mån 2009-11-23 klockan 19:30 -0500 skrev rchandler@xxxxxxxxxx: > The LDAP server is also a Radius server that does Auth for all > services. The time zones are different and our ips are pooled so we > get a lot of false positives when we corelate the log files. The LDAP > database stores the username/ip so realtime lookups are to most > accurate. Ok, then you may want a somewhat shorter TTL than the default in external_acl_type. Default is one hour I think. Regards Henrik