Dynamic Block Lists (DBL) not working (Service Routes)

Dynamic Block Lists (DBL) not working (Service Routes)

6946
Created On 09/25/18 19:47 PM - Last Modified 04/20/20 23:38 PM


Symptom

Symptoms

DBL doesn't successfully connect to the Web-Server. You have a 'Palo Alto Updates' service route tied to a Source interface that can't reach the DBL web server.

Diagnosis

Even though everything is correctly configured for a DBL to function correctly, the connection fails. You place a dedicated 'Destination' Service Route, but the connection still won't succeed,



Resolution

DBL connectivity is tied to the 'Palo Alto Updates' service route. The 'Palo Alto Updates' service route, does *also* have precedence over any dedicated 'Destination' Service Route.

 

The workaround is to move the 'Palo Alto Updates' service route to an interface that can both be reached at updates.paloaltonetworks.com server on the internet, as well as your DBL web server.

 



Attachments
Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cld1CAC&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Attachments
Choose Language