #ovs-vsctl set interface patch-tun options:peer=patch-int

[0051] #ovs-vsctl add-port br-tun patch-int

[0052] #ovs-vsctl s...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of cloud computing, in particular to a VLAN (Virtual Local Area Network) isolation method. The VLAN isolation method comprises the steps of firstly, installing and starting virtual switch modules on all host computers of a cloud platform, establishing a tunnel network bridge and an intranet network bridge, and connecting the tunnel network bridge with the intranet network bridge through an interface; then, establishing tunnel connection between every two host computers, and assigning a basic Flow rule to control the data flow direction; then, selecting network nodes to create virtual network space and to provide network service, and selecting compute nodes to create virtual computers and to access each virtual network; further, respectively defining a Flow rule on the network nodes and the compute nodes, carrying out conversion between tunnel ID (Identification) and VLAN tags, and realizing VLAN normal communication; finally, flexibly extending VLAN on the network nodes and newly adding a host computer to the cloud platform according to needs. According to the VLAN isolation method disclosed by the invention, the problems that VLAN isolation in the cloud platform is not strong in universality, the network connection is uncontrollable, and the like are solved; the VLAN isolation method can be used for the VLAN isolation.

Description

technical field [0001] The invention relates to the technical field of cloud computing, in particular to a virtual network isolation method. Background technique [0002] In a virtualization platform, especially in a public cloud platform, considering security issues and user data privacy issues, it is generally necessary to isolate the virtual network. Generally, the isolation of the virtual network requires the support of the physical network. Three Layer switches divide VLANs in advance and add corresponding routing rules. The implementation is as follows: [0003] 1. Configure the trunk mode for the network card of the host, and create a bridge for each VLAN on the host; [0004] 2. When creating a virtual machine, bridge the network card of the virtual machine to the network bridge corresponding to the VLAN to which the virtual machine belongs; [0005] 3. The isolation between virtual networks can be realized through the isolation between VLANs, and the correspondin...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L12/46H04L29/12
Inventor 熊梦杨松莫展鹏季统凯
Owner G CLOUD TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products