Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

54 results about "Virtual IP address" patented technology

A virtual IP address (VIP or VIPA) is an IP address that doesn't correspond to an actual physical network interface. Uses for VIPs include network address translation (especially, one-to-many NAT), fault-tolerance, and mobility.

Configuring application availability using anycast addressing

Anycast addressing is utilized to support the connection of multiple application connectors fronting an application(s) to a network element and anycast routing of network traffic destined for the application(s). When an application is indicated for onboarding in a tenant's network fabric, a network controller allocates virtual and anycast addresses to the application. Allocation of anycast addresses is per domain name and port / protocol combination. Upon determining that the application is available, the application connector(s) advertises reachability of the application via the anycast address. The network controller orchestrates configuration of a domain name system entry that resolves the application name to its virtual Internet Protocol (IP) address and destination network address translation rules that translate the virtual IP address to the anycast address and the anycast address to the application's private IP address. Application network traffic can thus be forwarded to the application via any application connector that advertised the anycast address.
Owner:PALO ALTO NETWORKS INC

Switching control method, device and equipment for cloud platform management nodes

The embodiment of the invention provides a switching control method, device and equipment for a cloud platform management node. The method comprises the following steps: acquiring state data of a cloud platform management main node; when the state data is a fault, selecting a new cloud platform management main node from at least two groups of cloud platform management backup nodes; the virtual IP address of the original cloud platform management main node is bound with the new cloud platform management main node, and routing redirection is completed; controlling the task of the original cloud platform management main node to be switched to the new cloud platform management main node for processing; and controlling the cloud platform management main node and the cloud platform management backup node to keep data synchronization. According to the embodiment of the invention, the new master node is selected from the at least two groups of backup nodes, the selected new master node is ensured to be in a normal state and have enough resources, and new problems after switching are avoided.
Owner:数盾信息科技股份有限公司

Method for realizing point-to-point communication between nodes in mobile cellular network

The invention discloses a method for realizing point-to-point communication between nodes in a mobile cellular network. The method specifically comprises the following steps of: creating a virtual network card on each terminal device, distributing a virtual IP (Internet Protocol) address, and establishing a service gateway for grid topology management and data forwarding. Each node is connected with the service gateway through a network to form a grid topological structure, the nodes send data packets to the service gateway through the virtual network card, the service gateway searches the corresponding node connection according to the target virtual IP address of the data packets and forwards the data packets, and the target node receives the data packets and transmits the data packets to the local network protocol stack for processing through the virtual network card. The invention further provides an identity authentication mechanism based on the secret key and the certificate, and communication safety is guaranteed. The virtual private network constructed by the scheme of the invention breaks through the limitation that nodes in a cellular network only have dynamic virtual IPs and do not have public network IPs, improves the communication efficiency, reduces the energy consumption, and enhances the network topology adaptability.
Owner:HANGZHOU LIANCHENG DIGITAL TECH CO LTD

Public network access method and device, electronic equipment and medium

The invention provides a public network access method and device, electronic equipment and a medium, and relates to the field of artificial intelligence and cloud computing, in particular to the technical field of network communication.The method comprises the steps that a first access initiating data packet transmitted by an access initiating end through a virtual route is received; an on-cloud virtual private network access source IP address in the first access initiation data packet is converted, a converted under-cloud intranet access source IP address is obtained, and the under-cloud intranet access source IP address is a high-availability virtual IP address; a second access initiation data packet after the first access initiation data packet is updated is obtained based on the under-cloud intranet access source IP address, the second access initiation data packet is transmitted to a public network gateway, and the public network gateway is used for converting the under-cloud intranet access source IP address in the second access initiation data packet into a public network access source IP address and transmitting the public network access source IP address to the cloud intranet access source IP address. And performing service access on the public network access target IP address carried in the second access initiation data packet based on the public network access source IP address.
Owner:BEIJING BAIDU NETCOM SCI & TECH CO LTD +1

Public network domain name shunting method and communication system

The invention discloses a public network domain name shunting method and a communication system. Comprising the steps that an uplink classifier user plane function network element receives a DNS analysis request message initiated by user equipment, the message comprises a public network domain name to be analyzed, and a target IP address of the message is a first IP address; whether the public network domain name meets a DNS redirection rule is judged, if yes, the request message is sent to an intranet DNS server corresponding to the public network domain name, and a DNS analysis response message fed back by the intranet DNS server is received; and converting the analysis result from the second IP address to a virtual IP address according to a target IP address conversion rule, and sending a DNS analysis response message of which the analysis result is the virtual IP address to the user equipment. According to the method and the device, the technical problem that the common public network service cannot be normally accessed due to the fact that the same IP address is returned to two DNS analysis requests of the public network service shunted by the internal network and the common public network service by a content distribution network service provider is solved.
Owner:CHINA TELECOM CORP LTD

Configuring application availability using anycast addressing

Anycast addressing is utilized to support the connection of multiple application connectors fronting an application(s) to a network element and anycast routing of network traffic destined for the application(s). When an application is indicated for onboarding in a tenant's network fabric, a network controller allocates virtual and anycast addresses to the application. Allocation of anycast addresses is per domain name and port / protocol combination. Upon determining that the application is available, the application connector(s) advertises reachability of the application via the anycast address. The network controller orchestrates configuration of a domain name system entry that resolves the application name to its virtual Internet Protocol (IP) address and destination network address translation rules that translate the virtual IP address to the anycast address and the anycast address to the application's private IP address. Application network traffic can thus be forwarded to the application via any application connector that advertised the anycast address.
Owner:PALO ALTO NETWORKS INC

Distributed control node (DCN) redundancy

Methods, systems, and apparatus for implementing a redundant DCN system over a process automation network. In one aspect, a redundant DCN system includes a primary DCN, a backup DCN, and a keep alive process configured to determine whether the primary DCN becomes unavailable, wherein in response to the primary DCN being determined as unavailable, the backup DCN is reassigned as a new primary DCN, and assumes functions previously executed by the former primary DCN. Each DCN in the redundant DCN system may have a unique virtual IP address or transfer a common virtual IP address. Virtual IP addresses may impact communications between DCNs and other devices.
Owner:YOKOGAWA ELECTRIC CORP

Distributed control node (DCN) redundancy

The invention relates to distributed control node redundancy. Methods, systems, and apparatus for implementing a redundant DCN system over a process automation network. In one aspect, a redundant DCN system includes a primary DCN, a backup DCN, and a keep-alive procedure configured to determine whether the primary DCN becomes unavailable, where in response to the primary DCN being determined to be unavailable, the backup DCN is reassigned as a new primary DCN, and assumes a function previously performed by a previous primary DCN. Each DCN in the redundant DCN system may have a unique virtual IP address or a transfer common virtual IP address. The virtual IP address may affect communications between the DCN and other devices.
Owner:YOKOGAWA ELECTRIC CORP

MQTT server failover method, framework, equipment and medium

The invention discloses an MQTT server failover method, architecture, equipment and medium, a master node and a slave node communicate through a virtual routing redundancy (VRRP) protocol, and the master node periodically sends a VRRP heartbeat message to the slave node; when a host-level fault occurs and the slave node does not receive a VRRP heartbeat message of the master node within a preset timeout interval, the slave node takes over a virtual IP address and is upgraded to a master role; when a service-level fault occurs, the detection program running on the main node detects that the specified service is abnormal, and the main node actively reduces the priority of the main node and cancels the virtual IP address bound with the main node; and when detecting that the priority of the master node is lower than that of the slave node, the slave node immediately initiates election and becomes a new master node, and binds the virtual IP address to complete fault switching. By detecting the host-level fault and the service-level fault respectively, compared with single-point deployment, when the server fails, services can be continuously provided to the outside, and the continuity of services is ensured.
Owner:STATE GRID SICHUAN ELECTRIC POWER CO MARKETING SERVICE CENT

Dynamic IP routing in a cloud environment

The present disclosure provides dynamic routing for data flows to a customer network hosted in the cloud. A plurality of compute instances may share a common virtual IP address. Each of the plurality of compute instances may advertise information to a respective network virtualization device (NVD). The information may include the IP address, cost, and / or active / standby status of the compute instance. The NVD may then provide the information to the control plane of a virtual cloud network (VCN), which may aggregate the information from the plurality of compute instances and generate a forwarding table, which may be sent to the NVDs. These techniques may allow a customer to automatically remove a compute instance whose service host has failed. These techniques may also allow a customer to add compute instances and to route data flows according to an active-standby operation, an equal cost active-active operation, or an unequal cost active-active operation.
Owner:ORACLE INT CORP

