We make extensive use of VRFs to segregate subnetworks according to the network policies in effect. Subnetworks within a VRF can communicate (fairly) unfettered, but to cross between VRFs traffic has to (normally) pass through a policy device. VRF-Lite merges all of the information into a common set of tables, but in a full VRF network things like the ARP and Routing tables are completely segregated by the routing instance. This allows traffic to get high-speed routing between networks with a common security profile, and consistently apply the right set of policy devices.
Here is an sample of some of the VRFs we operate ( from a Juniper router)
SolarWinds solutions are rooted in our deep connection to our user base in the THWACK® online community.
More than 150,000 members are here to solve problems, share technology and best practices, and directly
contribute to our product development process.