Openflow-based dynamic security isolation system and method for private cloud network

A dynamic security and isolation system technology, applied in the field of cloud computing security, can solve problems such as inflexibility and coarse isolation granularity, and achieve the effect of avoiding tampering

Inactive Publication Date: 2016-03-23
G CLOUD TECH
View PDF0 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0006] One of the technical problems solved by the present invention is to provide an Openflow-based private cloud network dynamic security isolation system, which solves the problem that the isolation granularity of the traditional isolation method is too coarse and inflexible
[0007] The second technical problem solved by the present invention is to provide an Openflow-based private cloud network dynamic security isolation method to solve the problem that the isolation granularity of the traditional isolation method is too coarse and inflexible

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Openflow-based dynamic security isolation system and method for private cloud network
  • Openflow-based dynamic security isolation system and method for private cloud network
  • Openflow-based dynamic security isolation system and method for private cloud network

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0025] The technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0026] First follow figure 1 Deploy physical servers, virtual machines, and OVS switches as shown.

[0027] Isolation between virtual servers is achieved through access control based on dynamic installation flows. Add different VLAN-TAGs for the virtual machines marked as APP1, APP2, and APP3 in the figure.

[0028]

[0029]

[0030]

[0031]

[0032] It can be seen that after the VLAN-TAG is added, the two virtual machines APP1 and APP2 that can commun...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of cloud computing security, and in particular relates to an Openflow-based dynamic security isolation system and method for a private cloud network. The system disclosed by the invention comprises a virtual machine operation platform, a virtualized user operation platform and a virtual network connection platform; the virtual machine operation platform is used for operating virtual machines to load different types of applications and allow the virtual machines of the applications to be randomly distributed on a physical machine; the virtualized user operation platform is used for a user to access back-end application services by using different terminals; and the virtual network connection platform is used for isolating and dynamically adjusting the private cloud network according to requirements by using an Openflow technology. According to the invention, the private cloud network is designed in combination with the Openflow technology; the problems that the traditional isolation method is too thick in isolation granularity and non-flexible can be solved; and the dynamic security isolation system and method provided by the invention can be used for isolating the private cloud network dynamically and securely.

Description

technical field [0001] The invention relates to the technical field of cloud computing security, in particular to an Openflow-based private cloud network dynamic security isolation system and an isolation method. Background technique [0002] With the popularity of the cloud computing model, many organizations hope to build a private cloud. The construction of a private cloud undoubtedly brings many benefits to the IT department; such as the centralized management of information resources and the more efficient use of IT infrastructure. However, while bringing these advantages, some new problems will arise because the private cloud will make some adjustments to the network architecture, which are mainly reflected in the following points: [0003] 1) The centralized deployment of computing resources makes the problem of security isolation increasingly prominent. First of all, in the intranet, different types of applications (such as business applications, financial applicati...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L12/46
CPCH04L12/4641H04L12/4645H04L63/02H04L63/0218
Inventor 莫展鹏杨松季统凯
Owner G CLOUD TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products