Novell Home

Scanning the proxy server cache

Novell Cool Solutions: Question & Answer

Posted: 24 Feb 2005

Q:
Should the proxy server cache (BorderManager or other) be the subject of real time anti-virus, anti-adware scanning? There seems to be two sides to issue: effectiveness/pseudo-security vs. efficiency/throughput

A:
I would say no - it may well impair performance to the point of unusability. At one time I had anti-virus scans going on a BM server that also had GW/GWIA running on it and it worked okay (even though I had read several times not to have an AV scan directly on a GW message store). All virus hits came from GWIA, and no hits were ever registered on the proxy or cache content. With a later version of the AV program it started killing all of the databases on that server (cache is really just one big database of Internet content). In short order we bought Guinevere, and removed AV scanning from the BM server all together. The server ran a lot better.

Novell Cool Solutions (corporate web communities) are produced by WebWise Solutions. www.webwiseone.com

Novell® Making IT Work As One

© 2009 Novell, Inc. All Rights Reserved.