Routing entry "0.0.0.0/0" is displayed when checking Routing information of Service Connections/Remote Networks in Prisma Access

Routing entry "0.0.0.0/0" is displayed when checking Routing information of Service Connections/Remote Networks in Prisma Access

828
Created On 01/23/24 01:51 AM - Last Modified 05/30/25 02:50 AM


Symptom


  • The routing entries on Prisma Access  SC CAN and RN SPN can be accessed via GUI: Panorama > Cloud Services > Configuration > Service Setup > Service Operations > Troubleshooting Commands > Routing Information.
  • Here one may see routing entries for Destination:0.0.0.0/0, Nexthop:0.0.0.0/0, and Flags:

001.png



Environment




Cause


  • This entry is be displayed when "Advertise Default Route" for BGP has been enabled in the peer site settings configured on the CAN/SPN.
  • Panorama > Cloud Services > Configuration > Service Setup > Service Operations > Onboarding 


002.png



Resolution


  1. This behavior is expected when "Advertise Default Route" has been enabled.
  2. With this setting Prisma Access Firewalls create a Redistribution Rule of 0.0.0.0/0 internally.
  3. Therefore, the corresponding routing entry will be displayed for the internal use.
  4. It is not possible to hide this routing entry when "Advertise Default Route" is enabled.


Additional Information


This behavior is consistent with the On-Prem FW described under Understanding routing flag.



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000008WijCAE&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail