Find External Dynamic Lists That Failed Authentication (Strata Cloud Manager)
Focus
Focus
Network Security

Find External Dynamic Lists That Failed Authentication (Strata Cloud Manager)

Table of Contents


Find External Dynamic Lists That Failed Authentication (Strata Cloud Manager)

View authentication failures related to external dynamic lists.
When an external dynamic list that requires SSL fails client or server authentication, you'll see the authentication failure in the EDL Distribution Status. Typically, if your environment is unable to connect or otherwise fetch the most current EDL from the server, your configuration retains the last successfully retrieved list and continues operating with the most recent EDL information until the connection is restored with the web server hosting the EDL. However, in cases where authentication to the EDL fails, the Security policy stops enforcing the EDL. Use the following process to view authentication failures related to external dynamic lists. Troubleshoot EDLs

Troubleshoot EDLs

Get the status and latest details for the External Dynamic Lists (EDLs) that you’re using with Prisma Access, and:
  • Search across EDLs to see if they include a specific IP address, subnet, or URL
  • Force an EDL to refresh
To get started, go to ManageConfigurationNGFW and Prisma AccessObjectsExternal Dynamic Lists, set the scope to Remote Networks or Mobile Users - GlobalProtect, and check the EDL Status.
Troubleshooting is available only for custom EDLs and not for predefined, built-in EDLs.

Troubleshoot Site Connections

For troubleshooting purposes, you can now view the routing table for a remote network site or service connection site. Find the Routing Information button on the remote networks or service connection dashboard.
Go to WorkflowsPrisma Access Setup, select either Remote Networks or Service Connections, and then select Routing InformationShow.