How to enable advanced routing
16243
Created On 03/17/22 20:12 PM - Last Modified 10/22/25 04:23 AM
Objective
To Enable advanced routing on Palo Alto Firewalls.
Environment
- Palo Alto Firewalls
- PAN-OS version 10.0.x and above
- Advanced Routing
- Panorama
Procedure
- Before enabling advanced routing the GUI looks as below
- To Enable advanced routing go to Device > Setup > Management > General Settings
- Click on "Advanced Routing".
- Commit the changes.
- Reboot the firewall (A reboot is required after enabling advanced routing and commit)
- After the reboot of firewall, the virtual routers are no longer seen instead it is replaced as "Logical Routers"
To enable the same on Panorama and push to device , follow the below steps:
- To Enable advanced routing go to Panorama > Devices > Select "Template Stack" ( select in which the devices are associated )> Setup > Management
- Click on Advanced routing
- Commit to the panorama and perform a push to firewalls.
- A reboot is required after enabling advanced routing
Note:
Enabling Advanced Routing will require you to migrate your configuration, perform panorama commit, push and reboot on all firewalls included in this template.
Additional Information
- PAN-OS 10.0 supports BGP and static routing for advanced routing
- PAN-OS 10.2 supports BGP, OSPFv3, OSPF v2, RIPv2 and static routing for advanced routing
- PAN Model support advanced routing
- PA-7000 Series firewalls
- PA-5200 Series firewalls
- PA-3200 Series firewalls
- VM-Series firewalls