Дневник на промените
Release history за Fluxheim. Пълните release notes са в GitHub издания.
Издадено на 23 юни 2026 г.
- +Премества plaintext upstream HTTP/2 forwarding into the native HTTP/1 proxy build build path for h2c/prior-knowledge origins
- +Добавя pooled native upstream H2 connections with bounded stream capacity and safe-method retry after pre-response pooled-handle failure
- +Поддържа TLS ALPN-negotiated upstream HTTP/2 със съществуваща upstream TLS/SNI/CA policy
- +Добавя explicit, изключен по подразбиране h2c Upgrade fallback за plaintext
http1-and-http2origin-и - +Ограничава native upstream H2 handshake-и, stream-slot wait-и, keepalive ping-ове и setup timeout-и
Издадено на 23 юни 2026 г.
- +Премества inherited global/vhost compression policy into the native HTTP/1 proxy build build and route proxy build build
- +Merges root/vhost/route header-policy inheritance into native route proxy build build construction
- +Премества safe forwarded-client-IP ownership, trusted-chain append, regex rewrites, ACL, concurrency и rate limits към native path
- +Добавя native ACME HTTP-01 challenge serving, traffic mirroring, auth-request, and route-scoped gRPC validation
Издадено на 21 юни 2026 г.
- +Премества route-level native response compression onto the HTTP/1 route proxy build build through
fluxheim-compression - +Премества
proxy build build.error_pagesonto native HTTP/1 proxy build build fallback страници, backed byfluxheim-web
Издадено на 21 юни 2026 г.
- +Добавя native HTTP/1 route static-web serving backed by
fluxheim-web - +Добавя route request-header mutation, response rewrites, static upstream round-robin, and static upstream weights to the native route proxy build build
Издадено на 21 юни 2026 г.
- +Добавя native route redirect actions with safe
{uri},{path}, and{query}expansion - +Премества route body limits and response-header overlays onto native HTTP/1 route proxy build build responses
Издадено на 21 юни 2026 г.
- +Добавя native HTTP/1 route-proxy build build execution for exact, prefix, and fallback routes with method filters and safe rewrite handling
- +Добавя
native-http1-proxy build build-candidateредове към runtime cutover evidence, така че оставащите compatibility blocker-и да са explicit
Издадено на 20 юни 2026 г.
- +Promote-ва native HTTP/2 downstream safety preview към cutover-ready след focused parity tests
- +Прави representative native runtime cutover report blocker-free за simple HTTP/1, HTTP/2, admin, metrics, stream и UDP configuration-и
Издадено на 20 юни 2026 г.
- +Cuts stream and UDP proxy build build service startup over to Fluxheim-owned native task boundaries
- +Добавя cancellation-safe native shutdown waiting and abort-on-cancel background task joins
Издадено на 20 юни 2026 г.
- +Starts native admin and metrics serving behind Fluxheim-owned server primitives
- +Harden-ва native background handles, така че dropped critical handles да abort-ват вместо silent detach на task-ове
Издадено на 20 юни 2026 г.
- +Добавя
NativeBackgroundSupervisorза Fluxheim-owned background task orchestration - +Добавя critical task watchdog support and hardens shutdown delivery edge cases
Издадено на 20 юни 2026 г.
- +Добавя native runtime cutover evidence gates and
fluxheim-config-tester tool tool --runtime-cutover - +Премества remaining Pingora exception targets to a documented multi-release exit plan while keeping policy gates active
Издадено на 19 юни 2026 г.
- +Добавя explicit
pingora-compatfeature gating за оставащата compatibility runtime boundary - +Премества rustls/OpenSSL downstream TLS SNI, certificate storage, reload, PEM parsing, and native HTTP/1 TLS listener previews into Fluxheim-owned code
Издадено на 19 юни 2026 г.
- +Продължава Pingora-exit slice, като свива оставащата root compatibility surface за proxy build build, cache build build и runtime path-ове
- +Разделя native health check-ове на HTTP/gRPC, database, exec и TCP/TLS transport helper модули с по-строги probe bounds
Издадено на 19 юни 2026 г.
