[sslh] transparent proxy

MrDiga madiga99 at gmail.com
Wed Feb 6 14:47:45 CET 2013


That'd be great if you can publish the patch.  Does this mean iptables
would have to be introduced to the mix including the patch?

I believe sshttp (https://github.com/stealth/sshttp) gets this done via
iptables similarly but was hoping it can be avoided somehow.

Thanks!!

On Wed, Feb 6, 2013 at 6:04 AM, Yves Rutschle <yves at naryves.com> wrote:

> On Tue, Feb 05, 2013 at 03:18:05PM -0500, MrDiga wrote:
> > Can sslh also act as a transparent proxy where the real client's source
> IP
> > is recognized by web server?  I am not able to detect via x-forwarded-for
> > or remote_addr real client's IP over HTTPS traffic.
>
> No -- I have a patch that I think should be enough to enable
> to do it, but there is iptables plumbing to perform around
> that that I haven't yet managed to get right. I can publish
> the patch if you're interested.
>
> Y.
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://rutschle.net/pipermail/sslh/attachments/20130206/9f6ac84e/attachment.html>


More information about the sslh mailing list