Hi Amos, just had a go at this: request_header_access X-Forwarded-For deny header_replace X-Forwarded-Forand it's still passing XFF from another source thru - Nothing to urgent since the Deb6 boxes are getting built :) But if you spot something ?
Cheers, Pieter