<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Consuming mind meld feeds on Firewall in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159873#M98997</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/59466"&gt;@DMurrayMCS&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;you can check ms.log ("less mp-log ms.log" from the CLI).&lt;/P&gt;
&lt;P&gt;Which PAN-OS version are you running on your 220 ?&lt;/P&gt;</description>
    <pubDate>Tue, 06 Jun 2017 20:15:58 GMT</pubDate>
    <dc:creator>lmori</dc:creator>
    <dc:date>2017-06-06T20:15:58Z</dc:date>
    <item>
      <title>Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158367#M98990</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have minemeld running on Azure and it processes and creates feeds as I would expect and can view them in a browser. The only change from the inital Azure build I have done is to install my own go-daddy SSL cert so out the box browsers will trust minemeld.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;My lab has a PA-220 running 8.0.2 and when I add an external dynamic list it errors when I attempt to test it with "URL access error" BUT I can copy and paste the URL into a browser and it opens as expected.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Any idea's or hints be great !&lt;/P&gt;</description>
      <pubDate>Thu, 25 May 2017 18:55:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158367#M98990</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-05-25T18:55:14Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158435#M98991</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/59466"&gt;@DMurrayMCS&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;couple of questions:&lt;/P&gt;
&lt;P&gt;- did you enable authentication on the feeds ?&lt;/P&gt;
&lt;P&gt;- did you configure a Certificate profile for the feed ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;luigi&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 09:18:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158435#M98991</guid>
      <dc:creator>lmori</dc:creator>
      <dc:date>2017-05-26T09:18:11Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158438#M98992</link>
      <description>&lt;P&gt;Authentication - No.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Certificate profile - No and I suspect this is what is wrong ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BTW the feed is here if you want to test it; its a summary of all O365 URL's&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://minemeld.murraycs.co.uk/feeds/MS_O365ANY" target="_blank"&gt;https://minemeld.murraycs.co.uk/feeds/MS_O365ANY&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 09:24:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158438#M98992</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-05-26T09:24:07Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158462#M98993</link>
      <description>&lt;P&gt;OK so imported the certs and the feed now tests out ok, but when I look at the contents of the list its empty, but If I open the feed in a browser its all present ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Drew.&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 12:36:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158462#M98993</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-05-26T12:36:41Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158463#M98994</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/59466"&gt;@DMurrayMCS&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;you should upload this into PAN-OS and use it inside a certificate profile:&amp;nbsp;&lt;A id="url" href="https://certs.godaddy.com/repository/gd-class2-root.crt" target="_blank"&gt;https://certs.godaddy.com/repository/gd-class2-root.crt&lt;/A&gt;&amp;nbsp;(GoDaddy Class 2 Root CA)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also remember to add "v=panousrl" in the EDL URL:&amp;nbsp;&lt;A href="https://minemeld.murraycs.co.uk/feeds/MS_O365ANY" target="_blank" rel="nofollow noopener noreferrer"&gt;https://minemeld.murraycs.co.uk/feeds/MS_O365ANY&lt;/A&gt;?v=panosurl&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note that to be able to see the list content in the WebUI you should use the EDL inside a policy or inside a used URL Filtering profile. If you don't use the EDL in the config in any way PAN-OS won't pull the list and the contents won't show up in the UI.&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 12:40:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158463#M98994</guid>
      <dc:creator>lmori</dc:creator>
      <dc:date>2017-05-26T12:40:15Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158473#M98995</link>
      <description>&lt;P&gt;All working, thank you very much for your help &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 26 May 2017 13:04:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/158473#M98995</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-05-26T13:04:46Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159868#M98996</link>
      <description>&lt;P&gt;Totally strange but the SAME config for a dynamic list, with the SAME cert does not work on my Lab 220.&lt;/P&gt;
&lt;P&gt;It complains that they are no valid URL's in the file - its the same feed thats working on my production 5050 ????&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Are there any more logs on the 220 I can look at to work out whats going on ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Drew.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 19:18:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159868#M98996</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-06-06T19:18:08Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159873#M98997</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/59466"&gt;@DMurrayMCS&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;you can check ms.log ("less mp-log ms.log" from the CLI).&lt;/P&gt;
&lt;P&gt;Which PAN-OS version are you running on your 220 ?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 20:15:58 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159873#M98997</guid>
      <dc:creator>lmori</dc:creator>
      <dc:date>2017-06-06T20:15:58Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159877#M98998</link>
