

Enable client authorization on the frontend service.This can be an issue for more advanced Onion Service threat models. Minimize the differences between both v3 and other descriptors.Ĭurrently Onionbalance v3 descriptors can look different from other descriptors, which makes it possible for clients and HSDirs to learn that a service is using Onionbalance.In theory, Onionbalance could load-balance hundreds of backend instances by publishing descriptors at small time intervals that contain introduction points from a different subset of those instances each time. This mode allows Onionbalance v2 to load-balance more than 10 backend instances, whereas currently Onionbalance v3 has a limit of 8 backend instances. Support for v3 "distinct descriptor" mode.In particular, we would like to implement some or all of the following features: We would like someone to help us implement some of the currently open feature requests. Until recently when we released a new version of Onionbalance that supports v3 Onion Services. Onionbalance is one of the standard ways Onion Service administrators can load balance Onion Services, but it didn't work for v3 onions. This has been a great opportunity for us, the onion balance development team, since our code has been hardened and tested by the sheer volume of clients that use it every day. During the past few years, they have been deployed by many serious websites like major media organizations (like the Washington Post), search engines (such as DuckDuckGo) and critical Internet infrastructure (e.g. Onion services have been around for a while.
