Skip to content

Configure Unicast Routing

Configure unicast routing in the CLI for routing protocols, including RIP, OSPF, OSPFv3, BGP-IPv4, and BGP-IPv6.

Migration

In SFOS 23.0 and later, all dynamic routing protocol configurations are stored in a single configuration file. When you upgrade from an earlier version, Sophos Firewall automatically adds protocol prefixes to the route-map, prefix-list, and access-list names if a name conflict exists.

The firewall also updates all references to the renamed configurations.

Configure unicast routing

Use the routing CLI to configure dynamic routing protocols for your network.

For unicast routing mode, enter the following options:

  1. For Route configuration: 3
  2. For Configure unicast routing: 1

The following prompt appears: router#

General routing commands

Use the general routing commands to view configuration details, check routing status, and troubleshoot routing issues. Some commands available from the router# prompt are as follows:

  • Verify the running configuration: show running-config
  • Verify the preferred route in the neighbor routing table: show ip <protocol>
  • Save configurations: write

    Note

    From a specific protocol mode, run the commands as follows:

    do show running-config
    
    do show ip
    
    do write
    
  • Turn on debugging: router#debug <routing protocol> <process>

    Example
    debug rip zebra
    

    Note

    Debugging remains on until the firewall or the service restarts, or until the service is turned off.

    Warning

    After you collect the output, make sure you exit debug mode using one of the following commands:

    no debug all
    
    no debug <protocol>
    

Note

You can't configure BGP, OSPF, or RIP when the firewall is deployed in transparent mode.