cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Who rated this post

L1 Bithead

I was having the same issue with an EDL for an IP List.  I was not seeing the EDL's "List Entries and Exceptions" populated, it was just showing 0.0.0.0/32 even though the "Test Source URL" was testing successfully.

 

So i created a new test a new test policy, added my IP EDL to it, and moved it to the bottom of my policy list in Panorama...

Once i did that and pushed that out to the firewalls, then the EDL's "List Entries and Exceptions" populated with the listing i was expecting.

Success!

 

 

A couple of suggestions for improvements, PAN folks....

 

First, It would be helpful if the documentation actually explicitly called out that the EDL will not populate its "List Entries and Exceptions" until it has been referenced in a policy. I do not see that mentioned in the documentation i was reading.  And in fact, this document is misleading (incorrect?) since it states "Before you Enforce Policy on an External Dynamic List, you can view the contents of an external dynamic list directly on the firewall to check if it contains certain IP addresses, domains, or URLs".

 

Secondly, I feel like that is a bad process/requirement to have the EDL used in a policy first before it populates, since I was hesitant to add the EDL to a policy until i could actually see and verify that the listing was correct first. 

Just my 2 cents...

peace,
dannyB
Who rated this post