Forum Discussion
Route Domains and VLANs
You can have the virtuals reside in route domain 0 and put the various pool members into separate route domains and establish parent-child route domain relationships. I don't know that route domains is what you really want to do though. Think of them like a VRF. They're not so much a security measure (just like routing isn't a security measure).
Route Domains were a compromise with our security team, they really don't like the fact that we only have 1 F5 and when we put in our routes originally to separate the traffic we ran into some asymmetrical routing issues. The idea behind implementing route domains was to get us past the routing issue and allow us to route specific traffic over certain routes to make sure that DMZ traffic never touches Prod traffic and etc.
I know the whole thing sounds a little crazy and the way we originally had it setup worked just fine, but security didn't like it.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com