A patch for haproxy-1.3.17 which add X-Original-Dst header.

2009-04-14 Thread Maik Broemme
Hi, I have attached a patch which will add on every http request a new header 'X-Original-Dst'. If you have HAProxy running in transparent mode with a big number of SQUID servers behind it, it is very nice to have the original destination ip as a common header to make decisions based on it. The w

NYTimes.com: The New York Times in Print for April 14, 2009

2009-04-14 Thread 1mariana_madimbo01
This page was sent to you by: 1mariana_madimb...@yahoo.com. DEAR FRIEND, GREETING IN THE NAME OF OUR LORD JESUS CHRIST. I AM MRS.MARIANA MADIMBO,A WIDOW TO LATE MIKALLE MADIMBO. I AM 50 YEARS OLD,I AM A NEW CHRISTAIN CONVERT, SUFFERING FROM LONG TIME CANCER OF THE BREAST,FROM ALL INDICATION MY

Re: Forcing SSL encryption (a.k.a. 'redirect' keyword not recognised)

2009-04-14 Thread Willy Tarreau
Hi, On Tue, Apr 14, 2009 at 12:49:21PM +0300, John Doe wrote: > I feel stupid... I have a mixed environment for testing: three HAproxies, > multiple servers some being in the same LAN and some in a remote location. > And yes - in that test I used mistakenly a local client. OK that explains it the

RE: Forcing SSL encryption (a.k.a. 'redirect' keyword not recognised)

2009-04-14 Thread John Doe
Hi >> I did the re-test using 1.3.17 and I can confirm that the following >> configuration doesn't function as expected (i.e. the traffic is not >> redirected into https): >> acl stunnel src 10.0.0.0/8 >> redirect prefix https://10.0.0.220 unless stunnel >> >> but this works OK: >> acl stun