You have to update to v3 and using l4 farm with dnat enabled, zlb has to be
configured as gw of your apaches with mod_security.

Regards
El 21/04/2013 18:36, "Nick -" <[email protected]> escribió:

> I haven't implemented Zen yet but you would need to turn on spoofing on an
> LB for the Apache service to get the IP address of the person trying to
> access the instance.
>
> ------------------------------
> From: [email protected]
> To: [email protected]
> Date: Mon, 22 Apr 2013 01:44:18 +1000
> Subject: [Zenloadbalancer-support] Mod_security & ZLB
>
> Hi everyone,
>
>
>
> Just wondering if anyone has come across a similar situation:
>
>
>
> We have a ZLB cluster (v2) setup and running no problems on a public IP
> responding to customers and web servers on private IP addresses running
> mod_security. Unfortunately, when the ZLB servers send a request to the web
> servers, they send their own IP address, and thus, if a client tries to
> hack or perform an action blocked by mod_security, it is the load
> balancers IP that gets blocked not the end user as the web server sees the
> load balancer as initiating the attack.
>
>
>
> Has anyone come across this and I was wondering if anyone knows whether
> ZLB supports forwarding the original IP address as the source rather than
> itself?
>
>
>
> As a side note, a feature request for ZLB would be the inclusion of
> mod_security as part of a default security suite.
>
>
>
> Regards
>
>
>
> Nathan Nogic
>
>
>
> Tel: 1300 985 875
>
> Direct: 03 9012 0157
>
> Mobile: 0458 237 755
>
> Email: [email protected]
>
>
>
> [image: Description: MDS-Blue]
>
>
>
> ------------------------------------------------------------------------------
> Precog is a next-generation analytics platform capable of advanced
> analytics on semi-structured data. The platform includes APIs for building
> apps and a phenomenal toolset for data science. Developers can use our
> toolset for easy data analysis & visualization. Get a free account!
> http://www2.precog.com/precogplatform/slashdotnewsletter
> _______________________________________________ Zenloadbalancer-support
> mailing list [email protected]
> https://lists.sourceforge.net/lists/listinfo/zenloadbalancer-support
>
>
> ------------------------------------------------------------------------------
> Precog is a next-generation analytics platform capable of advanced
> analytics on semi-structured data. The platform includes APIs for building
> apps and a phenomenal toolset for data science. Developers can use
> our toolset for easy data analysis & visualization. Get a free account!
> http://www2.precog.com/precogplatform/slashdotnewsletter
> _______________________________________________
> Zenloadbalancer-support mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/zenloadbalancer-support
>
>

<<image001.jpg>>

------------------------------------------------------------------------------
Precog is a next-generation analytics platform capable of advanced
analytics on semi-structured data. The platform includes APIs for building
apps and a phenomenal toolset for data science. Developers can use
our toolset for easy data analysis & visualization. Get a free account!
http://www2.precog.com/precogplatform/slashdotnewsletter
_______________________________________________
Zenloadbalancer-support mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/zenloadbalancer-support

Reply via email to