Linux Netfilter discussions
 help / color / mirror / Atom feed
* Using X-Forwarded-For
@ 2009-08-17 20:20 Eric Jacobs
  0 siblings, 0 replies; only message in thread
From: Eric Jacobs @ 2009-08-17 20:20 UTC (permalink / raw)
  To: netfilter

Management wanted an extra layer of security for some financial apps. Idea 
was to set up reverse proxy server which required authentication. This 
seemed to work until I tried to set up iptables to restrict access only from 
proxy server. Turns out there are applets downloaded to user's machine that 
try to connect directly to apps server.
So I thought maybe I could do something in IPTABLES with the 
"X-Forwarded-For" header from the proxy server. Is this possible? 




^ permalink raw reply	[flat|nested] only message in thread

only message in thread, other threads:[~2009-08-17 20:20 UTC | newest]

Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2009-08-17 20:20 Using X-Forwarded-For Eric Jacobs

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox