×

Secure virtual network platform for enterprise hybrid cloud computing environments

  • US 9,525,564 B2
  • Filed: 02/21/2014
  • Issued: 12/20/2016
  • Est. Priority Date: 02/26/2013
  • Status: Active Grant
First Claim
Patent Images

1. A method comprising:

  • providing a virtual network switch coupled between a first network domain and a second network domain, wherein the virtual network switch is separate from the first and second network domains, and the second network domain is separate from the first network domain;

    providing a controller coupled to the virtual network switch, the first network domain, and the second network domain;

    receiving at a first end point in the first network domain a request to make a connection to a second end point in the second network domain;

    determining if the connection should be provided through a virtual network connecting the first network domain with the second network domain;

    if the connection should be provided through the virtual network, establishing a virtual network connection between the first end point and the second end point to transmit a payload from the first network domain to the second network domain, wherein the establishing comprises;

    initiating by the first end point, as allowed by the controller, first traffic from the first network domain to the virtual network switch, the first traffic being allowed through a first firewall of the first network domain because the first traffic is outbound from the first network domain to the virtual network switch, the first traffic thereby being first outbound traffic;

    initiating by the second end point, as allowed by the controller, second traffic from the second network domain to the virtual network switch, the second traffic being allowed through a second firewall of the second network domain because the second traffic is outbound from the second network domain to the virtual network switch, the second traffic thereby being second outbound traffic; and

    placing by the virtual network switch the payload from the first outbound traffic established by the first end point into a reply to the second outbound traffic established by the second end point residing in the second network domain; and

    if the connection should not be provided through the virtual network, passing the request outside the virtual network.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×