Re: [squid-users] Squid as a web application firewall

From: howard chen <howachen_at_gmail.com>
Date: Sun, 22 Jun 2008 11:59:22 +0800

Hi,

On Sun, Jun 22, 2008 at 1:23 AM, Jose Ildefonso Camargo Tolosa
> for 1: maybe iptables + l7filter ( http://l7-filter.sourceforge.net/ ).
> for 2: iptables, yup, plain iptables.
> for 3. not sure... but maybe iptables + l7filter too.
>

All the problem with iptables is it is NOT suitable to handle a lot of
rules, it has been discussed in netfilter mailing list before...

Currently I have a proxy written using C which store IP info in memory
which is lighting fast and efficient. I just wonder should I merge
this proxy into squid or not. (They are running at the same machine
now)

Howard
Received on Sun Jun 22 2008 - 03:59:23 MDT

This archive was generated by hypermail 2.2.0 : Sun Jun 22 2008 - 12:00:04 MDT