- Redmond WA, US Rishabh Tewari - Sammamish WA, US Pranjal Shrivastava - Bellevue WA, US Deepak Bansal - Bellevue WA, US Vaibhav Kumar - Kirkland WA, US Nisheeth Srivastava - Sammamish WA, US Abhishek Shukla - Redmond WA, US Rangaprasad Narasimhan - Sammamish WA, US Vinayak Uppunda Padiyar - Bellevue WA, US James Boerner - Marysville WA, US Avijit Gupta - Sammamish WA, US
International Classification:
H04L 12/46 H04L 12/66 H04L 12/715 G06F 9/455
Abstract:
Systems and methods for enabling access to dedicated resources in a virtual network using top of rack switches are disclosed. A method includes a virtual filtering platform encapsulating at least one packet, received from a virtual machine, to generate at least one encapsulated packet comprising a virtual network identifier (VNI). The method further includes a TOR switch: (1) receiving the at least one encapsulated packet and decapsulating the at least one encapsulated packet to create at least one decapsulated packet, (2) using the VNI to identify a virtual routing and forwarding artifact to determine a virtual local area network interface associated with the dedicated hardware portion, and (3) transmitting the at least one decapsulated packet to the dedicated hardware portion based on at least one policy provided by a controller, where the at least one policy comprises information related to a customer of the service provider.
Mapping A Service Into A Virtual Network Using Source Network Address Translation
- Redmond WA, US Abhishek SHUKLA - Redmond WA, US Rishabh TEWARI - Sammamish WA, US Qiming CHEN - Redmond WA, US Harish Kumar CHANDRAPPA - Bothell WA, US Pranjal SHRIVASTAVA - Redmond WA, US Anitha ADUSUMILLI - Redmond WA, US Parag SHARMA - Issaquah WA, US Abhishek Ellore SREENATH - Bangalore, IN
International Classification:
H04L 29/12 H04L 29/08
Abstract:
The techniques described herein enable a private connectivity solution between a virtual network of a service consumer and a virtual network of a service provider in a cloud-based platform. The techniques map a service (e.g., one or more workloads or containers) executing in the virtual network of the service provider into the virtual network of the service consumer. The mapping uses network address translation (NAT) that is performed by the cloud-based infrastructure. As a result of the techniques described herein, a public Internet Protocol (IP) address does not need to be used to establish a connection thereby alleviating privacy and/or security concerns for the virtual networks of the service provider and/or the service consumer that are hosted by the cloud-based platform.