On 8 February 2017 at 01:44, Yann Ylavic <ylavic....@gmail.com> wrote: > Actually, I'm not really opposed to set HTTPS=on (according to > mod_remoteip) in the environment *given to the script/CGI* only, if > that's the trigger for it to do the desired thing, this won't be used > by httpd internally at least. > > What's proposed so far is much more than that (if I read the patches > correctly).
Well, another proposal that wasn't in the patches, but was discussed in bugzilla was to decouple mod_rewrite's HTTPS check from calling mod_ssl directly and make it just check the environment variable, so that rewrite conditions relying on it will still work behind a proxy.