HP Network Protector SDN Application Administrator Guide

Service Insertion is required in situations where the egress VLAN is inspected and the device
is routing. This situation is depicted in Figure 8 (page 18) with the Core 8212 switch.
DNS inspection is occurring on the 8212 device and redirected out to the SDN Controller.
Pure OpenFlow configuration on 8212 will not work in this scenario as packet-out normal
cannot be performed by the 8212 switch when it is routing.
In this scenario, Service Insertion configuration on 8212 and MTM will work with all
supported application features.
Configurations in which the application cannot inspect the original source MAC and IP address
are not supported. This restriction includes access-controlled VSCs.
Figure 8 (page 18) illustrates this example.
Figure 8 MSM wireless deployment
18 Deployment examples