<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Empty EDL PA220 PANOS 10.0 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342808#M85880</link>
    <description>&lt;P&gt;Ok i have found thats the problem.&lt;/P&gt;&lt;P&gt;After creating EDL even if you see "source is accessible" with url test button it ALWAYS display 0.0.0.0/32 same in CLI.&lt;/P&gt;&lt;P&gt;Even if you do CLI request system external-list show type ip name EDL_NAME it will show the erorr from previous post.&lt;/P&gt;&lt;P&gt;To fix it you need to have policy rule which is pointing to the EDL. If you do so, after policy push edl will display IPs inside. This is imo stupid and should be changed, unless there is some more deeper logic which i cant understand due to limitation of my small brain:)&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;admin@Firewall_PA-220&amp;gt; request system external-list show type ip name apache2_steam2&lt;/P&gt;&lt;P&gt;apache2_steam2&lt;BR /&gt;Total valid entries : 56&lt;BR /&gt;Total ignored entries : 0&lt;BR /&gt;Total invalid entries : 0&lt;BR /&gt;Total displayed entries : 56&lt;BR /&gt;Valid ips:&lt;BR /&gt;103.10.124.0/24&lt;BR /&gt;103.10.125.0/24&lt;BR /&gt;103.28.54.0/23&lt;BR /&gt;146.66.152.0/23&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wjt82918_0-1596884786820.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/27229iD8D3312C124D3C2C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="wjt82918_0-1596884786820.png" alt="wjt82918_0-1596884786820.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 08 Aug 2020 11:06:36 GMT</pubDate>
    <dc:creator>wjt82918</dc:creator>
    <dc:date>2020-08-08T11:06:36Z</dc:date>
    <item>
      <title>Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342705#M85865</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;Im doing some tests on PA-220 test unit.&lt;/P&gt;&lt;P&gt;Some story - im using windows 10 with installed debian on WSL.&lt;/P&gt;&lt;P&gt;I've installed apache2 and doing some IP pulls from internet and then hosting it on:&lt;BR /&gt;192.168.7.131/steamip2.html&lt;BR /&gt;I can access this from my internet browser and i see list of IPs.&lt;BR /&gt;&lt;BR /&gt;After adding edl to palo alto it sais that source is avaible but it only lists 0.0.0.0/32. Ive tried import now or request edl refresh in CLI, still nothing.&lt;BR /&gt;My assumptions are&lt;/P&gt;&lt;P&gt;- wrong form of file on apache server, ive tried steamip (only IP listed), steamip.html (&amp;lt;html&amp;gt;&amp;lt;body&amp;gt;list of ips&amp;lt;/body&amp;gt;&amp;lt;/html&amp;gt;) didnt work&lt;BR /&gt;- I dont have any valid license running on my unit&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Aug 2020 17:57:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342705#M85865</guid>
      <dc:creator>wjt82918</dc:creator>
      <dc:date>2020-08-07T17:57:39Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342714#M85868</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109603"&gt;@wjt82918&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Try to remove everything except the actual IPs. An EDL should be a simple texfile (without any html tags) with nothing else that the entries that should be imported by the firewall.&lt;/P&gt;</description>
      <pubDate>Fri, 07 Aug 2020 18:07:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342714#M85868</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2020-08-07T18:07:49Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342715#M85869</link>
      <description>&lt;P&gt;I've tried this, also dont work. There were only IP/mask, not html tags etc. Still PA can only see 0.0.0.0/32 which is not even hosted in the file&lt;/P&gt;</description>
      <pubDate>Fri, 07 Aug 2020 18:18:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342715#M85869</guid>
      <dc:creator>wjt82918</dc:creator>
      <dc:date>2020-08-07T18:18:24Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342717#M85870</link>
      <description>&lt;P&gt;wiktor@LAPTOP:~/ipgatherer$ cat /var/www/html/steamip | less&lt;/P&gt;&lt;P&gt;103.10.124.0/24&lt;BR /&gt;103.10.125.0/24&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wjt82918_0-1596824470765.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/27217i609D4EE759FF9F71/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="wjt82918_0-1596824470765.png" alt="wjt82918_0-1596824470765.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Aug 2020 18:21:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342717#M85870</guid>
      <dc:creator>wjt82918</dc:creator>
      <dc:date>2020-08-07T18:21:20Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342791#M85877</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109603"&gt;@wjt82918&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Normally for EDL&amp;nbsp; you can config as&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Type&amp;nbsp; IP list&lt;/P&gt;
