EP4597977A2

Route advertisement to support distributed gateway services architecture

Abstract

Some embodiments of the invention provide a novel network architecture for advertising routes in an availability zone (e.g., a datacenter providing a set of hardware resources). The novel network architecture, in some embodiments, also provides a set of distributed services at the edge of a virtual private cloud (VPC) implemented in the availability zone (e.g., using the hardware resources of a datacenter) at a set of host computers in the AZ. The novel network architecture includes a set of route servers for receiving advertisements of network addresses (e.g., internet protocol (IP) addresses) as being available in the availability zone (AZ) from different routers in the AZ. The route servers also advertise the received network addresses to other routers in the AZ. In some embodiments, the other routers include routers executing on host computers in the AZ and gateway devices of the availability zone.

EP4597977A2, drawing sheet 1
Sheet 1 of 14

Term

14.6 yearsto projected expiry

Projected expiry 1 May 2041, counted from filing; an application has no term until it is granted.

  1. Priority
  2. Filed
  3. Published
  4. Today
  5. Projected expiry

14 claims: 5 independent, 9 dependent

  1. 1
    A method (700) for a routing instance executing on a host computer in a plurality of host computers that together implement a distributed edge service for a virtual private cloud, VPC, implemented by the plurality of host computers, the method comprising:at the routing instance executing on the host computer, detecting (710) that a service has been made available on the host computer to provide a distributed edge service for ingressing data messages entering the VPC from machines outside of the VPC and destined to machines inside of the VPC;identifying (720) a network address associated with the service;and advertising (740) the identified network address to a route server operating outside of the host computer for the route server to advertise to a gateway device of the datacenter for the gateway device to use to direct at least a subset of the ingressing data messages to the host computer for the distributed edge service.
  2. 4
    The method of any one of claims 1 to 3, wherein detecting (710) that the service instance is available comprises receiving a notification from the service instance.
  3. 5
    The method of any one of claims 1 to 4, wherein the identified network address is an external network address associated with the distributed service used by machines outside the logical network.
  4. 7
    The method of any one of claims 1 to 6, wherein the logical network is a first logical network of a first tenant, the service instance is a first service instance of the first tenant, the distributed edge service is a first distributed edge service, and a set of host computers in the plurality of host computers implement a second distributed edge service for a second logical network implemented by a set of host computers in the plurality of host computers, the second distributed edge service provided for data messages associated with a plurality of DCNs entering and exiting the second logical network through the gateway device of the datacenter, the method further comprising:detecting that a second service instance for providing the second distributed edge service for the second logical network has been made available on the host computer;identifying a network address associated with the instantiated second service instance;and advertising the identified network address associated with the second service instance to a route server for the route server to advertise to the gateway device of the datacenter.
  5. 10
    The method of any one of claims 1 to 9, wherein the routing instance registers for notifications relating to the addition of service instances to the host computer.
  6. 11
    A machine-readable medium storing a program which when implemented by at least one processing unit implements the method (700) according to any one of claims 1 to 10.
  7. 12
    An electronic device comprising:a set of processing units;and a machine-readable medium storing a program which when implemented by at least one of the processing units implements the method (700) according to any one of claims 1 to 10.
  8. 13
    A system comprising means for implementing the method (700) according to any one of claims 1 to 10.
  9. 14
    A computer program product comprising instructions which when executed by a computer cause the computer to perform the method (700) according to any one of claims 1 to 10.