Skip to content
The XG Series hardware appliances will reach end-of-life (EOL) on March 31, 2025. Click here to see the XG to XGS migration documentation.

Dynamic routing updates

To receive dynamic routing updates and advertise the network, you must allow dynamic routing from the WAN zone from Administration > Device access.

Dynamic routing

By default, dynamic routing is turned off for all zones. Here's an example of a dynamic routing scenario:

Dynamic routing.

Local Service ACL configuration (XG1):

Local access control list for XG1.

Local Service ACL configuration (XG2):

Local access control list for XG2.

In the local service ACL configuration, Dynamic Routing is turned on for the WAN zone of XG1 and is turned off for the WAN zone of XG2.

Routing Information Protocol (RIP) updates are configured to be sent via the WAN zones of both firewalls. Since only the XG1 has dynamic routing enabled for the WAN zone, only XG1 receives the RIP updates from XG2. The RIP updates XG1 sends to XG2 are dropped since XG2 has dynamic routing turned off for the WAN zone.

In the routing table, XG1 shows the networks advertised by XG2, but XG2 doesn't show the networks advertised by XG1.

XG1 routing table:

Routing table for XG1.

XG2 routing table:

Routing table for XG2.