×

Identifying a source device in a software-defined network

  • US 10,129,125 B2
  • Filed: 12/18/2015
  • Issued: 11/13/2018
  • Est. Priority Date: 12/18/2015
  • Status: Active Grant
First Claim
Patent Images

1. A computing apparatus, comprising:

  • a network interface to communicatively couple to an overlay network of a software-defined network (SDN);

    first one or more logic elements comprising an SDN controller engine to provide a control function for the SDN; and

    second one or more logic elements comprising a route tracing engine to;

    receive a tunneling notification from a network device agent, the tunneling notification associated with a network flow; and

    perform a backtracking traceroute operation to deterministically identify a source device for the network flow, wherein performing a backtracking traceroute comprises iteratively backtracking through a plurality of source virtual tunneling endpoints (VTEPs), comprising;

    querying a first virtual tunneling endpoint (VTEP);

    determining that the first VTEP is a security function container (SFC);

    querying the SFC for its source VTEP for the network flow;

    querying a second VTEP;

    determining that the second VTEP is a network device (ND); and

    designating the ND as a source device for the network flow.

View all claims
  • 13 Assignments
Timeline View
Assignment View
    ×
    ×