Is it possible to accurately determine the IP address of a client in java servlet

后端 未结 5 2025
情歌与酒
情歌与酒 2020-12-03 16:13

I want to configure a machine in my network to accept all calls from a specific machine without authentication. For this I am planning to use the IP address of the client ma

5条回答
  •  感情败类
    2020-12-03 16:22

    You could be locally susepitable to ARP Spoofing. Where a malicious machine convinces the router to associate the IP address with it's MAC address.

    The level and mechanism of trust really depends on the sensitivity of the server/service you are trying to protect and the environment you are operating in.

    It looks to me that this is a local arrangement given the private IP address 192.168 range. If this server is not public facing, not critical and you are operating in a relatively secure LAN environment that's well shut off from the public and other private LANS then you should be OK. Otherwise you should look at other security options at a higher level.

提交回复
热议问题