Forum Discussion
What_Lies_Bene1
Apr 23, 2014Cirrostratus
A few questions so I fully understand before I comment;
-
Are the switches just operating at L2 (all the L3 is on the firewall and/or F5) or do they have a L3 interface for each 'internal' VLAN too?
-
Rather confusing the VLANs are nearly all called Internal, shouldn't 201 onwards be called external?
-
I assume you have static routes in place on the firewall for the VIP ranges, pointing to the F5?
-
VRFs operate at layer three don't they? If the switches don't have L3 interfaces surely there is no need for VRFs? I could be wrong, it's been a while since I've used them. Or is there a need to absolutely have a routed subnet for every tenant regardless, even if the seperation is just via VLANs?