Work

Meshnet

Service mesh proxy implementing mTLS, circuit breaking, and distributed tracing for microservice communication.

Role

Backend Engineer

Year

2024

Source

GitHub
GogRPCOpenTelemetryEnvoyKubernetes

Overview

A lightweight service mesh sidecar proxy that handles inter-service communication in Kubernetes clusters. Implements mutual TLS, request-level circuit breaking, retry policies, and distributed trace propagation using OpenTelemetry.

Results

  • Sub-millisecond proxy overhead per request
  • Automatic mTLS certificate rotation every 24 hours
  • Distributed tracing across 12 microservices with full request waterfall