<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Unable to Add URL-Based External Dynamic List as Destination in Policy-Based Forwarding Rule on Panorama in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539763#M1493</link>
    <description>&lt;P&gt;I have tested a PBF rule using an FQDN as a destination and it works fine. T&lt;SPAN&gt;he firewall resolves the IP addresses associated with that FQDN, and then makes the routing decision based on those IP addresses. Does the firewall use different methods to handle URL-based EDLs?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 22 Apr 2023 00:39:14 GMT</pubDate>
    <dc:creator>Stellar</dc:creator>
    <dc:date>2023-04-22T00:39:14Z</dc:date>
    <item>
      <title>Unable to Add URL-Based External Dynamic List as Destination in Policy-Based Forwarding Rule on Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539751#M1491</link>
      <description>&lt;P&gt;&lt;SPAN&gt;I am attempting to use an External Dynamic List (EDL) with a URL-based list as the destination in a Policy-Based Forwarding (PBF) rule on Panorama. However, when I try to add the EDL as the destination in the PBF rule, I am not able to see the URL-based list EDL in the destination list. I have checked that the EDL is configured correctly, assigned to the correct device group. Additionally, I have verified that the license for Threat Prevention includes the URL filtering feature. What could be causing this issue and how can I resolve it?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2023 22:41:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539751#M1491</guid>
      <dc:creator>Stellar</dc:creator>
      <dc:date>2023-04-21T22:41:22Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to Add URL-Based External Dynamic List as Destination in Policy-Based Forwarding Rule on Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539762#M1492</link>
      <description>&lt;P&gt;You can't route traffic based on URL.&lt;/P&gt;
&lt;P&gt;Web traffic is running over TCP.&lt;/P&gt;
&lt;P&gt;In case of TCP URL is in 4th packet (in best case if it is http) or later (if it is https).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SYN&lt;/P&gt;
&lt;P&gt;SYN-ACK&lt;/P&gt;
&lt;P&gt;ACK&lt;/P&gt;
&lt;P&gt;HTTP GET &amp;lt;&amp;lt;&amp;lt; URL is here&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Routing decision needs to be done on first packet.&lt;/P&gt;
&lt;P&gt;So you can't use URL to make routing decisions.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Apr 2023 23:16:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539762#M1492</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2023-04-21T23:16:38Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to Add URL-Based External Dynamic List as Destination in Policy-Based Forwarding Rule on Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539763#M1493</link>
      <description>&lt;P&gt;I have tested a PBF rule using an FQDN as a destination and it works fine. T&lt;SPAN&gt;he firewall resolves the IP addresses associated with that FQDN, and then makes the routing decision based on those IP addresses. Does the firewall use different methods to handle URL-based EDLs?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 00:39:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539763#M1493</guid>
      <dc:creator>Stellar</dc:creator>
      <dc:date>2023-04-22T00:39:14Z</dc:date>
    </item>
    <item>
      <title>Re: Unable to Add URL-Based External Dynamic List as Destination in Policy-Based Forwarding Rule on Panorama</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539764#M1494</link>
      <description>&lt;P&gt;If you use FQDN based list then domain is resolved to IP and traffic is routed based on this destination IP (first packet).&lt;/P&gt;
&lt;P&gt;If you se URL based list then firewall does not intercept TCP 3way handshake and takes action when it sees website URL passing by in either HTTP GET packet (if clear text) or from certificate (when ssl).&lt;/P&gt;</description>
      <pubDate>Sat, 22 Apr 2023 00:52:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/unable-to-add-url-based-external-dynamic-list-as-destination-in/m-p/539764#M1494</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2023-04-22T00:52:42Z</dc:date>
    </item>
  </channel>
</rss>

