What impact does lowering the Cache Keystore Setting to 60 from 3600 have?

Does anyone know what impact lowering the Cache Keystore Setting to 60 from 3600 has?

My client is experiencing issues with this setting. Initially, it was set to the default value of 3600 seconds, but users started encountering errors. They lowered it to 60 seconds, which fixed the problem. Now, client is concerned if there is any performance impact by reducing this value.

Below article suggests that decreasing these values will result in less memory usage, but it will also reduce processing power. Does this imply that the server’s performance will be affected? Any insights or guidance on this matter would be greatly appreciated.

@MarkNowacki @guyom @gundd1 can you tell us more about this product feature?

The only technical info I could find for its implementation from version 7.3 onwards:

"Keystore cache should support LRU (Least Recently Used) replacement algorithm.

Keystore cache limit setting can be specified as DSS setting or PRconfig setting. If there is no setting available, then default cache size is 100 keystores.

if cache is full, we first remove expired entries from cache, then apply LRU policy."

@waduc if you need any further help I suggest that you contact the PO of the Security tribe internally for this and check who was involved in Agile Studio work item US-162466 ( Keystore cache implementation) by looking at the History tab of that item.

@MarijeSchillern , I don’t have any information about this. You could try contacting Sudhakar Tentu (PO) or Shasi Yarram (Architect) from the Infinity Security area.

@waduc did you manage to reach the Security tribe internally?

@tents @mitrs can you help answer this question?