On 2007-12-05, Cami Sardinha <[EMAIL PROTECTED]> wrote: >> We had AUTO_WHITELIST_NUMBER=500, will hosts that are awl'd not go to >> the triplets, so reducing this to say 50 (?) might be a good idea ? Or >> should we reduce TRIPLET_AUTH_TIMEOUT, which is currently set to the >> default 30 days ? > > Lowering it is more than likely a good idea.
"it" being AUTO_WHITELIST_NUMBER, TRIPLET_AUTH_TIMEOUT or both ? :-) >> Or are there any other options we should tune ? > > Once you have whitelisting sorted out, TRUNCATE is your friend. ;) Do you mean we should do something (manual whitelist) with the triplets before truncating it on a regular basis? Or just let policyd awl ? -jf ------------------------------------------------------------------------- SF.Net email is sponsored by: The Future of Linux Business White Paper from Novell. From the desktop to the data center, Linux is going mainstream. Let it simplify your IT future. http://altfarm.mediaplex.com/ad/ck/8857-50307-18918-4 _______________________________________________ policyd-users mailing list policyd-users@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/policyd-users