Patents by Inventor Benjamin C. Basler
Benjamin C. Basler has filed for patents to protect the following inventions. This listing includes patent applications that are pending as well as patents that have already been granted by the United States Patent and Trademark Office (USPTO).
-
Publication number: 20240380696Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: ApplicationFiled: July 22, 2024Publication date: November 14, 2024Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Patent number: 12047286Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: GrantFiled: May 4, 2021Date of Patent: July 23, 2024Assignee: Nicira, Inc.Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Publication number: 20230283556Abstract: Some embodiments of the invention provide a method of reporting telemetry data in a telecommunication network. The telemetry data is collected from a set of one or more telemetry-producing (TP) network elements and is distributed to a set of one or more telemetry-consuming (TC) network elements registered to receive the telemetry data. The method receives a telemetry packet produced by a TP network element and performs a filtering operation to determine whether the telemetry packet should be reported to at least a subset of one or more TC network elements. When the filtering operations result in a determination that the telemetry packet should be reported, the method forwards the telemetry packet to the subset of TC network elements.Type: ApplicationFiled: May 11, 2023Publication date: September 7, 2023Inventors: Siddhant Deshmukh, Benjamin C. Basler, Rohan Agarwal, Srikanth Hariharan, Akash Gangil
-
Patent number: 11665094Abstract: Some embodiments of the invention provide a method of reporting telemetry data in a telecommunication network. The telemetry data is collected from a set of one or more telemetry-producing (TP) network elements and is distributed to a set of one or more telemetry-consuming (TC) network elements registered to receive the telemetry data. The method receives a telemetry packet produced by a TP network element and performs a filtering operation to determine whether the telemetry packet should be reported to at least a subset of one or more TC network elements. When the filtering operations result in a determination that the telemetry packet should be reported, the method forwards the telemetry packet to the subset of TC network elements.Type: GrantFiled: November 30, 2020Date of Patent: May 30, 2023Assignee: VMWARE, INC.Inventors: Siddhant Deshmukh, Benjamin C. Basler, Rohan Agarwal, Srikanth Hariharan, Akash Gangil
-
Publication number: 20230131054Abstract: Some embodiments provide a method for providing redundancy and fast convergence for modules operating in a network. The method configures modules to use a same anycast inner IP address, anycast MAC address, and to associate with a same anycast VTEP IP address. In some embodiments, the modules are operating in an active-active mode and all nodes running modules advertise the anycast VTEP IP addresses with equal local preference. In some embodiments, modules are operating in active-standby mode and the node running the active module advertises the anycast VTEP IP address with higher local preference.Type: ApplicationFiled: December 25, 2022Publication date: April 27, 2023Inventors: Sami Boutros, Benjamin C Basler, Ronghua Zhang, Jerome Catrouillet
-
Patent number: 11539574Abstract: Some embodiments provide a method for providing redundancy and fast convergence for modules operating in a network. The method configures modules to use a same anycast inner IP address, anycast MAC address, and to associate with a same anycast VTEP IP address. In some embodiments, the modules are operating in an active-active mode and all nodes running modules advertise the anycast VTEP IP addresses with equal local preference. In some embodiments, modules are operating in active-standby mode and the node running the active module advertises the anycast VTEP IP address with higher local preference.Type: GrantFiled: September 24, 2019Date of Patent: December 27, 2022Assignee: NICIRA, INC.Inventors: Sami Boutros, Benjamin C. Basler, Ronghua Zhang, Jerome Catrouillet
-
Publication number: 20220174012Abstract: Some embodiments of the invention provide a method of reporting telemetry data in a telecommunication network. The telemetry data is collected from a set of one or more telemetry-producing (TP) network elements and is distributed to a set of one or more telemetry-consuming (TC) network elements registered to receive the telemetry data. The method receives a telemetry packet produced by a TP network element and performs a filtering operation to determine whether the telemetry packet should be reported to at least a subset of one or more TC network elements. When the filtering operations result in a determination that the telemetry packet should be reported, the method forwards the telemetry packet to the subset of TC network elements.Type: ApplicationFiled: November 30, 2020Publication date: June 2, 2022Inventors: Siddhant Deshmukh, Benjamin C. Basler, Rohan Agarwal, Srikanth Hariharan, Akash Gangil
-
Publication number: 20210258254Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: ApplicationFiled: May 4, 2021Publication date: August 19, 2021Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Patent number: 11025543Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: GrantFiled: January 29, 2020Date of Patent: June 1, 2021Assignee: NICIRA, INC.Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C Basler, Serge Maskalik, Rajiv Ramanathan, David J Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Publication number: 20200169503Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: ApplicationFiled: January 29, 2020Publication date: May 28, 2020Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C Basler, Serge Maskalik, Rajiv Ramanathan, David J Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Patent number: 10659431Abstract: Some embodiments provide a method for applying a security policy defined for a logical network to an MHFE that integrates physical workloads (e.g., physical machines connected to the MHFE) with the logical network. The method applies the security policy to the MHFE by generating a set of ACL rules based on the security policy's definition and configuring the MHFE to apply the ACL rules on the network traffic that is forwarded to and/or from the physical machines. In order to configure an MHFE to implement the different LFEs of a logical network, some embodiments propagate an open source database stored on the MHFE, using an open source protocol. Some embodiments propagate a particular table of the database such that each record of the table creates an association between a port of an LFE stored in a logical forwarding table and one or more ACL rules stored in an ACL table.Type: GrantFiled: January 4, 2019Date of Patent: May 19, 2020Assignee: NICIRA, INC.Inventor: Benjamin C. Basler
-
