×

Private ethernet overlay networks over a shared ethernet in a virtual environment

  • US 9,900,410 B2
  • Filed: 11/18/2014
  • Issued: 02/20/2018
  • Est. Priority Date: 05/01/2006
  • Status: Active Grant
First Claim
Patent Images

1. A system for private networking within a virtual infrastructure, the system comprising:

  • a first virtual machine (VM) in a first host, the first VM being associated with a first virtual network interface card (VNIC);

    a second VM in a second host, the second VM being associated with a second VNIC, the first and second VNICs being members of a fenced group of virtual machines that have exclusive direct access to a private virtual network, wherein VNICs outside the fenced group do not have direct access to packets on the private virtual network;

    a first filter in the first host that encapsulates a packet sent on the private virtual network from the first VNIC, the packet comprising a first header and a first payload, the encapsulation adding to the packet a second header and fence protocol data to a second payload, the second header consisting of a layer 2 header and the second payload comprising the fence protocol data, the first header, and the first payload, the fence protocol data comprising a fence identifier for the fenced group; and

    a second filter in the second host that de-encapsulates the packet to extract the first header and the fence identifier, wherein the second filter delivers the de-encapsulated packet to the second VNIC after validating that a destination address in the packet and the fence identifier correspond to the second VNIC.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×