Forum Discussion
Overlapped Networks Question
- Jul 17, 2023
I suggest you implement this traffic steering based on topology records/LB. It will scale much better and is made for just this use case.
K75177455: Forcing DNS traffic to different data center when using Topology Load Balancing method
https://my.f5.com/manage/s/article/K75177455
https://www.youtube.com/watch?v=PyqHmmMcmm0
https://blog.garraux.net/2012/08/f5-gtm-topology-records-lessons-learned/
But to answer your original question, once an "if" or "elseif" condition is matched, it is executed and the that whole logic tree is done.
As I think about your scenario more, you may have bigger issues with either the clients being on overlapping network space or the dns response being on overlapping networks spaces. If either one of those is true, L3 routing will break for one or both. Overlapping address spaces are first isolated through route domains. From there, DNS services can/should be further isolated to control responses as needed (seperate DNS). You don't want DNS records accidentially bleeding into other domains.
I suggest you implement this traffic steering based on topology records/LB. It will scale much better and is made for just this use case.
K75177455: Forcing DNS traffic to different data center when using Topology Load Balancing method
https://my.f5.com/manage/s/article/K75177455
https://www.youtube.com/watch?v=PyqHmmMcmm0
https://blog.garraux.net/2012/08/f5-gtm-topology-records-lessons-learned/
But to answer your original question, once an "if" or "elseif" condition is matched, it is executed and the that whole logic tree is done.
As I think about your scenario more, you may have bigger issues with either the clients being on overlapping network space or the dns response being on overlapping networks spaces. If either one of those is true, L3 routing will break for one or both. Overlapping address spaces are first isolated through route domains. From there, DNS services can/should be further isolated to control responses as needed (seperate DNS). You don't want DNS records accidentially bleeding into other domains.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com