CN105284080B - The virtual network management method and data center systems of data center - Google Patents
The virtual network management method and data center systems of data center Download PDFInfo
- Publication number
- CN105284080B CN105284080B CN201480000195.8A CN201480000195A CN105284080B CN 105284080 B CN105284080 B CN 105284080B CN 201480000195 A CN201480000195 A CN 201480000195A CN 105284080 B CN105284080 B CN 105284080B
- Authority
- CN
- China
- Prior art keywords
- virtual
- physical server
- tenant
- physical
- local
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L12/00—Data switching networks
- H04L12/64—Hybrid switching systems
- H04L12/6418—Hybrid transport
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
Abstract
The embodiment of the invention provides the virtual network management method of data center and data center systems, this method comprises: determining the first physical server, the first interchanger and the first virtual network according to the resource occupation information of the business information of tenant and data center, wherein, first physical server is in multiple physical servers of the data center for creating the physical server of the first virtual machine VM of the tenant, first interchanger is the physical switches of first physical server access, which is virtual network belonging to the VM of the tenant;The local virtual LAN ID of the first VM is determined according to the local virtual LAN ID occupied information of first interchanger;The first VM is created on first physical server according to the local virtual LAN ID of the first VM;According to the virtual process identifications of virtual network belonging to the local virtual LAN ID of the first VM and the tenant, the data packet transmission strategy of the first VM is configured on first interchanger.
Description
Technical field
The present invention relates to data center network fields, and more particularly, to the virtual network manager of data center
Method and data center systems.
Background technique
Increasingly mature with virtualization technology, the service mode of data center also takes from traditional offer energy, physics
The infrastructure such as device, network connection of being engaged in, which are rented, services (Infrastructure as to infrastructure with the simple mode of trustship
A Service, IaaS) cloud service Mode change.Core in cloud computing is the virtualization of computing capability, by virtualizing,
The computing capability being dispersed in each physical server is integrated into together, useful to institute in the form of a unified resource pool
Family provides service.The virtualization of computing capability drives the virtualization of other resources of data center, and the network of data center is wanted
The object of connection develops into the virtual machine and storage equipment in constantly variation, this is from relatively-stationary server and memory
Traditional network technology brings many new challenges.
User when being serviced using cloud data center, and it is unpractiaca possess the resources such as corresponding physical server, and from
Data center leases virtual machine and relevant storage and obtains computing capability with network service, in void as using physical server
The business that oneself is disposed on quasi- machine, so the user of data center is referred to as tenant.For a tenant, they are leased
Virtual data center be similar to themselves privately owned typical data center, be made of terminal device and network, have it is mating
Service, such as load balancing and firewall.But actually these resources come from the virtualization to same group of physical equipment.
While making full use of resource, new challenge is also brought to secure context.Each tenant is not intended to other tenants can be with
The presence of itself is perceived, is also had inside tenant by the demand of the resources of virtual machine grouping isolation of acquisition.
In existing a solution, VXLAN uses 24 bit identifications of an entitled VXLAN network identifier (VNI)
Symbol, will be grouped into a segment, to separate application data, to realize multi-tenant cloud with the associated VLAN of application program
Segmentation is supported at a distance required for network.
But in the specification technique of existing VXLAN, the solution of interchanger identification different virtual machine data packet is not provided clearly
Certainly scheme.
Summary of the invention
The embodiment of the present invention provides the virtual network management method and data center systems of a kind of data center, can be based on
Virtual process identifications and local virtual LAN ID configure the data packet of the virtual machine on the interchanger that virtual machine is accessed
Transmission strategy, so that interchanger can identify the virtual machine of different tenants and complete different tenant's virtual machine corresponding data packets
VXLAN encapsulation conciliate encapsulation work.
In a first aspect, providing a kind of virtual network management method of data center, which is characterized in that this method comprises:
The first physical server, the first interchanger and are determined according to the resource occupation information of the business information of tenant and data center
One virtual network, wherein first physical server is in multiple physical servers of the data center for creating the tenant
The first virtual machine VM physical server, the first VM is used to dispose the business of the tenant, first interchanger be this first
The physical switches of physical server access, first virtual network are virtual network belonging to the VM of the tenant, a tenant
Corresponding to a virtual network;Determine the first VM's according to the local virtual LAN ID occupied information of first interchanger
Local virtual LAN ID;Being created on first physical server according to the local virtual LAN ID of the first VM should
First VM;The virtual process identifications of the virtual network according to belonging to the local virtual LAN ID of the first VM and the tenant,
The data packet transmission strategy of the first VM is configured on first interchanger.
With reference to first aspect, in the first possible implementation, according to the business information of tenant and data center
Resource occupation information determine the first physical server implement are as follows: the Resource Management node of the data center is according to the tenant
Business information and the data center in the resource occupation information of multiple physical servers determine first physical server.
With reference to first aspect, in the second possible implementation, according in the business information of tenant and the data
The resource occupation information of the heart determines that the first virtual network implements are as follows: the Resource Management node of the data center selects the data
Virtual network corresponding to the tenant is first virtual network in the virtual network at center;Alternatively, the resource of the data center
Management node is that the tenant distributes new virtual network as first virtual network.
With reference to first aspect, in the third possible implementation, according to the local virtual local of first interchanger
Network mark knows the local virtual LAN ID specific implementation that occupied information determines the first VM are as follows: the resource management of the data center
Node is that the first VM distributes unappropriated local according to the local virtual LAN ID occupied information of first interchanger
VLAN ID;Alternatively, local virtual local area network of first interchanger according to the Resource Management node of the data center
Identify the local virtual LAN ID occupied information of distribution request and first interchanger, for the first VM distribution not by
The local virtual LAN ID of occupancy.
With reference to first aspect, in the fourth possible implementation, according to the local virtual local network mark of the first VM
Knowledge created on first physical server the first VM specific implementation are as follows: the Resource Management node of the data center to this first
Host on physical server sends the local virtual LAN ID of the first VM;Host on first physical server
Machine creates the first VM according to the local virtual LAN ID of the first VM on first physical server, and configure this
The virtual network interface of one VM.
The 4th kind of possible implementation with reference to first aspect, in a fifth possible implementation, the first physics
Host on server according to the local virtual LAN ID of the first VM configured on first physical server this
The virtual network interface of one VM implements are as follows: the host on first physical server is according to first physical server
The business information of physical resource Information and the tenant, by the object of the virtual network interface of the first VM and first physical server
It is bound the port virtual functions VF on reason network interface card;Alternatively, the host on first physical server is according to first object
Manage server physical resource Information and the tenant business information, by the virtual network interface of the first VM be configured to this first
On the virtual switch vswitch of host on physical server.
With reference to first aspect or the first possible implementation of first aspect is to the 5th kind of possible realization of first aspect
Any possible implementation in mode, in a sixth possible implementation, according to the local virtual office of the first VM
Domain network mark know and the tenant belonging to virtual network virtual process identifications, the number of the first VM is configured on first interchanger
Strategy specific implementation is transmitted according to packet are as follows: the Resource Management node of the data center sends the sheet of the first VM to first interchanger
The virtual process identifications of ground VLAN ID and virtual network belonging to the tenant;First interchanger is according to the first VM
Local virtual LAN ID and the tenant belonging to virtual network virtual process identifications, establish the local empty of the first VM
The virtual process identifications of virtual network and the mapping table of the first VM belonging to quasi- LAN ID, the tenant, and base
The data packet transmission strategy of the first VM is configured in the mapping table.
