Why do I still need Multi-Domain management if I can segment the policies through policy layers within R80?
Multi-Domain management is not just about having separate policies but each domain has an entire database of its own that includes network objects, global properties etc. etc. and you can assign admins to access specific domains instead of giving them access all the objects and properties. Also the logs of each domain are separated. In short multiple SMSs hosted on the same machine.
To avoid potential issues with overlapping VPN domains as one of the examples
Retrieving data ...