API-created dynamic objects

An API-created dynamic object is a network object that

  • specifies one or more IP addresses retrieved using REST API calls or the Dynamic Attributes Connector,

  • can be used in access control or DNS rules without deploying dynamic changes to the objects, and

  • updates IP addresses from cloud sources.

For more information about the dynamic attributes connector, see the information later in this guide.

Differences between dynamic objects and network objects

  • Dynamic objects created using the dynamic attributes connector are pushed to the Cloud-Delivered Firewall Management Center as soon as they are created. These objects are then updated at regular intervals.

  • API-created dynamic objects:

    • are IP addresses, with or without classless inter-domain routing (CIDR), that can be used in access control rules much like a network object,

    • do not support fully-qualified domain names or address ranges, and

    • must be updated using an API.