Title: RE: [FW1] URI-Blocking form WWW-Sites

Zoran;

Depending on the amount of the traffic going through the Firewall, by guess is that the HTTP Sec. server is "hogging" a lot of your CPU.

AFAIK, there is no way to use UFP caching (via SP3 4.1 only) with a list of sites. You would have to write a UFP server that returns the right caching information.

You could try running multiple instances of the security server to see if it improves performance.



-----Original Message-----
From: Rankovich, Zoran [mailto:[EMAIL PROTECTED]]
Sent: Friday, February 23, 2001 8:51 AM
To: '[EMAIL PROTECTED]';
[EMAIL PROTECTED]
Subject: RE: [FW1] URI-Blocking form WWW-Sites



Hello Manfred, I have a question if you can help. I was doing the same
blocking ( I only had 3 sites for testing) you are doing and when I have the
rule active the internet access slows considerably and the CPU usage goes up
immensely. I am running FW 4.0 (build 4064) running on Solaris. What are you
running and are you creating the rule differently?
Thanks in advance for any help.

Zoran
OSD Network Engineer
[EMAIL PROTECTED]

        -----Original Message-----
        From:   [EMAIL PROTECTED]
[SMTP:[EMAIL PROTECTED]]
        Sent:   Friday, February 23, 2001 1:48 AM
        To:     [EMAIL PROTECTED]
        Subject:        [FW1] URI-Blocking form WWW-Sites


        Hello

        I want to block same WWW-Sites with the Content-Securtiy! (URI)
        I do this with a file that has following syntax:

        www.xxx.com 0
        www.yyy.com 0 and so on

        It works fine when this file is very small but when it�s greate
(more then
        1000 entries) the http-access doesn�t work!

        Is there a limit for this file?


        Best Regards
        Mit freundlichen Gr��en
        Manfred Steinbacher
        EDS Austria - Core Infrastructure
        Network Services

        EDS Austria / AVL - Account
        Phone: +43  316 787 470
        Fax: +43 316 787 1783
        eMail: [EMAIL PROTECTED]
        Hans-List Platz 1  A-8020 GRAZ





       
============================================================================
====
             To unsubscribe from this mailing list, please see the
instructions at
                       http://www.checkpoint.com/services/mailing.html
       
============================================================================
====


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to