Traffic Flow from the VPN to the Internet Overview

Traffic from a CE router arrives on a PE interface that exists in the context of a VRF. The PE router then looks up the destination address of the IP packet in the context of the VRF routing table rather than the VR routing table.


The VRF routing table lookup introduces the following complication.


The following methods enable advertising of Internet routes to VPN sites and thus enable traffic flow from the VPNs to the Internet:

You can create multiple IP interfaces on top of a single layer 2 interface. One of those interfaces is the primary IP interface for receiving and sending IP packets. The other interfaces are shared IP interfaces that are used only to send traffic.

