Supercharge Your Innovation With Domain-Expert AI Agents!

Distributed VPN service

An encrypted grouping, specific technology, applied in the direction of instrument, data exchange network, program control design, etc., can solve the problem of seamless splicing and cumbersome multi-site data center

Active Publication Date: 2020-11-24
NICIRA
View PDF6 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Therefore, the seamless splicing of multi-site data centers becomes more cumbersome on edge devices that accomplish this task

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Distributed VPN service
  • Distributed VPN service
  • Distributed VPN service

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0025] In the following description, numerous details are set forth for purposes of explanation. However, one of ordinary skill in the art will recognize that the present invention may be practiced without the use of these specific details. In other instances, well-known structures and devices are shown in block diagram form in order not to obscure the description of the invention with unnecessary detail.

[0026] For networks that include host machines for providing computing and networking resources and VPN gateways for providing external access to those resources, some embodiments distribute encryption keys to the hosts to encrypt / decrypt messages initiated / terminated at those hosts. full payload. In some embodiments, these encryption keys are created or obtained by the VPN gateway based on network security negotiations with external networks / devices. In some embodiments, these negotiated keys are then distributed to hosts via the control plane of the network. In some em...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

This disclosure relates to distributed VPN services. For a network comprising host machines for providing computing and networking resources and a VPN gateway for providing external access to those resources, a method for distributing encryption keys to hosts for encryption / decryption initiated / terminated at those hosts is described A novel method for the full payload of . These encryption keys are created or obtained by the VPN gateway based on network security negotiations with external networks / devices. These negotiated keys are then distributed to hosts via the network's control plane. In some embodiments, this creates a complete distributed mesh framework for processing cryptographic payloads.

Description

Background technique [0001] L2 and L3VPN (Virtual Private Networks) are common networking constructs in today's networking deployments that seek to extend reachable networks beyond the traditional data center perimeter in a secure manner. As the evolution of distributed multi-site data centers becomes a reality, and as the capacity of the services provided increases, choke point L2 and L3 encrypted services based on legacy appliances cannot meet the desired scale characteristics of such deployments. As multi-site data centers become more popular, the need to splice secure traffic moving across these sites in a more seamless and scalable manner becomes critical. [0002] For example, a VPN gateway installed on the perimeter of an Internet-facing enterprise internal network allows external networks (or devices) to connect into the network via tunneling mechanisms over SSL / DTLS or IKE / IPSec. All traffic between these networks must go through the tunnel endpoints. The tunnel end...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06H04L12/46H04L12/24
CPCH04L12/4633H04L12/4641H04L63/06H04L41/0803H04L63/0272H04L9/0819G06F9/45558H04L63/0218
Inventor J·贾殷A·森谷普塔U·马苏雷卡尔
Owner NICIRA
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More