System for disambiguating composite egress traffic for routing and other control
An egress traffic disambiguation system receives a request with source egress location metadata identifying the source egress location. The source egress location can include authentication context data and local area subnetwork identifying metadata. The egress traffic disambiguation system disambiguates the source location of the request and provides the source location to a traffic data aggregation system which aggregates the request to the identified source location.
1 . A computing system, comprising:
at least one processor;
a data store that stores computer executable instructions which, when executed by the at least one processor, causes the at least one processor to perform steps, comprising:
receiving a unique identifier request from a source computing system for a unique identifier and providing the unique identifier to the source computing system, uniquely identifying the source computing system;
receiving a request at a service computing system, the request generated based on disambiguation metadata including the unique identifier;
obtaining disambiguation metadata corresponding to the request;
identifying a source computing system location, at which the source computing system is located, at which the request was generated based on a representation of a tenant topology indicative of a topology of a tenant computing system architecture, the representation indicating network locations of subnetworks within the tenant computing system architecture; and
outputting the source computing system location for aggregation, wherein identifying the source computing system location comprises:
comparing the unique identifier against unique identifiers in the representation of the tenant topology to identify the source computing system location; and
comparing an IP address from the disambiguation metadata against the tenant topology to identify a subnetwork location within the tenant computing system architecture corresponding to the IP address.
2 . The computing system of claim 1 wherein the computer executable instructions, when executed by the at least one processor, causes the at least one processor to perform steps, further comprising:
aggregating the source computing system location to obtain aggregated data; and
generating a control signal based on the aggregated data.
3 . The computing system of claim 1 wherein obtaining disambiguation metadata comprises:
obtaining, as the disambiguation metadata, local area network (LAN) context information.
4 . The computing system of claim 3 wherein obtaining the LAN context information comprises:
obtaining at least one of a LAN subnet internet protocol (IP) address indicative of an IP address of a LAN subnetwork in the tenant topology, or a default gateway device media access control (MAC) address.
5 . The computing system of claim 1 wherein obtaining disambiguation metadata comprises:
obtaining authentication context information corresponding to an authorization token used by the source computing system.
6 . The computing system of claim 1 wherein obtaining the disambiguation metadata comprises:
obtaining the disambiguation metadata from a metadata location corresponding to the request.
7 . A computer implemented method, comprising:
receiving a unique identifier request from a source computing system for a unique identifier and providing the unique identifier to the source computing system, uniquely identifying the source computing system;
receiving a request at a service computing system, the request generated based on disambiguation metadata including the unique identifier;
obtaining disambiguation metadata corresponding to the request;
identifying a source computing system location, at which the source computing system is located, at which the request was generated based on a representation of a tenant topology indicative of a topology of a tenant computing system architecture, the representation indicating network locations of subnetworks within the tenant computing system architecture; and
outputting the source computing system location for aggregation, wherein identifying the source computing system location comprises:
comparing the unique identifier against unique identifiers in the representation of the tenant topology to identify the source computing system location; and
comparing an IP address from the disambiguation metadata against the tenant topology to identify a subnetwork location within the tenant computing system architecture corresponding to the IP address.
8 . The computer implemented method of claim 7 , further comprising:
aggregating the source computing system location to obtain aggregated data; and
generating a control signal based on the aggregated data.
9 . The computer implemented method of claim 7 wherein obtaining disambiguation metadata comprises:
obtaining, as the disambiguation metadata, local area network (LAN) context information.
10 . The computer implemented method of claim 9 wherein obtaining the LAN context information comprises:
obtaining at least one of a LAN subnet internet protocol (IP) address indicative of an IP address of a LAN subnetwork in the tenant topology, or a default gateway device media access control (MAC) address.
11 . The computer implemented method of claim 7 wherein obtaining disambiguation metadata comprises:
obtaining authentication context information corresponding to an authorization token used by the source computing system.
12 . The computer implemented method of claim 7 wherein obtaining the disambiguation metadata comprises:
obtaining the disambiguation metadata from a metadata source corresponding to the request.
13 . A computer implemented method, comprising:
generating a unique identifier request at a client computing system for a unique identifier and providing the unique identifier to a source computing system, uniquely identifying the source computing system;
generating a request at the client computing system for a service computing system, the request generated based on disambiguation metadata including the unique identifier;
identifying disambiguation metadata indicative of a location of the client computing system;
adding a representation of the disambiguation metadata to the request, the representation indicating network locations of subnetworks within a tenant computing system architecture; and
sending the request to another computing system.
14 . The computer implemented method of claim 13 wherein identifying disambiguation metadata comprises:
identifying at least one of local area network (LAN) context information and authentication context information, the LAN context information comprising at least one of a LAN subnet internet protocol (IP) address indicative of an IP address of a LAN subnetwork in a tenant topology, or a default gateway device media access control (MAC) address, the authentication context information corresponding to an authorization token used by the source computing system.