Click here to Skip to main content
15,892,059 members
Please Sign up or sign in to vote.
0.00/5 (No votes)
See more:
When user login into the web application, I capture 3 values and stored it in session state:
IP 
UserAgent 
http-X-Forwarded-For

During login, http-x-forwarded-for has empty value. The log file shows that, the http-x-forwarded-for has a new value when user assessing the home page, something like 10.0.0.45 or 10.0.0.51.

What could this means?

Should I end the session? or just load an empty page to the client?
Is this some sort of hijacking?
Posted
Updated 5-May-15 2:54am
v2

This content, along with any associated source code and files, is licensed under The Code Project Open License (CPOL)



CodeProject, 20 Bay Street, 11th Floor Toronto, Ontario, Canada M5J 2N8 +1 (416) 849-8900