<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Rif.: Firewall EDL URL Access Error Cortex XDR in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1237756#M6281</link>
    <description>&lt;P&gt;Dear,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm recurring the same issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could someone help us?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards&lt;/P&gt;</description>
    <pubDate>Thu, 11 Sep 2025 14:00:09 GMT</pubDate>
    <dc:creator>F.Ronchi</dc:creator>
    <dc:date>2025-09-11T14:00:09Z</dc:date>
    <item>
      <title>Firewall EDL URL Access Error Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1234296#M6102</link>
      <description>&lt;P&gt;Dear Everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I would like to seek for advise regarding to Firewall EDL access Source of Cortex XDR. I have following the guide&amp;nbsp;&lt;A href="https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Manage-external-dynamic-lists" target="_blank"&gt;https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Manage-external-dynamic-lists&lt;/A&gt;. However, I facing the issue after configure EDL, the URL Access Errror.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;++Enable EDL on Cortex:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SopanhaRoth_0-1752827385810.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/68530i01B8C756B7625B89/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SopanhaRoth_0-1752827385810.png" alt="SopanhaRoth_0-1752827385810.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;++Configure EDL on Firewall&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SopanhaRoth_1-1752827427425.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/68531i6775EC367F27C26A/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SopanhaRoth_1-1752827427425.png" alt="SopanhaRoth_1-1752827427425.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;- I have perform Testing Curl to the url, it show the result&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SopanhaRoth_2-1752827482780.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/68532i3E0EDA5FA09C859B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SopanhaRoth_2-1752827482780.png" alt="SopanhaRoth_2-1752827482780.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But on Firewall URL Access Error.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SopanhaRoth_3-1752827541398.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/68533i333239310E761605/image-size/medium?v=v2&amp;amp;px=400" role="button" title="SopanhaRoth_3-1752827541398.png" alt="SopanhaRoth_3-1752827541398.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does anyone use to facing this issue, and have any solution for this matter? Appreciate all everyone advise and solution.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Jul 2025 08:34:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1234296#M6102</guid>
      <dc:creator>SopanhaRoth</dc:creator>
      <dc:date>2025-07-18T08:34:13Z</dc:date>
    </item>
    <item>
      <title>Rif.: Firewall EDL URL Access Error Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1237756#M6281</link>
      <description>&lt;P&gt;Dear,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I'm recurring the same issue.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Could someone help us?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards&lt;/P&gt;</description>
      <pubDate>Thu, 11 Sep 2025 14:00:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1237756#M6281</guid>
      <dc:creator>F.Ronchi</dc:creator>
      <dc:date>2025-09-11T14:00:09Z</dc:date>
    </item>
    <item>
      <title>Rif.: Firewall EDL URL Access Error Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1239194#M6358</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/65707945"&gt;@F.Ronchi&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Below was the issue was fixed with TAC previous time:&lt;BR /&gt;"&lt;BR /&gt;&lt;SPAN&gt;Problem description: Firewall unable to fetch EDLs configured on XDR&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Remote debug session: Second&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;gt; We joined and checked on the firewall, all the configuration was as per the documentation. We then checked on the firewall and could see the test was failing and we were not able to fetch any IPs.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;gt; We then tried to access the site from the user machine by entering the user credentials, we then checked the certificate which was being shared by your end machine.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;gt; I exported the certificate from the browser from your end machine and then checked the serial number, compared with the firewall certificate, I can see the root CA cert was already imported on the firewall. I exported the intermediate certificate from the root chain cert that I got from your end machine. Then I imported it on the firewall and it was automatically signed as CA. Please note that we cannot export and import the client certificate [last certificate on the chain] on the firewall and use it for EDL certificate profile as it is not the CA.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;gt; On the firewall, I changed the certificate of certificate profile which was used for XDR EDLs to the newly imported intermediate certificate and committed the changes.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;gt; Now the firewall was successfully able to fetch the EDLs and we were seeing 7 IPs which were as expected.&lt;/SPAN&gt;&lt;BR /&gt;"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hopefully you can resolve this matter by following guide step above.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;/P&gt;
&lt;P&gt;Sopanha&lt;/P&gt;</description>
      <pubDate>Wed, 01 Oct 2025 09:10:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/firewall-edl-url-access-error-cortex-xdr/m-p/1239194#M6358</guid>
      <dc:creator>SopanhaRoth</dc:creator>
      <dc:date>2025-10-01T09:10:50Z</dc:date>
    </item>
  </channel>
</rss>