&lt;P&gt;Source complete url&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Click on Test URL&amp;nbsp; if it works or not?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Sat, 08 Aug 2020 04:56:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342791#M85877</guid>
      <dc:creator>MP18</dc:creator>
      <dc:date>2020-08-08T04:56:40Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342806#M85879</link>
      <description>&lt;P&gt;Yes, it says "url is accessible" but still PA dont see anything inside.&lt;/P&gt;&lt;P&gt;I just found out that even&lt;/P&gt;&lt;P&gt;panwdbl.appspot.com/lists/shdrop.txt&lt;/P&gt;&lt;P&gt;or&lt;/P&gt;&lt;P&gt;&lt;A href="http://panwdbl.appspot.com/lists/shdrop.txt" target="_blank"&gt;http://panwdbl.appspot.com/lists/shdrop.txt&lt;/A&gt;&lt;BR /&gt;Has same issue for me.&lt;/P&gt;&lt;P&gt;admin@Firewall_PA-220&amp;gt; request system external-list show type ip name dyn_bruteforce&lt;/P&gt;&lt;P&gt;dyn_bruteforce&lt;BR /&gt;EDL is either not referenced in policy, not downloaded, or empty&lt;/P&gt;&lt;P&gt;Total valid entries : 1&lt;BR /&gt;Total ignored entries : 0&lt;BR /&gt;Total invalid entries : 0&lt;BR /&gt;Total displayed entries : 1&lt;BR /&gt;Valid ips:&lt;BR /&gt;0.0.0.0/32&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Even if i try to refresh in CLI.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wjt82918_0-1596883146926.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/27227iFDB2C63CC2D30887/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="wjt82918_0-1596883146926.png" alt="wjt82918_0-1596883146926.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Traffic is allowed, rule allows all aplications from mgmt of firewall to internet&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wjt82918_1-1596883307175.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/27228i87C761C0157AE8DD/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="wjt82918_1-1596883307175.png" alt="wjt82918_1-1596883307175.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 08 Aug 2020 10:42:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342806#M85879</guid>
      <dc:creator>wjt82918</dc:creator>
      <dc:date>2020-08-08T10:42:34Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342808#M85880</link>
      <description>&lt;P&gt;Ok i have found thats the problem.&lt;/P&gt;&lt;P&gt;After creating EDL even if you see "source is accessible" with url test button it ALWAYS display 0.0.0.0/32 same in CLI.&lt;/P&gt;&lt;P&gt;Even if you do CLI request system external-list show type ip name EDL_NAME it will show the erorr from previous post.&lt;/P&gt;&lt;P&gt;To fix it you need to have policy rule which is pointing to the EDL. If you do so, after policy push edl will display IPs inside. This is imo stupid and should be changed, unless there is some more deeper logic which i cant understand due to limitation of my small brain:)&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;admin@Firewall_PA-220&amp;gt; request system external-list show type ip name apache2_steam2&lt;/P&gt;&lt;P&gt;apache2_steam2&lt;BR /&gt;Total valid entries : 56&lt;BR /&gt;Total ignored entries : 0&lt;BR /&gt;Total invalid entries : 0&lt;BR /&gt;Total displayed entries : 56&lt;BR /&gt;Valid ips:&lt;BR /&gt;103.10.124.0/24&lt;BR /&gt;103.10.125.0/24&lt;BR /&gt;103.28.54.0/23&lt;BR /&gt;146.66.152.0/23&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="wjt82918_0-1596884786820.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/27229iD8D3312C124D3C2C/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="wjt82918_0-1596884786820.png" alt="wjt82918_0-1596884786820.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 08 Aug 2020 11:06:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342808#M85880</guid>
      <dc:creator>wjt82918</dc:creator>
      <dc:date>2020-08-08T11:06:36Z</dc:date>
    </item>
    <item>
      <title>Re: Empty EDL PA220 PANOS 10.0</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342884#M85884</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/109603"&gt;@wjt82918&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ok, got it. The "logic" behind this is that an EDL is only queried if it is used somewhere in your configuration. Unless this isn't the case the EDL will show only 0.0.0.0/32 - but this output definately could be replaced by somethinh like "EDL not in use" or something like that...&lt;/P&gt;</description>
      <pubDate>Sun, 09 Aug 2020 10:21:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/empty-edl-pa220-panos-10-0/m-p/342884#M85884</guid>
      <dc:creator>Remo</dc:creator>
      <dc:date>2020-08-09T10:21:59Z</dc:date>
    </item>
  </channel>
</rss>

