[Oisf-users] Suricata X-Forwarded For Question

Kevin Ross kevross33 at googlemail.com
Tue Oct 28 14:32:16 UTC 2014


I use X-Forwarded-For overwriting. I have new proxies though and before it
would be typically a single IP but now it is X-Forwarded-For: CLIENT_IP,

I have no idea why this is the case it would add that in but basically
Suricata is taking the loopback as the overwrite address. Can I specify
which which one to use? If not I will need to disable this which I would
prefer not to until vendor responds :(

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20141028/e3f5edf7/attachment-0001.html>

More information about the Oisf-users mailing list