【MVS】F5 BIG-IP LTM HTTP XFF頭插入配置說明
F5 BIG-IP LTM虛服務配置SNAT時,客戶端真實的源地址轉換為F5設備上配置的地址,導致後端服務器無法獲取真實的客戶端地址,無法滿足溯源等安全側要求。可以在HTTP請求報文頭中插入X-Forwarded-For字段來實現溯源功能,具體操作如下。
To configure the BIG-IP system to insert the original client IP address in an X-Forwarded-For HTTP header, perform the following procedure:
Note: Older versions of BIG-IP software may display the option as Insert XForwarded For instead of Insert X-Forwarded-For.
You must now associate the new HTTP profile with the virtual server.
實際操作效果如下:
該案例暫時沒有網友評論
✖
案例意見反饋
親~登錄後才可以操作哦!
確定你的郵箱還未認證,請認證郵箱或綁定手機後進行當前操作