http://ciisqbg45nggykdl6rjdrq3wc64csga4vkphu66qsi65mypeitqedoad.onion/blog/port-striping-v3
That worked for obfs4 traffic, but resources (CPU/RAM) would be wasted while waiting for the connection to timeout if it wasn't obfs4 traffic (I.e., white noise from scanners, worms, crawlers, etc.). We couldn't lower that timeout without it affecting legitimate obfs4 traffic, so instead we changed haproxy's logic so that it would check one last time if the traffic obfs4proxy forwarded/de-obfuscated is actually OpenVPN traffic, and if not, drop it immediately so no further resources are...