3 ms·
Huh? I don't think i get this. Is Proxy Protocol different to making sure to add client information as an extra header? At least thats what we normally do, we
by Fumtumi 6y ago
Huh? I don't think i get this.
Is Proxy Protocol different to making sure to add client information as an extra header?
At least thats what we normally do, we make sure that client information like the client ip are added as header filds which can easily be used in monitoring and co.
- deathanatos 6y agoI think they're referring to this protocol: http://www.haproxy.org/download/1.8/doc/proxy-protocol.txt http://www.haproxy.org/download/1.8/doc/proxy-protocol.txt It wraps a TCP connection (not just HTTP) and forwards it, and preserves the originating IP information as a small header on the proxied connection. It's supported beyond HAProxy, too; e.g., AWS ELBs support it. I've used it when forwarding TLS connections, but not wanting to lose the remote IP information. (And not wanting to decrypt on the ELB, which is required to add, e.g., an HTTP Forwarded-For header.)
- 0xEFF 6y agoDifferent software expects different headers for http, and some software isn’t http based. Proxy protocol addresses these situations.
- sandGorgon 6y agoYour header is your custom way . If you add your header and the next hop is to apache or some other software (for e.g.), it won't know what you did. Proxy protocol is a standard. Every software that supports proxy protocol reads and write it in the same way. This is supported outside of software. All clouds (AWS, GCP, Azure ) support it. So does third party services like Cloudflare - https://developers.cloudflare.com/spectrum/proxy-protocol https://developers.cloudflare.com/spectrum/proxy-protocol