<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Is using the Object-Group will reduce the processing effort ? in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/is-using-the-object-group-will-reduce-the-processing-effort/m-p/1396039#M750155</link>
    <description>&lt;P&gt;Is using the Object-Group will reduce the processing effort ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and is there any documents for ACL design consedieriation ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot in advance.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 17:04:23 GMT</pubDate>
    <dc:creator>fadi4alpha</dc:creator>
    <dc:date>2019-03-11T17:04:23Z</dc:date>
    <item>
      <title>Is using the Object-Group will reduce the processing effort ?</title>
      <link>https://community.cisco.com/t5/network-security/is-using-the-object-group-will-reduce-the-processing-effort/m-p/1396039#M750155</link>
      <description>&lt;P&gt;Is using the Object-Group will reduce the processing effort ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and is there any documents for ACL design consedieriation ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot in advance.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 17:04:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-using-the-object-group-will-reduce-the-processing-effort/m-p/1396039#M750155</guid>
      <dc:creator>fadi4alpha</dc:creator>
      <dc:date>2019-03-11T17:04:23Z</dc:date>
    </item>
    <item>
      <title>Re: Is using the Object-Group will reduce the processing effort</title>
      <link>https://community.cisco.com/t5/network-security/is-using-the-object-group-will-reduce-the-processing-effort/m-p/1396040#M750166</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;fadi4alpha wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is using the Object-Group will reduce the processing effort ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and is there any documents for ACL design consedieriation ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot in advance.&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Using object-groups does not reduce the processing effort because the firewall still has to expand the object-group into it's individual line entries. It's more a way of organising the config from an admin perspective.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACL design, not really documents but the key thing is to put the entries that are hit the most at the top as the acl entries are processed top down, one at a time.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 02 Feb 2010 16:55:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-using-the-object-group-will-reduce-the-processing-effort/m-p/1396040#M750166</guid>
      <dc:creator>Jon Marshall</dc:creator>
      <dc:date>2010-02-02T16:55:22Z</dc:date>
    </item>
  </channel>
</rss>

