IP Library › Granted Patent US 11,621,869
Granted Patent B2
US 11,621,869 · App. 17/408,151 · Granted Apr 4, 2023

Enabling access to dedicated resources in a virtual network using top of rack switches

Inventors: Neeraj Motwani (Sammamish, WA); Rishabh Tewari (Sammamish, WA); Pranjal Shrivastava (Bellevue, WA); Deepak Bansal (Bellevue, WA); Vaibhav Kumar (Kirkland, WA); Nisheeth Srivastava (Sammamish, WA); Abhishek Shukla (Redmond, WA); Rangaprasad Narasimhan (Sammamish, WA); Vinayak Uppunda Padiyar (Bellevue, WA); James Boerner (Marysville, WA); Avijit Gupta (Sammamish, WA)
Assignee: Microsoft Technology Licensing, LLC
H04L12/4633G06F9/45558H04L12/4641H04L12/66H04L45/64G06F2009/45595
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,621,869
App. No.
17/408,151
Granted
Apr 4, 2023
Kind
B2
Abstract

Systems and methods for enabling access to dedicated resources in a virtual network using top of rack switches are disclosed. A method includes a virtual filtering platform encapsulating at least one packet, received from a virtual machine, to generate at least one encapsulated packet comprising a virtual network identifier (VNI). The method further includes a TOR switch: (1) receiving the at least one encapsulated packet and decapsulating the at least one encapsulated packet to create at least one decapsulated packet, (2) using the VNI to identify a virtual routing and forwarding artifact to determine a virtual local area network interface associated with the dedicated hardware portion, and (3) transmitting the at least one decapsulated packet to the dedicated hardware portion based on at least one policy provided by a controller, where the at least one policy comprises information related to a customer of the service provider.

Claims (28)

1. A method for a distributed computing system, offered by a service provider, comprising a first cloud hardware portion and a second cloud hardware portion, different from the first cloud hardware portion, wherein the first cloud hardware portion is coupled to the second cloud hardware portion via a top of rack (TOR) switch, the method comprising:

receiving by the TOR switch at least one encapsulated packet comprising a virtual network identifier (VNI) and decapsulating the at least one encapsulated packet to create at least one decapsulated packet;

using the VNI to identify a virtual routing and forwarding artifact to determine a virtual local area network interface associated with the second cloud hardware portion; and

transmitting by the TOR switch the at least one decapsulated packet to the second cloud hardware portion based on at least one policy provided by a controller, wherein the at least one policy comprises information related to a customer of the service provider including information about the customer's ability to access the second cloud hardware portion.

2. The method of claim 1 , wherein the second cloud hardware portion comprises at least one storage device comprising at least one file.

3. The method of claim 2 , wherein the at least one policy specifies whether the customer can access the at least one file.

4. The method of claim 1 , wherein the controller comprises a software-defined network (SDN) controller, and wherein the first cloud hardware portion comprises a shared-tenancy hardware portion and the second cloud hardware portion comprises a dedicated hardware portion located on premises associated with the customer.

5. The method of claim 1 , wherein the at least one policy specifies a next hop route.

6. The method of claim 4 , wherein the SDN controller is configured to allocate a unique virtual network identifier to each virtual network associated with the TOR switch.

7. The method of claim 1 , wherein the virtual routing and forwarding artifact comprises configuration information specific to the customer.

8. A method for a distributed computing system, offered by a service provider, comprising a first cloud hardware portion and a second cloud hardware portion, different from the first cloud hardware portion, wherein the first cloud hardware portion is coupled to the second cloud hardware portion via a top of rack (TOR) switch, wherein the distributed computing system further comprises a virtual machine, hosted by a host server in the first cloud hardware portion, the method comprising:

encapsulating at least one packet, received from the virtual machine, to generate at least one encapsulated packet comprising a virtual network identifier (VNI); and

the TOR switch: (1) receiving the at least one encapsulated packet and decapsulating the at least one encapsulated packet to create at least one decapsulated packet, (2) using the VNI to identify a virtual routing and forwarding artifact to determine a virtual local area network interface associated with the second cloud hardware portion, and (3) transmitting the at least one decapsulated packet to the second cloud hardware portion based on at least one policy provided by a controller, wherein the at least one policy comprises information related to a customer of the service provider including information about the customer's ability to access the second cloud hardware portion.

9. The method of claim 8 , wherein the second cloud hardware portion comprises at least one storage device comprising at least one file.

10. The method of claim 9 , wherein the at least one policy specifies whether the customer can access the at least one file.

11. The method of claim 8 , wherein the controller comprises a software-defined network (SDN) controller.

12. The method of claim 11 , wherein the SDN controller is configured to allocate a unique virtual network identifier to each virtual network associated with the TOR switch, including a virtual network associated with a VPN gateway.

13. The method of claim 8 , wherein the virtual routing and forwarding artifact comprises configuration information specific to the customer.

14. A distributed computing system, offered by a service provider, comprising:

a first cloud hardware portion comprising a host server;

a second cloud hardware portion, different from the first cloud hardware portion; and

a top of rack (TOR) switch configured to allow exchange of packets between the first cloud hardware portion and the second cloud hardware portion, wherein the TOR switch is configured to allow the exchange of packets based on at least one policy specified by a controller associated with the first cloud hardware portion, and wherein the TOR switch further configured to: (1) receive at least one encapsulated packet comprising a virtual network identifier (VNI) and decapsulate the at least one encapsulated packet to create at least one decapsulated packet, (2) use the VNI to identify a virtual routing and forwarding artifact to determine a virtual local area network interface associated with the second cloud hardware portion, and (3) transmit the at least one decapsulated packet to the second cloud hardware portion based on the at least one policy, and wherein the at least one policy comprises information related to a customer of the service provider including information about the customers ability to access the second cloud hardware portion.

15. The distributed computing system of claim 14 , wherein the second cloud hardware portion comprises at least one storage device comprising at least one file.

16. The distributed computing system of claim 15 , wherein the at least one policy specifies whether the customer can access the at least one file.

17. The distributed computing system of claim 16 , wherein the controller comprises a software-defined network (SDN) controller.

18. The distributed computing system of claim 17 , wherein the at least one policy specifies a next hop route.

19. The distributed computing system of claim 18 , wherein the SDN controller is configured to allocate a unique virtual network identifier to each virtual network associated with the TOR switch.

20. The distributed computing system of claim 19 , wherein the virtual routing and forwarding artifact comprises configuration information specific to the customer.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 20, 2021
From: GUPTA, AVIJIT; SHUKLA, ABHISHEK; BANSAL, DEEPAK; BOERNER, JAMES; MOTWANI, NEERAJ; SRIVASTAVA, NISHEETH; SHRIVASTAVA, PRANJAL; NARASIMHAN, RANGAPRASAD; TEWARI, RISHABH; KUMAR, VAIBHAV; PADIYAR, VINAYAK UPPUNDA
To: MICROSOFT TECHNOLOGY LICENSING, LLC
Reel/Frame 057249/0352 →
Continuity (3)
Continuation 16511606 · Jul 15, 2019
Provisional Application 62839435 · Apr 26, 2019
Related Publication 20220038308A1 · Feb 3, 2022
Cited By (1)
US 12,592,864