For firewalls running PAN-OS 5.0, 6.0, or 6.1, use the following
CLI command to configure access to the private cloud:
debug device-server pan-url-db cloud-static-list-enable
<IP addresses>
enable
To
delete the entries for the private PAN-DB servers, and allow the
firewalls to connect to the PAN-DB public cloud, use the command:
set deviceconfig setting pan-url-db cloud-static-list
<IP addresses>
disable
When
you delete the list of private PAN-DB servers, a re-election process
is triggered on the firewall. The firewall first checks for the
list of PAN-DB private cloud servers and when it cannot find one,
the firewall accesses the PAN-DB servers in the AWS cloud to download
the list of eligible servers to which it can connect.