Download Fluxheim
Linux x86_64 · Linux aarch64 · Windows x86_64 · macOS Apple Silicon 2026-09-13.
Fuldt production-build
Alle stabile production-moduler: proxy, web, cache, komprimering, load balancing, raw TCP stream proxying, TLS (rustls), PHP-FPM, ACME-client, GeoIP/Geo-Context, security hardening, metrics og OpenTelemetry.
Load-balancer edge
Fokuseret HTTP/TCP load-balancer-build uden cache, static web, PHP, GeoIP, stream proxying eller traffic mirroring.
PHP-applikationsbuild
Static web + reverse proxy + PHP-FPM FastCGI-bro. Ideel til WordPress og PHP front-controller apps. Intet cache-modul kompileret.
Cache-edge-build
Fokuseret cache edge uden lokal static web serving. Inkluderer proxy, cache, komprimering, TLS og ACME. Ideel til CDN-lignende deployments.
Proxy-edge-build
Fokuseret reverse proxy uden cache, static web eller det dedikerede load-balancer-modul. Designet til rene reverse-proxy deployments med TLS, ACME, komprimering og upstream resilience.
Wasm-produktionsbuild
Dedikeret Wasm-build baseret på den fulde produktionsprofil med afgrænsede policy-hooks, ACME, målinger og OpenTelemetry.
Platform Downloads
Linux x86_64 · Linux aarch64 · Windows x86_64 · macOS Apple Silicon
| Build-type | Linux x86_64 | Linux aarch64 | Windows x86_64 | macOS Apple Silicon |
|---|---|---|---|---|
| Fuld | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| Wasm | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| PHP | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| Load balancer | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| Cache-lag | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| Proxy-lag | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
| Config-tester | x86_64-linux | aarch64-linux | x86_64-windows | aarch64-macos |
Installering
# 1. Download full Linux build tarball
# Brug aarch64-linux i stedet for x86_64-linux på ARM64-servere.
curl -fLO https://github.com/valkyoth/fluxheim/releases/download/v1.8.2/fluxheim-1.8.2-full-x86_64-linux.tar.gz
# 2. Verificér og udpak
echo '1a323dcd5632e25acf2e4463e549f20cdd3d568f445f9d923b1be312ec7f9839 fluxheim-1.8.2-full-x86_64-linux.tar.gz' | sha256sum -c -
tar xzf fluxheim-1.8.2-full-x86_64-linux.tar.gz
# 3. Flyt binær og hjælpeværktøjer til system path
cd fluxheim-1.8.2-full-x86_64-linux
sudo install -m 0755 fluxheim fluxheim-acme /usr/local/bin/
# 4. Opret config-mappe og tilføj din config
sudo mkdir -p /etc/fluxheim /srv/fluxheim
sudo cp packaging/default/fluxheim.toml /etc/fluxheim/fluxheim.toml
# 5. Valider config
fluxheim --check-config --config /etc/fluxheim/fluxheim.toml
# 6. Kør direkte (eller se Systemd-fanen for service setup)
sudo fluxheim --config /etc/fluxheim/fluxheim.toml
$Version = "1.8.2"
$Archive = "fluxheim-$Version-full-x86_64-windows.zip"
$BaseUrl = "https://github.com/valkyoth/fluxheim/releases/download/v$Version"
$InstallDir = Join-Path $env:LOCALAPPDATA "Fluxheim"
Invoke-WebRequest "$BaseUrl/$Archive" -OutFile $Archive
$Expected = "a72b84720083406f318bf3fc87555eb62fd76dbd1506dbf2cd368e7364726b44"
$Actual = (Get-FileHash $Archive -Algorithm SHA256).Hash.ToLowerInvariant()
if ($Actual -cne $Expected) { throw "Archive checksum verification failed" }
New-Item -ItemType Directory -Force -Path $InstallDir | Out-Null
Expand-Archive -LiteralPath $Archive -DestinationPath $InstallDir -Force
$Bundle = Join-Path $InstallDir "fluxheim-$Version-full-x86_64-windows"
& "$Bundle\fluxheim.exe" --config "$InstallDir\fluxheim.toml" --check-config
& "$Bundle\fluxheim.exe" --config "$InstallDir\fluxheim.toml"
Usigneret forhåndsversion: Dette er en usigneret portabel forhåndsversion. Bevar sikkerheden i SmartScreen og PowerShell aktiveret; Authenticode-signering og et installationsprogram til Windows-tjenester leveres endnu ikke. Administreret overvågning af PHP-FPM er kun tilgængelig på Unix; Windows understøtter eksterne TCP FastCGI-puljer.
VERSION="1.8.2"
PROFILE="full"
ARCHIVE="fluxheim-${VERSION}-${PROFILE}-aarch64-macos.tar.gz"
BASE_URL="https://github.com/valkyoth/fluxheim/releases/download/v${VERSION}"
curl -fLO "${BASE_URL}/${ARCHIVE}"
echo "a725ebcccac259af6640da57ce12e7a3944c5bd0d9e7869d4001196a0c394031 ${ARCHIVE}" | shasum -a 256 -c -
tar -xzf "$ARCHIVE"
install -d "$HOME/.local/bin"
install -m 0755 "fluxheim-${VERSION}-${PROFILE}-aarch64-macos/fluxheim" "$HOME/.local/bin/fluxheim"
install -m 0755 "fluxheim-${VERSION}-${PROFILE}-aarch64-macos/fluxheim-acme" "$HOME/.local/bin/fluxheim-acme"
fluxheim --config "$HOME/.config/fluxheim/fluxheim.toml" --check-config
fluxheim --config "$HOME/.config/fluxheim/fluxheim.toml"
Usigneret forhåndsversion: Dette er en usigneret kommandolinjeforhåndsversion. Bevar Gatekeeper aktiveret; Developer ID-signering, notarisering og launchd-integration leveres endnu ikke.
# Pull GHCR-images (Wasm, full, load-balancer, cache, proxy og PHP-varianter)
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2 # fuld variant
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2-wasm
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2-load-balancer # belastningsfordeler
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2-cache # cache-edge
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2-proxy # proxy-edge
podman pull ghcr.io/valkyoth/fluxheim:v1.8.2-php # administreret PHP-FPM
# Samme build-set er tilgængeligt på Quay
podman pull quay.io/valkyoth/fluxheim:v1.8.2
podman pull quay.io/valkyoth/fluxheim:v1.8.2-wasm
podman pull quay.io/valkyoth/fluxheim:v1.8.2-load-balancer
podman pull quay.io/valkyoth/fluxheim:v1.8.2-cache
podman pull quay.io/valkyoth/fluxheim:v1.8.2-proxy
podman pull quay.io/valkyoth/fluxheim:v1.8.2-php
# Kør rootless - interne porte 8080 og 8443
podman run -d \
--name fluxheim \
--restart unless-stopped \
-p 8080:8080 \
-p 8443:8443 \
-v /srv/sites:/srv/sites:ro \
-v /srv/fluxheim/certs:/etc/fluxheim/certs:rw \
-v ./fluxheim.toml:/etc/fluxheim/fluxheim.toml:ro \
ghcr.io/valkyoth/fluxheim:v1.8.2
# Tjek logs
podman logs -f fluxheim
# Tarballen inkluderer en hardened systemd-unit
sudo cp packaging/systemd/fluxheim.service /etc/systemd/system/
# Opret fluxheim system user
sudo useradd -r -s /sbin/nologin -d /var/lib/fluxheim fluxheim
# Sæt mapper op
sudo mkdir -p /etc/fluxheim /srv/fluxheim /var/log/fluxheim
sudo chown fluxheim:fluxheim /srv/fluxheim /var/log/fluxheim
# Reload systemd og enable servicen
sudo systemctl daemon-reload
sudo systemctl enable --now fluxheim
# Tjek status
sudo systemctl status fluxheim
sudo journalctl -u fluxheim -f
Bemærk: Den pakkede systemd-unit bruger CAP_NET_BIND_SERVICE så Fluxheim kan binde til port 80 og 443 uden at køre som root. Unit-filen inkluderer security hardening options.
