This guide explores the architectural trade-offs, performance limitations, and modern design patterns (such as VRF-lite) to help you choose the right routing boundary for your enterprise. Part 1: Common Enterprise L3 Designs Routing on a core switch prioritizes raw. For enterprise network architects and senior infrastructure engineers, determining where Layer 3 routing logic should reside—on the core switch or the Next-Generation Firewall (NGFW)—is a foundational design decision. Firewalls typically have lower throughout than the Core, however it would give you security between VLANs There is no best solution, just depends on the customer requirements EDIT: also, it's not a stupid question, this comes up pretty regularly in the Enterprise and knowing why you would do one. How would you configure the connection between Core and Firewall? Currently we have a transit network (VLAN 100, 192. In this example, Internet access traffic of users passes through the BRAS, and then reaches the egress network of the firewall through the core switch. The hierarchy Ethernet network is a three-layer integrated setup of networking devices.
Read More