US 11,811,560 B2
Processing traffic in a virtualised environment
Colin Tregenza Dancer, Enfield (GB)
Assigned to METASWITCH NETWORKS LTD., Enfield (GB)
Filed by Metaswitch Networks Ltd., Enfield (GB)
Filed on Mar. 26, 2021, as Appl. No. 17/214,748.
Application 17/214,748 is a continuation of application No. 16/831,457, filed on Mar. 26, 2020, granted, now 10,965,497.
Claims priority of application No. 1914675 (GB), filed on Oct. 10, 2019.
Prior Publication US 2021/0377078 A1, Dec. 2, 2021
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 12/46 (2006.01)
CPC H04L 12/4675 (2013.01) [H04L 12/4633 (2013.01)] 20 Claims
OG exemplary drawing
 
1. A method of processing traffic in a virtualized environment, the virtualized environment comprising a physical underlay network; the virtualized environment implementing a first overlay network, on the physical underlay network and being associated with a first set of network addresses; the virtualized environment implementing a second overlay network, the second overlay network being an overlay of the first overlay network and associated with a second set of network addresses;
the method comprising:
receiving, by a networking component running in an execution environment of a first virtualized application running in the virtualized environment, data packets communicated from the first virtualized application to the first overlay network, the virtualized application associated with at least one network address in the first set of network addresses of the first overlay network and at least one network address in the second set of network addresses of the second overlay network;
encapsulating the received data packets with a network address in the first set of network addresses as a destination address;
forwarding, by the networking component, the encapsulated data packets to the first overlay network; and
based on a corresponding network address in the second set of network addresses for the virtualized application, applying, by a security element running in the second overlay network, security policies to the encapsulated data packets; wherein the first overlay network is different from the second overlay network.