Jan-Frode Myklebust wrote:
> We just had a problem with the triplets database getting too big, causing
> cleanup to take ages, and policyd getting into "bypass" mode frequently.
> What are the best practices for keeping the triplets down.. ?
> 
> We had AUTO_WHITELIST_NUMBER=500, will hosts that are awl'd not go to 
> the triplets, so reducing this to say 50 (?) might be a good idea ? Or
> should we reduce TRIPLET_AUTH_TIMEOUT, which is currently set to the
> default 30 days ?

Lowering it is more than likely a good idea.

> Or are there any other options we should tune ?

Once you have whitelisting sorted out, TRUNCATE is your friend. ;)

Cami

-------------------------------------------------------------------------
SF.Net email is sponsored by: The Future of Linux Business White Paper
from Novell.  From the desktop to the data center, Linux is going
mainstream.  Let it simplify your IT future.
http://altfarm.mediaplex.com/ad/ck/8857-50307-18918-4
_______________________________________________
policyd-users mailing list
policyd-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/policyd-users

Reply via email to