The route proxy tells a backend the request was HTTPS, and for which name #245

Merged
mesh-admin merged 1 commits from fix/the-route-proxy-says-the-request-was-https into main 2026-10-03 20:23:03 +00:00
1 Commits
Author SHA1 Message Date
jochen e1293fb0ad The route proxy tells a backend the request was HTTPS, and for which name
NewSingleHostReverseProxy sets only X-Forwarded-For, so a backend that writes its own addresses saw
the plain hop from the proxy: Gitea's Go import tag named an http clone URL and go get refused the
SDK's module path. The proxy now sets X-Forwarded-Proto, -Host and -For from the request it received,
and keeps the Host header as it was.
2026-10-03 22:22:51 +02:00