Hybrid Cloud Gateway Multicast Tunneling for Data Centers

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Multicast communication cannot be performed between an on-cloud data center and an on-premises data center due to security concerns, limiting the communication scenario in a hybrid cloud environment.

Innovation Solution

A multicast communication method and apparatus are provided, utilizing a control platform to configure a gateway for multicast communication between data centers, enabling a layer 2 dynamic multicast protocol based on tenant input, and using a communication tunnel to connect subnets with the same private network segment, allowing multicast packets to be sent between on-cloud and on-premises data centers.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multicast communication is enabled between on-cloud and on-premises data centers, then communication scenario is extended, but security risks increase

Engineering Contradiction:
Improvecommunication scenarioVSAvoidsecurity risks
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

A gateway is introduced as an intermediary device between the on-cloud data center and on-premises data center. The gateway establishes a communication tunnel that enables multicast traffic flow while maintaining security boundaries. The gateway configures multicast group correspondences and controls packet forwarding, acting as a secure mediator that extends communication capabilities without directly exposing the on-premises network to uncontrolled access.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If a gateway is configured for multicast communication, then multicast functionality is enabled, but system complexity increases

Engineering Contradiction:
Improvemulticast functionalityVSAvoidsystem complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The gateway is designed to perform multiple functions: it acts as a multicast router, establishes communication tunnels, configures multicast group memberships, and forwards packets between different network segments. By consolidating these diverse functions into a single gateway device, the system achieves multicast capability without proportionally increasing overall system complexity.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Solution Approach 2:

The gateway automatically learns multicast group correspondences through protocols like IGMP (Internet Group Management Protocol) and dynamically configures its forwarding rules. This self-service capability reduces the need for manual configuration and simplifies deployment, offsetting the inherent complexity of implementing multicast functionality.

Inventive Principle:
Principle #25Self-service

3Ease of operation

If communication tunnel is established between subnets with same private network segment, then remote connectivity is achieved, but network security is compromised

Engineering Contradiction:
Improveremote connectivityVSAvoidnetwork security
Core Design Contradiction:
Ease of operationVSObject-affected harmful factors

Solution Approach 1:

The network is segmented into distinct subnets (first subnet in on-cloud data center, second subnet in on-premises data center) that share the same private network segment. A communication tunnel is established between these segmented subnets through the gateway, enabling remote connectivity while maintaining logical separation. This segmentation allows secure tunneling of multicast traffic without exposing the entire network.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The gateway changes network parameters by translating and forwarding packets between the two subnets. It configures multicast group correspondences that map between the on-cloud and on-premises networks, allowing packets to traverse the tunnel with appropriate routing information. This parameter transformation enables connectivity while maintaining security boundaries through controlled packet handling.

Inventive Principle:
Principle #35Parameter changes

Data Source

PatentUS20250310240A1Communication Method, Gateway, and Management Method and Apparatus in Hybrid Cloud Environment
Publication Date: 2025.10.02 HUAWEI CLOUD COMPUTING TECHNOLOGIES CO LTD
  • US20250310240A1 patent drawing
  • US20250310240A1 patent drawing
  • US20250310240A1 patent drawing

AI summary

A multicast communication method in a hybrid cloud environment includes a control platform that obtains, from a multicast configuration interface, multicast member information for the gateway or a selection of enabling, for the gateway, a function of performing learning based on a layer 2 dynamic multicast protocol that is input by a tenant; the control platform configures the gateway based on the foregoing descriptions; when the multicast member information is input, the control platform configures the gateway to record a correspondence between a multicast group and a multicast member.