Virtual Overlay Network for Secure Multicast Routing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current multicast routing protocols, such as PIM-SM, are limited to private networks due to the requirement for manual configuration of intermediate routers, making them unsuitable for use over the Internet, which restricts the efficient distribution of multicast traffic and leads to sub-optimal quality of service.

Innovation Solution

Specialized computing appliances operate a customized version of PIM-SM, maintaining a multicast adjacency table and leveraging customized overlays to enable secure and scalable multicast traffic transfer over public WANs, mimicking a single neighboring router and fooling neighboring PIM routers to support multicast traffic across multiple hops.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If multicast routing protocols like PIM-SM are implemented over public Internet, then multicast traffic distribution efficiency is improved, but manual configuration of intermediate routers is required which increases device complexity and reduces ease of operation

Engineering Contradiction:
Improvemulticast traffic distribution efficiencyVSAvoidmanual router configuration requirement
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent introduces a virtual overlay network as an intermediary layer between the multicast source and public Internet routers. This overlay network encapsulates multicast traffic and presents it as unicast traffic to public Internet routers, eliminating the need for manual configuration of intermediate routers while maintaining efficient multicast distribution within the enterprise network.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the network into two distinct layers: a virtual overlay network for multicast traffic management and the underlying public Internet infrastructure. This segmentation allows multicast routing protocols to operate efficiently within the overlay network without requiring configuration changes to the public Internet routers, thus resolving the contradiction between distribution efficiency and configuration complexity.

Inventive Principle:
Principle #1Segmentation

2Quantity of substance

If multicast traffic is distributed over public Internet without virtual overlay network, then network cost is reduced, but security and service quality cannot be guaranteed

Engineering Contradiction:
Improvenetwork costVSAvoidsecurity and quality of service
Core Design Contradiction:
Quantity of substanceVSReliability

Solution Approach 1:

The virtual overlay network acts as a secure intermediary tunnel through which multicast traffic is encapsulated and transmitted over the public Internet. This overlay network implements security policies, access control, and quality of service guarantees while utilizing the cost-effective public Internet infrastructure, thus achieving both low cost and high reliability.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If traditional multicast protocols are used over public Internet, then multi-hop routing is unsupported, but implementing multi-hop support increases protocol complexity

Engineering Contradiction:
Improvemulti-hop routing supportVSAvoidprotocol complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent creates a virtual copy of the private network's multicast routing behavior within the overlay network. The overlay network maintains multicast adjacency tables and routing states that mirror the behavior of traditional multicast protocols, enabling multi-hop routing support while keeping the underlying public Internet infrastructure simple and unchanged.

Inventive Principle:
Principle #26Copying

Data Source

PatentEP3896902B1Transfer of secure multicast data traffic over a computing network
Publication Date: 2024.10.30 HEWLETT PACKARD ENTERPRISE DEV LP
  • EP3896902B1 patent drawingFigure 1
  • EP3896902B1 patent drawingFigure 2
  • EP3896902B1 patent drawingFigure 3

AI summary

Disclosed herein are systems and methods for scalable and secure transmission of multicast data over a public communication network. In exemplary embodiments of the present disclosure, a virtual overlay network can be presented as a single virtual interface to a computing device, for the receipt and transfer of multicast data in a secure and scalable manner across a public insecure communication network.