      <description>&lt;P&gt;Im on 8.0.2 on the 220 with latest dynamic updates applied.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Log shows :-&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2017-06-06 19:56:58.444 +0100 EDLRefresh job started processing. Dequeue time=2017/06/06 19:56:58 2017-06-06 19:57:00.205 +0100 client dagger reported op c&lt;BR /&gt;ommand was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:57:02.213 +0100 client authd reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:57:11.418 +0100 client dagger reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:57:52.753 +0100 client authd reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:57:56.119 +0100 EDLRefresh job started processing. Dequeue time=2017/06/06 19:57:56 2017-06-06 19:57:57.207 +0100 Error: pan_get_ssl_conn_fa&lt;BR /&gt;il_on_cert(pan_sysd_util.c:104): failed to fetch: NO_MATCHES&lt;BR /&gt;2017-06-06 19:57:59.043 +0100 client dagger reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:58:00.269 +0100 Error: ebl_fetch_url_from_remote_libcurl(pan_cfg_ebl.c:1779): curl_easy_perform failed, Err(7):Couldn't connect to server&lt;BR /&gt;2017-06-06 19:58:00.270 +0100 EDL entry(0x10a7a000, 0x30850800, 0x2f8c1600 vsys1/O365List, 1, 1 url) calling /bin/sed -e 's/^M$//g' /opt/pancfg/mgmt/devic&lt;BR /&gt;es/localhost.localdomain/vsys1_O365List.ubl.tmpxx 2&amp;gt;/dev/null &amp;gt; /opt/pancfg/mgmt/devices/localhost.localdomain/vsys1_O365List.ubl.tmp&lt;BR /&gt;2017-06-06 19:58:00.526 +0100 Error: ebl_verify_fetched_copy(pan_cfg_ebl.c:2278): EDL entry(0x10a7a000, 0x30850800, 0x2f8c1600 vsys1/O365List, 1, 1 url) N&lt;BR /&gt;o valid entries found. Couldn't connect to server&lt;BR /&gt;2017-06-06 19:58:00.804 +0100 client authd reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 19:58:01.205 +0100 EDL entry(0x10a7a000, 0x30850800, 0x2f8c1600 vsys1/O365List, 1, 1 url) Valid entries(0) lines skipped(1)&lt;BR /&gt;2017-06-06 19:58:01.410 +0100 EDL entry(0x10a7a000, 0x30850800, 0x2f8c1600 vsys1/O365List, 1, 1 url) No valid urls found in list file&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;and again&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2017-06-06 20:00:27.320 +0100 EDLRefresh job started processing. Dequeue time=2017/06/06 20:00:27 2017-06-06 20:00:30.152 +0100 Error: pan_get_ssl_conn_fa&lt;BR /&gt;il_on_cert(pan_sysd_util.c:104): failed to fetch: NO_MATCHES&lt;BR /&gt;2017-06-06 20:00:33.219 +0100 Error: ebl_fetch_url_from_remote_libcurl(pan_cfg_ebl.c:1779): curl_easy_perform failed, Err(7):Couldn't connect to server&lt;BR /&gt;2017-06-06 20:00:33.220 +0100 EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) calling /bin/sed -e 's/^M$//g' /opt/pancfg/mgmt/devic&lt;BR /&gt;es/localhost.localdomain/vsys1_O365List.ubl.tmpxx 2&amp;gt;/dev/null &amp;gt; /opt/pancfg/mgmt/devices/localhost.localdomain/vsys1_O365List.ubl.tmp&lt;BR /&gt;2017-06-06 20:00:33.677 +0100 Error: ebl_verify_fetched_copy(pan_cfg_ebl.c:2278): EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) N&lt;BR /&gt;o valid entries found. Couldn't connect to server&lt;BR /&gt;2017-06-06 20:00:34.872 +0100 Error: ebl_update_local_file(pan_cfg_ebl.c:2717): EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) Una&lt;BR /&gt;ble to fetch external dynamic list. Couldn't connect to server. Using old copy for refresh.&lt;BR /&gt;2017-06-06 20:00:34.873 +0100 EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) No changes to list file&lt;BR /&gt;2017-06-06 20:00:34.873 +0100 EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) Remote fetch is done by worker thread 8&lt;BR /&gt;2017-06-06 20:00:34.873 +0100 EDL entry(0x10a7a000, 0x20d90000, 0x2d7d7b00 vsys1/O365List, 1, 1 url) Valid entries(0) lines skipped(1)&lt;BR /&gt;2017-06-06 20:00:35.616 +0100 EDL entry(0x10a7a000, 0x20d90000, 0x1b2e7200 vsys1/O365List, 1, 1 url) Hourly schedule timer expires(Tue Jun 6 21:00:35 2017&lt;BR /&gt;)&lt;BR /&gt;2017-06-06 20:00:59.572 +0100 API Key is not set in cryptod&lt;BR /&gt;rm: cannot remove `/opt/pancfg/mgmt/wildfire-images/tmp': Is a directory&lt;BR /&gt;'cfg.fail-conn-on-cert': NO_MATCHES&lt;BR /&gt;2017-06-06 20:01:01.978 +0100 Error: pan_ebl_system_ebl_refresh_handler(pan_cfg_ebl.c:6522): EDL URL access error&lt;BR /&gt;2017-06-06 20:01:11.719 +0100 Error: pan_ebl_system_ebl_show_handler(pan_cfg_ebl.c:7245): EDL No valid entries&lt;BR /&gt;2017-06-06 20:01:20.177 +0100 Error: pan_cert_modify_node(pan_cert_ops.c:1737): Unable to extract common name&lt;BR /&gt;2017-06-06 20:01:20.463 +0100 client sslmgr reported op command was SUCCESSFUL&lt;BR /&gt;2017-06-06 20:01:22.600 +0100 Error: pan_cert_modify_node(pan_cert_ops.c:1737): Unable to extract common name&lt;BR /&gt;2017-06-06 20:01:22.883 +0100 client sslmgr reported op command was SUCCESSFUL&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 20:25:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159877#M98998</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-06-06T20:25:51Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159886#M98999</link>
      <description>&lt;P&gt;Thing is I can browse through firewall and read feeds fine &lt;span class="lia-unicode-emoji" title=":confused_face:"&gt;😕&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can't work out where next to look !&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 20:40:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159886#M98999</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-06-06T20:40:36Z</dc:date>
    </item>
    <item>
      <title>Re: Consuming mind meld feeds on Firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159890#M99000</link>
      <description>&lt;P&gt;OK I worked it out, kind of silly really.&lt;/P&gt;
&lt;P&gt;My LAB is different to work, it was the service route configuration !!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for the swift reply !&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Drew.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jun 2017 20:46:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/consuming-mind-meld-feeds-on-firewall/m-p/159890#M99000</guid>
      <dc:creator>DMurrayMCS</dc:creator>
      <dc:date>2017-06-06T20:46:04Z</dc:date>
    </item>
  </channel>
</rss>