A database access method and apparatus

The application provides a database access method and device. The method comprises the following steps: determining a virtual IP address pre-solidified by a micro-service application; sending a connection request to the virtual IP address, so that a database connection agent on a database server side returns database metadata according to the connection request; receiving the database metadata; determining a target driver type according to a database category, loading a database driver corresponding to the target driver type, and creating a database connection pool by using the database driver according to database connection information. In the method, the micro-service application can receive the database metadata returned by the database connection agent, which comprises a database category and database connection information, by sending a connection request to the virtual IP, and dynamically constructs a database connection pool according to the database metadata. The process does not require the application to perceive information of a real database, shields differences of heterogeneous databases, realizes zero modification of configuration, and significantly reduces the workload of application deployment and operation and maintenance.
Owner:XINHUA SAN IND INTERNET CO LTD

Kubernetes-based dynamic topology awareness and traffic intelligent control system, method and device

PendingCN122661200ADomain nameClosed loop
The application relates to a Kubernetes-based dynamic topology perception and intelligent traffic control system, method and device, the system comprising: a dynamic virtual IP load balancing module for dynamically scheduling the binding relationship between a virtual IP address and a backend service according to the real-time comprehensive weight of each service instance; a domain name resolution adaptive module for updating the mapping relationship between a domain name and a virtual IP address according to the scheduling result of the dynamic virtual IP load balancing module; a distributed state perception module for cooperatively perceiving and maintaining the master-slave topology state of a service cluster through a distributed consensus mechanism; and an intelligent traffic mapping module for dynamically adjusting a service endpoint selector according to the master-slave topology state maintained by the distributed state perception module. The four modules are linked together to realize an end-to-end closed loop from intelligent scheduling of an external traffic entrance to accurate mapping of internal cluster traffic, thereby guaranteeing the high availability of stateful services and realizing a second-level response of fault switching.
Owner:CHINA MOBILE (SUZHOU) SOFTWARE TECH CO LTD +1

Control plane configuration

Embodiments of the present disclosure relate to control plane configuration. Examples relate to a system including a cluster of worker nodes communicatively connected to the control plane. The control plane includes a first control switch and a second control switch. The control switches are configured with virtual IP addresses. The IP addresses are associated with the control switches operating in active mode. The control switches communicate with the cluster of worker nodes via the virtual IP addresses. A single instance of a key-value database is deployed on one of the first and second control switches operating in active mode, and the first and second control switches are functionally coupled via a distributed block system for data synchronization.
Owner:HEWLETT PACKARD ENTERPRISE DEV LP

Virtual machine migration method, device, equipment and storage medium

Embodiments of the present disclosure provide a virtual machine migration method and device, equipment and storage medium, and relate to the technical field of virtual machines. The method comprises: if a migration operation of a virtual machine on a current host is detected, determining a current migration mode; processing a first virtual machine network interface according to the current migration mode to obtain a second virtual machine network interface; processing a first virtual IP address according to the current migration mode to obtain a second virtual IP address; obtaining configuration information from a preset database, and creating the second virtual machine network interface and the second virtual IP address on a target host according to the configuration information, so as to complete migration of the virtual machine from the current host to the target host. By using the technical solution, the integrity and accuracy of the migration of the network interface of the virtual machine and the virtual IP address bound thereto can be improved.
Owner:BEIJING KINGSOFT CLOUD NETWORK TECH CO LTD +1

Method and device for verifying changed domain name, equipment, medium and program product

The invention provides a domain name change verification method and device, equipment, a medium and a program product, and relates to the field of financial science and technology and information security. According to the method, after an IP address of a target domain name is changed, the IP address of the target domain name in M resolution servers is updated based on the updated IP address; performing dial test processing on the target domain name based on the updated M resolution servers by adopting the plurality of virtual IP addresses to obtain a first dial test result fed back by the M resolution servers; and determining that the change of the IP address of the target domain name is completed under the condition that the server addresses fed back by the M resolution servers are consistent with the updated IP address. According to the method, a plurality of virtual IP addresses are created through load balancing equipment, so that the equipment can simulate user IPs of a plurality of regions, full verification is realized, and the verification efficiency is improved; meanwhile, M servers are verified one by one based on an isolation recovery mechanism, it is ensured that each server updates configuration synchronously, and abnormity caused by configuration delay or errors is eliminated.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Internet protocol based security over port forwarding tunnels

An application server host may receive, via a port forwarding tunnel, a connection request that includes an indication of a client internet protocol (IP) address for a client host. The application server host may identify based at least in part on the client IP address and using a mapping maintained for a plurality of client hosts, a virtual IP address that is associated with the client IP address and a client network identifier associated with the port forwarding tunnel from which the connection request is received. The application server host may open a connection between an application server hosted by the application server host and the client host using the identified virtual IP address.
Owner:RUBRIK INC

Database access method and device

The invention provides a database access method and device. The method comprises the following steps: determining a pre-cured virtual IP address of a micro-service application; a connection request is sent to the virtual IP address, so that a database connection agent on one side of the database server returns database metadata according to the connection request; receiving database metadata; and determining a target drive type according to the database category, loading a database drive corresponding to the target drive type, and creating a database connection pool according to the database connection information by using the database drive. In the method, a micro-service application can receive database metadata which is returned by a database connection agent and comprises a database category and database connection information by sending a connection request to a virtual IP (Internet Protocol), and dynamically construct a database connection pool according to the database metadata, so that the application does not need to perceive information of a real database in the process; differences of heterogeneous databases are shielded, zero modification of configuration is realized, and the workload of application deployment operation and maintenance is remarkably reduced.
Owner:XINHUA SAN IND INTERNET CO LTD

Networking design for substrate in the overlay

PCT designated stageWO2025193693A1Data switching networksData packEngineering
A cloud service is provided and accessible via a virtual IP address in a virtual cloud network (VCN), where the VCN is part of an overlay network. A source network virtualization device (NVD) receives a first packet destined to the virtual IP address. The source NVD determined based upon a dynamic routing gateway table, the VCN mapped to the virtual IP address. Further, the source NVD identifies based upon the virtual IP address, a substrate IP address of a destination NVD that implements a virtual network interface card (VNIC) associated with the virtual IP address and communicates the first packet from the source NVD to the destination NVD using the substrate IP address.
Owner:ORACLE INT CORP

Method and system for realizing high availability of tenant cloud server, central controller

The application provides a high availability implementation method and system of a tenant cloud server, and a cloud data center controller. The method comprises the following steps: setting a management network address pool; wherein the management network address pool comprises no less than M management network addresses, and the management network addresses are public network IP addresses; allocating the M management network addresses in the management network address pool to M tenant cloud servers one by one; grouping the M tenant cloud servers into a cluster, and setting cluster configuration information of the cluster, wherein the cluster configuration information comprises a virtual IP address; sending the cluster configuration information to each tenant cloud server in the cluster through the management network address allocated to each tenant cloud server; downloading, by each tenant cloud server, a cluster configuration tool from an external network through the allocated management network address; and joining, by each tenant cloud server, the cluster by using the cluster configuration tool and the cluster configuration information. The application can realize high availability of the tenant cloud server.
Owner:SHANDONG LANGCHAO YUNTOU INFORMATION TECH CO LTD

VPN device communication method, device, equipment and storage medium

The disclosed embodiments disclose a VPN device communication method, apparatus, device and storage medium. The method includes: receiving an encrypted request message sent by a first client, the first request message carrying the first physical IP address and the first virtual IP address of the first client; decrypting the request message when the first client is verified; determining the second virtual IP address and the corresponding second client based on the decrypted first virtual IP address; when the second client and the first client belong to the same group and the second client is online, encrypting the request message and sending it to the second client; receiving the encrypted response message returned by the second client in response to the request message, and sending the response message to the first client. This method improves the communication security and reliability between mobile office personnel in mobile office scenarios, and greatly improves office efficiency.
Owner:BEIJING TOPSEC NETWORK SECURITY TECH +2

Internet protocol address conversion method, device and system

When the IP address conversion device judges that the source IP address of an IP packet received by a network where the IP address conversion device is located is the IP address of a data acquisition server, the target IP address of the IP packet is changed into the real IP address of a network host, the source IP address of the IP packet is changed into the IP address of the IP address conversion device, and the IP packet is sent to the host; and when the source IP address of the IP packet is judged not to be the IP address of the data acquisition server and the source IP address of the IP packet is judged to be the host IP address of the network, the target IP address of the IP packet is changed into the IP address of the data acquisition server, the source IP address of the IP packet is changed into a virtual IP address, and the IP packet is sent to the data acquisition server.
Owner:BAOSHAN IRON & STEEL CO LTD

BFD protocol implementation method and system in MLAG environment

The invention discloses a BFD protocol implementation method and system in an MLAG environment, and the method comprises the steps: binding a BFD session with an MLAG protocol through a host computer and a standby computer, and configuring a unique number for the BFD session; the BFD session adopts a virtual IP address to establish a session with a downlink device; when the Peerlink port is in an up state, the host machine maintains the BFD session, and the standby machine is in a passive state; when the BFD session state is changed, the host synchronizes the BFD session state to the standby machine according to the state change information through a BFD state synchronization message of the MLAG protocol; when the standby machine receives the BFD state synchronization message, the standby machine updates the corresponding BFD session state according to the BFD session number; and when the standby machine receives the BFD message, forwarding the BFD message to the host through a BFD message synchronization message of the MLAG protocol. And the link between the MLAG equipment and the downlink equipment can be monitored by using one BFD session, so that the operation burden of the equipment is reduced.
Owner:INSPUR NETWORK TECH (SHANDONG) CO LTD