Second aspect provides a kind of data center systems, which is characterized in that the data center systems include: resource pipe
Reason node, multiple physical servers and multiple physical switches, the physical switches have access at least one physics
Server, wherein the Resource Management node is used for true according to the business information of tenant and the resource occupation information of data center
Fixed first physical server, the first interchanger and the first virtual network, wherein first physical server is multiple physics clothes
For creating the physical server of the first virtual machine VM of the tenant in business device, the first VM is used to dispose the business of the tenant,
For first interchanger by the physical switches that first physical server accesses in multiple physical switches, this is first virtual
Network is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network;The Resource Management node is also used
In unappropriated local empty for the first VM distribution according to the local virtual LAN ID occupied information of first interchanger
Quasi- LAN ID, and the host on first physical server sends the local virtual LAN ID of the first VM,
So that the host on first physical server creates the first VM, and to first interchanger after the first VM is created
Send the local virtual LAN ID and the virtual process identifications of virtual network belonging to the tenant of the first VM;First object
Host is disposed on reason server, the local virtual local network mark of the first VM for sending according to the Resource Management node
Know the first VM of creation, and configures the virtual network interface of the first VM;First interchanger is used in real time to the resource management
The local virtual LAN ID occupied information of node feeding back first interchanger, and be somebody's turn to do according to what the Resource Management node was sent
The virtual process identifications of the local virtual LAN ID of first VM and virtual network belonging to the tenant, configure the first VM's
Data packet transmission strategy.
In conjunction with second aspect, in the first possible implementation, for the local virtual local according to the first VM
Network mark knows place during configuring the virtual network interface of the first VM on the first physical server, on the first physical server
Host is specifically used for: according to the business information of the physical resource Information of first physical server and the tenant, by first
It is bound the port virtual functions VF on the physical network card of the virtual network interface of VM and the first physical server;Alternatively, root
According to the physical resource Information of the first physical server and the business information of tenant, the virtual network interface of the first VM is configured to
On the virtual switch vswitch of host on one physical server.
The third aspect provides a kind of data center systems, which is characterized in that the data center systems include: resource pipe
Reason node, multiple physical servers and multiple physical switches, the physical switches have access at least one physics
Server, wherein the Resource Management node is used for true according to the business information of tenant and the resource occupation information of data center
Fixed first physical server, the first interchanger and the first virtual network, wherein first physical server is multiple physics clothes
For creating the physical server of the first virtual machine VM of the tenant in business device, the first VM is used to dispose the business of the tenant,
For first interchanger by the physical switches that first physical server accesses in multiple physical switches, this is first virtual
Network is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network;The Resource Management node is also used
In the local virtual LAN ID for requesting the first VM of distribution to first interchanger, and obtaining the local empty of the first VM
Host after quasi- LAN ID on first physical server sends the local virtual LAN ID of the first VM, with
Just the host on first physical server creates the first VM, and sends out after the first VM is created to first interchanger
Send the virtual process identifications of the local virtual LAN ID of the first VM with virtual network belonging to the tenant;First physics
Host is disposed on server, the local virtual LAN ID of the first VM for sending according to the Resource Management node
The first VM is created, and configures the virtual network interface of the first VM;First interchanger is used for according to the Resource Management node
Local virtual LAN ID distribution request and first interchanger local virtual LAN ID occupied information be should
Resource Management node distributes the local virtual LAN ID of the first VM, and sent according to the Resource Management node this first
The virtual process identifications of the local virtual LAN ID of VM and virtual network belonging to the tenant, configure the data of the first VM
Packet transmission strategy.
In conjunction with the third aspect, in the first possible implementation, for the local virtual local according to the first VM
Network mark knows place during configuring the virtual network interface of the first VM on the first physical server, on the first physical server
Host is specifically used for: according to the business information of the physical resource Information of first physical server and the tenant, by first
It is bound the port virtual functions VF on the physical network card of the virtual network interface of VM and the first physical server;Alternatively, root
According to the physical resource Information of the first physical server and the business information of tenant, the virtual network interface of the first VM is configured to
On the virtual switch vswitch of host on one physical server.
The virtual network management method and data center systems of data center according to an embodiment of the present invention are rented by determining
The local virtual LAN ID of virtual network and virtual machine in physical switches where the virtual machine at family, and based on virtual
Network identity and local virtual LAN ID configure the data packet transmission of the virtual machine on the interchanger that virtual machine is accessed
Strategy, so that interchanger can identify the virtual machine of different tenants and complete different tenant's virtual machine corresponding data packets
Encapsulation work is conciliate in the encapsulation of VXLAN.
Detailed description of the invention
In order to illustrate the technical solution of the embodiments of the present invention more clearly, below will be in embodiment or description of the prior art
Required attached drawing is briefly described, it should be apparent that, the accompanying drawings in the following description is only some realities of the invention
Example is applied, it for those of ordinary skill in the art, without creative efforts, can also be according to these attached drawings
Obtain other attached drawings.
Fig. 1 is the schematic network structure of VXLAN of the embodiment of the present invention.
Fig. 2 is another schematic network structure of VXLAN of the embodiment of the present invention.
Fig. 3 is the virtual network management method flow chart of data center of the embodiment of the present invention.
Fig. 4 is that data center of the embodiment of the present invention for tenant provides the interaction diagrams of business service.
Fig. 5 is that data center of the embodiment of the present invention for tenant provides another interaction diagrams of business service.
Fig. 6 is the structural schematic diagram of data center of embodiment of the present invention letter system.
Fig. 7 is another structural schematic diagram of data center of embodiment of the present invention letter system.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete
Site preparation description, it is clear that described embodiments are some of the embodiments of the present invention, instead of all the embodiments.Based on this hair
Embodiment in bright, every other implementation obtained by those of ordinary skill in the art without making creative efforts
Example, shall fall within the protection scope of the present invention.
To facilitate understanding of the present embodiment of the invention, several wanting of can introducing in description of the embodiment of the present invention is introduced herein first
Element.
Virtual machine (Virtual Machine, VM):
One or more virtual computers can be simulated on a physical computer by software virtual machine, and
These virtual machines work just as real computer, and operating system and application program can be installed on virtual machine, empty
Quasi- machine may also access Internet resources.For the application program run in virtual machine, virtual machine is like really to count
It works in calculation machine.
Hardware layer:
The hardware platform of virtualized environment operation.Wherein, hardware layer may include multiple hardwares, such as certain calculate node is hard
Part layer may include CPU and memory, can also include network interface card, memory etc. high speed/low speed input/output (I/O, Input/
Output) equipment.
Host (Host):
As management level, to complete management, the distribution of hardware resource;Virtual hardware platform is presented for virtual machine;It realizes
The scheduling and isolation of virtual machine.Wherein, Host may be monitor of virtual machine (Virtual Machine Monitor, VMM);
Alternatively, VMM and 1 privileged virtual machine cooperation sometimes, the two combine composition Host.Wherein, virtual hardware platform to running thereon
Each virtual machine various hardware resources, such as offer virtual cpu, memory, virtual disk, Microsoft Loopback Adapter are provided.Wherein, should
Virtual disk can correspond to a file or a logic block device of Host.Virtual machine then operates in the void that Host prepares for it
One or more virtual machines are run on quasi- hardware platform, on Host.
Stacking network: one layer of virtual network topology on physical network.Each virtual network example be by be superimposed Lai
It realizes, primitive frame is packaged on network virtualization edge section (Network Virtualization Edge, NVE).It should
The equipment of package identification decapsulation, before sending frames to terminal, which will decapsulate the frame, obtain original
Message.The fringe node of virtual network can be the virtual switch in traditional interchanger, router or Host.It is empty
Quasi- network identifier (Virtual Network Identity, VNID) can be encapsulated into superposition head, be used to mark data frame
Affiliated virtual network.
Virtual expansible local area network (Virtual eXtensible Local Area Network, VXLAN), VXLAN is
The virtual ethernet on physical IP covering (overlay) network is established, encapsulates complete internal layer Ethernet message using UDP
Stacking network technology, and using ip multicast encapsulation broadcast and multicast message, it may span across physics three-layer network, utilize equal cost multipath
Load balancing (Equal-Cost Multi-path Routing, ECMP), to different data streams use different UDP source ports, 24
Position VXLAN network identifier, maximum support 16,000,000 logical network.Wherein, it is virtual to introduce new Delivery Function by VXLAN
It extends local network tunnel terminating node (VXLAN Tunnel End Point, VTEP) and new address encapsulates virtual extended sheet
Ground network identifier (VXLAN Network Identifier, VNI), all virtual machine traffics are labeled with before entering VTEP
New VNI is simultaneously encapsulated in the transmission that progress is closed across three-layer network in UDP message packet, is equivalent to and builds on existing network
The tunnel Overlay.
Fig. 1 is the schematic network structure of VXLAN of the embodiment of the present invention.As shown in Figure 1, a complete VXLAN network
It may include L3 network (Network), VTEP and tenant (TES).VXLAN data packet is from TES by VTEP, L3 network transmission to another
When one TES, VXLAN data packet is packaged and decapsulates at VTEP.TES1-TES4 indicates tenant's terminal system.VTEP1
Indicate the switching node of TES and L3 network (Network) with VTEP2, the encapsulation and decapsulation of responsible VXLAN data packet can be with
Operation in a separate device, is realized in a manner of software or hardware.
The detailed technology scheme of VXLAN can refer to the prior art.The solution of the present invention for ease of understanding, the present invention herein with
For TES1 initiates unicast process to TES4, it is briefly described explanation.After original user message reaches VTEP1, on VTEP1
It will do it the encapsulation of VXLAN, can encapsulate the head of a VXLAN, an outer layer UDP head, outer layer IP and outer layer ether
Head.Outer layer IP in front face encapsulation be the VXLAN Tunnel that is obtained by destination address in user's message source/destination PA
Location.Message after encapsulation is transferred to purpose VTEPVTEP2 according to the information in outer layer head on physical network.VTEP2 can basis
The destination slogan determination of UDP is VXLAN message, then carries out decapsulation reduction original message, and forward the packet to really
Message recipient TES4.
But the specification of VXLAN defines only the encapsulation that VXLAN agreement how is carried out to the data packet of different virtual networks
With decapsulation, but there is no definition of how surely in the physical switches of access identify different virtual machine corresponding to data packet.
Fig. 2 is another schematic network structure of VXLAN of the embodiment of the present invention.In Fig. 2, VTEP node is by individually hard
Part equipment is realized, is embodied in physical switches, such as in Fig. 2, and TOR1 and TOR2 have the VTEP node function of VXLAN
Energy.In addition, TES is realized by virtual machine, disposed by the host on physical server, such as in Fig. 2, virtual machine VM1 is logical
Cross the deployment of host 1.In addition, between physical switches and virtual machine data friendship can be carried out by the virtual switch on host
It changes, such as in Fig. 2, VM1 can pass through the virtual switch 1 and physical switches TOR1 progress data exchange on host 1.When
So, the virtual machine on host can also carry out data exchange by other virtual network interfaces and physical switches, and the present invention is real
Applying example, this is not restricted.
Fig. 3 is the virtual network management method flow chart of data center of the embodiment of the present invention.This method is by data center
System executes.This method can include:
301, the first physical server, are determined according to the resource occupation information of the business information of tenant and data center
One interchanger and the first virtual network.
Wherein, which is in multiple physical servers of the data center for creating the of the tenant
The physical server of one virtual machine VM, the first VM are used to for the business of the tenant provide service, first interchanger for this
The physical switches of one physical server access, first virtual network are virtual network belonging to the VM of the tenant, a rent
Family corresponds to a virtual network.
The resource information of data center's occupancy according to required for the business of tenant and the resource occupation letter of data center
Breath, determines the first physical server that tenant's business can be carried in multiple servers of data center.When determining the first physics
After server, while it can determine the first interchanger that the first physical server is accessed.
Data center can determine the first virtual network belonging to tenant, in other words, also according to the business information of tenant
It is the first virtual network belonging to determining first VM to be created.Specifically, virtual net can be determined by virtual process identifications
Network, or virtual network is determined by other identification informations.In VXLAN network, virtual process identifications be can be used to uniquely
Identify a virtual network.
302, determine that the first VM's is local empty according to the local virtual LAN ID occupied information of first interchanger
Quasi- LAN ID.
In the embodiment of the present invention, the first interchanger can connect one or more physical servers, on each physical server
One or more virtual machines can be disposed, or virtual machine can not also be disposed.
VLAN original purpose is the isolation for local area network, and lan device is logically divided into net one by one
Section realizes different logical network in the same local area network that multiple switch forms to realize.In order to reach to different clothes
The effect of device group of being engaged in isolation, needs to configure different VLAN tags to different server groups, the VLAN tag is by multiple friendships
It is globally unique for changing planes in the local area network of composition.
And used native vlan of the invention, it is only intended under the same interchanger, server network snaps into friendship
The VM flow identification changed planes between port, the VLAN tag between different interchangers is mutually indepedent, may be reused.
In the prior art, VLAN ID is the isolation for local area network, by by lan device from logic
On be divided into network segment one by one, thus realize realize different logical network in the same local area network that multiple switch forms.
In order to achieve the effect that different server group is isolated, need to configure different server groups different virtual local area network marks
Know, which is globally unique in the local area network being made of multiple switch.In the embodiment of the present invention, this
Ground VLAN ID can uniquely identify all virtual machines on all physical servers for being linked into interchanger.It is local
VLAN ID is used to distinguish the different virtual machine under same interchanger, the local virtual local area network between different interchangers
Mark can reuse, that is to say, that may exist identical local virtual LAN ID under different interchangers, represented by
Virtual machine it is different.
303, the first VM is created on first physical server according to the local virtual LAN ID of the first VM.
304, according to the virtual network of virtual network belonging to the local virtual LAN ID of the first VM and the tenant
Mark configures the data packet transmission strategy of the first VM on first interchanger.
In the embodiment of the present invention, by distributing different local virtual LAN IDs for each VM, and it is based on virtual net
Network mark and local virtual LAN ID configure the data packet transmission plan of the virtual machine on the interchanger that virtual machine is accessed
Slightly, so that interchanger can identify the virtual machine of different tenants and complete different tenant's virtual machine corresponding data packets
Encapsulation work is conciliate in the encapsulation of VXLAN.
In addition, the method for the embodiment of the present invention, the specification based on existing VXLAN is realized, is not needed to existing network
Equipment does biggish change.
In addition, configure the data transmission policies of virtual machine in physical switches in the embodiment of the present invention, so as to
By carrying out the hardware-accelerated network performance to improve data center to physical switches.
It should be understood that physical server may access multiple physical switches in the embodiment of the present invention.When on physical server
When creating a virtual machine, virtual machine is respectively present a local virtual in multiple physical switches that physical server accesses
LAN ID, and configure in each physical switches corresponding data packet transmission strategy, in the present invention, with a physics
Server is illustrated the method for the embodiment of the present invention for accessing a physical switches, but in actual application, can
It extends in the application scenarios of a physical server access multiple switch.
Optionally, in step 301, first is determined according to the resource occupation information of the business information of tenant and data center
Physical services implement body can be realized are as follows: the Resource Management node of the data center is according to the business information of the tenant and the number
First physical server is determined according to the resource occupation information of physical servers multiple in center.
Optionally, in step 301, it is determined according to the business information of tenant and the resource occupation information of the data center
First virtual network specifically can be achieved are as follows: the Resource Management node of the data center selects should in the virtual network of the data center
Virtual network corresponding to tenant is first virtual network;Alternatively, the Resource Management node of the data center is the tenant point
With new virtual network as first virtual network.
Optionally, as one embodiment, step 302 specifically be can be achieved are as follows: the Resource Management node root of the data center
Local virtual LAN ID occupied information according to first interchanger is that the first VM distributes unappropriated local virtual office
Domain network mark is known.
Optionally, as another embodiment, step 302 specifically be can be achieved are as follows: first interchanger is according in the data
The local virtual LAN ID distribution request of the Resource Management node of the heart and the local virtual local area network of first interchanger
Occupied information is identified, distributes unappropriated local virtual LAN ID for the first VM.
Optionally, step 303 specifically can be achieved are as follows: the Resource Management node of the data center is to first physical server
On host send the local virtual LAN ID of the first VM;Host on first physical server according to this
The local virtual LAN ID of one VM creates the first VM on first physical server, and configures the virtual of the first VM
Network interface.
