IP Library › Granted Patent US 11,223,603
Granted Patent B2
US 11,223,603 · App. 17/463,338 · Granted Jan 11, 2022

Private virtual network replication of cloud databases

Inventors: Robert Bengt Benedikt Gernhardt (Seattle, WA); Mikhail Kazhamiaka (Bellevue, WA); Eric Robinson (Sammamish, WA); Rodney Weaver (Kenmore, WA)
Assignee: Snowflake Inc.
H04L63/0272G06F16/27H04L63/0281H04L63/0435
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,223,603
App. No.
17/463,338
Granted
Jan 11, 2022
Kind
B2
Abstract

A network device communication system can configure network devices (e.g., a primary and secondary database) to send and receive sequences messages, such as replication data, over a channel comprising a plurality of private network nodes. The messages can be generated and encrypted using one or more key pairs and changing wrapping replication keys to send and receive the messages between different types of database deployments.

Claims (44)

1. A method comprising:

identifying, by a first virtual cloud system, a virtual private network connected to the first virtual cloud system and a second virtual cloud system, the first virtual cloud system being hosted by one or more first computer devices and the second virtual cloud system being hosted by one or more second computer devices, the virtual private network comprising a first node that is connected to the one or more first computer devices and a second node that is connected to the one or more second computer devices;

generating, by the first virtual cloud system, database items to be transmitted to the second virtual cloud system;

determining that the database items are for transmission to the second virtual cloud system through the virtual private network; and

in response to determining that the database items are for transmission to the second virtual cloud system, exporting, by the first virtual cloud system, the database items to the virtual private network for transmission to the second virtual cloud system, the database items being transmitted to the second virtual cloud system using the first node and the second node of the virtual private network.

2. The method of claim 1 , further comprising:

generating additional database items by the first virtual cloud system;

determining that the additional database items are for transmission to a third virtual cloud system; and

in response to determining that the additional database items are for transmission to the third virtual cloud system, transmitting the additional database items over the Internet.

3. The method of claim 2 , wherein the additional database items are transmitted over the Internet not using the virtual private network.

4. The method of claim 2 , wherein the additional database items are encrypted and transmitted over the Internet using Transport Security Layer (TLS).

5. The method of claim 1 , wherein the first virtual cloud system connects to the virtual private network using one or more of: a hosted connection, a direct port connection, a physical connection.

6. The method of claim 5 , wherein the physical connection is a physical cord connection from a hardware device of the first virtual cloud system and the first node of the virtual private network.

7. The method of claim 1 , wherein the second virtual cloud system connects to the virtual private network using one or more of: a hosted connection, a direct port connection, a physical connection.

8. The method of claim 1 , wherein the database items are received by a network load balancer in the second virtual cloud system.

9. The method of claim 8 , wherein the second virtual cloud system distributes, using the network load balancer, the database items to one or more servers of in the second virtual cloud system.

10. The method of claim 1 , further comprising:

receiving, by the first virtual cloud system, further database items from the second virtual cloud system via the first node and the second node of the virtual private network.

11. The method of claim 1 , wherein the one or more first computer devices of the first virtual cloud system are independent and remote from the one or more first computer devices of the second virtual cloud system.

12. A system comprising:

one or more processors of a machine; and

at least one memory storing instructions that, when executed by the one or more processors, cause the machine to perform operations comprising:

identifying, by a first virtual cloud system, a virtual private network connected to the first virtual cloud system and a second virtual cloud system, the first virtual cloud system being hosted by one or more first computer devices and the second virtual cloud system being hosted by one or more second computer devices, the virtual private network comprising a first node that is connected to the one or more first computer devices and a second node that is connected to the one or more second computer devices;

generating, by the first virtual cloud system, database items to be transmitted to the second virtual cloud system;

determining that the database items are for transmission to the second virtual cloud system through the virtual private network; and

in response to determining that the database items are for transmission to the second virtual cloud system, exporting, by the first virtual cloud system, the database items to the virtual private network for transmission to the second virtual cloud system, the database items being transmitted to the second virtual cloud system using the first node and the second node of the virtual private network.

13. The system of claim 12 , the operations further comprising:

generating additional database items by the first virtual cloud system;

determining that the additional database items are for transmission to a third virtual cloud system; and

in response to determining that the additional database items are for transmission to the third virtual cloud system, transmitting the additional database items over the Internet.

14. The system of claim 13 , wherein the additional database items are transmitted over the Internet not using the virtual private network.

15. The system of claim 14 , wherein the additional database items are encrypted and transmitted over the Internet using Transport Security Layer (TLS).

16. The system of claim 12 , wherein the first virtual cloud system connects to the virtual private network using one or more of: a hosted connection, a direct port connection, a physical connection.

17. A non-transitory computer-storage medium embodying instructions that, when executed by a machine, cause the machine to perform operations comprising:

identifying, by a first virtual cloud system, a virtual private network connected to the first virtual cloud system and a second virtual cloud system, the first virtual cloud system being hosted by one or more first computer devices and the second virtual cloud system being hosted by one or more second computer devices, the virtual private network comprising a first node that is connected to the one or more first computer devices and a second node that is connected to the one or more second computer devices;

generating, by the first virtual cloud system, database items to be transmitted to the second virtual cloud system;

determining that the database items are for transmission to the second virtual cloud system through the virtual private network; and

in response to determining that the database items are for transmission to the second virtual cloud system, exporting, by the first virtual cloud system, the database items to the virtual private network for transmission to the second virtual cloud system, the database items being transmitted to the second virtual cloud system using the first node and the second node of the virtual private network.

18. The non-transitory computer-storage medium of claim 17 , the operations further comprising:

generating additional database items by the first virtual cloud system;

determining that the additional database items are for transmission to a third virtual cloud system; and

in response to determining that the additional database items are for transmission to the third virtual cloud system, transmitting the additional database items over the Internet.

19. The non-transitory computer-storage medium of claim 18 , wherein the additional database items are transmitted over the Internet not using the virtual private network.

20. The non-transitory computer-storage medium of claim 19 , wherein the additional database items are encrypted and transmitted over the Internet using Transport Security Layer (TLS).

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 31, 2021
From: GERNHARDT, ROBERT BENGT BENEDIKT; KAZHAMIAKA, MIKHAIL; ROBINSON, ERIC; WEAVER, RODNEY
To: SNOWFLAKE INC.
Reel/Frame 057347/0210 →
Continuity (5)
Continuation 17219716 · Mar 31, 2021
Continuation 17162919 · Jan 29, 2021
Continuation 17086258 · Oct 30, 2020
Continuation 16862996 · Apr 30, 2020
Related Publication 20210392114A1 · Dec 16, 2021
Cited By (1)
US 12,537,799