Virtual Network Overlay Emulation for Managed Computer Networks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Managing large-scale computer networks has become complex due to increased scale and scope, with existing technologies struggling to efficiently provision, administer, and secure physical computing resources across diverse geographical locations and networks.
Innovation Solution
A CNS system provides virtual networking functionality by creating managed virtual computer networks as overlays on intermediate physical networks, using Communication Manager and System Manager modules to configure and manage communications, allowing users to specify virtual local area networks and emulate networking devices to ensure security and isolation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If physical computing resources are directly provisioned and managed across diverse geographical locations, then network coverage and accessibility are improved, but system complexity and management difficulty increase
Solution Approach 1:
The patent introduces a network virtualization layer as an intermediary between physical networking infrastructure and virtual networks. This virtualization layer abstracts the complexity of managing physical resources across diverse geographical locations, enabling simplified provisioning and management of virtual networks while maintaining broad network coverage and accessibility.
2Productivity
If virtualization technologies are used to share physical computing resources, then resource utilization efficiency is improved, but network security and isolation requirements become more complex
Solution Approach 1:
The patent segments the network into multiple isolated virtual networks that run on shared physical infrastructure. Each virtual network is logically separated and isolated from others, enabling efficient resource utilization through sharing while maintaining strong security boundaries. The virtualization layer enforces isolation policies that prevent unauthorized access between virtual networks.
3Reliability
If physical networking devices are configured for each virtual local area network, then network security and isolation are improved, but device complexity and configuration overhead increase
Solution Approach 1:
The patent implements a universal virtualization layer that provides networking functions for multiple virtual local area networks simultaneously. Instead of requiring separate physical networking devices for each VLAN, the virtualization layer acts as a multi-functional platform that handles routing, switching, and security for numerous virtual networks, dramatically reducing configuration overhead while maintaining isolation.
4Quantity of substance
If physical networking infrastructure is used to support growing network scale, then network capacity is improved, but provisioning and administration complexity increase
Solution Approach 1:
The patent enables rapid provisioning of new virtual networks by copying and replicating virtual network templates and configurations. Instead of manually configuring each physical networking device for new networks, administrators can replicate proven virtual network configurations, significantly reducing provisioning time and complexity while supporting growing network capacity.
Data Source
AI summary
Techniques are described for providing virtual networking functionality for managed computer networks. In some situations, a user may configure or otherwise specify one or more virtual local area networks (“VLANs”) for a managed computer network being provided for the user, such as with each VLAN including multiple computing nodes of the managed computer network. Networking functionality corresponding to the specified VLAN(s) may then be provided in various manners, such as if the managed computer network itself is a distinct virtual computer network overlaid on one or more other computer networks, and communications between computing nodes of the managed virtual computer network are handled in accordance with the specified VLAN(s) of the managed virtual computer network by emulating functionality that would be provided by networking devices of the managed virtual computer network if they were physically present and configured to support the specified VLAN(s).


