Unlock instant, AI-driven research and patent intelligence for your innovation.

A method and system for sdn-based virtual tenant network isolation

A virtual tenant network and tenant technology, applied in the field of cloud management, to reduce pressure, reduce redundant flow tables, and improve forwarding efficiency

Active Publication Date: 2021-08-13
NANJING ZHAOSHICHANG NETWORK TECH
View PDF5 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This method allows the tenant's virtual machine to freely use the MAC address, but this method requires an additional ARP agent, and there will be a one-to-one mapping problem when there are multiple network cards or virtual machines are used to simulate switching devices

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A method and system for sdn-based virtual tenant network isolation
  • A method and system for sdn-based virtual tenant network isolation
  • A method and system for sdn-based virtual tenant network isolation

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0048] The technical solutions in the embodiments of the present invention will be described below with reference to the drawings in the embodiments of the present invention. Apparently, the described embodiments are only some of the embodiments of the present invention, but not all of them. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0049] A virtual tenant network topology provided by an embodiment of the present invention is as follows: figure 2 As shown, the isolation system includes an SDN controller, a virtual switch, and a virtual machine for an oriented cloud platform; wherein, the SDN controller includes a topology management module, an initialization module, a flow table management module, and a tenant network mapping module; the virtual The switch completes the data packet forwarding according to t...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses an SDN-based virtual tenant network isolation method and system. The isolation system is a cloud-oriented platform and includes an SDN controller, a virtual switch, and a virtual machine; wherein, the SDN controller includes a topology management module and an initialization module. , a flow table management module, and a tenant network mapping module; the virtual switch completes the forwarding of data packets according to the flow table delivered by the SDN controller, and only one virtual switch is configured on each physical host or node; the virtual machine passes the virtual Network interfaces are connected to virtual switches, and the virtual switches are connected through tunnels. This method realizes the isolation of the tenant network by designing the flow table of the virtual switch. The realization of isolation does not depend on information such as the MAC address of the tenant virtual machine, the label of the VLAN to which the virtual machine belongs, the vxlan number or the GRE tunnel number, and allows the tenant MAC to be used freely. Tenants need to flexibly build virtual networks.

Description

technical field [0001] The invention belongs to the field of cloud management, and in particular relates to an SDN-based virtual tenant network isolation method. Background technique [0002] Tenant network isolation is a very important requirement for implementing cloud computing services. On the premise of ensuring the security of tenant networks and tenant virtual machines, the cloud platform should try not to reduce the efficiency of network management and configuration. [0003] In the cloud platform environment, the same tenant uses at least one virtual machine, there is at least one tenant network in the same tenant, and a single virtual machine is equipped with at least one network card; the tenant's virtual machine can be used as a normal business processing device or configured by the user as Network devices, such as bridges, routers, application gateways, etc., are used to implement customized networks. In order to meet various user requirements, tenant networks ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06H04L12/24
CPCH04L41/12H04L63/02
Inventor 黄韬魏亮檀朝红陈俊霞
Owner NANJING ZHAOSHICHANG NETWORK TECH