Groups | Blog | Home
all groups > iis security > august 2007 >

iis security : hide IP address ..


davers232 NO[at]SPAM googlemail.com
8/5/2007 9:35:06 AM
We have an ISA server providing NATted IP addresses to client
computers. I see from www.whatismyproxy.com that the local IP address
can be seen from the Internet, even using a proxy. How can I make
browsing anonymous.

1 your computer 10.*.*.**
2 IP address seen: ***.**.***.**
3 Your external IP: ***.***.**.**
Roger Abell [MVP]
8/5/2007 8:27:43 PM
Why bother ?
Perhaps some other OS does that.

[quoted text, click to view]

davers232 NO[at]SPAM googlemail.com
8/6/2007 8:40:21 AM
[quoted text, click to view]

It's for privacy, so how do I stop ISA braodcasting this info ?
Roger Abell [MVP]
8/6/2007 9:59:55 PM
[quoted text, click to view]

Perhaps you ought to ask in an ISA rather than IIS newsgroup.
But, it is not broadcasting it, as the packets are directed, and,
knowing the IP is 10.10.11.5 or 10.100.44.6 is not of any real
importance nor loss of privacy.

Roger

Daniel Crichton
8/9/2007 11:02:41 AM
davers232@googlemail.com wrote on Mon, 06 Aug 2007 08:40:21 -0700:

[quoted text, click to view]


Check for the extra HTTP headers that are sent by ISA (and most other
proxies), and look for a way of removing them. However, I wouldn't bother,
as any private addresses within your NAT'd system won't be directly
addressable anyway.

Also, that whatismyproxy site does not show you what is actually seen by
system outside your network - it runs a local Java applet that reads your
local machine's internal address. What you need to find is a site that shows
the actual HTTP headers sent in your request.

Dan

elifulkerson NO[at]SPAM gmail.com
8/12/2007 4:17:31 PM
[quoted text, click to view]

I'm the admin of www.whatismyproxy.com

That site had been languishing for awhile without updates. I've
modified it so that is more clear that the Private IPs it detects are
grabbed via java (that was a late addition as it was, I apologize for
any confusion due to my mixing of metaphors). I've also added a raw
http header view so visitors have something to compare against.

I'm sorry if the sites behavior cause the original poster any stress
over his ISA server configuration. Hopefully the site will be more
useful now.

-Eli
AddThis Social Bookmark Button