Further, the host on first physical server exists according to the local virtual LAN ID of the first VM
The virtual network interface that the first VM is configured on first physical server specifically can be achieved are as follows: on first physical server
Host is according to the physical resource Information of first physical server and the business information of the tenant, by the virtual net of the first VM
It is bound the port virtual functions VF on the physical network card of network interface and first physical server.
Alternatively, host on first physical server according to the local virtual LAN ID of the first VM this
The virtual network interface that the first VM is configured on one physical server can also be achieved are as follows: the host on first physical server
According to the business information of the physical resource Information of first physical server and the tenant, by the virtual network interface of the first VM
It is configured on the virtual switch vswitch of the host on first physical server.
Optionally, step 304 specifically can be achieved are as follows: the Resource Management node of the data center is sent to first interchanger
The virtual process identifications of the local virtual LAN ID of first VM and virtual network belonging to the tenant;First interchanger
The virtual process identifications of the virtual network according to belonging to the local virtual LAN ID of the first VM and the tenant, establish this
The mapping of the virtual process identifications and the first VM of virtual network belonging to the local virtual LAN ID of one VM, the tenant
Relation table, and it is tactful based on the data packet transmission that the mapping table configures the first VM.
Below in conjunction with specific embodiment, the method for the embodiment of the present invention is further described.
Fig. 4 is that data center of the embodiment of the present invention for tenant provides the interaction diagrams of business service.As shown in figure 4, number
It may include Resource Management node, the first physical server and the host being deployed on the first physical server according to center, and
The first interchanger that first physical server is accessed.
It should be understood that although a physical server and a physical switches are merely illustrated in Fig. 4, in actual application
In, data center may include multiple physical servers and multiple physical switches.Wherein, multiple physical servers may make up one
Unified resource pool provides resource for data center, and each physical server can be linked into physical switches, each physics
Interchanger can access multiple physical servers.In addition, disposing host (Host) on each physical server.
401, Resource Management node is determined according to the business information of tenant and the resource occupation information of data center for building
First physical server of the first virtual machine of vertical tenant and the first virtual network of tenant.
It can be tenant by the Resource Management node of data center when data center needs to provide business service for tenant
Virtual machine is established to provide service, tenant's virtual machine to be established might as well be named as the first VM.Tenant can on the first VM root
Business service is disposed according to the requirement of business.
The Resource Management node of data center is used to manage the resource of data center.The Resource Management node can be data
One in the centralized management node at center or multiple Resource Management nodes of data center, the embodiment of the present invention is herein
With no restriction.
The business information of tenant, it may include the required resource information occupied of type of service, the business of tenant of tenant.Root
According to the business information of tenant, the Resource Management node of data center can determine virtual network belonging to tenant, namely determine first
Virtual network belonging to VM might as well be named as the first virtual network.
The resource occupation information of data center is primarily referred to as the physical server resource occupation information of data center.Having
In applying to body, the physical server resource of data center may classify according to practical use, or be referred to according to performance
Mark is classified, at this point, resource occupation information can also be shown according to the classification results of physical server.
Resource Management node can be determined according to the business information of tenant and the resource occupation information of data center for establishing
The first physical server of first VM.Specifically, the resource letter of Resource Management node occupancy according to required for the business of tenant
Breath, the type of the business of tenant and the resource occupation information of the physical server in data center, to determine data center
The first physical server of tenant's business can be carried in multiple physical servers.In addition, Resource Management node may also be combined with number
The factors such as the performance indicator according to the balance policy at center, each physical server, to determine first physical server.
After determining the first physical server, that is, it can determine the first interchanger.The friendship that first physical server is accessed
It changes planes as the first interchanger.
402, the first interchanger request the first virtual machine of distribution that Resource Management node is accessed to the first physical server
Local virtual LAN ID.
It, can be to the first physical server institute after Resource Management node determines the first physical server for creating the first VM
The first interchanger request distribution local virtual LAN ID of access.
Physical switches can connect one or more physical servers, can create one or more on each physical server
Virtual machine.The local virtual LAN ID of all virtual machines under the physical server of its connection can be stored in physical switches,
Each local virtual LAN ID corresponds to a virtual machine under the physical server connected in physical switches, can be used for
Virtual machine under unique identification physical switches.
First interchanger can distribute a local virtual according to the occupied information of local virtual LAN ID for the first VM
LAN ID.In the prior art, local virtual LAN ID length is 12, and a physical switches can at most manage
4096 different virtual machines.
403, the first interchanger determines that first is virtual according to the local virtual LAN ID occupied information of the first interchanger
The local virtual LAN ID of machine.
404, the first interchanger feeds back the local virtual LAN ID of the first virtual machine to Resource Management node.
It, can be by the local virtual office of the first virtual machine after first interchanger determines the local virtual LAN ID of the first VM
Network mark knowledge in domain feeds back to Resource Management node.
405, host of the Resource Management node on the first physical server sends the local virtual office of the first virtual machine
Domain network mark knows and the business information of tenant.
Resource Management node, can be to the first physical server after obtaining the local virtual LAN ID of the first virtual machine
On host (Host) send the first virtual machine local virtual LAN ID and tenant business information.
406, the host of the first physical server is according to the local virtual LAN ID of the first virtual machine and tenant
Business information creates the first virtual machine and configures the virtual network interface of the first virtual machine.
Host on first physical server it is empty can to create first according to the local virtual LAN ID of the first virtual machine
Quasi- machine.
In addition, the Host on the first physical server can be according to the physical resource Information of the first physical server, and rent
The business information at family configures the virtual network interface of the first virtual machine.
A kind of implementation of the embodiment of the present invention, Host can according to the physical resource Information of the first physical server,
And the type of service of tenant, the virtual network interface of the first virtual machine and some VF of SR-IOV network interface card are bound.Host can
The local virtual LAN ID of first virtual machine is set for the port VF, when so that the first virtual machine sending data by the VF
The local virtual LAN ID of the first virtual machine can be taken.
Another implementation of the embodiment of the present invention, Host can believe according to the physical resource of the first physical server
The type of service of breath and tenant, are tied to the virtual network interface of the first virtual machine the virtual switch of Host
(vSwtich), data forwarding is carried out by vSwtich.VSwtich, can be in data when sending data for first virtual machine
The local virtual LAN ID of the first virtual machine is inserted into packet.
407, Resource Management node sends local virtual LAN ID and the tenant of the first virtual machine to the first interchanger
Virtual network mark.
After Host creates the first virtual machine and configures the virtual network interface of the first virtual machine, Resource Management node can be incited somebody to action
The mark of the virtual network of the local virtual LAN ID and tenant of first virtual machine is sent to the first interchanger.
408, the first interchanger is according to the mark of the local virtual LAN ID of the first virtual machine and the virtual network of tenant
Know and determines that the data packet of the first virtual machine transmits strategy.
Mark of first interchanger in the local virtual LAN ID for receiving the first virtual machine and the virtual network of tenant
Know, can determine the first virtual machine according to the mark of the virtual network of the local virtual LAN ID and tenant of the first virtual machine
Data packet transmission strategy.
Specifically, the first interchanger can be according to the local virtual LAN ID of the first virtual machine and the virtual network of tenant
Mark, establish the mapping table between local virtual LAN ID, virtual process identifications and virtual machine.
When the first interchanger is by second line of a couplet port, receive that virtual machine sends over local virtual LAN ID
When data packet, it can be known by the mapping table between inquiry local virtual LAN ID, virtual process identifications and virtual machine
It Chu not the data packet information and virtual network information of the virtual machine that are belonged to.First interchanger can remove in the data packet
Local virtual LAN ID, the virtual process identifications of the virtual network then belonged to according to data packet carry out corresponding
VXLAN encapsulation process.First interchanger is to receiving data packet original IP from second line of a couplet port and virtual process identifications information turns
Hair study.
When subordinate's node (being virtual machine in the present invention) that the first interchanger receives other interchangers sends over
After VXLAN data packet, after data packet is carried out VXLAN decapsulation, virtual process identifications can be obtained.First interchanger can be according to void
Quasi- network identity and destination IP information, are transmitted to void pointed by the destination IP in virtual network corresponding to virtual process identifications
Quasi- machine.
