VRF Profile

VRF (Virtual Routing and Forwarding) is a technology that allows multiple instances of a routing table to co-exist within the same router. This enables network segmentation and isolation, allowing different tenants or services to operate independently on shared infrastructure.

Route Leaking in VRF

Route leaking is a mechanism that allows selected routes from one VRF to be shared with another. This is useful when communication between isolated VRFs is required. In Classic Central, route leaking can be configured using import and export route targets and route maps.

Creating a VRF Profile

To create a VRF profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select one of the following options:

    • Library—This is the default selection. If you create profiles in the Library, then you must assign scope and device functions to the profiles. For more information, see Assigning Scope to a VRF Profile.

    • Global—If you create profiles at the Global level, then the profiles have Global scope assigned by default.

    • Site Collections—If you create profiles at the Site Collections level, then the profiles have site collection scope assigned by default.

    • Sites—If you create profiles at the Site level, then the profiles have site scope assigned by default.

    • Devices—If you create profiles at the Device level, then the profiles have device scope assigned by default.

    • Device Groups—If you create profiles at the Device Group level, then the profiles have device group scope assigned by default.

    Note:

    • To create profiles at the Global level, select the device type from the Device Function drop-down list before step 4.
    • To create profiles at the Site Collections, Sites, Devices, and Device Group level, complete the following steps before step 4:
      1. Select Site Collection, Site, Device, or Device Group in the left navigation menu.
      2. Select a Site Collection, Site, Device, or Device Group from the list view depending on the level where you are creating the profile.
      3. Select the device type from the Device Function drop-down list.

  3. On the Routing & Overlays card, click VRF.
    Alternatively, you can complete the following steps:

    1. On the Routing & Overlays card, click Manage.

    2. On the VRF card, click Manage.

    The VRF list view is displayed.

  4. Click Create Profile.
    The Create Profile side panel is displayed.

  5. Enter the VRF profile parameters:

    • Name—Enter the name of the VRF profile.

    • Description—Enter the description for the VRF profile

  6. Select the Advanced check-box and configure the following policies and network access lists.

    1. Policy—Select Inbound, Outbound, Control Plane, or Inbound & Outbound from the Policy drop-down list. and select the corresponding policy from the Inbound Network Policy, Outbound Network Policy, or Control Plane Policy drop-down list.

    2. Route Distinguisher—Specify the route distinguisher value in the AS:NN or IP address format (A.B.C.D:NN). This configures the VRF table with the specified route distinguisher. A route distinguisher ensures that routes remain unique across multiple VRFs.

    3. Use VRF for L3 VPN only—Select this checkbox to enable VRF for Layer 3 VPN functionality only.

    4. Route Target—Configure the route targets used for importing or exporting routes to other VRFs. Multiple route targets can be associated with a VRF. This can be a value or list of values.You can configure the following route targets:

      • Address Family IPv4 Unicast—Select this checkbox to specify IPv4 Unicast Route Targets.

      • Address Family IPv6 Unicast—Select this checkbox to specify IPv6 Unicast Route Targets.

      • EVPN —Select this checkbox to specify EVPN Route Targets.

    5. Based on your selection, specify the import and export route targets in the AS:NN or IP address format (A.B.C.D:NN) by clicking the add + icon in the corresponding Import Route Targets and Export Route Targets tables.

    6. Export Route Map—Specify the route map profile from the drop-down list to be used when exporting routes to the VRF. This field is not applicable for the EVPN route targets.

      To add a new route map profile, click New Route Map Profile from the drop-down list. You must then navigate to the newly added route map profile to configure rules. For more information, see Route Maps Profile.

  7. Click Create.

    The newly created profile is displayed in the VRF list.

  8. To edit a profile, complete the following steps:

    1. Click anywhere on the row of the profile in the list view.

      The Edit Profile view is displayed in the side panel.

    2. Edit the required parameters.

    3. Click Update.

  9. To delete a profile, hover on the profile name, and click the delete icon.

  10. To search for a profile, type the profile name in the search bar. The search bar displays dynamic results as soon as you start typing.

Assigning Scope to a VRF Profile

You must assign a scope and device function to a VRF profile created in the Library.

To assign scope to a profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. Ensure that the default option Library is selected in the left navigation menu.

  3. On the Routing & Overlays card, click VRF.
    Alternatively, you can complete the following steps:

    1. On the Routing & Overlays card, click Manage.

    2. On the VRF card, click Manage.

    The VRF list view is displayed.

  4. Hover on the profile to which you want to assign a scope and click the ellipsis icon.

  5. Select Assign.

    The Assign Profile side panel is displayed.

  6. Select the device types from Device Function list.

  7. To add a scope, click the Add icon on the Scopes table.

  8. Select a scope from the following Scope Level options in the drop-down list:

    • Global—Selecting this option assigns the scope at the Global level.

    • Site Collections—Select the site collections from the Assign to Scope drop-down list.

    • Sites—Select the sites from the Assign to Scope drop-down list.

    • Devices—Select the devices from the Assign to Scope drop-down list.

    • Device Groups—Select the device groups from the Assign to Scope drop-down list.

  9. Click Add.

    The Scopes table displays the newly added scopes.

  10. Click Assign.

    The VRF list displays the device functions and number of scopes assigned to the profile.

  11. To unassign a scope from a profile, complete the following steps:

    1. Hover on the profile name and click the ellipsis icon.

    2. Select Unassign.

    3. Select the required scope and click Unassign.

  12. To customize the VRF profile list, click the Customize Columns icon .