Configured EDL not working and blocks all the EDL profile policies
5431
Created On 06/03/24 15:54 PM - Last Modified 09/10/24 22:21 PM
Symptom
- Two External Dynamic List (EDL) objects are configured.
- Both EDLs point to the same remote file with entry 0.0.0.0/32.
- When these two EDLs are configured in the security policy, it blocks the traffic instead of allow.
- The test source URL is works with response "Source URL is accessible" message.
Environment
- Palo Alto Networks firewall and Panorama
- Supported PAN-OS
- External Dynamic Lists (EDL)
Cause
- Having multiple EDL objects pointing to the same source is not supported.
- There should be only one source of truth while considering the source for the EDL.
Resolution
Merge the two EDLs into just one EDL object that points to the desired source.
Additional Information
External Dynamic List only shows 0.0.0.0/32 under entries