check the presence of a reverse proxy

From: Maria Da Re (pentestml_at_yahoo.it)
Date: 11/30/04


Date: Tue, 30 Nov 2004 22:15:43 +0100 (CET)
To: pen-test@securityfocus.com

Can i check the presence of a reverse proxy
between me and some webservers?

The pen-test scenario (target network) is:

- 2 level of firewall (pix and iptables)
- one dmz with a squid configured as reverse proxy
(and other things)
- one internal network with 4 webserver with apache
and public ip address (and other things)

So i would to check if my request to one of webserver
is natted (by external firewall) to the proxy and
redirected by the proxy to the webserver. I can work
from Internet, from a subnet connected to external
firewall, from a subnet connected to internal
firewall.

Some suggestions?

Many thanks

m.

                
___________________________________
Nuovo Yahoo! Messenger: E' molto più divertente: Audibles, Avatar, Webcam, Giochi, Rubrica… Scaricalo ora!
http://it.messenger.yahoo.it



Relevant Pages

  • RE: check the presence of a reverse proxy
    ... check the presence of a reverse proxy ... The pen-test scenario (target network) is: ... - 2 level of firewall ... So i would to check if my request to one of webserver ...
    (Pen-Test)
  • Re: check the presence of a reverse proxy
    ... > - one dmz with a squid configured as reverse proxy ... > redirected by the proxy to the webserver. ... > from Internet, from a subnet connected to external ... > firewall, from a subnet connected to internal ...
    (Pen-Test)
  • Re: ISA auf Webserver
    ... >zusaetzliche Komponenten auf einer Firewall zu installieren. ... was soll dieser Webserver machen? ... Dabei bildet das dritte NIC die DMZ, ... ISA als Edgefirewall und dann interner Webserver, ...
    (microsoft.public.de.german.isaserver)
  • Re: [Full-Disclosure] Re: Empirical data surrounding guards and firewalls.
    ... The firewall is not content filtering, thus does not stop bad requests ... connection to a webserver. ... carrying an illegal object (an illegally formed request). ...
    (Full-Disclosure)
  • RE: PART II : Webserver, DMZ, ports questions
    ... through a firewall they do it by coming through ports that the firewall ... plan on putting content onto the webserver from the Intranet. ... ports through the firewall. ... > ports to talk out onto the Internet? ...
    (Security-Basics)