Skip to content

Add trust-boundary tests for spoofed forwarding headers #281

@hman38705

Description

@hman38705

Area: security middleware

Problem: Accepting forwarded headers blindly can be abused outside trusted proxy setup.

Testing gap: No environment-aware tests enforcing trusted proxy behavior.

Acceptance tests: Tests verifying header trust disabled unless proxy config enables it.

Metadata

Metadata

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions