Re: [SQU] optimization of acl

From: michel guilhem <michel.guilhem@dont-contact.us>
Date: Tue, 03 Oct 2000 09:14:52 +0200

Martin Brooks a écrit :
>
> At 17:54 02-10-2000 +0200, michel guilhem wrote:
> >To have a good time of reponse when the numbers of acl are around 500 ,
> >is it preferable to have numerous acl but smalls or few acl but bigs for
> >the response time ?
>
> Just out of curiousity, I'd love to know what your setup is that requires
> that many ACLs - the biggest I've ever done is 10 or so.
>
> Regards
>
> Martin A Brooks
> ----------------------------------------------
> The package said Windows NT 4 or better... I installed Linux.

My administration aks to me to give through the squid an internet full
access for some persons , for the others a internet reduced access ,
then the squid is used like a first level firewall ( some ports are
forbidden ) , i have 60000 potentials users under one proxy .
i administrate my proxy with webmin ( Under one acl webmin have a limit
to 256 characters by acl )
my authorization are based under the address IP of users )
Then i have many identicals ACL to manage this because we are
centralized
the access to the main intranet pass through the proxy because you can
have also local intranet
The squid is running under FreeBSD 4.0 and it is fine

When i say 500 , it is the limit where i go ( actually i have 300 )

But my question for the tuning is more general , is it better to have
big acl or small or is it indifferent ?

--
To unsubscribe, see http://www.squid-cache.org/mailing-lists.html
Received on Tue Oct 03 2000 - 01:12:57 MDT

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:55:40 MST