- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-18-2025 01:34 AM
Dear Everyone,
I would like to seek for advise regarding to Firewall EDL access Source of Cortex XDR. I have following the guide https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-3.x-Documentation/Manage-external-d.... However, I facing the issue after configure EDL, the URL Access Errror.
++Enable EDL on Cortex:
++Configure EDL on Firewall
- I have perform Testing Curl to the url, it show the result
But on Firewall URL Access Error.
Does anyone use to facing this issue, and have any solution for this matter? Appreciate all everyone advise and solution.
10-01-2025 02:10 AM
Hello @F.Ronchi,
Below was the issue was fixed with TAC previous time:
"
Problem description: Firewall unable to fetch EDLs configured on XDR
Remote debug session: Second
> We joined and checked on the firewall, all the configuration was as per the documentation. We then checked on the firewall and could see the test was failing and we were not able to fetch any IPs.
> We then tried to access the site from the user machine by entering the user credentials, we then checked the certificate which was being shared by your end machine.
> I exported the certificate from the browser from your end machine and then checked the serial number, compared with the firewall certificate, I can see the root CA cert was already imported on the firewall. I exported the intermediate certificate from the root chain cert that I got from your end machine. Then I imported it on the firewall and it was automatically signed as CA. Please note that we cannot export and import the client certificate [last certificate on the chain] on the firewall and use it for EDL certificate profile as it is not the CA.
> On the firewall, I changed the certificate of certificate profile which was used for XDR EDLs to the newly imported intermediate certificate and committed the changes.
> Now the firewall was successfully able to fetch the EDLs and we were seeing 7 IPs which were as expected.
"
Hopefully you can resolve this matter by following guide step above.
Best Regards,
Sopanha
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

