IP Library › Granted Patent US 12,407,726
Granted Patent B2
US 12,407,726 · App. 17/335,121 · Granted Sep 2, 2025

Overlay network ingress edge region selection

Inventors: Ryan Ruel (Cambridge, MA); Fardad Farahmand (Cambridge, MA); Brandon O. Williams (Revere, MA)
Assignee: Akamai Technologies, Inc.
H04L63/164H04L12/4633H04L63/0272H04L63/061H04L61/2514H04L61/4511H04L63/0485H04L63/068H04L63/20
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,407,726
App. No.
17/335,121
Granted
Sep 2, 2025
Kind
B2
Abstract

This disclosure relates to enhanced overlay network-based transport of traffic to and from customer branch office locations, facilitated through the use of the Internet-based overlay routing. A method of selecting an ingress edge region of the overlay network begins by mapping a service hostname to an IKEv2 destination of an outer IPsec tunnel associated with a first overlay network edge. An IKEv2 session is established from the first overlay network edge to the customer router. Upon tunnel establishment, a secondary lookup is performed to determine whether the first overlay network edge is an appropriate ingress region. Based on a response to the secondary lookup, a IKEv2 redirect is issued to a second overlay network edge. A new tunnel is then established from the second overlay network edge to the customer router. Thereafter, an additional lookup may also be performed to determine whether the second overlay network edge remains an appropriate ingress region.

Claims (14)

1. A method of selecting an ingress edge region of an Internet-based overlay network, the overlay network having an authoritative domain name service (DNS), comprising:

mapping, using the authoritative DNS, a service hostname to a first overlay network edge;

establishing a first destination tunnel from the first overlay network edge to a customer router;

upon establishment of the first destination tunnel, receiving one or more connectivity-related messages from the customer router;

re-mapping the service hostname to determine whether the first overlay network edge remains an appropriate ingress region for the first destination tunnel, wherein re-mapping includes intentionally dropping a response to at least one connectivity-related message from the customer router, thereby triggering the customer router to initiate a new lookup of the service hostname at the authoritative DNS;

when a result of the re-mapping determines that the first overlay network edge is not an appropriate ingress edge region for the first destination tunnel but a second overlay network edge is an appropriate ingress edge region, redirecting from the first overlay network edge to the second overlay network edge; and

establishing a second destination tunnel from the second overlay network edge to the customer router.

2. The method as described in claim 1 , wherein re-mapping includes performing one or more lookups to the authoritative DNS to determine whether the first overlay network edge remains an appropriate ingress region for the first destination tunnel.

3. The method as described in claim 1 , wherein the one or more connectivity-related messages are one or more liveness probes.

4. The method as described in claim 1 , wherein the first destination tunnel is an IKEv2 destination of an outer IPsec tunnel associated with the first overlay network edge.

5. The method as described in claim 1 , wherein redirecting to the second overlay edge network uses an IKEv2 redirect notify message.

6. The method as described in claim 1 , wherein the first and second overlay network edges are associated with distinct geographic regions.

7. The method as described in claim 1 , wherein the Internet-based overlay network is a content delivery network (CDN) and the first and second overlay network edge are collections of CDN edge servers.

8. The method as described in claim 3 , wherein the liveness probes are IP-SLA probes.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 21, 2021
From: RUEL, RYAN; FARAHMAND, FARDAD; WILLIAMS, BRANDON O.
To: AKAMAI TECHNOLOGIES, INC.
Reel/Frame 057539/0478 →
Continuity (3)
Continuation 15392649 · Dec 28, 2016
Provisional Application 62273479 · Dec 31, 2015
Related Publication 20210288865A1 · Sep 16, 2021
References Cited (7)
US 6742044B1 · Aviani · 2004 [cited by examiner]
US 20060156402A1 · Stone · 2006 [cited by examiner]
US 20070047446A1 · Dalal · 2007 [cited by examiner]
US 20080132224A1 · Gallagher · 2008 [cited by examiner]
US 20100142447A1 · Schlicht · 2010 [cited by examiner]
US 20130089093A1 · Bacthu · 2013 [cited by examiner]
US 20170064749A1 · Jain · 2017 [cited by examiner]