| Date/time (server, UTC) | 2026-09-16T23:23:46Z |
| Requested host | anzaid.com |
| Scheme (via X-Forwarded-Proto) | https |
| Behind a proxy? | true |
| X-Forwarded-Host | anzaid.com |
| X-Forwarded-For | 216.73.216.41 |
| X-Forwarded-Port | 443 |
| X-Forwarded-Server | 1b76b876c159 |
| Direct peer address | 192.168.100.4:34796 |
| Method / path | GET /sitemap.xml |
| User-Agent | Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com) |
| Answered by | a0861566d521 |
This host plain-HTTP server never sees raw TLS SNI (that's terminated upstream); "Requested host" is the Host header as forwarded by the proxy, which for any normal HTTPS client is the same value that was used as the TLS SNI to route the connection here in the first place.