Network system, machine allocation device and machine allocation method
Abstract
There is provided a load distribution function that enables an application of a user to be freely allocated to a machine even if an address of a terminal or the application used by the user is duplicated between VPNs for each user. An access detector of a machine allocation device detects a start packet from received communication packets, and determines the type of the start packet and the type of the application used by the terminal. A machine allocation manager determines a machine on which the determined application operates, and operates the machine. A network manager configures a user virtual network on a second virtual network between the determined machine and the machine allocation device.
Claims
exact text as granted — not AI-modifiedWhat is claimed is:
1 . A network system coupled to a first physical network and providing a service to a device coupled to the first physical network,
the network system comprising a second physical network coupling to one or more physical computers; the network system, for each user using the device, being configured to: specify a first virtual network for the user, the first virtual network being configured on the first physical network; specify one or more virtual machines generated on the physical computer, the virtual machine running an application providing the service to the device; specify a second virtual network for the user on the second physical network, the second virtual network being coupled to the one or more virtual machines specified; and generate a private network for the user, by determining an association between the first virtual network, the second virtual network and the virtual machine.
2 . The network system according to claim 1 ,
wherein specifying an address of the virtual machine on the second virtual network on the basis of an address of the device coupled to the first virtual network.
3 . The network system according to claim 1 , further being configured to:
when detecting a start of providing the service to the user, start the application providing the service on the virtual machine in the association, or when detecting a stop of providing the service to the user, stop the application running on the virtual machines.
4 . The network system according to claim 1 , further being configured to:
by updating the association, couple a new virtual machine to the second virtual network, or decouple the one or more of the virtual machines from the second virtual network.
5 . The network system according to claim 4 , further being configured to:
by updating the association in response to the start of end of the application, couple a new virtual machine to the second virtual network, or decouple the one or more of the virtual machines from the second virtual network.
6 . The network system according to claim 4 , further being configured to:
start, in response to the connecting to the private network, the virtual machine, or shut down, in response to the disconnecting from the private network, the virtual machine.
7 . The network system according to claim 1 , wherein
the association includes an identifier of the first virtual network and an identifier of the second virtual network, the identifier of the first virtual network is predetermined, and the identifier of the second virtual network is determined when configuring the second virtual network.
8 . The network system according to claim 7 , further being configured to:
convert one another, on the basis of the association, the identifier between the first virtual network and the second virtual network, the identifier being attached to a packet in the service.
9 . The network system according to claim 8 , further being configured to:
start the virtual machine specified in the association on the physical computer.
10 . The network system according to claim 9 , further being configured to:
start an application providing the service, on the virtual machine specified in the association.
11 . The network system according to claim 4 , further being configured to:
delete the second virtual network when no virtual machine is coupled to the second virtual network as a result of the decoupling (the virtual machine from the second virtual network).
12 . The network system according to claim 1 , further being configured to:
send a instruction to one or more nodes configuring the second physical network, to configure the specified second virtual network on the second physical network.
13 . The network system according to claim 1 , further being configured to:
if the network system has a plurality of the physical computers, when providing the service to the device of the user, select one physical computer out of the physical computers and start the first virtual machine on the selected physical computer.
14 . The network system according to claim 13 , further being configured to:
select the physical computer, on the basis of a load on processors of the physical computers, bandwidth used in the network, or a type of a communication by the application.
15 . The network system according to claim 1 , further being configured to:
configure the second virtual network by conforming to an encryption and decryption protocol.Join the waitlist — get patent alerts
Track US2016142302A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.