My current setup is as below:
PE - Internal Switch - Firewall - DMZ switch - Internet
Between the PE and Internal Switch , I am running eBGP with multiple VRF.
As there is a need for some VRF customers to reach the DMZ switch, I have inputted the following routes on the switch
ip route vrf A 0.0.0.0 0.0.0 "Firewall IP" global
ip route vrf B 0.0.0.0 0.0.0 "Firewall IP" global
I am wondering if the return traffic from the firewall knows how to reach individual vrf range on the Internal Switch?