Skip to main content
FortiS_T
New Member
May 8, 2018
Question

detect real source ip behind external proxy server

  • May 8, 2018
  • 1 reply
  • 2617 views

Hi guys,

 

i have a network with external web proxy which is before the fortigate,

now all the traffic that came from the proxy is with the proxy source ip, i want to detect the real source ip of the workstation that make a connection.

 

the web proxy is configured to send xff (X-Forwarded-For ) but what do i need to configure in FGT to received that?

 

Thank you!

    1 reply

    emnoc
    New Member
    May 25, 2018

    What are you trying todo?  XFF and VIA are  two methods that comes to mind but explain or provide topology of what  your configuration.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!