Dynamic Block Lists (DBL) not working (Service Routes)

Dynamic Block Lists (DBL) not working (Service Routes)

0
Created On 09/25/18 19:47 PM - Last Modified 07/19/22 23:06 PM


Symptom


Symptoms

DBL doesn't successfully connect to the Web-Server. You have a 'Palo Alto Updates' service route tied to a Source interface that can't reach the DBL web server.

Diagnosis

Even though everything is correctly configured for a DBL to function correctly, the connection fails. You place a dedicated 'Destination' Service Route, but the connection still won't succeed,



Resolution


DBL connectivity is tied to the 'Palo Alto Updates' service route. The 'Palo Alto Updates' service route, does *also* have precedence over any dedicated 'Destination' Service Route.

 

The workaround is to move the 'Palo Alto Updates' service route to an interface that can both be reached at updates.paloaltonetworks.com server on the internet, as well as your DBL web server.

 



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000Cld1CAC&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail