Tunnel Endpoint Control for Virtual Network Joining

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

In cloud computing environments, managing the connection of virtual machines to virtual networks via virtual tunnels, such as VXLAN or NVGRE, becomes complex due to the need for setting and managing tunnel endpoint participation in multicast groups, which complicates network communication and administration.

Innovation Solution

A control apparatus and method that includes a connection detection unit, virtual network determination unit, and tunnel endpoint control unit to automatically detect new virtual machine connections, determine the appropriate virtual network, and instruct the tunnel endpoint to participate in the virtual network, simplifying the connection and management process.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If tunnel endpoints manually participate in multicast groups for virtual network communication, then virtual machine communication is enabled, but network management complexity increases significantly

Engineering Contradiction:
Improveease of tunnel endpoint managementVSAvoidnetwork management complexity
Core Design Contradiction:
Ease of operationVSDevice complexity

Solution Approach 1:

The tunnel endpoint automatically performs multicast group joining and leaving operations based on virtual machine connection events. The system self-manages the multicast group participation without requiring manual administrative intervention, thereby reducing network management complexity while maintaining proper virtual network communication

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system monitors virtual machine connection status and uses this feedback to dynamically control multicast group membership. When a virtual machine connects to a tunnel endpoint, the system detects this event and automatically joins the corresponding multicast group; when a virtual machine disconnects, the system leaves the multicast group, creating a closed-loop control system that adapts to changing network conditions

Inventive Principle:
Principle #23Feedback

2Extent of automation

If automatic multicast group management is implemented, then administrative burden is reduced, but system automation complexity increases

Engineering Contradiction:
Improveautomation of tunnel endpoint participationVSAvoidcontrol apparatus complexity
Core Design Contradiction:
Extent of automationVSDevice complexity

Solution Approach 1:

The control apparatus combines multiple functions including virtual machine connection monitoring, multicast group management, and tunnel endpoint control into a single integrated system. By merging these previously separate functions, the patent reduces the need for multiple independent control mechanisms while achieving comprehensive automatic management of tunnel endpoint multicast participation

Inventive Principle:
Principle #5Merging (Combining)

3Productivity

If manual configuration of tunnel endpoint multicast membership is used, then control precision is maintained, but time consumption for configuration increases

Engineering Contradiction:
Improvespeed of tunnel endpoint configurationVSAvoidconfiguration time
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The system pre-configures the control apparatus with the ability to manage multicast group memberships for multiple tunnel endpoints simultaneously. When virtual machines are connected, the system immediately performs the necessary multicast group joining operations without requiring sequential manual configuration, thereby significantly reducing the time required for tunnel endpoint configuration while maintaining precise control over multicast participation

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS11190435B2Control apparatus, communication system, tunnel endpoint control method, and program
Publication Date: 2021.11.30 NEC ASIA PACIFIC PTE LTD
  • US11190435B2 patent drawing
  • US11190435B2 patent drawing
  • US11190435B2 patent drawing

AI summary

The present invention contributes to facilitating: setting for connection between a TEP in a virtual network configured by using a virtual tunnel and a virtual network; and management of the connection. A control apparatus includes: a connection detection unit configured to detect that a virtual machine has newly been connected to one of a plurality of tunnel endpoints each of which functions as an endpoint of a virtual tunnel used for a communication between virtual machines that belong to a virtual network; a virtual network determination unit configured to determine a virtual network to which the detected virtual machine belongs on the basis of information in which virtual machines and virtual networks are associated with each other; and a tunnel endpoint control unit configured to cause, if the tunnel endpoint has not participated in the determined virtual network, the tunnel endpoint to participate in the determined virtual network.