Is this right?
We'd like to use this at the beginning of our policy to bypass authentication for dedicated client to a list of domains.
We saw the CPU usage increases dramatically (from 20% of to 70%) with only 1 entry in the maptype list....
Maptype KEY: 10.190.1.1
Matype Value: bla1.com;bla2.com;bla3.com;
The cpu increases without further operation on the maptype value..
The criteria url.host is in list Map.GetKeys(MapType.list) is enough
Is there a faster way without using dedicated lists? (one for IP and an additional one for each ip...)
(we use version 22.214.171.124)
OK some more details....
real strange what I've found so far...
This is configuration which increases CPU load
TopLevel Ruleset (no Filter)
RuleSet enter with MapType Filter (url.host is in list Map.GetKeys(MapType.list))
Rule Stop Ruleset
and now the follwing rule which does exacly the same.... CPU load does not increase!!!!
Rule (url.host is in not list Map.GetKeys(MapType.list)) Stop ruleset
RuleSet (no Filter)
Rule Stop Ruleset....
Not an answer, but curious if this is 7.5.1 or 7.5.2. We use MapType and I've been seeing increased load values/CPU usage since upgrading to 7.5.2.
yes it is 7.5.2 and we see the only if we do such analyse in ruleset filter. The same filter in a dedicated rule works fine.
Download the new ePolicy Orchestrator (ePO) Support Center Extension which simplifies ePO management and provides support resources directly in the console. Learn more about ePO Support Center
2821 Mission College Blvd.
Santa Clara, CA 95054 USA
Consumer Support | Enterprise Support | McAfee.com
Legal | Privacy | Copyright © 2019 McAfee, LLC