Creating a virtual routing and forwarding table

You can create a virtual routing and forwarding table in a CPE template or on a CPE device. A virtual routing and forwarding table created in the CPE template is automatically created on all CPE devices that use this CPE template.

To create a virtual routing and forwarding table:

  1. Create a virtual routing and forwarding table in one of the following ways:
    • If you want to create a virtual routing and forwarding table in a CPE template, go to the SD-WAN → CPE templates menu section, click the CPE template, and select the VRF tab.
    • If you want to create a virtual routing and forwarding table on a CPE device, go to the SD-WAN → CPE menu section, click the CPE device, and select the VRF tab.

    The table of virtual routing and forwarding tables is displayed.

  2. Click + VRF.
  3. This opens a window; in that window, in the Name field, enter the name of the virtual routing and forwarding table.
  4. In the Table field, enter the ID of the virtual routing and forwarding table. Range of values: 100 to 199.
  5. In the Interfaces drop-down list, select the created network interface that you want to add to the virtual routing and forwarding table. You cannot add the same network interface to multiple virtual routing and forwarding tables.

    The network instance is added and displayed in the lower part of the window. You can add multiple network interfaces or delete a network interface. To delete a network interface, click Delete next to it.

    If you added a network interface with a name in the 'overlay.<number>' format (for example, 'overlay.100') to the virtual routing and forwarding table, you must select the Enable automatically and Force IP, route, and gateway check boxes when creating or editing the network interface.

  6. Click + Create.

    The virtual routing and forwarding table is created and displayed in the table. A system network interface corresponding to the created virtual routing and forwarding table is created on the CPE device.

  7. Create a record in the orchestrator web interface for the system network interface:
    1. Select the Network settings tab.

      The table of network interfaces is displayed.

    2. Click + Network interface.
    3. This opens a window; in that window, in the Alias field, enter the name of the virtual routing and forwarding table that you specified at step 3 of these instructions. Maximum length: 15 characters.
    4. If firewall zones are assigned to network interfaces in the virtual routing and forwarding table, and the CPE device firewall does not, by default, accept traffic packets forwarded between network interfaces and subnets, in the Zone drop-down list, select a firewall zone. The selected firewall zone must also be assigned to one of the network interfaces in the virtual routing and forwarding table.
    5. In the Interface name field, enter the name of the virtual routing and forwarding table that you specified at step 3 of these instructions. Maximum length: 256 characters.
  8. Click Create.

    A record for the system network interface is created and displayed in the table.

  9. In the upper part of the settings area, click Save to save the settings of the CPE template or CPE device.

See also

Managing the firewall

Page top