Hi Mates,
I have a use case where users are sitting behind a 3rd party proxy which then forwards the traffic to the internet through a security gateway.
Application Control, Identity Awareness and XFF detection enabled.
When I insert the proxied client IP into the HTTP XFF, the security gateway recognizes it and all works as expected, the XFF stripped off properly on the out.
But I'd like to see the source user in the Application Control instead of (or in addition) the original IP.
When I re-write the username into the HTTP XFF, the security gateway doesn't recognize it, I tried different combinations but no luck.
I was able to achieve this a few years back in R77.10 or R77.20 but can't remember what exactly I did back then...
Any ideas?
Thanks.