IP Library Granted Patent US 9,749,148
Granted Patent B2
US 9,749,148 · App. 13/955,517 · Granted Aug 29, 2017

Systems and methods for load balancing non-IP devices

Inventors: Janraj CJ (Bangalore, IN); Jyotheesh Rao Kurma (Bangalore, IN)
Assignee: Citrix Systems, Inc.
H04L12/4641H04L29/08144H04L47/125H04L61/103H04L61/1511
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,749,148
App. No.
13/955,517
Granted
Aug 29, 2017
Kind
B2
Abstract

The present disclosure relates to methods and systems for providing load balancing for layer 2 devices. A device intermediary to a plurality of clients and a plurality of servers and a plurality of layer 2 devices establishes, for each layer 2 device, a first traffic domain corresponding to ingress traffic received from the plurality of clients and a second traffic domain of the device corresponding to ingress traffic received from the plurality of clients. The device associates a first virtual local area network (VLAN) with the first traffic domain and a second VLAN with the second traffic domain. The device establishes a plurality of services. Each service corresponds to a layer 2 device and includes a corresponding subnet internet protocol (SNIP) address hosted on the device. The device establishes a virtual server to load balance the plurality of services corresponding to each of the plurality of layer 2 devices.

Claims (25)

1. A method for a device intermediary to a plurality of clients and servers to load balance layer 2 devices, the method comprising:

(a) establishing, via a device intermediary to a plurality of clients and each of a plurality of servers and a plurality of layer 2 devices, for each layer 2 device of the plurality of layer 2 devices, a respective first traffic domain corresponding to ingress traffic received from the plurality of clients and a respective second traffic domain corresponding to egress traffic received from the plurality of servers;

(b) binding, via configuration of the device, for each layer 2 device of the plurality of layer 2 devices, a respective first virtual local area network (VLAN) to the respective first traffic domain of the layer 2 device and a respective second VLAN to the second traffic domain of the layer 2 device;

(c) creating, via configuration of the device, for each layer 2 device, a respective subnet internet protocol (SNIP) address in the respective second traffic domain corresponding to egress traffic of the layer 2 device;

(d) establishing, via configuration of the device, a plurality of services corresponding to the plurality of layer 2 devices, each service of the plurality of services established in a respective first traffic domain corresponding to ingress traffic of a respective layer 2 device of the plurality of layer 2 devices and configured such that the SNIP address corresponding to the layer 2 device is used as the IP address of the service; and

(e) establishing, via configuration of the device, a virtual server to load balance the plurality of services corresponding to the plurality of layer 2 devices, the virtual server bound to a virtual IP address to route traffic from the plurality of clients and the plurality of servers to the virtual server.

2. The method of claim 1 , further comprising load balancing, by a second virtual server of the device, requests from the plurality of clients across the plurality of servers separately from load balancing by the first virtual server requests and responses to be processed by the plurality of layer 2 devices.

3. The method of claim 1 , wherein step (e) further comprises establishing, by the device, the virtual server to receive network traffic from the plurality of clients and the plurality of servers.

4. The method of claim 1 , wherein step (e) further comprises binding, via configuration of the virtual server, the virtual server to the plurality of services associated with the plurality of layer 2 devices.

5. The method of claim 1 , wherein the plurality of layer 2 devices comprises firewall devices not addressable via internet protocol addresses.

6. The method of claim 1 , wherein each of the plurality of layer 2 devices is in communication with a corresponding first traffic domain using VLAN tagging based on a first VLAN identifier of the first VLAN.

7. The method of claim 1 , wherein each of the plurality of layer 2 devices is in communication with a corresponding second traffic domain using VLAN tagging based on a second VLAN identifier of the second VLAN.

8. A system to load balance layer 2 devices, the system comprising:

a device intermediary to a plurality of clients and each of a plurality of servers and a plurality of layer 2 devices;

wherein the device is configured to establish, for each layer 2 device, respective first traffic domain corresponding to ingress traffic received from the plurality of clients and a respective second traffic domain corresponding to egress traffic received from the plurality of servers;

wherein the device is configured to bind via a configuration of the device, for each layer 2 device, a first virtual local area network (VLAN) with the respective first traffic domain established by the device and a second VLAN with the respective second traffic domain established by the device;

wherein the device is configured to create, via a configuration of the device, for each layer 2 device, a respective subnet internet protocol (SNIP) address in the respective second traffic domain corresponding to egress traffic of the layer 2 device

wherein the device is configured to establish a plurality of services established on the device, each service of the plurality of services established in a respective first traffic domain corresponding to ingress traffic of a respective layer 2 device of the plurality of layer 2 devices and configured such that the SNIP address corresponding to the layer 2 device is used as the IP address of the service; and

wherein the device is configured to establish a virtual server on the device to load balance the plurality of services corresponding to the plurality of layer 2 devices, the virtual server bound to a virtual IP address to route traffic from the plurality of clients and the plurality of servers to the virtual server.

9. The system of claim 8 , wherein a second virtual server is established on the device to load balance requests from the plurality of clients across the plurality of servers separately from load balancing by the first virtual server requests and responses to be processed by the plurality of layer 2 devices.

10. The system of claim 8 , wherein the virtual server is configured to receive network traffic from the plurality of clients and the plurality of servers.

11. The system of claim 8 , wherein via configuration of the virtual server, the virtual server is bound to the plurality of services configured for the second traffic domains.

12. The method of claim 8 , wherein the plurality of layer 2 devices comprises firewall devices not addressable via internet protocol addresses.

13. The method of claim 8 , wherein each of the plurality of layer 2 devices is in communication with a corresponding first traffic domain using VLAN tagging based on a first VLAN identifier of the first VLAN.

14. The method of claim 8 , wherein each of the plurality of layer 2 devices is in communication with a corresponding second traffic domain using VLAN tagging based on a second VLAN identifier of the second VLAN.

Assignments (9)
PATENT SECURITY AGREEMENT Recorded Aug 15, 2025
From: CLOUD SOFTWARE GROUP, INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 072488/0172 →
SECURITY INTEREST Recorded May 24, 2024
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 067662/0568 →
RELEASE AND REASSIGNMENT OF SECURITY INTEREST IN PATENT (REEL/FRAME 062113/0001) Recorded Apr 14, 2023
From: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
To: CITRIX SYSTEMS, INC.; CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.)
Reel/Frame 063339/0525 →
PATENT SECURITY AGREEMENT Recorded Apr 14, 2023
From: CLOUD SOFTWARE GROUP, INC. (F/K/A TIBCO SOFTWARE INC.); CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 063340/0164 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 062113/0470 →
PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062112/0262 →
SECOND LIEN PATENT SECURITY AGREEMENT Recorded Oct 7, 2022
From: TIBCO SOFTWARE INC.; CITRIX SYSTEMS, INC.
To: GOLDMAN SACHS BANK USA, AS COLLATERAL AGENT
Reel/Frame 062113/0001 →
SECURITY INTEREST Recorded Sep 30, 2022
From: CITRIX SYSTEMS, INC.
To: WILMINGTON TRUST, NATIONAL ASSOCIATION
Reel/Frame 062079/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 29, 2013
From: CJ, JANRAJ; KURMA, JYOTHEESH RAO
To: CITRIX SYSTEMS, INC.
Reel/Frame 031498/0725 →
Continuity (1)
Related Publication 20150036493A1 · Feb 5, 2015