Configure Advanced IP Defense EDL Exceptions (Strata Cloud Manager)
Focus
Focus
Advanced IP Defense

Configure Advanced IP Defense EDL Exceptions (Strata Cloud Manager)

Table of Contents


Configure Advanced IP Defense EDL Exceptions (Strata Cloud Manager)

Reference External Dynamic Lists (EDLs) in your Advanced IP Defense profile in Strata Cloud Manager to exclude known-good IP addresses from Advanced IP Defense evaluation.
EDL exceptions allow you to exclude traffic destined to or originating from known-good IP addresses from Advanced IP Defense evaluation. When a connection's IP matches an entry in a referenced EDL, the firewall skips Advanced IP Defense checks for that connection. Use EDL exceptions for dynamic infrastructure where IP addresses change frequently, such as your own cloud services or CDN providers.
  1. Log in to Strata Cloud Manager.
  2. Select ConfigurationSecurity ServicesAdvanced IP Defense and select the profile where you want to add exceptions.
  3. Click the Exceptions tab.
  4. Click Add to add an EDL exception.
    In the External Dynamic List dialog, select an existing IP-based EDL from the External Dynamic List dropdown. The EDL must already be configured under ConfigurationObjectsExternal Dynamic Lists. The exception applies to all traffic matching the EDL. See External Dynamic Lists for EDL configuration details.
  5. Click OK to save the exception, then click Save to save the profile.
  6. Push your changes.
After pushing, verify that the exception is working correctly by checking Incidents and AlertsLog Viewer to confirm that traffic matching the EDL is no longer triggering Advanced IP Defense rules.