Forum Discussion

Dash's avatar
Dash
Icon for Nimbostratus rankNimbostratus
Aug 21, 2019

Create F5 partitions for different environments

I have a F5 that is being used by dev/qa department,everything is in the Common partition

 

Anyway there is a new project and bunch of new VIPs/vlan/Gateways,APIs

I know last time there was conflicts from last project

 

I cant seem to find the info but i remember awhile back someone was saying,

I could create another partition on the F5 as a blank slate for different depts but it wont affect the common partition.

With all new subnets and vlans , VIPs,etc

 

Anyone have a starting point or a good article for this,does it work that way?

 

 

 

2 Replies

  • Hi Dash,

     

    I think these articles can help you.

    With new subnets and vlan's I think you also need a new route domain (VRF in normal network terminology)

     

    https://techdocs.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/tmos-routing-administration-11-6-0/8.html

     

    https://techdocs.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/tmos-concepts-11-5-0/8.html

     

    Also a word of advice, create the route domain and vlans in common, assign the route domain to your new partition and assign the vlans to the route domain (this will help if you ever decide to add an extra partition to the same route domain). Self-ip's and routes can be created in partition.

     

    Cheers,

     

    Kees

  • It's good to know there are administrative partitions and route domains. Most of the time these are used together to configure a flexible multi-tenant design.

     

    Route Domains are like VRFs on Cisco and can be used to create an isolated network environment. So you can add VLANs, subnets and Self-IPs to a specific route domain.

     

    Partitions are used to create administrative seperation between objects. This is useful to grant user access only to partitions for which they are authorized.

     

    Here are some useful resources:

     

    https://www.f5.com/services/resources/white-papers/multi-tenancy-designs-for-the-f5-high-performance-services-fabric

    https://techdocs.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/tmos-concepts-11-5-0/8.html

    https://techdocs.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/tmos-routing-administration-11-6-0/8.html

    http://www.kareemccie.com/2017/10/f5-route-domains.html