Take the public domain from X-Forwarded-Host when set #3
Loading…
Reference in a new issue
No description provided.
Delete branch "forwarded-host"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Follow-up to #2. Apps that proxy with their own HTTP client send the upstream address as
Host, so the callback came out ashttps://192.168.4.12:7233/.... Now the server usesX-Forwarded-Hostif it's set and falls back toHost.Each app must send
X-Forwarded-Host: <its domain>when it calls lnurl. The server trusts the header, so it must only be reachable over the tailnet.Tested with
go vet ./...andgo test ./.... There's a new test for a callback built fromX-Forwarded-Host.🤖 Generated with Claude Code