FQDN not resolved

Showing results for 
Show  only  | Search instead for 
Did you mean: 

FQDN not resolved

L0 Member


On a Palo Alto Firewall, we created an address object using FQDN Type.

We use this object as a destination address in the security rule « TEST-FQDN-1 »

But checking the security policy (show running security-policy) we can see the destination is not resolved  (destination;)


        from any;

        source any;

        source-region any;

        to Trust;


        destination-region any;

        user any;

        application/service any/any/any/any;

      action allow;


And checking the fqdn entries (system fqdn show) we can see the FQDN is in a « Not Resolved » status.

We tried to ping the host from the firewall and the ping well resolve the address so it looks like the DNS configuration is OK

We also tried to refresh FQDN entries (request system fqdn refresh) but it doesn’t change anything.

Do we miss something ? Do we have to add some more configuration ?

Please help

Thank you



L0 Member

Problème résolu

Hi There,

Are you able to share the resolution to this issue?

L0 Member

You should post the resolution so everyone benefits.

I managed to work this out....

We were using UPPERCASE FQDN objects, changed them to lowercase and all is good Smiley Happy

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!