Antwort: Re: [SQU] optimization of acl

From: <SNS@dont-contact.us>
Date: Tue, 3 Oct 2000 22:25:12 +0100

>>To have a good time of reponse when the numbers of acl are around 500 ,
>>is it preferable to have numerous acl but smalls or few acl but bigs for
>>the response time ?

>Just out of curiousity, I'd love to know what your setup is that requires
>that many ACLs - the biggest I've ever done is 10 or so.

Think about the following.
One of our customer has a very big Proxy installation with load balancing for
several proxies. All of the proxies must have the same configuration to be high
available.

These proxies are used by several customers connected over a corporate network.
The customers can decied to use several different access control features.

E.g. user management, positiv and negativ URL lists based on customers networks
or groups ob people, filtering via smartfilter, use of online virus scanning.

Based on usage a program generates different access control lists for the shared
configuration files.
Another script distributes the configuration files to all proxies and restarts
all changed programm installations.

At the moment i try to generate a minimal set of acl lists. Large but a very low
number of acls and access rules.

Best regards,

Stephan

------------------------------------------------------------------------
Stephan Sachweh, Dipl.-Inform., ExperTeam AG
Tel: +49 231 9704 221 Fax: +49 231 9704 299 Mobile: +49 171 4632098

--
To unsubscribe, see http://www.squid-cache.org/mailing-lists.html
Received on Thu Oct 05 2000 - 12:30:07 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:55:42 MST