diff --git a/src/web/Request.php b/src/web/Request.php index 30562bbebb0..e5d762b73e8 100644 --- a/src/web/Request.php +++ b/src/web/Request.php @@ -68,6 +68,18 @@ class Request extends \yii\web\Request 'Forwarded', ]; + /** + * @inheritdoc + */ + public $secureHeaders = [ + 'Client-IP', + 'X-Forwarded-For', + 'X-Forwarded', + 'X-Cluster-Client-IP', + 'Forwarded-For', + 'Forwarded', + ]; + /** * @var int The highest page number that Craft should accept. * @since 3.1.14