in reply to Re^2: HTTP::Daemon Security Question
in thread HTTP::Daemon Security Question
which means it will only accept connections coming in on the localhost IP. Packets going to port 80 from the external IP won't reach this server.
That's true as far as it goes, but it would still be a good idea to check the remote address.
It's possible, depending on your system config, to get a packet coming from the outside aimed at 127.0.0.1. And of course there's no guarantee that the system you're running on hasn't been misconfigured so that 'localhost' ends up giving you an accessible IP.
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^4: HTTP::Daemon Security Question
by bkiahg (Pilgrim) on Jan 06, 2009 at 20:01 UTC |