An application access method and apparatus

This application provides an application access method and apparatus, relating to the field of communication technology. The method is applied to a gateway device in a zero-trust network. It receives a first service message sent by a terminal device through a zero-trust client for accessing a web application; obtains a virtual IP address corresponding to the user token in the first service message, wherein the virtual IP address is allocated and issued to the gateway device by the controller in the zero-trust network after the terminal device successfully goes online; replaces the source IP address in the first service message with the virtual IP address to obtain a second service message; and forwards the second service message to the resource server of the web application.
Owner:NEW H3C SECURITY TECH CO LTD

Method and apparatus for collecting virtualized converged network element internal interface messages

The present application relates to the field of communication technology, and provide a kind of virtualization fusion network element internal interface message acquisition method and device, the method comprises: mirroring the internal interface message of the fusion network element, to obtain mirror message;The destination IP address of the mirror message is converted into first virtual IP address, the first virtual IP address is different from the IP address of any network element in the fusion network element;The mirror message after conversion is sent to the SDN gateway, and the first virtual IP address is used to indicate that special shunt equipment restores the first virtual IP address in the mirror message to destination IP address according to preset address mapping relationship, then the mirror message is sent to signaling monitoring system, and the address mapping relationship includes the corresponding relationship of first virtual IP address and destination IP address.The present application realizes the collection of the internal interface message of fusion network element.
Owner:CHINA MOBILE GROUP DESIGN INST +1

Support of virtual network and non-virtual network connectivity on the same virtual machine

A hybrid state for a virtual machine (VM) in a cloud computing system enables a VM to communicate with other VMs that belong to a virtual network (VNET VMs) while maintaining connectivity with other VMs that do not belong to the virtual network (non-VNET VMs). A non-VNET VM can be transitioned to a hybrid VM that operates in a hybrid state. The hybrid VM can be assigned a private virtual IP address (VNET address) for communication with other VNET VMs. The hybrid VM can continue to use a physical IP address to communicate with other non-VNET VMs. In this way, the hybrid VM is able to maintain connectivity with other non-VNET VMs during and after migration to the VNET. A network stack can be configured to process data packets that are destined for non-VNET VMs differently from data packets that are destined for VNET VMs.
Owner:MICROSOFT TECHNOLOGY LICENSING LLC

Data packet forwarding method and device, equipment and storage medium

The invention discloses a data packet forwarding method and device, equipment and a storage medium, and relates to the technical field of network security, and the method comprises the steps: receiving a resource access data packet sent by a gateway client through a gateway server, and forwarding the data packet to virtual Ethernet pair equipment through an XDP socket mode; calling the redirection component by the equipment through the virtual Ethernet to analyze a source IP address and a destination IP address in the data packet, and querying the source IP address from a virtual IP address pool table associated with the redirection component; if the source IP address is located in the address pool table, querying a kernel FIB table based on the target IP address to obtain a target physical network card corresponding to the target IP address; and redirecting the data packet to the target physical network card, and sending the resource access data packet to a resource server through the target physical network card. According to the method and the device, the forwarding efficiency of the data packet can be greatly improved, and frequent system calling overhead is avoided, so that the occupation of system resources is reduced.
Owner:CETC CYBERSPACE SECURITY TECH CO LTD

A network configuration method and server in a container cloud platform environment

The present disclosure relates to a network configuration method and server in a container cloud platform environment, and particularly relates to the field of computer communication; the method comprises the following steps: determining the type of the micro-service instance which needs to be configured according to the network configuration request of the micro-service instance; when the type is a tunnel mode supporting LVS, performing first network configuration through a first network component according to first configuration information in the network configuration request, and performing second network configuration through a configuration component corresponding to a second network component according to second configuration information in the network configuration request, wherein the first network configuration is used to establish a first connection, the second configuration information comprises a virtual IP address of LVS, and the second network configuration is used to establish a second connection. According to the present disclosure, the second network configuration can support sending response data packets to a terminal device through a tunnel mode, without modifying the first network component of the container cloud platform, which is beneficial to maintenance and modification and facilitates access.
Owner:JUHAOKAN TECH CO LTD