18152732. SCALING HOST POLICY VIA DISTRIBUTION simplified abstract (MICROSOFT TECHNOLOGY LICENSING, LLC)

From WikiPatents
Jump to navigation Jump to search

SCALING HOST POLICY VIA DISTRIBUTION

Organization Name

MICROSOFT TECHNOLOGY LICENSING, LLC

Inventor(s)

Gerald Roy Degrace of Atlanta GA (US)

Deepak Bansal of Bellevue WA (US)

Rishabh Tewari of Sammamish WA (US)

Michal Czeslaw Zygmunt of Redmond WA (US)

Deven Jagasia of Kirkland WA (US)

SCALING HOST POLICY VIA DISTRIBUTION - A simplified explanation of the abstract

This abstract first appeared for US patent application 18152732 titled 'SCALING HOST POLICY VIA DISTRIBUTION

Simplified Explanation

The abstract describes techniques for processing data packets and implementing policies in a software defined network (SDN) of a virtual computing environment. The innovation involves configuring at least two SDN appliances to separate the enforcement of policies from the hosts in the virtual computing environment. The hosts are implemented on servers that are connected to network interfaces of the SDN appliances. These servers host multiple virtual machines and are also connected to network interfaces of at least two top-of-rack switches (ToRs). The SDN appliance includes smart network interface cards (sNICs) that implement the functionality of the SDN appliance. These sNICs have a floating network interface that provides a virtual port connection to an endpoint within a virtual network of the virtual computing environment.

  • At least two SDN appliances are used to enforce policies in a virtual computing environment.
  • The enforcement of policies is separated from the hosts in the virtual computing environment.
  • The hosts are implemented on servers that are connected to network interfaces of the SDN appliances.
  • The servers host multiple virtual machines.
  • The servers are also connected to network interfaces of at least two top-of-rack switches (ToRs).
  • The SDN appliance includes smart network interface cards (sNICs) that implement the functionality of the SDN appliance.
  • The sNICs have a floating network interface that provides a virtual port connection to an endpoint within a virtual network.

Potential Applications

  • Virtual computing environments
  • Software defined networks (SDN)
  • Network management and policy enforcement

Problems Solved

  • Simplifies the enforcement of policies in a virtual computing environment
  • Improves network management and control in a software defined network (SDN)
  • Enables efficient processing of data packets in a virtual computing environment

Benefits

  • Enhanced security and control in a virtual computing environment
  • Improved network performance and efficiency
  • Simplified network management and policy enforcement


Original Abstract Submitted

Techniques are disclosed for processing data packets and implementing policies in a software defined network (SDN) of a virtual computing environment. At least two SDN appliances are configured to disaggregate enforcement of policies of the SDN from hosts of the virtual computing environment. The hosts are implemented on servers communicatively coupled to network interfaces of the SDN appliance. The servers host a plurality of virtual machines. The servers are communicatively coupled to network interfaces of at least two top-of-rack switches (ToRs). The SDN appliance comprises a plurality of smart network interface cards (sNICs) configured to implement functionality of the SDN appliance. The sNICs have a floating network interface configured to provide a virtual port connection to an endpoint within a virtual network of the virtual computing environment.