Hi,
Attempting to summarize "SD-Access Segmentation Design Guide May 2018" in relation to best practice for best device to apply polices with. I have created a table below to summaries.
Traffic Flow | Policy Location Application |
Within SGT | Fabric Edge - destination Egress |
Inter SGT within VRF (VN) | Fabric Edge - destination Egress |
Inter-VRF (VN) | SGFW |
SGT to Data Center | SGFW or at the border node, within the path or at the destination |
SGT to External | SGFW or at the border node, within the path or at the destination |
Any thoughts? Does it appear correct? Perhaps to black and white?
Kind regards
Aidan