| Where Can I Use
This? | What Do I Need? |
An external dynamic list is a text file hosted on an external web server so that
certain Palo Alto Networks products can use to import objects—IP addresses, URLs,
domains, International Mobile Equipment Identities (IMEIs), International Mobile
Subscriber Identities (IMSIs)—and enforce policy. The Advanced DNS Security Resolver can use
an EDL containing domains to apply a particular action (allow, block, sinkhole, or
alert) on a specific group of domains.
If your domain entries include subdomains, those are counted as additional entries
when automatic subdomain inclusion for external dynamic lists (EDLs) is enabled.
This eliminates the manual and error-prone process of defining both top-level
domains and their subdomains. When enabled, a single domain entry, such as
example.com automatically covers all its subdomains (*.example.com), ensuring
consistent security policy application across the entire domain hierarchy. While
this feature simplifies domain management, it consumes two entries per domain due to
the implicit wildcard generation. If this is not enabled, only the top-level domains
contained in the EDL are used and the subdomains are ignored.
You can have a maximum of 30 EDL sources for your Advanced DNS Security Resolver.
These EDLs are not associated with your Strata Cloud Manager EDLs
and function only for theAdvanced DNS Security Resolver.
Each External Dynamic List (EDL) has a default capacity of 30,000
entries, which includes expanded subdomains that occur during list
processing. To increase this limit beyond the default value, contact
your Palo Alto Networks sales representative.