High-performance reverse proxy: passive TLS, HTTP/2, and TCP SYN fingerprints, injected as trusted headers for your backends.
Fingerprints are parsed by Huginn Net. The entire signature path carries the same MIT/Apache terms as the proxy itself. Use it in any commercial product without a separate licensing deal for the fingerprint logic.
Values are produced by the proxy and override any client-supplied spoofed headers.
| Header | Layer / note |
|---|---|
x-huginn-net-ja4 (and JA4_r / JA4_o / JA4_or) | TLS ClientHello (FoxIO JA4 family) |
x-huginn-net-akamai | HTTP/2 only |
x-huginn-net-tcp | TCP SYN via eBPF/XDP when enabled |