Class ForwardedIPConfig
- All Implemented Interfaces:
Serializable,SdkPojo,ToCopyableBuilder<ForwardedIPConfig.Builder,ForwardedIPConfig>
The configuration for inspecting IP addresses in an HTTP header that you specify, instead of using the IP address that's reported by the web request origin. Commonly, this is the X-Forwarded-For (XFF) header, but you can specify any header name.
If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
This configuration is used for GeoMatchStatement, AsnMatchStatement, and RateBasedStatement. For IPSetReferenceStatement, use IPSetForwardedIPConfig instead.
WAF only evaluates the first IP address found in the specified HTTP header.
- See Also:
-
Nested Class Summary
Nested Classes -
Method Summary
Modifier and TypeMethodDescriptionstatic ForwardedIPConfig.Builderbuilder()final booleanfinal booleanequalsBySdkFields(Object obj) final FallbackBehaviorThe match status to assign to the web request if the request doesn't have a valid IP address in the specified position.final StringThe match status to assign to the web request if the request doesn't have a valid IP address in the specified position.final <T> Optional<T>getValueForField(String fieldName, Class<T> clazz) final inthashCode()final StringThe name of the HTTP header to use for the IP address.static Class<? extends ForwardedIPConfig.Builder>final StringtoString()Returns a string representation of this object.Methods inherited from class java.lang.Object
clone, finalize, getClass, notify, notifyAll, wait, wait, waitMethods inherited from interface software.amazon.awssdk.utils.builder.ToCopyableBuilder
copy
-
Method Details
-
headerName
The name of the HTTP header to use for the IP address. For example, to use the X-Forwarded-For (XFF) header, set this to
X-Forwarded-For.If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
- Returns:
- The name of the HTTP header to use for the IP address. For example, to use the X-Forwarded-For (XFF)
header, set this to
X-Forwarded-For.If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
-
fallbackBehavior
The match status to assign to the web request if the request doesn't have a valid IP address in the specified position.
If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
You can specify the following fallback behaviors:
-
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
If the service returns an enum value that is not available in the current SDK version,
fallbackBehaviorwill returnFallbackBehavior.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromfallbackBehaviorAsString().- Returns:
- The match status to assign to the web request if the request doesn't have a valid IP address in the
specified position.
If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
You can specify the following fallback behaviors:
-
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
-
- See Also:
-
-
fallbackBehaviorAsString
The match status to assign to the web request if the request doesn't have a valid IP address in the specified position.
If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
You can specify the following fallback behaviors:
-
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
If the service returns an enum value that is not available in the current SDK version,
fallbackBehaviorwill returnFallbackBehavior.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available fromfallbackBehaviorAsString().- Returns:
- The match status to assign to the web request if the request doesn't have a valid IP address in the
specified position.
If the specified header isn't present in the request, WAF doesn't apply the rule to the web request at all.
You can specify the following fallback behaviors:
-
MATCH- Treat the web request as matching the rule statement. WAF applies the rule action to the request. -
NO_MATCH- Treat the web request as not matching the rule statement.
-
- See Also:
-
-
toBuilder
- Specified by:
toBuilderin interfaceToCopyableBuilder<ForwardedIPConfig.Builder,ForwardedIPConfig>
-
builder
-
serializableBuilderClass
-
hashCode
public final int hashCode() -
equals
-
equalsBySdkFields
- Specified by:
equalsBySdkFieldsin interfaceSdkPojo
-
toString
Returns a string representation of this object. This is useful for testing and debugging. Sensitive data will be redacted from this string using a placeholder value. -
getValueForField
-
sdkFields
-
sdkFieldNameToField
- Specified by:
sdkFieldNameToFieldin interfaceSdkPojo
-