By taking Fig. 2 as an example, it might as well assume that VM1 and VM3 belong to the same virtual network, and physical switches TOR1 is according to VM1
Virtual process identifications and the corresponding transmission strategy of local virtual LAN ID configuration, physical switches TOR2 is according to VM3's
Virtual process identifications and the corresponding transmission strategy of local virtual LAN ID configuration.VM1 sends the one of data packet to VM3 at this time
Kind process can be as follows:
(1) VM1 sends ARP broadcast frame, MAC Address corresponding to the IP address of request inquiry VM3.In the ARP that VM1 is sent
In broadcast frame, the local virtual LAN ID VLAN1 of VM1 is carried.
(2) TOR1 can be identified according to the corresponding relationship of local virtual LAN ID and VM from ARP broadcast frame
Virtual machine VM1 corresponding to VLAN1, and the corresponding relationship of VM1 and virtual process identifications is inquired, obtain the corresponding virtual net of VM1
Network identifies VNI1, and to VNI1 in ARP encapsulation.
(3) TOR1 inquires the corresponding relationship of VNI1 and multicast group, obtains multicast group IP address.
(4) TOR1 constructs ip multicast message.
(5) TOR2 receives IP multicast message, extracts VNI1 and original mac frame, and the broadcast MAC frame in VXLAN.Together
When, TOR2 can record the mapping relations between the MAC Address of VM1 and the IP address of TOR2.
(6) VM3 using IP unicast send standard arp reply frame, the mac address information of MAC Address and VM3 comprising VM1,
And the local virtual LAN ID VLAN3 of VM3.
(7) after TOR2 receives the arp reply frame of VM3, can be identified according to VLAN3 is transmitted by VM3, then can root
According to the corresponding relationship of VM3 and virtual process identifications, the corresponding virtual process identifications VNI1 of VM3 is obtained, and is sealed in arp reply frame
VNI1 is loaded onto, then according to the mapping relations between the MAC Address of VM1 and the IP address of TOR2, arp reply frame is issued into TOR1.
(8) VM1 is issued after TOR1 decapsulation.Meanwhile TOR1 can record between the MAC Address of VM3 and the IP address of TOR1
Mapping relations.
Interchanger obtains the IP address of the MAC Address and the interchanger of another subnet of the virtual machine of another subnet through overfitting
Between mapping relations after, can be carried out data transmission according to the mapping relations learnt.
During VM1 and VM3 carries out point-to-point transmission, virtual machine carries local virtual local area network when sending data packet
Mark, physical switches determine the virtual machine for sending data packet and the upper virtual process identifications of encapsulation according to VLAN ID,
Then it transmits on VXLAN, after the physical switches decapsulation of receiving end, can be transferred to data packet according to virtual process identifications
In virtual network representated by the virtual process identifications on corresponding IP address (or MAC Address), specific implementation be can refer to above
VM1 sends the process of ARP broadcast frame, and details are not described herein for the embodiment of the present invention.
The method that the data packet of virtual machine is transmitted in same subnet can refer to the prior art, and the embodiment of the present invention is herein not
It repeats again.
Fig. 5 is that data center of the embodiment of the present invention for tenant provides the interaction diagrams of business service.As shown in figure 5, number
It may include Resource Management node, the first physical server and the host being deployed on the first physical server according to center, first
The first interchanger that physical server is accessed.
It should be understood that although a physical server and a physical switches are merely illustrated in Fig. 5, in actual application
In, data center may include multiple physical servers and multiple physical switches.Wherein, multiple physical servers may make up one
Unified resource pool provides resource for data center, and each physical server is linked into physical switches, each physical exchange
Machine can access multiple physical servers.In addition, disposing host (Host) on each physical server.
501, Resource Management node is determined according to the business information of tenant and the resource occupation information of data center for building
First physical server of the first virtual machine of vertical tenant and the first virtual network of tenant.
The Resource Management node of data center can be true according to the business information of tenant and the resource occupation information of data center
Determine for establishing the first physical server of the first virtual machine of tenant and the first virtual network of tenant, detailed process can
With reference to the step 401 of Fig. 4, details are not described herein for the embodiment of the present invention.
In addition, it is similar with step 401, after determining the first physical server, that is, it can determine the first interchanger.First object
The interchanger that reason server is accessed is the first interchanger.
502, the first interchanger occupies letter to the local virtual LAN ID that Resource Management node sends the first interchanger
Breath.
Physical switches can connect one or more physical servers, can create one or more on each physical server
Virtual machine.The local virtual LAN ID of all virtual machines under the physical server of its connection can be stored in physical switches,
Each local virtual LAN ID corresponds to a virtual machine under the physical server connected in physical switches, can be used for
Virtual machine under unique identification physical switches.
First interchanger can be accounted for periodically to the local virtual LAN ID that Resource Management node sends the first interchanger
It is sent out with information, or when the local virtual LAN ID occupied information of the first interchanger changes to Resource Management node
Send the local virtual LAN ID occupied information of the first interchanger.
First interchanger can only send not used local virtual when sending local virtual LAN ID occupied information
LAN ID perhaps only sends and used local virtual LAN ID occurs or sends changed local empty
Quasi- LAN ID, etc..
In addition, it should be understood that the step of step 502 is a timing or the execution of triggering property, in time not by other steps
It influences.
503, Resource Management node determines the first void according to the local virtual LAN ID occupied information of the first interchanger
The local virtual LAN ID of quasi- machine.
Resource Management node can distribute a local void according to the occupied information of local virtual LAN ID for the first VM
Quasi- LAN ID.In the prior art, local virtual LAN ID length is 12, and a physical switches can at most manage
4096 different virtual machines.Certainly, it could dictate that local virtual LAN ID length is longer length, also so as to an object
Reason interchanger can manage the data transmission of more multi-dummy machine, and this is not restricted for the embodiment of the present invention.
It should be understood that local virtual LAN ID occupied information needed for step 503 comes from step 502.If step
502 were not carried out, and can be considered that local virtual LAN ID is all unoccupied.
504, host of the Resource Management node on the first physical server sends the local virtual office of the first virtual machine
Domain network mark knows and the business information of tenant.
The specific implementation of step 504 is similar with the step 405 of Fig. 4, and details are not described herein for the embodiment of the present invention.
505, the host on the first physical server is according to the local virtual LAN ID of the first virtual machine and tenant
Business information create the first virtual machine and configure the first virtual machine virtual network interface.
The specific implementation of step 505 is similar with the step 406 of Fig. 4, and details are not described herein for the embodiment of the present invention.
506, Resource Management node sends local virtual LAN ID and the tenant of the first virtual machine to the first interchanger
Virtual network mark.
The specific implementation of step 506 is similar with the step 407 of Fig. 4, and details are not described herein for the embodiment of the present invention.
507, the first interchanger is according to the mark of the local virtual LAN ID of the first virtual machine and the virtual network of tenant
Know and determines that the data packet of the first virtual machine transmits strategy.
The specific implementation of step 507 is similar with the step 408 of Fig. 4, and details are not described herein for the embodiment of the present invention.
Fig. 6 is the structural schematic diagram of data center of embodiment of the present invention letter system 600.Data center systems may include resource
Management node 601, multiple physical servers 602 and multiple physical switches 603.Wherein, a physical switches 603 can
Access at least one physical server 602.
Resource Management node 601, for according to the business information of tenant and the resource occupation information of data center systems
Determine the first physical server, the first interchanger and the first virtual network, wherein first physical server is multiple physics
For creating the physical server 602 of the first virtual machine VM of the tenant in server 602, the first VM is for disposing the tenant
Business, the physical switches which is accessed by first physical server in multiple physical switches 603
603, which is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network.
Believe in addition, Resource Management node 601 is also used to be occupied according to the local virtual LAN ID of first interchanger
Breath is that the first VM distributes unappropriated local virtual LAN ID, and the host on first physical server is sent out
The local virtual LAN ID of the first VM is sent, so that the host on first physical server creates the first VM, and
It is sent belonging to local virtual LAN ID and tenant of the first VM after the first VM is created to first interchanger
Virtual network virtual process identifications.
