Set Traefik externalTrafficPolicy=Local to preserve client IP

FixKlusterServices
Shipped
2026年4月18日 01:59 UTC
Author
Kamo
Commit
11dd645

With the default "Cluster" policy, kube-proxy SNATs external traffic to the node IP before forwarding to Traefik. That caused Traefik to see the node IP as the source and put it in X-Forwarded-For, which broke IP-based geo lookup in kamo-analytics (visitor locations on world map stayed empty). "Local" policy skips SNAT and passes the original client IP through, which is what IP-based analytics needs.

All changes

就像你看到的运输?

每一个都自动更新您工作空间的地盘。 开始自由,看它成长 一周又一周.

永远开始自由查看定价