Ebpf-Powered Firewall and Tcp/http Proxy Agent
Posted2 months ago
github.comTechstory
calmpositive
Debate
0/100
EbpfFirewallNetworkingProxy
Key topics
Ebpf
Firewall
Networking
Proxy
A new eBPF-powered firewall and TCP/HTTP proxy agent was shared on GitHub, with minimal discussion on its features and potential applications.
Snapshot generated from the HN discussion
Discussion Activity
Light discussionFirst comment
N/A
Peak period
1
Start
Avg / period
1
Key moments
- 01Story posted
Nov 3, 2025 at 10:54 AM EST
2 months ago
Step 01 - 02First comment
Nov 3, 2025 at 10:54 AM EST
0s after posting
Step 02 - 03Peak activity
1 comments in Start
Hottest window of the conversation
Step 03 - 04Latest activity
Nov 3, 2025 at 10:54 AM EST
2 months ago
Step 04
Generating AI Summary...
Analyzing up to 500 comments to identify key contributors and discussion patterns
ID: 45800410Type: storyLast synced: 11/17/2025, 7:50:24 AM
Want the full context?
Jump to the original sources
Read the primary article or dive into the live Hacker News thread when you're ready.
Moat is a high-performance reverse proxy and firewall built with Rust, featuring:
XDP-based packet filtering for ultra-low latency protection at kernel level Dynamic access rules with automatic updates from Arxignis API BPF statistics collection for packet processing and dropped IP monitoring TCP fingerprinting for behavioral analysis and threat detection TLS fingerprinting with JA4 support for client identification JA4+ fingerprinting with complete suite: JA4H (HTTP headers), JA4T (TCP options), JA4L (latency), JA4S (TLS server), and JA4X (X.509 certificates) Automatic TLS certificate management with ACME/Let's Encrypt integration Threat intelligence integration with Arxignis API for real-time protection CAPTCHA protection with support for hCaptcha, reCAPTCHA, and Cloudflare Turnstile Content scanning with ClamAV integration for malware detection PROXY protocol support for preserving client IP addresses through load balancers Health check endpoints for monitoring and load balancer integration Redis-backed caching for certificates, threat intelligence, and validation results Domain filtering with whitelist support Wirefilter expressions for advanced request filtering Unified event queue with batched processing for logs, statistics, and events Flexible configuration via YAML files, command line arguments, or environment variables