CN103560948A - Communication method, device and system between virtual machines - Google Patents

Communication method, device and system between virtual machines Download PDF

Info

Publication number
CN103560948A
CN103560948A CN201310536118.1A CN201310536118A CN103560948A CN 103560948 A CN103560948 A CN 103560948A CN 201310536118 A CN201310536118 A CN 201310536118A CN 103560948 A CN103560948 A CN 103560948A
Authority
CN
China
Prior art keywords
virtual machine
message
user
machine
identification information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201310536118.1A
Other languages
Chinese (zh)
Other versions
CN103560948B (en
Inventor
田新雪
马书惠
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China United Network Communications Group Co Ltd
Original Assignee
China United Network Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China United Network Communications Group Co Ltd filed Critical China United Network Communications Group Co Ltd
Priority to CN201310536118.1A priority Critical patent/CN103560948B/en
Publication of CN103560948A publication Critical patent/CN103560948A/en
Application granted granted Critical
Publication of CN103560948B publication Critical patent/CN103560948B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Computer And Data Communications (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Storage Device Security (AREA)

Abstract

The invention provides a communication method, device and system between virtual machines. The communication method includes the steps that a first physical machine receives a message sent by the source virtual machine belonging to a first user through a first virtual network card, a message header comprises source virtual machine first identification information and objective virtual machine second identification information, a load is encrypted by the first virtual network card through a first secret key which is arranged in the first virtual network card and allocated for the first user, pre-stored user registration information is inquired, if it is judged that the source virtual machine and the objective virtual machine belong to the same user, routing information is inquired according to second identification information to enable the message to be sent to a second physical machine, and the second physical machine inquires locally-stored virtual machine user information according to the second identification information to send the message to a second virtual network card so as to enable the message to be decrypted by the second virtual network card through an internally-arranged first secret key to be sent to the objective virtual machine. The safety performance of communication between the virtual machines which belong to the same user and are arranged on the different physical machines is improved.

Description

Communication means between virtual machine, equipment and system
Technical field
The embodiment of the present invention relates to communication technical field, relates in particular to communication means, equipment and system between a kind of virtual machine.
Background technology
Along with the fast development of virtual machine technology and cloud treatment technology, in each physical machine in cloud storage, can dispose many virtual machines, each user can rent the virtual machine being deployed in different physical machine as required.In actual applications, Radix Angelicae Sinensis belongs to same user and is deployed in while needing to communicate between the virtual machine in different physical machine, because communication message can be through in different physical machine, increased the divulging a secret property of information, in order to guarantee to belong to same user and be deployed in the communication security between the virtual machine in different physical machine, need a kind of processing method of correspondence badly.
Summary of the invention
For the above-mentioned defect of prior art, the embodiment of the present invention provides communication means, equipment and the system between a kind of virtual machine.
One aspect of the present invention provides the communication means between a kind of virtual machine, comprising:
The first physical machine receives the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user;
The user's registration information of described the first physical machine inquiry pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
The present invention provides the communication means between a kind of virtual machine on the other hand, comprising:
The second physical machine receives the message that the first physical machine sends, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored,
Described the second physical machine sends to described message on the second Microsoft Loopback Adapter corresponding with described target virtual machine according to the virtual machine user information of the local storage of described the second identification information inquiry, so that described the second Microsoft Loopback Adapter is applied after built-in described the first key is decrypted processing to described message, sends to described target virtual machine.
Another aspect of the invention provides a kind of the first physical machine, comprising:
The first receiver module, for receive the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user,
The first sending module, for inquiring about the user's registration information of pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
Further aspect of the present invention provides a kind of the second physical machine, comprising:
The second receiver module, the message sending for receiving the first physical machine, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored,
The second sending module, for according to the virtual machine user information of the local storage of described the second identification information inquiry, described message being sent to second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
Another aspect of the invention provides the communication system between a kind of virtual machine, comprising: the first above-mentioned physical machine and the second physical machine.
Communication means between the virtual machine that the embodiment of the present invention provides, equipment and system, the first physical machine receives the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of this message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of this message is applied the first built-in key by the first Microsoft Loopback Adapter and is encrypted, this first key is that virtual machine monitor is first user configuration in advance, then the first physical machine is inquired about the user's registration information of pre-stored, if judgement knows that source virtual machine and target virtual machine are attributed to same user, according to the routing iinformation of the second identification information inquiry pre-stored, message is sent to second physical machine at target virtual machine place, the second physical machine is according to the virtual machine user information of the local storage of the second identification information inquiry, message is sent on the second Microsoft Loopback Adapter corresponding with target virtual machine, so that applying after the first built-in key is decrypted processing to message, the second Microsoft Loopback Adapter sends to target virtual machine.Thereby improved, belong to same user and be deployed in the fail safe of communicating by letter between the virtual machine in different physical machine, while avoiding message through different physical machine, by malicious user, being attacked.
Accompanying drawing explanation
The flow chart of the communication means between a kind of virtual machine that Fig. 1 provides for the embodiment of the present invention;
The flow chart of the communication means between the another kind of virtual machine that Fig. 2 provides for the embodiment of the present invention;
The structural representation of first physical machine that Fig. 3 provides for the embodiment of the present invention;
The structural representation of second physical machine that Fig. 4 provides for the embodiment of the present invention;
The structural representation of the communication system between a kind of virtual machine that Fig. 5 provides for the embodiment of the present invention.
Embodiment
The flow chart of the communication means between a kind of virtual machine that Fig. 1 provides for the embodiment of the present invention, as shown in Figure 1, the method comprises:
Step 100, the first physical machine receives the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user,
The first Microsoft Loopback Adapter corresponding to all virtual machine configurations of renting in the first physical machine for first user in the first physical machine, the pre-stored identification information that is deployed in the first physical machine and belongs to all virtual machines of first user on the first Microsoft Loopback Adapter, this first Microsoft Loopback Adapter is for the treatment of being deployed in the first physical machine and belonging to the virtual machine of first user and the communication interaction between other virtual machines.
Particularly, the source virtual machine that belongs to first user in the first physical machine need to communicate when mutual with target virtual machine, the first Microsoft Loopback Adapter to correspondence sends message, the heading of this message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, after the message that the first Microsoft Loopback Adapter reception sources virtual machine sends, according to pre-stored being deployed in the first physical machine and belonging to the identification information of all virtual machines of first user of the second identification information inquiry of target virtual machine, if the second identification information that does not comprise target virtual machine is known in judgement, determine that target virtual machine is not the virtual machine that is deployed in the first physical machine and belongs to first user, target virtual machine may be for being deployed in other physical machine and being attributed to the virtual machine of first user so, or be the virtual machine that is deployed in the first physical machine or in other physical machine and belongs to other users, now, the first Microsoft Loopback Adapter application is built-in, virtual machine monitor is in advance for the first key of first user configuration is encrypted the loading section of this message, and the message after encryption is sent to the first physical machine.
It should be noted that, after the message that the first Microsoft Loopback Adapter reception sources virtual machine sends, according to pre-stored being deployed in the first physical machine and belonging to the identification information of all virtual machines of first user of the second identification information inquiry of target virtual machine, if the second identification information that wherein comprises target virtual machine is known in judgement, determine that target virtual machine is also the virtual machine that is deployed in the first physical machine and belongs to first user, source virtual machine need not be through different physical machine from the communication between target virtual machine, the possibility of divulging a secret is lower, the first Microsoft Loopback Adapter directly forwards the packet to target virtual machine, no longer be encrypted, this part is not the technical problem to be solved in the present invention, only make a brief description and illustrate.
Step 101, the user's registration information of described the first physical machine inquiry pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
The first physical machine is resolved and is obtained the first identification information of source virtual machine and the second identification information of target virtual machine in heading the message receiving by the first Microsoft Loopback Adapter, then inquire about the user's registration information of pre-stored, wherein, it is all that user's registration information comprises that each user rents, be deployed in the identification information of the virtual machine in each physical machine, if the first physical machine judgement knows that source virtual machine and target virtual machine are attributed to same user, according to the routing iinformation of the second identification information inquiry pre-stored of target virtual machine know the second identification information with target virtual machine corresponding be the IP address of the second physical machine, then according to the IP address of the second physical machine, the message after encryption is sent to the second physical machine.
The second physical machine receives after the message of the first physical machine transmission, according to the virtual machine user information of the local storage of the second identification information inquiry of target virtual machine in heading know the second identification information with target virtual machine corresponding be the identification information of the second Microsoft Loopback Adapter, then the second physical machine sends to this message on the second Microsoft Loopback Adapter corresponding with target virtual machine according to the identification information of the second Microsoft Loopback Adapter.Because source virtual machine and target virtual machine are attributed to same user, be that target virtual machine is also attributed to first user, the second Microsoft Loopback Adapter be all virtual machines of renting in the second physical machine by first user in the second physical machine the Microsoft Loopback Adapter of correspondence configuration, in the second Microsoft Loopback Adapter, be built-in with the first key that virtual machine monitor configures for first user in advance, the function of the second Microsoft Loopback Adapter is identical with the effect of the first Microsoft Loopback Adapter in above-mentioned steps, repeats no more herein.Thereby when the second Microsoft Loopback Adapter receives after the message of the encryption that the second physical machine sends, apply the first built-in key this message is decrypted to processing, and the message after decryption processing is sent to target virtual machine.
Communication means between the virtual machine that the embodiment of the present invention provides, the first physical machine receives the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of this message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of this message is applied the first built-in key by the first Microsoft Loopback Adapter and is encrypted, this first key is that virtual machine monitor is first user configuration in advance, then the first physical machine is inquired about the user's registration information of pre-stored, if judgement knows that source virtual machine and target virtual machine are attributed to same user, according to the routing iinformation of the second identification information inquiry pre-stored, message is sent to second physical machine at target virtual machine place, the second physical machine is according to the virtual machine user information of the local storage of the second identification information inquiry, message is sent on the second Microsoft Loopback Adapter corresponding with target virtual machine, so that applying after the first built-in key is decrypted processing to message, the second Microsoft Loopback Adapter sends to target virtual machine.Thereby improved, belong to same user and be deployed in the fail safe of communicating by letter between the virtual machine in different physical machine, while avoiding message through different physical machine, by malicious user, being attacked.
The flow chart of the communication means between the another kind of virtual machine that Fig. 2 provides for the embodiment of the present invention, as shown in Figure 2, the method comprises:
Step 200, the second physical machine receives the message that the first physical machine sends, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored,
Step 201, described the second physical machine sends to described message on the second Microsoft Loopback Adapter corresponding with described target virtual machine according to the virtual machine user information of the local storage of described the second identification information inquiry, so that described the second Microsoft Loopback Adapter is applied after built-in described the first key is decrypted processing to described message, sends to described target virtual machine.
The concrete handling process of each step in communication means between the virtual machine that the present embodiment provides, can be referring to the embodiment of the method shown in above-mentioned Fig. 1, and it realizes principle and technique effect is similar, repeats no more herein.
One of ordinary skill in the art will appreciate that: all or part of step that realizes said method embodiment can complete by the relevant hardware of program command, aforesaid program can be stored in a computer read/write memory medium, this program, when carrying out, is carried out the step that comprises said method embodiment; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CDs.
The structural representation of first physical machine that Fig. 3 provides for the embodiment of the present invention, as shown in Figure 3, this first physical machine comprises: the first receiver module 11 and the first sending module 12, wherein, the first receiver module 11 is for receiving the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user, the first sending module 12 is for inquiring about the user's registration information of pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
Function and the handling process of each module in the first physical machine that the present embodiment provides, can be referring to the embodiment of the method shown in above-mentioned Fig. 1, and it realizes principle and technique effect is similar, repeats no more herein.
The structural representation of second physical machine that Fig. 4 provides for the embodiment of the present invention, as shown in Figure 4, this second physical machine comprises: the second receiver module 21 and the second sending module 22, wherein, the message that the second receiver module 21 sends for receiving the first physical machine, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored, the second sending module 22, for according to the virtual machine user information of the local storage of described the second identification information inquiry, described message being sent to second Microsoft Loopback Adapter corresponding with described target virtual machine, sends to described target virtual machine so that described the second Microsoft Loopback Adapter is applied after built-in described the first key is decrypted processing to described message.
Function and the handling process of each module in the second physical machine that the present embodiment provides, can be referring to the embodiment of the method shown in above-mentioned Fig. 2, and it realizes principle and technique effect is similar, repeats no more herein.
The structural representation of the communication system between a kind of virtual machine that Fig. 5 provides for the embodiment of the present invention, as shown in Figure 5, this system comprises: the first physical machine 1 and the second physical machine 2, wherein, the first physical machine 1 and the second physical machine 2 provide for the above embodiment of the present invention the first physical machine and the second physical machine.
The function of each module and handling process in communication system between the virtual machine that the present embodiment provides, can be referring to the embodiment of the method shown in above-mentioned, and it realizes principle and technique effect is similar, repeats no more herein.
Finally it should be noted that: above embodiment only, in order to technical scheme of the present invention to be described, is not intended to limit; Although the present invention is had been described in detail with reference to previous embodiment, those of ordinary skill in the art is to be understood that: its technical scheme that still can record aforementioned each embodiment is modified, or part technical characterictic is wherein equal to replacement; And these modifications or replacement do not make the essence of appropriate technical solution depart from the spirit and scope of various embodiments of the present invention technical scheme.

Claims (5)

1. the communication means between virtual machine, is characterized in that, comprising:
The first physical machine receives the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user;
The user's registration information of described the first physical machine inquiry pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
2. the communication means between virtual machine, is characterized in that, comprising:
The second physical machine receives the message that the first physical machine sends, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored,
Described the second physical machine sends to described message on the second Microsoft Loopback Adapter corresponding with described target virtual machine according to the virtual machine user information of the local storage of described the second identification information inquiry, so that described the second Microsoft Loopback Adapter is applied after built-in described the first key is decrypted processing to described message, sends to described target virtual machine.
3. first physical machine, is characterized in that, comprising:
The first receiver module, for receive the message of the source virtual machine transmission that belongs to first user by the first Microsoft Loopback Adapter, the heading of described message comprises the first identification information of described source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by described the first Microsoft Loopback Adapter and is encrypted, wherein, described the first key is that virtual machine monitor is described first user configuration in advance, wherein, described target virtual machine is not the virtual machine that is deployed in described the first physical machine and belongs to described first user,
The first sending module, for inquiring about the user's registration information of pre-stored, if judgement knows that described source virtual machine and described target virtual machine are attributed to same user, according to the routing iinformation of described the second identification information inquiry pre-stored, described message is sent to second physical machine at described target virtual machine place, the virtual machine user information of storing according to described second identification information inquiry this locality for described the second physical machine, described message is sent on the second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
4. second physical machine, is characterized in that, comprising:
The second receiver module, the message sending for receiving the first physical machine, wherein, the heading of described message comprises the first identification information of source virtual machine and the second identification information of target virtual machine, the loading section of described message is applied the first built-in key by the first Microsoft Loopback Adapter in described the first physical machine and is encrypted, wherein, described the first key is that virtual machine monitor is in advance for the first user of described source virtual machine ownership configures, wherein, described message is that described the first physical machine is known after described source virtual machine and described target virtual machine are attributed to same user and sent to described the second physical machine according to the user's registration information judgement of pre-stored,
The second sending module, for according to the virtual machine user information of the local storage of described the second identification information inquiry, described message being sent to second Microsoft Loopback Adapter corresponding with described target virtual machine, so that applying after built-in described the first key is decrypted processing to described message, described the second Microsoft Loopback Adapter sends to described target virtual machine.
5. the communication system between virtual machine, is characterized in that, comprising: the first physical machine as claimed in claim 3, and the second physical machine as claimed in claim 4.
CN201310536118.1A 2013-11-01 2013-11-01 Communication means, equipment and system between virtual machine Active CN103560948B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201310536118.1A CN103560948B (en) 2013-11-01 2013-11-01 Communication means, equipment and system between virtual machine

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201310536118.1A CN103560948B (en) 2013-11-01 2013-11-01 Communication means, equipment and system between virtual machine

Publications (2)

Publication Number Publication Date
CN103560948A true CN103560948A (en) 2014-02-05
CN103560948B CN103560948B (en) 2016-11-02

Family

ID=50015100

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201310536118.1A Active CN103560948B (en) 2013-11-01 2013-11-01 Communication means, equipment and system between virtual machine

Country Status (1)

Country Link
CN (1) CN103560948B (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109412951A (en) * 2018-10-12 2019-03-01 华为技术有限公司 A kind of method and apparatus sending routing iinformation
CN109525477A (en) * 2018-09-30 2019-03-26 华为技术有限公司 Communication means, device and system in data center between virtual machine
CN113162835A (en) * 2021-02-26 2021-07-23 北京百度网讯科技有限公司 Method, device, equipment and storage medium for accessing service resource

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102571698A (en) * 2010-12-17 2012-07-11 中国移动通信集团公司 Access authority control method, system and device for virtual machine
CN103023920A (en) * 2012-12-27 2013-04-03 华为技术有限公司 Virtual machine safety protection method and virtual machine safety protection device

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102571698A (en) * 2010-12-17 2012-07-11 中国移动通信集团公司 Access authority control method, system and device for virtual machine
CN103023920A (en) * 2012-12-27 2013-04-03 华为技术有限公司 Virtual machine safety protection method and virtual machine safety protection device

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
李小伟: "跨域虚拟机加密通信技术方案设计与实现", 《硕士学位论文》, 20 December 2012 (2012-12-20) *

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109525477A (en) * 2018-09-30 2019-03-26 华为技术有限公司 Communication means, device and system in data center between virtual machine
WO2020063528A1 (en) * 2018-09-30 2020-04-02 华为技术有限公司 Method, apparatus and system for communication between virtual machines in data center
CN109412951A (en) * 2018-10-12 2019-03-01 华为技术有限公司 A kind of method and apparatus sending routing iinformation
CN109412951B (en) * 2018-10-12 2021-06-22 华为技术有限公司 Method and device for sending routing information
CN113542128A (en) * 2018-10-12 2021-10-22 华为技术有限公司 Method and device for sending routing information
US11374860B2 (en) 2018-10-12 2022-06-28 Huawei Technologies Co., Ltd. Method and apparatus for sending routing information for network nodes
US11863438B2 (en) 2018-10-12 2024-01-02 Huawei Technologies Co., Ltd. Method and apparatus for sending routing information for network nodes
CN113162835A (en) * 2021-02-26 2021-07-23 北京百度网讯科技有限公司 Method, device, equipment and storage medium for accessing service resource
CN113162835B (en) * 2021-02-26 2022-08-09 北京百度网讯科技有限公司 Method, device, equipment and storage medium for accessing service resource

Also Published As

Publication number Publication date
CN103560948B (en) 2016-11-02

Similar Documents

Publication Publication Date Title
US11849048B2 (en) Mutually authenticated ECDHE key exchange for a device and a network using multiple PKI key pairs
US8494168B1 (en) Locating cryptographic keys stored in a cache
CN103532985A (en) Communication method, equipment and system between virtual machines
CN103095847B (en) Cloud storage safety-ensuring method and system thereof
EP2947811A1 (en) Method, server, host and system for protecting data security
CN107005836A (en) Subscriber identity module pond
CN104025544B (en) Sensitive information leakage prevention system, and sensitive information leakage prevention method
CN103441997A (en) Content sharing method, device and system
WO2010069617A1 (en) A key distribution scheme for networks of information
CN105101183A (en) Method and system for protecting private contents at mobile terminal
CN104753674A (en) Application identity authentication method and device
CN103607449A (en) Method, device and system for enterprise internal network physical machine to visit cloud storage virtual machine
CN106330968B (en) Identity authentication method and device for access equipment
CN103530581A (en) Hard disk encrypting method and operation system
CN110856170B (en) Data transmission method and device and communication system of Internet of things
CN109039997B (en) Secret key obtaining method, device and system
CN103560948A (en) Communication method, device and system between virtual machines
CN101945010B (en) Business license processing method, device and system
CN102404363B (en) A kind of access method and device
CN103530169A (en) Method for protecting virtual machine files and user terminal
CN103873245A (en) Virtual machine system data encryption method and apparatus
CN101291345A (en) Controlling method of storage resource access, IP storage system, memory apparatus and host
CN107547251B (en) Equipment management method, device and system
CN103049693B (en) Method, Apparatus and system that a kind of application program uses
CN106712934B (en) Identification information generation method and device

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant