each zone is a different vrf in evpn with their own routing table.
(only using exit-node is doing a vrf route leak between the zone && default zone. but If you use multiple zones, I'll command to use physical routers as exit evpn nodes)
so yes, you have overlaping ip range, you have firewall...