Hello,

I would like to capture CloudFlare's CF-Connecting-IP special header (client's IP) due to an ongoing DDoS attack. Actually, i want to see the IPs that have the larger number of connections.

But since we are behind cloud flare, we need to use the header CF-Connecting-IP.

How can i do that using Wireshark?

Thanks S.

asked 16 Mar, 18:09

planck's gravatar image

planck
61
accept rate: 0%

Be the first one to answer this question!
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "Title")
  • image?![alt text](/path/img.jpg "Title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Tags:

×2

Asked: 16 Mar, 18:09

Seen: 71 times

Last updated: 16 Mar, 18:09

p​o​w​e​r​e​d by O​S​Q​A