I've got a different solution: Use squid for logging and acl.
The squid access.log contains the client adress and the requested url, just like the apache log. And squid can also grant and deny requests based on ip and url. You can also make access to certain urls passwordguarded from the outside and passwordless from the inside. The only thing which could be difficult is to have password guarded access from certain outside addresses and passwordless from other outside addresses. But that doesn't happen often, I believe. Leif To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-net" in the body of the message