Forum Discussion
Forsaken_104807
Nimbostratus
Aug 06, 2010X-Forwarded-For Irule
Hi All, Hoping someone can help here... In a nut shell, I am trying to block external access to a site, but allow internal users to work. Our connections come in externally via an application firewall...
Colin_Walker_12
Aug 11, 2010Historic F5 Account
Hoolio's 100% right on this one, as is often the case. The XFF is far too easy to spoof to be relied upon for security. Unless you're manually stripping out the XFF somewhere upstream of the LTM this iRule is being fired on and are only concerned about an XFF being inserted inside your trusted network somewhere. That's about the only case you could trust an XFF for security reasons.
Colin
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects