Skip to content

Configurable filter of trusted proxies to handle x-forwarded-for header #21639

@Hexta

Description

@Hexta

Title: Configurable list of trusted proxies to handle x-forwarded-for header

Description:
It'd be helpful for improving security to handle x-forwarded-for header from the trusted proxies only if they are specified to filter out forged XFF header from malicious clients.
And add a configuration parameter to specify such trusted proxies. List of CIDR, for example.
In a similar way as set_real_ip_from option in Nginx.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions