Policy-driven workload launching based on software defined networking encryption policies

The invention relates to policy-driven workload launching based on software defined networking encryption policies. Techniques are disclosed for implementing scalable policies across a plurality of categories that support application workloads. In one example, the policy is a security policy that in...

Full description

Saved in:
Bibliographic Details
Main Author MIRIYALA PRASAD
Format Patent
LanguageChinese
English
Published 28.05.2019
Subjects
Online AccessGet full text

Cover

Loading…
More Information
Summary:The invention relates to policy-driven workload launching based on software defined networking encryption policies. Techniques are disclosed for implementing scalable policies across a plurality of categories that support application workloads. In one example, the policy is a security policy that indicates which types of virtualized application workloads are required to communicate with encryptionand groups computing devices into zones that communicate via respective tunnels configured to carry encrypted communication. An orchestration engine selects a computing device based on the zones fined in the security policy to ensure that the virtualized application workloads requiring encrypted communication communicate via tunnels configured to carry encrypted communication. 本发明涉及基于软件定义网络加密策略的策略驱动的工作负载启动。公开了用于跨支持应用程序工作负载的多个类别实现可扩展策略的技术。在一个示例中,该策略是安全策略,其指示需要哪些类型的虚拟化应用程序工作负载来加密通信,并将计算设备分组成经由被配置为承载加密通信的各个隧道进行通信的区。编制引擎基于安全策略中限定的区来选择计算设备,以确保需要加密通信的虚拟化应用程序工作负载经由被配置为承载加密通信的隧道进行通信。
Bibliography:Application Number: CN201811383529