Host is disposed on first physical server, the first VM's for being sent according to Resource Management node 601
Local virtual LAN ID creates the first VM, and configures the virtual network interface of the first VM.
First interchanger to Resource Management node 601 for feeding back the local virtual local network mark of first interchanger in real time
Know occupied information, and according to the local virtual LAN ID of the first VM of the transmission of Resource Management node 601 and the tenant institute
The virtual process identifications of the virtual network of category configure the data packet transmission strategy of the first VM.
In the embodiment of the present invention, data center systems 600 pass through the virtual network and void where the virtual machine for determining tenant
Quasi- local virtual LAN ID of the machine in physical switches, and it is based on virtual process identifications and local virtual LAN ID
The data packet transmission strategy that the virtual machine is configured on the interchanger that virtual machine is accessed, so that interchanger can identify not
With tenant virtual machine and complete different tenant's virtual machine corresponding data packets VXLAN encapsulation conciliate encapsulation work.
In addition, the method for the embodiment of the present invention, the specification based on existing VXLAN is realized, is not needed to existing network
Equipment does biggish change.
In addition, configure the data transmission policies of virtual machine in physical switches in the embodiment of the present invention, so as to
By carrying out the hardware-accelerated network performance to improve data center to physical switches.
It should be understood that physical server may access multiple physical switches in the embodiment of the present invention.When on physical server
When creating a virtual machine, virtual machine is respectively present a local virtual in multiple physical switches that physical server accesses
LAN ID, and configure in each physical switches corresponding data packet transmission strategy, in the present invention, with a physics
Server is illustrated the method for the embodiment of the present invention for accessing a physical switches, but in actual application, can
It extends in the application scenarios of a physical server access multiple switch.
Optionally, as one embodiment, for according to the local virtual LAN ID of the first VM in the first physics
During the virtual network interface for configuring the first VM on server, the host on the first physical server is specifically used for basis
The physical resource Information of first physical server and the business information of the tenant, by the virtual network interface of the first VM and
It is bound the port virtual functions VF on the physical network card of first physical server.
Optionally, as one embodiment, for according to the local virtual LAN ID of the first VM in the first physics
During the virtual network interface for configuring the first VM on server, the host on the first physical server is specifically used for basis
The virtual network interface of first VM is configured to first by the physical resource Information of the first physical server and the business information of tenant
On the virtual switch vswitch of host on physical server.
In addition, the method that data center systems can also carry out Fig. 3, and realize that data center systems are real shown in Fig. 3, Fig. 4
The concrete function of example is applied, details are not described herein for the embodiment of the present invention.
Fig. 7 is the structural schematic diagram of data center of embodiment of the present invention letter system 700.Data center systems may include resource
Management node 701, multiple physical servers 702 and multiple physical switches 703.Wherein, a physical switches 703 can
Access at least one physical server 702.
Resource Management node 701, for according to the business information of tenant and the resource occupation information of data center systems
Determine the first physical server, the first interchanger and the first virtual network, wherein first physical server is multiple physics
For creating the physical server 702 of the first virtual machine VM of the tenant in server 702, the first VM is for disposing the tenant
Business, the physical switches which is accessed by first physical server in multiple physical switches 703
703, which is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network.
In addition, Resource Management node 701 is also used to request the local virtual office of the first VM of distribution to first interchanger
Domain network mark is known, and the host hair after the local virtual LAN ID for obtaining the first VM on first physical server
The local virtual LAN ID of the first VM is sent, so that the host on first physical server creates the first VM, and
It is sent belonging to local virtual LAN ID and tenant of the first VM after the first VM is created to first interchanger
Virtual network virtual process identifications.
Host is disposed on first physical server, the first VM's for being sent according to Resource Management node 701
Local virtual LAN ID creates the first VM, and configures the virtual network interface of the first VM.
First interchanger be used for according to the local virtual LAN ID distribution request of Resource Management node 701 and this
The local virtual LAN ID occupied information of one interchanger is the local virtual office that Resource Management node 701 distributes the first VM
Domain network mark is known, and according to belonging to the local virtual LAN ID of the first VM of the transmission of Resource Management node 701 and the tenant
Virtual network virtual process identifications, configure the first VM data packet transmission strategy.
In the embodiment of the present invention, data center systems 700 pass through the virtual network and void where the virtual machine for determining tenant
Quasi- local virtual LAN ID of the machine in physical switches, and it is based on virtual process identifications and local virtual LAN ID
The data packet transmission strategy that the virtual machine is configured on the interchanger that virtual machine is accessed, so that interchanger can identify not
With tenant virtual machine and complete different tenant's virtual machine corresponding data packets VXLAN encapsulation conciliate encapsulation work.
In addition, the method for the embodiment of the present invention, the specification based on existing VXLAN is realized, is not needed to existing network
Equipment does biggish change.
In addition, configure the data transmission policies of virtual machine in physical switches in the embodiment of the present invention, so as to
By carrying out the hardware-accelerated network performance to improve data center to physical switches.
It should be understood that physical server may access multiple physical switches in the embodiment of the present invention.When on physical server
When creating a virtual machine, virtual machine is respectively present a local virtual in multiple physical switches that physical server accesses
LAN ID, and configure in each physical switches corresponding data packet transmission strategy, in the present invention, with a physics
Server is illustrated the method for the embodiment of the present invention for accessing a physical switches, but in actual application, can
It extends in the application scenarios of a physical server access multiple switch.
Optionally, as one embodiment, for according to the local virtual LAN ID of the first VM in the first physics
During the virtual network interface for configuring the first VM on server, the host on the first physical server is specifically used for basis
The physical resource Information of first physical server and the business information of the tenant, by the virtual network interface of the first VM and
It is bound the port virtual functions VF on the physical network card of first physical server.
Optionally, as one embodiment, for according to the local virtual LAN ID of the first VM in the first physics
During the virtual network interface for configuring the first VM on server, the host on the first physical server is specifically used for basis
The virtual network interface of first VM is configured to first by the physical resource Information of the first physical server and the business information of tenant
On the virtual switch vswitch of host on physical server.
In addition, the method that data center systems can also carry out Fig. 3, and realize that data center systems are real shown in Fig. 3, Fig. 4
The concrete function of example is applied, details are not described herein for the embodiment of the present invention.
It should be understood that in various embodiments of the present invention, magnitude of the sequence numbers of the above procedures are not meant to execute suitable
Sequence it is successive, the execution of each process sequence should be determined by its function and internal logic, the implementation without coping with the embodiment of the present invention
Process constitutes any restriction.
Those of ordinary skill in the art may be aware that list described in conjunction with the examples disclosed in the embodiments of the present disclosure
Member and algorithm steps can be realized with the combination of electronic hardware or computer software and electronic hardware.These functions are actually
It is implemented in hardware or software, the specific application and design constraint depending on technical solution.Professional technician
Each specific application can be used different methods to achieve the described function, but this realization is it is not considered that exceed
The scope of the present invention.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description,
The specific work process of device and unit, can refer to corresponding processes in the foregoing method embodiment, and details are not described herein.
In several embodiments provided herein, it should be understood that disclosed systems, devices and methods, it can be with
It realizes by another way.For example, the apparatus embodiments described above are merely exemplary, for example, the unit
It divides, only a kind of logical function partition, there may be another division manner in actual implementation, such as multiple units or components
It can be combined or can be integrated into another system, or some features can be ignored or not executed.Another point, it is shown or
The mutual coupling, direct-coupling or communication connection discussed can be through some interfaces, the indirect coupling of device or unit
It closes or communicates to connect, can be electrical property, mechanical or other forms.
The unit as illustrated by the separation member may or may not be physically separated, aobvious as unit
The component shown may or may not be physical unit, it can and it is in one place, or may be distributed over multiple
In network unit.It can select some or all of unit therein according to the actual needs to realize the mesh of this embodiment scheme
's.
It, can also be in addition, the functional units in various embodiments of the present invention may be integrated into one processing unit
It is that each unit physically exists alone, can also be integrated in one unit with two or more units.
It, can be with if the function is realized in the form of SFU software functional unit and when sold or used as an independent product
It is stored in a computer readable storage medium.Based on this understanding, technical solution of the present invention is substantially in other words
The part of the part that contributes to existing technology or the technical solution can be embodied in the form of software products, the meter
Calculation machine software product is stored in a storage medium, including some instructions are used so that a computer equipment (can be a
People's computer, server or network equipment etc.) it performs all or part of the steps of the method described in the various embodiments of the present invention.
And storage medium above-mentioned includes: that USB flash disk, mobile hard disk, read-only memory (ROM, Read-Only Memory), arbitrary access are deposited
The various media that can store program code such as reservoir (RAM, Random Access Memory), magnetic or disk.
The above description is merely a specific embodiment, but scope of protection of the present invention is not limited thereto, any
Those familiar with the art in the technical scope disclosed by the present invention, can easily think of the change or the replacement, and should all contain
Lid is within protection scope of the present invention.Therefore, protection scope of the present invention should be based on the protection scope of the described claims.
Claims (11)
1. a kind of virtual network management method of data center characterized by comprising
The first physical server, the first interchanger are determined according to the resource occupation information of the business information of tenant and data center
And first virtual network, wherein first physical server is in multiple physical servers of the data center for creating
The physical server of the first virtual machine VM of the tenant is built, the first VM is used to provide service for the business of the tenant,
First interchanger is the physical switches of first physical server access, and first virtual network is the tenant
VM belonging to virtual network, tenant corresponds to a virtual network;
The local virtual office of the first VM is determined according to the local virtual LAN ID occupied information of first interchanger
Domain network mark is known;
The first VM is created on first physical server according to the local virtual LAN ID of the first VM;
According to the virtual process identifications of virtual network belonging to the local virtual LAN ID of the first VM and the tenant,
The data packet transmission strategy of the first VM is configured on first interchanger.
2. the method as described in claim 1, which is characterized in that described according to the business information of tenant and the money of data center
Source occupied information determines that the first physical server includes:
The Resource Management node of the data center is according to multiple objects in the business information of the tenant and the data center
The resource occupation information of reason server determines first physical server.
3. the method as described in claim 1, which is characterized in that the business information according to tenant and the data center
Resource occupation information determine that the first virtual network includes:
The Resource Management node of the data center selects void corresponding to tenant described in the virtual network of the data center
Quasi- network is first virtual network;Or
The Resource Management node of the data center is that the tenant distributes new virtual network as first virtual network.
4. the method as described in claim 1, which is characterized in that the local virtual local area network according to first interchanger
Mark occupied information determines that the local virtual LAN ID of the first VM includes:
The Resource Management node of the data center is according to the local virtual LAN ID occupied information of first interchanger
Unappropriated local virtual LAN ID is distributed for the first VM;Or
First interchanger according to the local virtual LAN ID distribution request of the Resource Management node of the data center,
And the local virtual LAN ID occupied information of first interchanger, unappropriated local is distributed for the first VM
VLAN ID.
5. the method as described in claim 1, which is characterized in that the local virtual LAN ID according to the first VM
The first VM is created on first physical server includes:
Host of the Resource Management node of the data center on first physical server sends the first VM's
Local virtual LAN ID;
Host on first physical server is according to the local virtual LAN ID of the first VM described first
The first VM is created on physical server, and configures the virtual network interface of the first VM.
6. method as claimed in claim 5, which is characterized in that
Host on first physical server is according to the local virtual LAN ID of the first VM described first
The virtual network interface that the first VM is configured on physical server includes:
Host on first physical server is according to the physical resource Information and the rent of first physical server
The business information at family, will be virtual on the physical network card of the virtual network interface of the first VM and first physical server
Function VF is bound port;Or
Host on first physical server is according to the physical resource Information and the rent of first physical server
The virtual network interface of first VM is configured to the void of the host on first physical server by the business information at family
On quasi- interchanger vswitch.
7. such as method as claimed in any one of claims 1 to 6, which is characterized in that the local virtual according to the first VM
The virtual process identifications of virtual network belonging to LAN ID and the tenant, configure described on first interchanger
The data packet of one VM transmits strategy
The Resource Management node of the data center sends the local virtual local area network of the first VM to first interchanger
The virtual process identifications of mark and virtual network belonging to the tenant;
First interchanger virtual network according to belonging to the local virtual LAN ID of the first VM and the tenant
Virtual process identifications, establish the void of virtual network belonging to the local virtual LAN ID of the first VM, the tenant
Intend network identity and the mapping table of the first VM, and configures the data of the first VM based on the mapping table
Packet transmission strategy.
8. a kind of data center systems, which is characterized in that handed over including Resource Management node, multiple physical servers and multiple physics
It changes planes, the physical switches have access at least one described physical server, wherein
The Resource Management node is used to determine first according to the business information of tenant and the resource occupation information of data center
Physical server, the first interchanger and the first virtual network, wherein first physical server is the multiple physical services
For creating the physical server of the first virtual machine VM of the tenant in device, the first VM is used to dispose the industry of the tenant
Business, the first interchanger physical switches that the first physical server accesses described in the multiple physical switches,
First virtual network is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network;
The Resource Management node is also used to according to the local virtual LAN ID occupied information of first interchanger be institute
It states the first VM and distributes unappropriated local virtual LAN ID, and the virtual machine monitoring on first physical server
Person's host sends the local virtual LAN ID of the first VM, so as to the host wound on first physical server
The first VM is built, and sends the local virtual office of the first VM to first interchanger after the first VM is created
Domain network mark knows the virtual process identifications with virtual network belonging to the tenant;
Host is disposed on first physical server, the first VM for sending according to the Resource Management node
Local virtual LAN ID create the first VM, and configure the virtual network interface of the first VM;
First interchanger is used to feed back the local virtual local of first interchanger to the Resource Management node in real time
Network mark knows occupied information, and according to the local virtual LAN ID of the first VM of Resource Management node transmission and institute
The virtual process identifications of virtual network belonging to tenant are stated, the data packet for configuring the first VM transmits strategy.
9. data center systems as claimed in claim 8, which is characterized in that for the local virtual according to the first VM
LAN ID is during configuring the virtual network interface of the first VM on first physical server, and described first
Host on physical server is specifically used for:
Host on first physical server is according to the physical resource Information and the rent of first physical server
The business information at family, will be virtual on the physical network card of the virtual network interface of the first VM and first physical server
Function VF is bound port;Alternatively,
Host on first physical server is according to the physical resource Information and the rent of first physical server
The virtual network interface of first VM is configured to the void of the host on first physical server by the business information at family
On quasi- interchanger vswitch.
10. a kind of data center systems, which is characterized in that including Resource Management node, multiple physical servers and multiple physics
Interchanger, the physical switches have access at least one described physical server, wherein
The Resource Management node is used to determine first according to the business information of tenant and the resource occupation information of data center
Physical server, the first interchanger and the first virtual network, wherein first physical server is the multiple physical services
For creating the physical server of the first virtual machine VM of the tenant in device, the first VM is used to dispose the industry of the tenant
Business, the first interchanger physical switches that the first physical server accesses described in the multiple physical switches,
First virtual network is virtual network belonging to the VM of the tenant, and a tenant corresponds to a virtual network;
The Resource Management node is also used to request to distribute to first interchanger local virtual local area network of the first VM
Mark, and the virtual machine prison after the local virtual LAN ID for obtaining the first VM on first physical server
Control person's host sends the local virtual LAN ID of the first VM, so as to the host on first physical server
The first VM is created, and sends the local virtual of the first VM to first interchanger after the first VM is created
The virtual process identifications of virtual network belonging to LAN ID and the tenant;
Host is disposed on first physical server, the first VM for sending according to the Resource Management node
Local virtual LAN ID create the first VM, and configure the virtual network interface of the first VM;
First interchanger is used for local virtual LAN ID distribution request and institute according to the Resource Management node
State the sheet that the local virtual LAN ID occupied information of the first interchanger distributes the first VM for the Resource Management node
Ground VLAN ID, and according to the Resource Management node send the first VM local virtual LAN ID and
The virtual process identifications of virtual network belonging to the tenant, the data packet for configuring the first VM transmit strategy.
11. data center systems as claimed in claim 10, which is characterized in that for according to the local empty of the first VM
Quasi- LAN ID is during configuring the virtual network interface of the first VM on first physical server, and described the
Host on one physical server is specifically used for:
Host on first physical server is according to the physical resource Information and the rent of first physical server
The business information at family, will be virtual on the physical network card of the virtual network interface of the first VM and first physical server
Function VF is bound port;Alternatively,
Host on first physical server is according to the physical resource Information and the rent of first physical server
The virtual network interface of first VM is configured to the void of the host on first physical server by the business information at family
On quasi- interchanger vswitch.
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
PCT/CN2014/074475 WO2015149253A1 (en) | 2014-03-31 | 2014-03-31 | Data center system and virtual network management method of data center |
Publications (2)
Publication Number | Publication Date |
---|---|
CN105284080A CN105284080A (en) | 2016-01-27 |
CN105284080B true CN105284080B (en) | 2018-12-07 |
Family
ID=54239243
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201480000195.8A Active CN105284080B (en) | 2014-03-31 | 2014-03-31 | The virtual network management method and data center systems of data center |
Country Status (2)
Country | Link |
---|---|
CN (1) | CN105284080B (en) |
WO (1) | WO2015149253A1 (en) |
Families Citing this family (19)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN106209445B (en) * | 2016-07-05 | 2019-08-06 | 天津卓朗科技发展有限公司 | A kind of Visualized data centre disposed by network |
CN107592208B (en) * | 2016-07-08 | 2022-07-29 | 中兴通讯股份有限公司 | Traffic management method and device |
CN107733670B (en) | 2016-08-11 | 2020-05-12 | 新华三技术有限公司 | Forwarding strategy configuration method and device |
CN106354544A (en) * | 2016-08-24 | 2017-01-25 | 华为技术有限公司 | Virtual machine creating method and system and host |
CN106603550B (en) * | 2016-12-28 | 2019-08-13 | 中国银联股份有限公司 | A kind of Network Isolation method and device |
CN108809793A (en) * | 2017-04-27 | 2018-11-13 | 华为技术有限公司 | A kind of data transmission method, apparatus and system |
US11128490B2 (en) * | 2019-04-26 | 2021-09-21 | Microsoft Technology Licensing, Llc | Enabling access to dedicated resources in a virtual network using top of rack switches |
CN110581800B (en) * | 2019-08-23 | 2021-07-02 | 苏州浪潮智能科技有限公司 | Method and device for creating virtual router interface, storage medium and equipment |
CN112702252B (en) * | 2019-10-23 | 2024-02-02 | 华为云计算技术有限公司 | Message processing method, system and related equipment |
CN111064649B (en) * | 2019-12-11 | 2022-02-15 | 锐捷网络股份有限公司 | Method and device for realizing binding of layered ports, control equipment and storage medium |
CN112988320A (en) * | 2019-12-12 | 2021-06-18 | 华为技术有限公司 | Method and device for creating virtual machine |
US20210271506A1 (en) * | 2020-02-28 | 2021-09-02 | Cisco Technology, Inc. | Centralized management, provisioning and monitoring of cloud infrastructure |
CN111447103B (en) * | 2020-03-09 | 2022-01-28 | 杭州海康威视系统技术有限公司 | Virtual device management system, electronic device, virtual device management method, and medium |
CN111865749B (en) * | 2020-06-30 | 2023-04-18 | 新华三信息安全技术有限公司 | Port binding method and device |
CN114070755B (en) * | 2020-07-29 | 2023-08-01 | 中移(苏州)软件技术有限公司 | Virtual machine network flow determination method and device, electronic equipment and storage medium |
CN112653608B (en) * | 2020-12-14 | 2023-01-20 | 聚好看科技股份有限公司 | Display device, mobile terminal and cross-network data transmission method |
CN112910790B (en) * | 2021-02-08 | 2023-06-30 | 网宿科技股份有限公司 | Diversion system and method thereof |
CN113709017B (en) * | 2021-08-17 | 2022-10-04 | 中盈优创资讯科技有限公司 | Method and device for acquiring virtualization traffic |
CN114615079A (en) * | 2022-03-31 | 2022-06-10 | 深信服科技股份有限公司 | Data processing method, device and equipment and readable storage medium |
Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102255903A (en) * | 2011-07-07 | 2011-11-23 | 广州杰赛科技股份有限公司 | Safety isolation method for virtual network and physical network of cloud computing |
CN102549977A (en) * | 2009-09-24 | 2012-07-04 | 日本电气株式会社 | Identification system for inter-virtual-server communication and identification method for inter-virtual-server communication |
CN102938721A (en) * | 2004-02-13 | 2013-02-20 | 英特尔公司 | Apparatus and method for a dynamically extensible virtual switch |
Family Cites Families (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
JP2011198299A (en) * | 2010-03-23 | 2011-10-06 | Fujitsu Ltd | Program, computer, communicating device, and communication control system |
US20140006585A1 (en) * | 2012-06-29 | 2014-01-02 | Futurewei Technologies, Inc. | Providing Mobility in Overlay Networks |
-
2014
- 2014-03-31 WO PCT/CN2014/074475 patent/WO2015149253A1/en active Application Filing
- 2014-03-31 CN CN201480000195.8A patent/CN105284080B/en active Active
Patent Citations (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102938721A (en) * | 2004-02-13 | 2013-02-20 | 英特尔公司 | Apparatus and method for a dynamically extensible virtual switch |
CN102549977A (en) * | 2009-09-24 | 2012-07-04 | 日本电气株式会社 | Identification system for inter-virtual-server communication and identification method for inter-virtual-server communication |
CN102255903A (en) * | 2011-07-07 | 2011-11-23 | 广州杰赛科技股份有限公司 | Safety isolation method for virtual network and physical network of cloud computing |
Also Published As
Publication number | Publication date |
---|---|
CN105284080A (en) | 2016-01-27 |
WO2015149253A1 (en) | 2015-10-08 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN105284080B (en) | The virtual network management method and data center systems of data center | |
CN109660443B (en) | SDN-based physical device and virtual network communication method and system | |
CN105207873B (en) | A kind of message processing method and device | |
CN110088732B (en) | Data packet processing method, host and system | |
US10476699B2 (en) | VLAN to VXLAN translation using VLAN-aware virtual machines | |
CN104780088B (en) | A kind of transmission method and equipment of service message | |
US10205657B2 (en) | Packet forwarding in data center network | |
US9535730B2 (en) | Communication apparatus and configuration method | |
US20110035494A1 (en) | Network virtualization for a virtualized server data center environment | |
CN103930873B (en) | The configuration of the interface based on dynamic strategy for virtualized environment | |
US8718071B2 (en) | Method to pass virtual local area network information in virtual station interface discovery and configuration protocol | |
CN106685787B (en) | PowerVM (virtual machine) virtualized network management method and device based on OpenStack | |
CN102801729B (en) | Virtual machine message forwarding method, network switching equipment and communication system | |
EP2648370A1 (en) | Location-Aware Virtual Service Provisioning in a Hybrid Cloud Environment | |
CN104937885A (en) | Global VLANs for fabric switches | |
CN103118149B (en) | Communication control method between same tenant's server and the network equipment | |
CN107113219A (en) | VLAN marks in virtual environment | |
CN104350467A (en) | Elastic enforcement layer for cloud security using SDN | |
CN105323136A (en) | Information processing method and device | |
Matias et al. | An OpenFlow based network virtualization framework for the cloud | |
CN108632098A (en) | Flow classifier, business route flip-flop, Message processing method and system | |
KR20150032907A (en) | Communication method and system | |
CN103081418A (en) | Computer system and communication method in computer system | |
CN104272668A (en) | Layer-3 overlay gateways | |
CN107395508B (en) | Method and device for forwarding message |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant |