Dimitris Zervas retweetledi
Dimitris Zervas
4.3K posts

Dimitris Zervas
@_dzervas
Rustacian, maker & breaker Blog: https://t.co/xtjEwrQoNj Mastodon: @[email protected]
Athens, Greece Katılım Haziran 2011
508 Takip Edilen303 Takipçiler

This is the first version of #MCP-Firewall!
It allows far more granular control over what commands/tools are allowed/denied/require manual approval
Built with #go and directly pluggable to #claude's (or gh copilot cli) PreToolUse hook
github.com/dzervas/mcp-fi…
English

@Arnav7t tangential: I've started writing eBPF in rust and wow, it gives you superpowers and the limitations are fun - like a code golf!
English

@Arnav7t I'm almost sure that it had to do with NixOS (all nodes are running NixOS). Kernel incompatibility/headers not being in the expected place (nixos loves to mess paths around) and/or being softlinked out of the pod's reach are all very likely and for my setup, ebpf wasn't worth it
English
Dimitris Zervas retweetledi

and I didn't (expected monthly active users: me)
so I did the unthinkable: I switched to sync workers
request duration: ~10-100ms 🎉🎉🎉
I also fixed the BGP firewalling issue and now the cni is fine too - you can find my setup here github.com/dzervas/homelab
English


