Using URL based EDL in PBF policy

Using URL based EDL in PBF policy

573
Created On 04/13/23 09:19 AM - Last Modified 11/05/25 09:21 AM


Symptom


EDLs created as below:

image

Can only call IP based EDL in the PBF policy.



Only IP Based EDL can be called in the Policy Based Forwarding policy.

 


Environment


Any PAN-OS

Cause


This is an expected behaviour.
PAN-OS doesn't support URL based EDLs to be used in PBF policies.
Basically, PBF lookup is limited to Layer 4 characteristics of a packet, while URL is a layer 7 characteristic
As such, its (URL based EDL in PBF policy is not supported).



Resolution


Use IP based EDLs and call them into the PBF policy
 


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000kHfOCAU&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail