Ruediger Pluem wrote:
http://httpd.apache.org/docs/2.0/mod/mod_proxy.html#access suggests to secure a forward proxy by using mod_authz_host. Currently the advice should be the opposite: Yes, secure your forward proxy, but do *not* do this with mod_authz_host as it does not work as expected.
Has anyone actually tested this? Is it true that there is no way to run a host-restricted cached proxy? That would be really lame.
Joshua.