Patent number: 10567283Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: GrantFiled: November 4, 2018Date of Patent: February 18, 2020Assignee: NICIRA, INC.Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Publication number: 20200021483Abstract: Some embodiments provide a method for providing redundancy and fast convergence for modules operating in a network. The method configures modules to use a same anycast inner IP address, anycast MAC address, and to associate with a same anycast VTEP IP address. In some embodiments, the modules are operating in an active-active mode and all nodes running modules advertise the anycast VTEP IP addresses with equal local preference. In some embodiments, modules are operating in active-standby mode and the node running the active module advertises the anycast VTEP IP address with higher local preference.Type: ApplicationFiled: September 24, 2019Publication date: January 16, 2020Inventors: Sami Boutros, Benjamin C. Basler, Ronghua Zhang, Jerome Catrouillet
-
Patent number: 10454758Abstract: Some embodiments provide a method for providing redundancy and fast convergence for modules operating in a network. The method configures modules to use a same anycast inner IP address, anycast MAC address, and to associate with a same anycast VTEP IP address. In some embodiments, the modules are operating in an active-active mode and all nodes running modules advertise the anycast VTEP IP addresses with equal local preference. In some embodiments, modules are operating in active-standby mode and the node running the active module advertises the anycast VTEP IP address with higher local preference.Type: GrantFiled: February 27, 2017Date of Patent: October 22, 2019Assignee: NICIRA, INC.Inventors: Sami Boutros, Benjamin C. Basler, Ronghua Zhang, Jerome Catrouillet
-
Patent number: 10389634Abstract: Some embodiments provide a method for a network controller in a network control system that manages a plurality of logical networks. The method receives a specification of a logical network that comprises a logical router with a logical port that connects to an external network. The method selects several host machines to host a L3 gateway that implements the connection to the external network for the logical router from a set of host machines designated for hosting logical routers. The method generates data tuples for provisioning a set of managed forwarding elements that implement the logical network to send data packets that require processing by the L3 gateway to the selected host machines. The data tuples specify for the managed forwarding elements to distribute the data packets across the selected host machines.Type: GrantFiled: June 18, 2018Date of Patent: August 20, 2019Assignee: NICIRA, INC.Inventors: Pankaj Thakkar, Ethan J. Jackson, Benjamin C. Basler
-
Publication number: 20190141011Abstract: Some embodiments provide a method for applying a security policy defined for a logical network to an MHFE that integrates physical workloads (e.g., physical machines connected to the MHFE) with the logical network. The method applies the security policy to the MHFE by generating a set of ACL rules based on the security policy's definition and configuring the MHFE to apply the ACL rules on the network traffic that is forwarded to and/or from the physical machines. In order to configure an MHFE to implement the different LFEs of a logical network, some embodiments propagate an open source database stored on the MHFE, using an open source protocol. Some embodiments propagate a particular table of the database such that each record of the table creates an association between a port of an LFE stored in a logical forwarding table and one or more ACL rules stored in an ACL table.Type: ApplicationFiled: January 4, 2019Publication date: May 9, 2019Inventor: Benjamin C. Basler
-
Publication number: 20190075050Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: ApplicationFiled: November 4, 2018Publication date: March 7, 2019Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Patent number: 10182035Abstract: Some embodiments provide a method for applying a security policy defined for a logical network to an MHFE that integrates physical workloads (e.g., physical machines connected to the MHFE) with the logical network. The method applies the security policy to the MHFE by generating a set of ACL rules based on the security policy's definition and configuring the MHFE to apply the ACL rules on the network traffic that is forwarded to and/or from the physical machines. In order to configure an MHFE to implement the different LFEs of a logical network, some embodiments propagate an open source database stored on the MHFE, using an open source protocol. Some embodiments propagate a particular table of the database such that each record of the table creates an association between a port of an LFE stored in a logical forwarding table and one or more ACL rules stored in an ACL table.Type: GrantFiled: August 31, 2016Date of Patent: January 15, 2019Assignee: NICIRA, INC.Inventor: Benjamin C. Basler
-
Patent number: 10164881Abstract: Some embodiments provide a network system. The network system includes a first set of host machines for hosting virtual machines that connect to each other through a logical network. The first set of host machines includes managed forwarding elements for forwarding data between the host machines. The network system includes a second set of host machines for hosting virtualized containers that operate as gateways for forwarding data between the virtual machines and an external network. At least one of the virtualized containers peers with at least one physical router in the external network in order to advertise addresses of the virtual machines to the physical router.Type: GrantFiled: February 17, 2017Date of Patent: December 25, 2018Assignee: NICIRA, INC.Inventors: Ariel Tubaltsev, Ronghua Zhang, Benjamin C. Basler, Serge Maskalik, Rajiv Ramanathan, David J. Leroy, Srinivas Neginhal, Kai-Wei Fan, Ansis Atteka
-
Publication number: 20180302326Abstract: Some embodiments provide a method for a network controller in a network control system that manages a plurality of logical networks. The method receives a specification of a logical network that comprises a logical router with a logical port that connects to an external network. The method selects several host machines to host a L3 gateway that implements the connection to the external network for the logical router from a set of host machines designated for hosting logical routers. The method generates data tuples for provisioning a set of managed forwarding elements that implement the logical network to send data packets that require processing by the L3 gateway to the selected host machines. The data tuples specify for the managed forwarding elements to distribute the data packets across the selected host machines.Type: ApplicationFiled: June 18, 2018Publication date: October 18, 2018Inventors: Pankaj Thakkar, Ethan J. Jackson, Benjamin C. Basler