×

VIRTUAL GROUP POLICY BASED FILTERING WITHIN AN OVERLAY NETWORK

  • US 20150195137A1
  • Filed: 01/06/2014
  • Published: 07/09/2015
  • Est. Priority Date: 01/06/2014
  • Status: Active Grant
First Claim
Patent Images

1. A method for managing packet filtering in an overlay network, comprising:

  • receiving a data packet at a virtual switch connected to at least one virtual machine of a plurality of virtual machines communicatively connected through an overlay network, each of the plurality of virtual machines configured within a separate one of a plurality of virtual groups in the overlay network, the data packet comprising a packet header comprising at least one address;

    receiving, by the virtual switch, a virtual group identifier for the at least one address from at least one address resolution service returning the virtual group identifier and a resolved address for the at least one address, in response to an address resolution request for the at least one address; and

    sending the data packet through the virtual switch to the resolved address only if the virtual group identifier is allowed according to a filtering policy applied by the virtual switch for a particular virtual group identified by the virtual group identifier of the plurality of virtual groups.

View all claims
  • 3 Assignments
Timeline View
Assignment View
    ×
    ×