Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Method and device for migrating virtual machine safety policy

A virtual machine migration and security policy technology, applied in the field of data center virtual server security policy migration, can solve the problems of VM online migration loss, slow speed, large security risks, etc., and achieve the effect of exempting manual configuration operations of security devices

Active Publication Date: 2012-10-17
NEW H3C TECH CO LTD
View PDF4 Cites 44 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, the operation of the administrator faces many problems. The administrator first needs to know whether the migrated VM is managed by a new security device. For example, when migrating in the same data center, the VM may be in the same security device before and after migration protected, so no configuration adjustments are required on the security device
If the administrator judges that the VM will be protected by a new firewall in the new location, then the administrator needs to manually adjust the configuration on the new firewall, and also delete the configuration under the original firewall, which is slow to operate. And it may cause business service interruption for a long time, which makes the online migration of VM meaningless
In addition, because the security policy configuration of the firewall is relatively complicated and professional, a little carelessness may lead to greater security risks, so requiring the administrator to perform manual operations repeatedly may cause greater security risks
From this point of view, the current VM migration process has brought great trouble to the data center managers.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and device for migrating virtual machine safety policy
  • Method and device for migrating virtual machine safety policy
  • Method and device for migrating virtual machine safety policy

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0017] The present invention solves the problem of VM security policy migration through the cooperation of the virtual machine management device and the safety equipment management device. The specific implementation of the present invention in an embodiment will be described in detail below with reference to the accompanying drawings.

[0018] Many large users (such as major Internet companies) will have multiple data center sites (DC Sites) in different locations (such as figure 1 in DC1 and DC2). The servers at each data center site can be created and managed individually or in batches by a virtual machine management device (not shown), such as KVM virtualization software running on an independent server, which usually includes The physical server where the VM is located allocates various underlying hardware resources including CPU and various software resources for the VM, and sets and manages various network attributes of the access port to which the VM belongs, such as ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a virtual machine safety policy migrating device which is applied in a safety management server in a data center and comprises a migration sensing unit, a positioning unit and a safety policy management unit, wherein the migration sensing unit is used for receiving a virtual machine migration report from a virtual machine management device; the report contains location parameters of the virtual machine; the positioning unit is used for determining an original safety device to which the virtual machine belongs before the migration according to the location parameters of the virtual machine, and a new safety device to which the virtual machine belongs after the migration; the safety policy management unit is used for obtaining the safety policy of the virtual machine configured on the original safety device, and transmitting the safety policy to the new safety device. By utilizing the virtual machine safety policy migrating device, the automatic seamless migration of the safety policy of the safety device on the virtual machine along with the migration of the virtual migration is realized; and the manual configuration operation of a manager on the safety device because of the migration of the virtual machine is avoided, which means a lot for a large data center in which the virtual machine migrates often.

Description

technical field [0001] The invention relates to a data center virtualization technology, in particular to a data center virtual server security policy migration method and device. Background technique [0002] With the development of the Internet, virtualization technology has been widely used in data centers at all levels, especially server virtualization technology has been accepted and successfully implemented by the majority of users. Virtualization technology can virtualize multiple independent virtual machines (VMs, Virtual Machines) on a single physical server. These VMs can be regarded as an independent server and have their own IP address and MAC like the physical server. It has its own operating system and various applications; the popular virtualization software at this stage mainly includes VMware, Xen, Microsoft's Hypervisor-V and the open source KVM virtualization platform. The state of use. [0003] Mainstream virtualization technologies also support the mig...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L29/12H04L12/24
CPCH04L12/24H04L29/12H04L29/06H04L41/28H04L67/34H04L63/0218H04L63/20H04L49/70G06F2009/45587G06F9/45558G06F2009/4557G06F9/5027G06F2209/5013H04L63/0876
Inventor 孙松儿吕振峰
Owner NEW H3C TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products