<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FQDN refresh failed in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/254367#M72191</link>
    <description>&lt;P&gt;I checked all the settings again and they are set exactly the same for all 4 clusters we have. On Monday morning the FQDN refresh job worked successfully and has continued to work since. I do not know why it was not working or how it was fixed as no changes were made. hay-ho I am happy it is working for now.&lt;/P&gt;</description>
    <pubDate>Wed, 20 Mar 2019 09:00:24 GMT</pubDate>
    <dc:creator>darrenclegg</dc:creator>
    <dc:date>2019-03-20T09:00:24Z</dc:date>
    <item>
      <title>FQDN refresh failed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/253307#M71949</link>
      <description>&lt;P&gt;We have 4 PaloAlto clusters and a FQDN refresh works on 3 of the clusters but not the 4th. All objects are shared on the 4 clusters. I have tried:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Scheduled refresh of FQDN fails&lt;/P&gt;&lt;P&gt;Manual refresh of FQDN fails&lt;/P&gt;&lt;P&gt;Changed the FQDN refresh time.&lt;/P&gt;&lt;P&gt;I can ping the DNS server from the Management Interface.&lt;/P&gt;&lt;P&gt;If i ping a DNS it resolves.&lt;/P&gt;&lt;P&gt;If I create a FQDN object it resolves.&lt;/P&gt;&lt;P&gt;but when I run request system fqdn show it states that no objects were resolved.&lt;/P&gt;&lt;P&gt;I have checked the logs (output below):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2019-03-12 11:46:25.988 +0000 dnscfgmod: FQDN Refresh: Periodic Force Refresh&lt;BR /&gt;2019-03-12 11:46:25.989 +0000 dnscfgmod: Main refresh function: (Force Refresh)&lt;BR /&gt;2019-03-12 11:46:25.989 +0000 dnscfgmod:Fqdn refresh job 496 scheduled&lt;BR /&gt;2019-03-12 11:46:25.989 +0000 FqdnRefresh job started processing. Dequeue time=2019/03/12 11:46:25&lt;BR /&gt;2019-03-12 11:46:30.863 +0000 dnscfgmod: Resolving fqdns took 5 secs&lt;BR /&gt;2019-03-12 11:46:30.863 +0000 Fqdn refresher thread device requested last config&lt;BR /&gt;2019-03-12 11:46:43.052 +0000 Error: pan_cfg_dnscfg_refresh_fqdns(pan_cfg_dnscfg.c:4340): Failed to refresh the fqdn.&lt;BR /&gt;2019-03-12 11:46:43.122 +0000 Error: pan_jobmgr_process_job(pan_job_mgr.c:2904): Fqdn Refresh job failed&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Can anyone help?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 11:58:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/253307#M71949</guid>
      <dc:creator>darrenclegg</dc:creator>
      <dc:date>2019-03-12T11:58:47Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN refresh failed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/253377#M71965</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Verify the service route to make sure that interface has access to the requested DNS servers. If you have not changed them the default is the management interface. Is there a PAN or security policy between the MGMT interface and the DNS servers? If yes, check the logs to see if/where it is getting blocked.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 17:55:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/253377#M71965</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2019-03-12T17:55:13Z</dc:date>
    </item>
    <item>
      <title>Re: FQDN refresh failed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/254367#M72191</link>
      <description>&lt;P&gt;I checked all the settings again and they are set exactly the same for all 4 clusters we have. On Monday morning the FQDN refresh job worked successfully and has continued to work since. I do not know why it was not working or how it was fixed as no changes were made. hay-ho I am happy it is working for now.&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2019 09:00:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fqdn-refresh-failed/m-p/254367#M72191</guid>
      <dc:creator>darrenclegg</dc:creator>
      <dc:date>2019-03-20T09:00:24Z</dc:date>
    </item>
  </channel>
</rss>

