I would like to ask how can I configure the service graph in ACI when working together with a firewall. I have created two EPGs and successfully connect them together through the service graph while the gateway of the endpoints are point to the firewall internal interface.
My question is that
1. How can I do the service graph if the gateway of the endpoint keep on the anycast gateway of the BD? Is PBR a must in this case?
2. When it comes to the external network, how can I connect the external network by using the service graph? I would still want to keep the anycast gateway as the default gateway of those endpoints.