Virtual Port Policy Association for Real-Time VM Migration

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Manual configuration of network policies on switches for virtual machines is inefficient and affects real-time service performance due to the need for manual operations, which are labor-intensive and not timely enough for real-time VM migration.

Innovation Solution

A method and device that automatically configure network policies for virtual ports by obtaining the MAC address of virtual ports from packets, sending a request to a network management center for corresponding physical and virtual network policy groups, and receiving these groups to configure the network policy, eliminating the need for manual operations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Productivity

If manual configuration of network policies on switch is performed, then network policies can be configured for virtual machines, but the configuration efficiency is low and real-time service performance is affected

Engineering Contradiction:
Improvenetwork policy configuration efficiencyVSAvoidtime for network policy configuration
Core Design Contradiction:
ProductivityVSLoss of time

Solution Approach 1:

The network management center pre-configures network policies for virtual ports before VM migration occurs. When a VM needs to migrate, the pre-configured policies are already ready and can be quickly applied to the new physical port, eliminating the need for manual real-time configuration during migration.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces a network management center as an intermediary between the virtualization system and physical switches. This intermediary automatically manages network policy configuration, retrieving policies based on VM identifiers and applying them to appropriate physical ports, thereby eliminating manual configuration operations.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Extent of automation

If manual configuration operations are performed for VM migration, then network policies can be migrated, but the operations are labor-intensive and not timely enough for real-time migration

Engineering Contradiction:
Improveautomation of network policy migrationVSAvoidease of manual configuration operation
Core Design Contradiction:
Extent of automationVSEase of operation

Solution Approach 1:

The system enables self-service automation where the network management center automatically detects VM migration events, retrieves the appropriate network policies using VM identifiers, and applies them to the new physical ports without requiring manual intervention. The system serves itself by automatically managing the entire policy migration process.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The system implements feedback mechanisms where the network management center receives notifications about VM migration events, processes the migration information, and automatically updates network policies accordingly. This closed-loop feedback system ensures policies are always synchronized with current VM locations without manual input.

Inventive Principle:
Principle #23Feedback

3Productivity

If the same physical port carries traffic of multiple VMs, then server utilization increases, but the switch needs to configure different network policies for different VMs increasing complexity

Engineering Contradiction:
Improveserver utilizationVSAvoidswitch configuration complexity
Core Design Contradiction:
ProductivityVSDevice complexity

Solution Approach 1:

The patent segments network policy management by creating unique virtual ports for each VM, even though they share the same physical port. Each virtual port is assigned specific network policies based on the VM's identity and requirements, allowing multiple VMs to share physical infrastructure while maintaining distinct policy configurations through logical segmentation.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The network management center provides universal functionality by serving as a centralized policy management system that handles network policy configuration for all VMs across multiple physical ports. This single universal system replaces the need for manual configuration on each individual switch port, simplifying overall system complexity while supporting diverse VM requirements.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentEP3208721B1Method, network management center, and a related device for configuring a network policy for a virtual port
Publication Date: 2018.11.14 HUAWEI TECH CO LTD
  • EP3208721B1 patent drawingFigure 1~2
  • EP3208721B1 patent drawingFigure 3A
  • EP3208721B1 patent drawingFigure 3B

AI summary

A method, a network management center, and a related device. The method includes: obtaining a virtual network policy group, a physical network policy group, and a media access control (MAC) address of a virtual port; associating the virtual network policy group, the physical network policy group, and the MAC address of the virtual port to form a virtual port policy association table; and selecting a physical network policy group corresponding to the MAC address from the virtual port policy association table, and delivering the physical network policy group to a physical switch. When a virtual machine (VM) on the server is migrated, the method may be used to migrate the network policy for the virtual port on a real-time basis. Therefore, the real-time effect of services provided by the VM is improved in the virtualization process of the server.