Predefined External Dynamic List (EDL) is not available for use in Policy configuration

Predefined External Dynamic List (EDL) is not available for use in Policy configuration

3881
Created On 11/29/22 17:20 PM - Last Modified 07/17/24 02:58 AM


Symptom


  • Predefined EDL is needed as a source or destination address in a policy configuration.
  • This is not listed as option to be selected even when scrolled to the end


Environment


  • Panorama
  • Supported PAN-OS
  • Predefined External Dynamic List (EDL) 
  • Active Threat Prevention and antivirus package is installed 


Cause


  • Predefined EDL is searched using the keyword "paloalto"
  • This search usually returns nothing as the word "paloalto" is not part of the EDL name
No show EDL.JPG
 


Resolution


  1. When searching for the EDL, use the keyword "panw" or some characters from the actual name of the EDL such as "bulletproof", "tor" and so on
  2. This will display the correct predefined EDL.
PANW EDL.JPG
 
 


Additional Information



Predefined EDL is the Palo Alto provided and managed EDL of IP addresses that are available as a part of the Antivirus Dynamic Updates on the Palo Alto Networks Firewalls. The EDLs are listed in the firewall as :
  • Palo Alto Networks Tor Exit IP Addresses
  • Palo Alto Networks Known Malicious IP Addresses
  • Palo Alto Networks High-Risk IP Addresses
  • Palo Alto Networks Bulletproof IP Addresses


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000sZzvCAE&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail