IP Library Granted Patent US 10,135,679
Granted Patent B2
US 10,135,679 · App. 14/946,235 · Granted Nov 20, 2018

Network offering in cloud computing environment

Inventors: Alex Huang (Cupertino, CA); William Chan (Santa Clara, CA); Chiradeep Vittal (Cupertino, CA)
Assignee: CITRIX SYSTEMS, INC.
H04L41/0806G06F9/45558G06F9/5005G06F9/5072G06F9/5077H04L41/5054H04L41/5096G06F2009/45562G06F2009/45595H04L61/2015H04L61/2507H04L67/10
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,135,679
App. No.
14/946,235
Granted
Nov 20, 2018
Kind
B2
Abstract

A cloud system may create and support multiple network offerings for virtual machines in a cloud zone. Physical networks comprising sets of network elements, such as routers, gateways, firewalls, load balancers, and other network hardware, may be created and updated within a zone. Network offerings may be defined and associated, using tags or other techniques, with virtual machine networks, physical networks and/or network elements. Cloud end users may request specific network offerings when creating virtual machines, or may request to move existing virtual machines from one network offering to another. The cloud system may use the requested network offering to identify the virtual machine network, physical network, and/or network elements corresponding to the requested network offering. The cloud system may allocate a new virtual machine network and configure the network elements within the associated physical network to provide network services to the virtual machine.

Claims (58)

1. One or more non-transitory computer-readable media storing computer-executable instructions that, when executed by a processor, cause a computing device to:

receive, from a cloud operator, a selection of a first zone within a cloud of computing resources in which to create a first physical network, wherein the cloud of computing resources comprises a plurality of zones each comprising a respective plurality of collocated network elements;

receive, from the cloud operator, a selection of a first network element within the first zone to be added to the first physical network;

create the first physical network in the first zone based on the selection of the first zone and the selection of the first network element, wherein the first physical network includes the first network element and does not include at least one other network element in the plurality of network elements in the first zone;

receive, from the cloud operator, an indication that the first physical network is associated with a first virtual machine network corresponding to a first network offering comprising a set of network services;

receive, from an end user, a request to create a first virtual machine within the cloud of computing resources, wherein the request identifies the first network offering;

retrieve a first tag corresponding to the first network offering, wherein the first tag identifies the first virtual machine network as corresponding to the first network offering;

determine, based on the first tag and a second tag associated with the first virtual machine network, that the first physical network corresponds to the first virtual machine network; and

based on determining that the first physical network corresponds to the first virtual machine network, create the requested first virtual machine on the first physical network within the first zone.

2. The computer-readable media of claim 1 , wherein a hypervisor in the cloud of computing resources uses an identifier of the first physical network to access the first network element.

3. The computer-readable media of claim 1 , storing further computer-executable instructions that, when executed by the processor, cause the computing device to:

identify a second network element within the first zone to be added to the first physical network; and

upgrade the first physical network to include the second network element.

4. The computer-readable media of claim 3 , wherein the first network element and the second network element provide the same network service.

5. The computer-readable media of claim 4 , wherein at least one network offering of the first physical network is associated with the first network element, and wherein at least one different network offering of the first physical network is associated with the second network element.

6. The computer-readable media of claim 1 , wherein the first zone is configured with a plurality of physical networks.

7. The computer-readable media of claim 1 , wherein the instructions, when executed by the processor, further cause the computing device to:

receive a set of properties for the first physical network, wherein creating the first physical network in the first zone is based on the set of properties.

8. The computer-readable media of claim 7 , wherein the set of properties for the first physical network comprises a level of isolation for the first physical network.

9. The computer-readable media of claim 7 , wherein the set of properties for the first physical network comprises a speed for the first physical network.

10. The computer-readable media of claim 1 , storing further computer-executable instructions that, when executed by the processor, cause the computing device to:

receive an end user request to destroy the first virtual machine;

determine, in response to the end user request to destroy the first virtual machine, whether the first physical network includes any other virtual machines; and

when determining that the first physical network does not include any other virtual machines, de-allocate network elements from the plurality of collocated network elements corresponding to the first physical network.

