The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 01, 2025

Filed:

Jul. 24, 2021
Applicant:

Vmware Llc, Palo Alto, CA (US);

Inventors:

Pierluigi Rolando, Santa Clara, CA (US);

Jayant Jain, Cupertino, CA (US);

Raju Koganty, San Jose, CA (US);

Shadab Shah, Sunnyvale, CA (US);

Abhishek Goliya, Pune, IN;

Chandran Anjur Narasimhan, Milpitas, CA (US);

Gurudutt Maiya Belur, San Carlos, CA (US);

Vikas Kamath, Burlingame, CA (US);

Assignee:

VMWare LLC, Palo Alto, CA (US);

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
H04L 45/42 (2022.01); H04L 9/40 (2022.01); H04L 45/00 (2022.01); H04L 45/586 (2022.01);
U.S. Cl.
CPC ...
H04L 63/20 (2013.01); H04L 45/42 (2013.01); H04L 45/566 (2013.01); H04L 45/586 (2013.01); H04L 63/029 (2013.01);
Abstract

A software-defined wide area network (SD-WAN) environment that leverages network virtualization management deployment is provided. Edge security services managed by the network virtualization management deployment are made available in the SD-WAN environment. Cloud gateways forward SD-WAN traffic to managed service nodes to apply security services. Network traffic is encapsulated with corresponding metadata to ensure that services can be performed according to the desired policy. Point-to-point tunnels are established between cloud gateways and the managed service nodes to transport the metadata to the managed service nodes using an overlay logical network. Virtual network identifiers (VNIs) in the metadata are used by the managed service nodes to identify tenants/policies. A managed service node receiving a packet uses provider service routers (T0-SR) and tenant service routers (T1-SRs) based on the VNI to apply the prescribed services for the tenant, and the resulting traffic is returned to the cloud gateway that originated the traffic.


Find Patent Forward Citations

Loading…