I picked the X-Forwarded-For field because there were proxies between the client and squid. So, in this case, the 'client IP' address is not really the clients IP address. For a more generic solution, I would change it to use the client IP address/port.

Ken

Henrik Nordstrom wrote:

Why is the TPROXY patch looking at the (untrustworthy) X-Forwarded-For header for the client address instead of the TCP/IP client address who connected to this Squid?

Regards
Henrik




Reply via email to