Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Usage Milestone: Google Analytics Module google_analytics crossed 1,000 active installs. Release: GraphQL Compose Codegen 1.1.2 Minor update available for module graphql_compose_codegen (1.1.2). Release: Mapy.com 1.1.3 Minor update available for module mapycom (1.1.3). Release: Ckeditor5 entity browser 3.0.3 Minor update available for module ckeditor5_entity_browser (3.0.3). Release: Ckeditor5 entity browser 3.0.1 Minor update available for module ckeditor5_entity_browser (3.0.1). Release: Ckeditor5 entity browser 3.0.2 Minor update available for module ckeditor5_entity_browser (3.0.2). Release: Teamleader Integration 4.0.2 Minor update available for module teamleader (4.0.2). Release: Change Requests 2.1.9 Minor update available for module change_requests (2.1.9). Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

Debug Headers

No security coverage
View on drupal.org

This module helps diagnose issues with how web server headers are handled, particularly when using reverse proxies or CDNs. It displays current request headers in a block, allowing developers to verify that Drupal is receiving the correct information, such as the `X-Forwarded-Host` header.

This module helps to spot that headers are created correctly on reverse proxy systems. By printing out the headers in a block you can look at issues with caused by not sending the correct headers to Drupal.

For example, when using reverse proxy services or CDNs you will probably want the X-Forwarded-Host header to be sent by the service so that Drupal can respond with the correct domain.

Features

Currently only adds a block that shows the available headers for the page.

This header block can render as HTML comments in order to hide the headers from view. There are some security concerns in doing this so you should only do this if you really need to.

Post-Installation

- Install the module as normal.
- Give the user roles you want to allow access to the sessions page the
permission "view debug headers block".
- Add the Debug Headers block to a page or pages that you want to test.
- When you visit the page you will see a list of the headers reported by the
application.

Similar projects

trusted_proxy_headers_debug - Adds a single page that allows the headers to be viewed, along with a few other reverse proxy settigns.

Supporting this Module

Support the development of this module through Patreon or www.hashbangcode.com

Community Documentation

To follow.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
1
Tracked since
Jun 2025
Latest release
1 year ago
Releases (12 mo)
0 ▼ from 1
Maintenance
Dormant

Releases

Version Type Core Release date
1.0.x-dev Dev 10–11 Jun 27, 2025