>Number: 2552 >Category: mod_proxy >Synopsis: IdentityCheck reports wrong user name from Identd when apache >act as a proxy server >Confidential: no >Severity: non-critical >Priority: medium >Responsible: apache >State: open >Class: sw-bug >Submitter-Id: apache >Arrival-Date: Mon Jul 6 01:20:01 PDT 1998 >Last-Modified: >Originator: [EMAIL PROTECTED] >Organization: apache >Release: 1.3, 1.2.5 >Environment: RedHat Linux 5.0 (with most up-to-date patches) and Redhat 4.2 >Description: Apache 1.2.5 and apache 1.3 on Redhat 5.0 acts as a web proxy to the Internet, client machines (linux, Solaris) use netscape-communicator 4.05 to access the apache proxy. Apache report wrong client login name when IdentityCheck is turned on.
About half of the connection was logged as from user root of the client machines, when root is not even logged in. >How-To-Repeat: On machine A (linux or Solaris), use netscape to access web through an apache proxy on machine B with IdentityCheck turned on. Machine B will report most of the connection as openned by root, even root is not running any browser. >Fix: >Audit-Trail: >Unformatted: [In order for any reply to be added to the PR database, ] [you need to include <[EMAIL PROTECTED]> in the Cc line ] [and leave the subject line UNCHANGED. This is not done] [automatically because of the potential for mail loops. ]