Method for realizing Overlay multi-tenant CNI container network based on Open vSwitch

A multi-tenant and network technology, applied in the multi-tenant network field, can solve problems such as hidden dangers, cluster paralysis, tenant application impact, etc., and achieve the effects of publishing, realizing safe sharing, and protecting legitimate rights and interests

Active Publication Date: 2020-04-21
CHINA COMMUNICATIONS SERVICES CORPORATION
View PDF6 Cites 14 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

This will lead to the existence of various insecurity risks, and the mutual influence of applicatio

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for realizing Overlay multi-tenant CNI container network based on Open vSwitch
  • Method for realizing Overlay multi-tenant CNI container network based on Open vSwitch
  • Method for realizing Overlay multi-tenant CNI container network based on Open vSwitch

Examples

Experimental program
Comparison scheme
Effect test

Example Embodiment

[0065] Example one

[0066] Such as Figure 1~15 As shown, the method for implementing an Overlay multi-tenant CNI container network based on Open vSwitch provided in this embodiment may include but is not limited to the following steps.

[0067] S101. Install a CCS-SDN service program on each node node in the K8s cluster, where the K8s cluster is a K8s 1.6 or higher version cluster and Open vSwitch is running on each node node, and the CCS-SDN service program is Software-defined network protocol based on CCS integrated development environment.

[0068] In the step S101, the K8s cluster is a Kubernetes-based container cluster that builds a container multi-tenant network, such as figure 2 As shown, the multi-tenant container network production environment of the K8s cluster can include, but is not limited to, an external network, a management network, an IPMI network (Intelligent Platform Management Interface), and SDN (Software Defined Network, software defined network) Network an...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of multi-tenant networks, and discloses a method for realizing an Overlay multi-tenant CNI container network based on Open vSwitch. The invention providesa new method for solving the problem of multi-tenant two-layer network isolation of a container PaaS platform based on Kubernetes. According to the method, network isolation can be carried out among different tenants, and each tenant can only access his/her own network resources and cannot access network resources of other tenants, so that the problem of network isolation between the tenants and other tenant services is solved, the legitimate rights and interests of the tenants for their own service access are guaranteed, and malicious access of other tenants is prohibited.

Description

technical field [0001] The invention belongs to the technical field of multi-tenant networks, and in particular relates to a method for realizing an Overlay multi-tenant CNI container network based on Open vSwitch. Background technique [0002] Multi-tenancy is a kind of software architecture, which means that multiple or multiple groups of different users share a basic resource pool to realize the sharing of software and hardware resources. For an enterprise, the significance of a multi-tenant system is that everyone can share a system instead of splitting it into multiple subsystems for independent management, resulting in a waste of manpower and computing resources. The multi-tenant network is an inevitable requirement of the cloud computing data center network. According to the technical requirements of cloud computing resource virtualization, it virtualizes the network topology and links, and realizes the isolation and sharing of network resources according to the strat...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06H04L29/08H04L12/46H04L12/931
CPCH04L63/02H04L67/10H04L12/4641H04L49/70
Inventor 涂勇
Owner CHINA COMMUNICATIONS SERVICES CORPORATION
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products