On 02/01/2012 01:11 PM, jlan wrote:
I can't use loadbalancer ip, but i can't leave x-Forwarded-For without any content, is there a huge security issue or i'm being paranoic?
Do not enable X-Forwarded-For without checking the origin. That'd allow anyone to send requests to your server faking his IP. The integrity of your log files would be jeopardized.
_______________________________________________ Cherokee mailing list [email protected] http://lists.octality.com/listinfo/cherokee
