[AusNOG] multi customer self manageable virtual router

Michael Andreas Schipp MSchipp at a10networks.com
Sun Apr 28 14:14:02 EST 2013


Hi David,
              This link may help to give you an overview of the multi-tenancy of the A10 range.
http://www.a10networks.com/forms/register.WP-Multi-tenancy.php

Thanks.

From: ausnog-bounces at lists.ausnog.net [mailto:ausnog-bounces at lists.ausnog.net] On Behalf Of Michael Andreas Schipp
Sent: Sunday, 28 April 2013 2:01 PM
To: David George; ausnog at lists.ausnog.net
Subject: Re: [AusNOG] multi customer self manageable virtual router

Hi David,
              If I understand what you are after then most can be done with an A10 Networks hardware of soft ADC (IPSEC would need to be done via another device however).


*       Individual route/arp tables per customer

*       Network separation

*       IP address reuse (same IP range in different partitions)

*       Individual web and SSH access

*       Port forwarding will become a VIP

Note : routing via the GUI is for static routes only, via CLI IS-IS (V4 and V6, OSFP (V2 and V3), RIPv2/ng, BGP 4/4+

Number of Partitions/customers varies by platform ranging from 32 to 1024 per devices.

Thank you,

Michael A Schipp
Regional SE Manager ANZ
A10 Networks

Direct: 0402 907 928
Email: mschipp at a10networks.com<mailto:mschipp at a10networks.com>
WEB:     www.a10networks.com<http://www.a10networks.com/>
Twitter: @maschipp
Skype:   michael_schipp

From: ausnog-bounces at lists.ausnog.net<mailto:ausnog-bounces at lists.ausnog.net> [mailto:ausnog-bounces at lists.ausnog.net] On Behalf Of David George
Sent: Sunday, 28 April 2013 10:31 AM
To: ausnog at lists.ausnog.net<mailto:ausnog at lists.ausnog.net>
Subject: [AusNOG] multi customer self manageable virtual router

Morning all,
                Does anyone know if a product exists that can allow me to act as a gateway for a bunch of different private l3/l2 networks with overlapping ips... so it'll have to understand multiple route tables or vrf at some level (still need each customer isolated, although each customer can have multiple sites)...  and give the customers the ability to manage their own ipsec tunnels, port forwards and anything else they're likely to want via a friendly web ui ?  The alternative is running up one vm per customer of one of the many good all-in-one router distros..  Currently each customer is handed off via a dot1q vlan.
                Or am I looking at this the wrong way, and should I move all of this onto some decent cisco kit and work on finding a friendly web ui that can manage rules relevant to the client on that device?

Thanks in advance
-dave.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ausnog.net/pipermail/ausnog/attachments/20130428/043b1b19/attachment.html>


More information about the AusNOG mailing list