Forum Discussion

Gus_135027's avatar
Dec 05, 2013

Route Domains

Hello Everybody,

 

Would you use Route Domains only if there are conflicting IP ranges? E.g. multiple customers

 

Or can you use Route Domains to segregate external and internet applications.

 

E.g.

 

External Route Domain: Internet Users <--> External Firewall <--> External Switch <--> F5 <--> DMZ Switch <--> DMZ Servers

 

Internal Route Domain: Internal Users <--> Internal Router <--> VLAN: F5 VS, Pool and Nodes (one arm configuration).

 

Any drawbacks apart from the extra management?

 

Any opinions will be welcomed!

 

Thanks,

 

2 Replies

  • Hi, you can compare Routing Domain to a VRF. You separate L3 between route tables.

     

    I advice you to pair Routing Domain with Admin Partition so that an admin can only make modifications on the right partition/routing domain.

     

    But keep in mind, there is only one TMOS below.

     

    If you want a real separation, use vCMP on 5200v, 7200v, 10200v or VIPRION.

     

    But your example is right. An internal and an external RD.