How to use dynamic block list?

Showing results for 
Show  only  | Search instead for 
Did you mean: 

How to use dynamic block list?

L4 Transporter

Hi All,

Kindly help me to understand this,

How to use dynamic block list?  how it will work? and  where to use this ( in policy)?




L4 Transporter


Have you had a chance to look at this doc. Hope it helps.

Working with External Block List (EBL) Formats and Limitations

L4 Transporter

Hello Gururaj

Below is some additional information -

Dynamic Block Lists

Objects > Dynamic Block Lists

Use the Dynamic Block Lists page to create an address object based on an imported list of IP addresses. The source of the list must be a text file and must be located on a web server. You can set the Repeat option to automatically update the list on the device hourly, daily, weekly, or monthly. After creating a dynamic block list object, you can then use the address object in the source and destination fields for security policies. Each imported list can contain up to 5,000 IP addresses (IPv4 and/or IPv6), IP ranges, or subnets.

The list must contain one IP address, range, or subnet per line, for example:

“” indicates one address, and “” indicates all addresses from through


“2001:db8:123:1::1” or “2001:db8:123:1::/64”

IP Range:

To specify an address range, select IP Range, and enter a range of addresses. The format is:


where each address can be IPv4 or IPv6.


“2001:db8:123:1::1 - 2001:db8:123:1::22”





Enter a name to identify the Dynamic Block List (up to 32characters). This name will appear when selecting the source or destination in a policy.


Enter a description for the block list (up to 255 characters).


Enter an HTTP or HTTPS URL path that contains the text file. For example, You can also enter a UNC server path.


Specify the frequency in which the list should be imported. Youcan choose hourly, daily, weekly, or monthly. At the specified interval, the list will be imported into the configuration. A full commit is not needed for this type of update to occur.

Test Source URL

Test that the source URL or server path is available

L3 Networker

Hello, also make sure the URL you specify as source opens up as 'TEXT'


If there are any additional characters than addresses, there will be an issue to read the file.

Also make sure that the URL is reachable by firewall.

Once Dynamic block list is created, then you will be able to choose the same from source or destination address list from security policy.

Hope this helps.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!