Virtual IP Routing for Backup of Non-Addressable Hosts
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Data management systems (DMS) face challenges in routing packets to non-addressable hosts within private networks, as the use of envoy virtual machines and TLS tunnels can result in the source IP address being dropped, leading to packet loss and improper routing due to the demultiplexing component's inability to map packets to corresponding storage entities.
Innovation Solution
The DMS allocates virtual IP addresses to non-addressable hosts and sets these as the source IP addresses in packets, enabling the demultiplexing component to properly route packets to corresponding storage entities by using a mapping configuration that associates virtual IP addresses with storage entities.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If envoy virtual machines and TLS tunnels are used to enable DMS to access non-addressable hosts in private networks, then connectivity to non-addressable hosts is improved, but packet routing fails due to source IP address being dropped
Solution Approach 1:
The patent introduces a tunnel endpoint and demultiplexing component as intermediaries between the DMS and non-addressable hosts. These intermediaries handle the packet forwarding and maintain the source IP address information that would otherwise be lost in the tunnel, enabling both connectivity and reliable routing.
Solution Approach 2:
The patent adds a new dimension to packet handling by introducing virtual IP addresses and demultiplexing based on multiple criteria (source IP, destination IP, port). This multi-dimensional approach allows the system to track and route packets from non-addressable hosts even after tunneling.
2Object-affected harmful factors
If source IP address is dropped in TLS tunnel packets, then tunnel security is improved, but demultiplexing component cannot map packets to corresponding storage entities
Solution Approach 1:
The patent performs preliminary actions by configuring the tunnel endpoint and demultiplexing component beforehand to recognize and preserve source IP address information. The demultiplexing component is pre-configured with mapping rules that allow it to identify the original source IP even after tunneling, preventing information loss.
3Reliability
If virtual IP addresses are allocated and source IP addresses are set in packets, then proper packet routing is achieved, but system complexity increases
Solution Approach 1:
The patent makes the tunnel endpoint and demultiplexing component multi-functional. These components not only handle tunneling and packet forwarding but also perform IP address management, mapping, and routing decisions. This consolidation reduces overall system complexity despite the added IP address management functions.
Data Source
AI summary
Methods, systems, and devices for data management are described. A data management system (DMS) may provide backup and recovery services to one or more non-addressable hosts within a network. The DMS may receive a packet from a host within the network. A source internet protocol (IP) address of the packet, when received at the DMS, may be an IP address associated with the network. The packet may also include an identifier associated with the host. The DMS may include one or more storage entities used to back up the one or more hosts. To route the packet to a storage entity used to back up the host, the DMS may set the source IP address of the received packet to be a virtual IP address associated with the host based on the identifier and use the virtual IP address to route the packet to the storage entity.


