Learn F5 Technologies, Get Answers & Share Community Solutions Join DevCentral

Filter by:
  • Solution
  • Technology
Answers

X-Forwarded-For with FirePass

Is there some way to enable XFF headers using FirePass? If not, can this be accomplished using a SED script or some other method?

My goal is to have the client ip to show up in our IIS logs instead of the FirePass's internal ip. I have found the ISAPI filter for IIS already.

Any suggestions would be greatly appreciated.
0
Rate this Question

Answers to this Question

placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER
I believe you can do this with Big-IP (i-rule), never seen this done on the Firepass.
0
placeholder+image
USER ACCEPTED ANSWER & F5 ACCEPTED ANSWER
Can't help on the XFF bit, but maybe there is another way to pass the IP to the server... The client IP is recorded in a session variable on the Firepass. Maybe you could incorporate that variable in the Firepass favourite (maybe tag it on at the end with &IP=%session.network.client.ip%), and have IIS extract it. But it would only work for the initial connection, not every HTTP transaction.
0