(performance is not an issue here)
I was wondering how to use a VM inside of ACI as firewall for the north-south traffic for a specific tenant. I know how to integrate using a L3 Out with a physical firewall on the outside of ACI connected to ACI leafs. But how could this be done with a VM which resides inside of ACI in a VMM Domain ??
How would you create a L3 Out pointing to a VM ?? or how would you add a route to a tenant point to a VM ?
Any ideas ?