Verify EDL is working after applying a Certificate Profile to the list

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Verify EDL is working after applying a Certificate Profile to the list

L2 Linker

I have EDLs configured and applied to security policies. The List Entires is populated. 

Since I get warnings about no certificate, I am configuring a certificate profile to apply to each of these EDLs. 

 

Warning message in Commit log: 

"External Dynamic List Microsoft Worldwide Required Skype and Teams IPv4 is configured with no certificate profile. Please select a certificate profile for performing server certificate validation."

 

My question is: how do I verify the list is still functional after pushing the certificate profile? 

 

I think there are two ways: 

1) Login to firewall GUI

Objects > External Dynamic Lists
select "Microsoft Worldwide Required Skype and Teams IPv4" > Import Now 

view Tasks and view the last Commit All. Ensure the respective certificate warning has cleared. 

 

2) Login to firewall CLI

request system external-list show type ip name "Microsoft Worldwide Required Skype and Teams IPv4"

show jobs all
copy last EDLRefresh ID #
show jobs id #
examine output for success without errors.

 

Any thoughts on this verification or is there something else to do? 

1 accepted solution

Accepted Solutions

Hi @1treelanedrv ,

I believe EDL is refresh at the end of each Commit. So when you appl the certificate profile and commit that change.

You can go to the CLI or the Tasks window and review if there is any failed EDL refresh task

View solution in original post

2 REPLIES 2

Hi @1treelanedrv ,

I believe EDL is refresh at the end of each Commit. So when you appl the certificate profile and commit that change.

You can go to the CLI or the Tasks window and review if there is any failed EDL refresh task

L2 Linker

Deployed the changes and the Commit no longer shows the warnings. Then we went back firewall to view the EDLs and verified the List Entries were populated. Select any entry and click Test Source URL. Success! 

  • 1 accepted solution
  • 816 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!