Jump to content

iOS/ATV + Cloudflare + Referer header


Go to solution Solved by Luke,

Recommended Posts

Posted

Until recently I was using a rule in the CF firewall to block requests that have anything in the Referer header. This worked fine because I didn't have any Apple users, but then I tried to add some, and I quickly learned my block rule was catching them.

So the Apple clients go through some intermediate domain (owned by Apple, I assume) before going to my server? Is that correct? Does anyone know the name of that domain, and is the name constant? I'd like to allow it while blocking all others, if possible.

Posted

Hi, no, they don't go through any intermediate domain.

Posted

That's strange because when I turn on the rule to block requests with anything in the referer header, it's just the Apple clients that get blocked. If I turn off the rule, then the Apples are happy again.

I am no expert but is there something else that could cause this?

 

  • Solution
Posted

The webview in the user interface is probably adding a referrer header with a localhost url.

  • Thanks 1
Posted

Thanks that was it!:)

  • Thanks 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...