Describes how contracts enable Layer 3 Outs in different VRFs to exchange connected, transit, static, and dynamic routes across VRF boundaries.
Inter-VRF route leaking between Layer 3 Outs is a configuration capability that
-
requires a contract between the Layer 3 Outs,
-
uses contract enforcement to leak connected, transit, static, or dynamic routes, and
-
supports shared Layer 3 Outs in different VRFs.
Configuration requirements and behavior
The following requirements and behaviors apply to inter-VRF route leaking between Layer 3 Outs:
-
Connected and transit routes: Contracts between Layer 3 Outs or between a Layer 3 Out and an EPG can leak connected and transit routes without leaking dynamic or static routes between VRFs.
-
Dynamic and static routes: Contracts between Layer 3 Outs or between a Layer 3 Out and an EPG can leak dynamic and static routes without advertising directly connected or transit routes between VRFs.
-
Bridge domain association: An inter-VRF shared Layer 3 Out does not require the bridge domain to be associated with a Layer 3 Out. User-tenant bridge domains do not have to be associated with the Layer 3 Out in the
commontenant. Continue to associate a tenant-specific Layer 3 Out with the bridge domains in that tenant. -
VRF placement: The two Layer 3 Outs can belong to different VRFs and exchange routes.
-
Contract placement: This communication model uses the same contract enforcement as inter-VRF communication between an application EPG and a Layer 3 Out. However, the contract is between two Layer 3 Outs.
The following figure shows two Layer 3 Outs with a shared subnet and a contract between the Layer 3 external instance profiles (l3extInstP) in both VRFs.