Reverse Proxy
A reverse proxy is a server that sits in front of one or more backend servers and forwards incoming client requests to them, then returns the response as if it came from the proxy itself. It does the opposite of a forward proxy, which sits in front of clients and forwards their requests outward.
That direction is the whole distinction. As MrScraper's guide to proxy servers puts it, forward proxies serve clients, reverse proxies serve servers. A forward proxy hides who is asking. A reverse proxy hides who is answering.
What Is a Reverse Proxy?
When you load a site running behind a reverse proxy, your request never reaches the origin server directly. It terminates at the proxy, which decides which backend should handle it, passes it along over the internal network, then relays the response back to you. Your browser isn't configured for any of this and has no way to tell the difference, from the client side, the proxy simply is the website.
Ownership is the other half of the picture. A reverse proxy is deployed and controlled by whoever runs the site, not by the person visiting it. Nginx, HAProxy, Traefik, and Cloudflare all operate in this role, and a typical nginx reverse proxy setup is a handful of proxy_pass directives routing requests to app servers running on internal ports.
Reverse Proxy vs. Forward Proxy
| Forward Proxy | Reverse Proxy | |
|---|---|---|
| Sits in front of | Clients | Servers |
| Acts on behalf of | The user making the request | The site answering the request |
| Deployed by | The client, or a proxy provider they buy from | The site owner or their CDN |
| Client awareness | The client configures it deliberately | The client never knows it's there |
| What it hides | The client's real IP from the destination | The origin servers' addresses from the public |
| Typical use | IP masking, geotargeting, access control, scraping | Load balancing, TLS termination, caching, DDoS defense |
| Common examples | Residential, datacenter, and mobile proxies | Nginx, HAProxy, Cloudflare |
Both are intermediaries that relay traffic. They just stand at opposite ends of the same connection, which is why the reverse proxy vs forward proxy question resolves so cleanly once you know which side each one is protecting.
What a Reverse Proxy Is Used For
- Load balancing: spreading incoming requests across a pool of backend servers so no single machine absorbs a traffic spike alone.
- TLS termination: handling HTTPS encryption and certificates at the edge so backends can exchange plain HTTP internally.
- Caching and compression: serving stored responses and compressing assets without waking the origin server at all.
- Security and filtering: keeping origin IPs off the public internet while applying rate limits, WAF rules, and DDoS absorption at a single controlled entry point.
- Routing: presenting several separate services behind one domain, routed by path or subdomain.
Reverse Proxies and Web Scraping
For scraping, the relevant point is which side you're on. A scraper uses forward proxies, residential, datacenter, or mobile IPs, to vary where its requests appear to come from. The reverse proxy web scraping connection runs the other way: the reverse proxy belongs to the target site, and it's frequently the layer deciding whether your request gets through.
That matters in practice because edge providers like Cloudflare are reverse proxies with bot management attached. When a request is challenged, the block usually comes from the proxy in front of the site, not the application behind it, which is why the response you get back can look nothing like the page a browser sees.
Related terms
DNS Leak
A DNS leak occurs when domain lookups bypass a proxy tunnel, exposing real IP addresses. Learn how DNS leak tests and socks5h resolve scraper leaks.
Read more →CGNAT
CGNAT enables mobile carriers to share public IPs across thousands of devices, explaining why mobile proxy pools resist anti-bot blacklists and blocks.
Read more →Proxy Chaining
Proxy chaining routes network traffic through sequential intermediary proxies to hide origin IPs, balancing nested anonymity against connection latency.
Read more →Residential Proxy
Real-user IPs with global geotargeting for undetectable data collection.
Get started freeCommunity
Head over to our community where you can engage with us and our community directly.
Questions? Ask our team via live chat, join us on our official Slack community. We're always happy to help.
Join our Slack Community