- +Премахва директната Pingora dependency от
fluxheim-load-balancer build build - +Добавя Fluxheim-owned bounded HTTP/1.1 и h2 gRPC active health check-ове с policy coverage срещу reintroduction на Pingora
Издадено на 19 юни 2026 г.
- +Добавя native HTTP/1.1 proxy build build cutover readiness planning в
ServerPlan - +Fails closed за compatibility-only proxy build build features като auth subrequests, mirroring, redirects, strip/rewrite transforms и advanced load-balancer build build policy
Издадено на 18 юни 2026 г.
- +Добавя Fluxheim-owned native HTTP/2 upstream client primitive с bounded headers, bodies, trailers и deadlines
- +Добавя h2 client/server tests за trailer preservation, oversized responses, stream resets и flow-control timeout behavior
Издадено на 18 юни 2026 г.
- +Добавя native rustls/OpenSSL upstream TLS и mTLS support към staged HTTP/1.1 proxy build build path
- +Добавя ordered static upstream failover за safe methods плюс bounded no-follow TLS material reads и hostname-policy coverage
Издадено на 18 юни 2026 г.
- +Добавя bounded native HTTP/1.1 upstream connection pooling за safe content-length и no-body origin responses
- +Добавя keepalive pool sizing, upstream idle timeout handling, conservative no-reuse guards и real socket reuse/expiry tests
Издадено на 18 юни 2026 г.
- +Добавя reusable native HTTP/2 connection primitives с bounded request-body collection и response trailer support
- +Harden-ва HTTP/2 response lifetime, handler timeout, DATA capacity handling, prohibited headers/trailers и request-body zeroization
Издадено на 17 юни 2026 г.
- +Добавя native HTTP/2 runtime preview gate и h2 stack probe с bounded headers, URI, body, streams, frames, buffers и rapid reset policy
- +Добавя HTTP/2 preview smoke coverage и разширява native HTTP/1 behavior coverage за HTTP/1.0 keep-alive/close semantics
Издадено на 17 юни 2026 г.
- +Добавя bounded native HTTP/1 upstream client и staged native proxy build build handler за plain static upstream-и
- +Добавя native proxy build build candidate inventory, Fluxheim-owned proxy build build headers, privacy-mode behavior и fail-closed eligibility за unsupported policy layers
Издадено на 17 юни 2026 г.
- +Добавя native HTTP/1 connection/listener runtime върху Tokio IO и staged native static-file adapter
- +Map-ва server limits в native HTTP/1 policy и добавя socket tests за keep-alive, body framing, shutdown, static files, slow clients и connection caps
Издадено на 17 юни 2026 г.
- +Добавя Fluxheim-owned HTTP/1.0/HTTP/1.1 request-head parsing, request-body framing classification, Host validation, persistence handling и chunked decoding
- +Добавя downstream HTTP/1 policy defaults и hardened native parser boundaries за бъдеща runtime cutover работа
Издадено на 16 юни 2026 г.
- +Премества server bootstrap planning, listener inventory, service intent, background-task intent, HTTP/2 policy, PROXY protocol policy, and private Unix socket planning into
fluxheim-server - +Пази текущия runtime като explicit compatibility adapter, докато native server/listener работата продължава
Издадено на 16 юни 2026 г.
- +Добавя
fluxheim-tlsкато downstream TLS listener planning и provider-policy boundary - +Премества TLS listener plans, SNI selection, wildcard matching, ALPN/cipher/curve policy, and rustls/OpenSSL provider checks into the TLS crate
- +Harden-ва TLS feature gates, SNI fallback behavior, PROXY v2 signature validation и trusted PROXY CIDR validation
Издадено на 16 юни 2026 г.
- +Добавя първия dedicated
fluxheim-headersboundary за header policy helper-и - +Премества rewrite algorithms, forwarded-header handling, hop-by-hop request policy и repeated-header joining във Fluxheim-owned header code
- +Премества stream PROXY protocol byte parser-и в
fluxheim-protocoland tightens privacy/proxy build build CIDR validation
Издадено на 15 юни 2026 г.
- +Премества shared background task lifecycle primitives в
fluxheim-runtime - +Премества OTLP metrics export, ACME certificate reload control, admin snapshot validation state, and rollback decisions into Fluxheim-owned runtime/snapshot code
- +Harden-ва local certificate reload control socket и private backend filtering
Издадено на 15 юни 2026 г.
- +Добавя
fluxheim-streamas the internal TCP stream proxy build build runtime boundary - +Премества stream upstream selection, PROXY protocol parsing/writing, source policy, DNS-rebinding guards, byte accounting и timeout handling зад Fluxheim-owned stream code
Издадено на 14 юни 2026 г.
- +Премества cache build build key identity, object envelopes, disk index management, storage-bin helpers, tag handling, and cache build build storage interfaces into
fluxheim-cache build build - +Добавя tests и release gates, които enforce-ват Pingora dependency removal targets по време на normal
cargo testruns
Издадено на 14 юни 2026 г.
- +Започва първия concrete 1.6.x implementation release след foundation tag
- +Премахва
pingora-load-balancing/pingora-ketamafrom full build build and load-balancer build build image profiles, restores 1.6 load-balancer build build image builds, and moves TCP health checks plus request-key extraction behind Fluxheim-owned boundaries
Издадено на 14 юни 2026 г.
- +Започна
1.6.xPingora-exit foundation line, като runtime behavior остава непроменен - +Добави modularity policy validation, legacy oversized-file exceptions, runtime baseline capture и performance evidence capture
- +Добави release-gated Pingora dependency exceptions, runtime parity fixtures и extraction dependency graph
- +Добави initial
fluxheim-runtimeandfluxheim-serverboundary crate-ове плюс typed policy proof primitives
юни 2026 г.
- +Introduced the enterprise HTTP/TCP load-balancer build build line with focused binaries, images, runtime member and weight controls, persistence, health checks, queueing, and migration docs
- +Expanded Fluxheim-owned runtime boundaries across HTTP, stream proxy build building, load balancing, background tasks, cache build build interfaces, observability, config, and shared crates
- +Добави managed affinity cookies, service discovery, active и protocol-aware health checks, restart-persistent state и runtime backend mutation controls
- +Added UDP beta guardrails, cache build build origin-protection budgets, ARM/Linux and macOS developer assets, config tester archives, and broad proxy build build/cache build build/PHP-FPM security hardening
Издадено на 25 май 2026 г.
- +Production proxy build build parity release with trusted-proxy build build-aware ACLs, local rate limits, concurrency limits, bounded queues, and edge policy metrics
- +gzip, Zstandard, and Brotli response compression with vhost/route overrides and cache build build-safe
Varyhandling - +Load-balancer resilience, TLS/protocol parity, PROXY protocol v1/v2, upstream mTLS, HTTP/2 controls и gRPC pass-through
Издадено на 23 май 2026 г.
- +Managed php build build-fpm process supervision under the existing
php build build-fpmfeature, while external php build build-fpm remains the default - +Respawn watchdog, bounded backoff, SIGTERM-before-SIGKILL teardown, sanitized environment и private generated pool state
- +Одитируем
[vhosts.php build build.fpm] mode = "managed"config surface за private sockets, worker counts, process manager modes, slowlog, temp paths и pool files - +Разшири WordPress PHP-FPM smoke coverage през external, managed-static, managed-dynamic, managed-ondemand и managed-respawn modes
- +Recommended Wolfi PHP image now installs
php build build-8.5-fpmand uses managed php build build-fpm container config by default
Издадено на 23 май 2026 г.
- +FIPS/ISO-required configs fail closed for unsupported internal cryptography, managed ACME, and local cache build build encryption
- +Provider-backed admin auth, numeric-local-loopback OTLP exception, and OpenBao Transit cache build build encryption evidence boundary
- +New compliance evidence template and release evidence package sections for regulated reviews
Издадено на 22 май 2026 г.
- +rustls/AWS-LC FIPS-capable candidate backend чрез
tls-rustls-fips - +FIPS и ISO/IEC 19790 rustls profile aliases, config examples, diagnostics и validation script
Издадено на 21 май 2026 г.
- +OpenSSL FIPS/ISO-capable TLS validation чрез
tls-openssl-fipsи provider diagnostics - +FIPS deployment guide, config fixtures, validation script, release evidence и OWASP Top 10 2025 baseline
Издадено на 20 май 2026 г.
- +PHP-FPM keepalive pooling, upstream retry/failover и request body disk spooling за по-сигурна работа под load
- +WordPress routing/cache build build preset plus PHP application recipes for common framework and forum deployments
- +PHP metrics и OpenTelemetry attributes, X-Accel-Redirect, X-Sendfile и X-Accel-Expires support
Издадено на 18 май 2026 г.
- +
fluxheim-acmestandalone companion binary за certificate renewal, status и ACME reload socket signalling - +
fluxheim-config-tester tool toolstandalone binary за validating configs в CI и container entrypoint-и без старт на gateway - +ACME reload Unix socket — live certificate pickup без gateway restart
- +Нов
profile-php build buildbuild profile —proxy build build + web + php build build-fpm + tls-rustls + security - +Security hardening improvements across the request pipeline
Издадено на 16 май 2026 г.
- +Opt-in PHP-FPM FastCGI bridge for WordPress-style front-controller applications
- +Strict script resolution и bounded FastCGI request/response handling
- +Browser-validated WordPress proxy build build/PHP cookie compatibility fixes
- +PHP-FPM може да сервира static assets от същия root, докато route-ва PHP към FPM
- +New
php build build-fpmCargo feature (включваproxy build buildandweb)
Издадено на 14 май 2026 г.
- +Shared ingress/TLS feature-graph split — focused cache build build and proxy build build profiles are now TLS/ACME-capable
- +New
profile-cache build build-edge— cache build build without static web module - +New
profile-proxy build build-edge— focused reverse proxy build build edge - +Official focused container images for cache build build and proxy build build profiles
May 2026
v1.2.6
- + Fixed-slice range-cache build build composition: open-ended, suffix, and multipart byte-range
- + Opt-in режим режим
range_slice_cache build build = trueразширява bounded range caching
v1.2.5
- + Bounded range caching for large proxy build build-cache build build objects
v1.2.4
- + Distributed cache build build peer fill with safe
only-if-cache build builddpeer fetch операции - + Bounded fail-open/fail-closed peer fill поведение
v1.2.3
- + Optional disk cache build build encryption with local keys or OpenBao Transit
v1.2.2
- + Storage-bin disk cache build build backend for larger high-churn cache build builds
v1.2.1
- + Opt-in режим режим local static-file caching чрез
local_static = true
v1.2.0 — Cache & Observability Baseline
- + Vhost/route cache build build policy, memory/disk/tiered cache build build backends
- + Cache locks, stale serving, purge и status endpoints
- + Cache warm, key assertion и lookup tooling
- + Prometheus metrics listener
- + OpenTelemetry export profiles (metrics + tracing)
2026
- + TLS policy profiles настройки настройки
- + Multi-certificate rustls SNI
- + Managed ACME certificate issuance и renewal
- + EAB-capable issuers (Actalis и други)
- + File-backed TLS secrets support support
- +
acme-initguided issuer bootstrap инструмент - + Packaged certificate renewal systemd unit-и
2026
- + Virtual host routing чрез Host header с default-vhost fallback
- + Route-level static, proxy build build, and redirect actions
- + Static file serving with MIME detection, ETag, conditional 304, byte ranges
- + Whole-vhost and route-level reverse proxy build building
- + rustls TLS with SNI, static/bought certificate support
- + Safe ACME HTTP-01 challenge forwarding режим режим
- + Admin control-plane with bearer-token auth and brute-force throttling
- + Secure request/response header policy настройки настройки
- + Optional HTTP → HTTPS redirect with safe Host validation
- + Systemd unit и RPM packaging
- + Rootless Podman container images
Какво следва
1.6.30 continues the native proxy build build cutover by adding pooled upstream HTTP/2, TLS ALPN H2 origins, and explicit h2c fallback controls. Оставащата parity работа остава документирана чрез source notes и release gates.
View full build build roadmap →