11. A method, comprising:

receiving, by a cloud management server and from a cloud operator, a selection of a first zone within a cloud of computing resources in which to create a first physical network, wherein the cloud of computing resource comprises a plurality of zones each comprising a respective plurality of collocated network elements;

receiving, by the cloud management server and from the cloud operator, a selection of a first network element within the first zone to be added to the first physical network;

creating, by the cloud management server, the first physical network in the first zone based on the selection of the first zone and the selection of the first network element, wherein the first physical network includes the first network element and does not include at least one other network element in the plurality of network elements in the first zone;

receiving, by the cloud management server and from the cloud operator, an indication that the first physical network is associated with a first virtual machine network corresponding to a first network offering comprising a set of network services;

receiving, by the cloud management server and from an end user, a request to create a first virtual machine within the cloud of computing resources, wherein the request identifies the first network offering;

retrieving, by the cloud management server, a first tag corresponding to the first network offering, wherein the first tag identifies the first virtual machine network as corresponding to the first network offering;

determining, by the cloud management server and based on the first tag and a second tag associated with the first virtual machine network, that the first physical network corresponds to the first virtual machine network; and

based on determining that the first physical network corresponds to the first virtual machine network, creating the requested first virtual machine on the first physical network within the first zone.

12. The method of claim 11 , further comprising:

identifying, by the cloud management server, a second network element within the first zone to be added to the first physical network; and

upgrading, by the cloud management server, the first physical network to include the second network element.

13. The method of claim 12 , wherein the first network element and the second network element provide the same network service.

14. The method of claim 13 , wherein at least one network offering of the first physical network is associated with the first network element, and wherein at least one different network offering of the first physical network is associated with the second network element.

15. The method of claim 11 , wherein the first zone is configured with a plurality of physical networks.

16. The method of claim 11 , further comprising:

receiving an end user request to destroy the first virtual machine;

determining, in response to the end user request to destroy the first virtual machine, whether the first physical network includes any other virtual machines; and

when determining that the first physical network does not include any other virtual machines, de-allocating network elements from the plurality of collocated network elements corresponding to the first physical network.

17. A cloud management server, comprising:

one or more processors; and

memory storing instructions that, when executed by the one or more processors, causes the cloud management server to:

receive, from a cloud operator, a selection of a first zone within a cloud of computing resources in which to create a first physical network, wherein the cloud of computing resources comprises a plurality of zones each comprising a respective plurality of collocated network elements;

receive, from the cloud operator, a selection of a first network element within the first zone to be added to the first physical network;

create the first physical network in the first zone based on the selection of the first zone and the selection of the first network element, wherein the first physical network includes the first network element and does not include at least one other network element in the plurality of network elements in the first zone;

receive, from the cloud operator, an indication that the first physical network is associated with a first virtual machine network corresponding to a first network offering comprising a set of network services;

receive, from an end user, a request to create a first virtual machine within the cloud of computing resources, wherein the request identifies the first network offering;

retrieve a first tag corresponding to the first network offering, wherein the first tag identifies the first virtual machine network as corresponding to the first network offering;

determine, based on the first tag and a second tag associated with the first virtual machine network, that the first physical network corresponds to the first virtual machine network; and

based on determining that the first physical network corresponds to the first virtual machine network, create the first virtual machine on the first physical network within the first zone.

18. The cloud management server of claim 17 , wherein the memory stores further instructions that, when executed by the one or more processors, cause the cloud management server to:

receive an end user request to destroy the first virtual machine;

determine, in response to the end user request to destroy the first virtual machine, whether the first physical network includes any other virtual machines; and

when determining that the first physical network does not include any other virtual machines, de-allocate network elements from the plurality of collocated network elements corresponding to the first physical network.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2015
From: VITTAL, CHIRADEEP; HUANG, ALEX; CHAN, WILLIAM
To: CITRIX SYSTEMS, INC.
Reel/Frame 037092/0274 →
Continuity (2)
Division 13662483 · Oct 28, 2012
Related Publication 20160080201A1 · Mar 17, 2016
Cited By (1)
US 12,423,129