Forum Discussion
CA_Valli
Apr 11, 2023MVP
You can, service configuration can be independent and BIG-IP supports the option to specify several routes.
So you can have one FrontEndVLAN_110 , tag 110 , IP addressing 10.110.0.0/24 that serves your VIP's and forward traffic to BackEndVLAN_120, tag 120, IP addressing 10.120.0.0/24 ;
while also having one different FrontEndVLAN_130, tag 130, IP addressing 10.130.0.0/24 that forwads traffic to BE servers in the same VLAN.
You can restrict Virtual Server access to specific VLAN and networks. You can also build routing instances (VRF-like) for even more strictness on forwarding.