# Fluxheim leveres med acme-init til guidet certificate setup
# Let's Encrypt-certifikat (HTTP-01)
sudo fluxheim acme-init letsencrypt
# Actalis (gratis EAB-capable issuer)
sudo fluxheim acme-init actalis
# Hjælpeværktøjet fluxheim-acme håndterer renewal for
# container- og external service-manager deployments
fluxheim-acme status
fluxheim-acme renew
fluxheim-acme reload
[[vhosts]]
name = "site"
hosts = ["example.com", "www.example.com"]
[vhosts.tls]
enabled = true
[vhosts.tls.acme]
enabled = true
# issuer = "letsencrypt" # udsteder
Systemkrav
Understøttede platforme
- Linux x86_64 (kernel 4.14+)
- Linux ARM64 / aarch64
- macOS Apple Silicon / aarch64
- Windows x86_64
Container-images
Alle release image-builds publiceres på GHCR og Quay.
- Wolfi (minimal, hærdet)
- Wasm + Full-, load-balancer-, cache-, proxy- og PHP-imageprofiler
- Alpine Linux
- SUSE Micro (non-PHP profiles)
- SUSE BCI (PHP:
php-suse-bci) - Debian
- Publiceret på GHCR og Quay
All Releases
Se alt på GitHub →| Version | Dato | Højdepunkter | Hentninger |
|---|---|---|---|
|
v1.8.2
Nyeste
|
2026-09 | Tilføjer usignerede native ZIP-arkiver til Windows x86_64 for alle syv offentlige profiler, bevarer beskyttelsen af Windows-filsystemet og legitimationsoplysninger og erstatter PHP-billedet til SUSE Micro med det selvstændige php-suse-bci-kørselsmiljø. | Alt på GitHub |
|
v1.8.1
|
2026-08 | Tilføjer native macOS-arkiver til Apple Silicon for alle syv offentlige buildprofiler, direkte test af runtime-paritet, portable kontrolsumværktøjer og stærkere beskyttelse af diagnostik og filsystem. | Alt på GitHub |
|
v1.8.0
|
July 2026 | Dedikeret Wasm-build baseret på den fulde produktionsprofil med afgrænsede policy-hooks, ACME, målinger og OpenTelemetry. Tilføjer tilsvarende tar.gz- og ZIP-arkiver, herunder native fulde og Wasm-builds til macOS. Styrker grænserne for cachefyldning, intervalcache og Wasm-adgang pr. virtuel vært. | Alt på GitHub |
|
v1.7.0 – v1.7.12
|
July 2026 | Fluxheim 1.7 udgivelsesserie: opt-in standardbaseret cache, proxy og respons-digest metadata; autentificeret live snapshot genindlæsning og rollback; reproducerbare FIPS-backend beviser; procesopgraderinger uden nedetid; uafhængigt testede Wasm politikeksempler; og stærkere cache, TLS, buffering, streaming og protokolgrænser. | Alt på GitHub |
|
v1.6.0 – v1.6.37
|
Juni 2026 | Native-runtime-cutover- og oprydningslinje: Pingora-exit-fundamenter, Fluxheim-ejede HTTP/1- og HTTP/2-stier, native TLS/listener-previews, route proxy/static-web-paritet, komprimering og fejlsider, forwarded-header-politik, auth-request, trafikmirroring, rate limits, gRPC-validering, pooled upstream HTTP/2, native proxy-oprydning efter cutover, final crate-grænseoprydning før Wasm, Rust 1.96.1, hærdet OpenSSL stream-TLS, ACME-konto-zeroisering og mindre fokuserede runtime-moduler. | Alt på GitHub |
| v1.5.0 - v1.5.23 | Juni 2026 | Enterprise load-balancer og runtime-ownership-linje: fokuserede load-balancer binaries/images, runtime member og weight controls, managed affinity cookies, stream og HTTP boundary work, active og protocol-aware health checks, service discovery, background task ownership, cache crate boundaries, UDP beta guardrails, origin-protection budgets, ARM/macOS assets og bred security hardening. | Alt på GitHub |
| v1.4.0 – v1.4.7 | Maj 2026 | Proxy operations-linje med production proxy parity, rigere route policy, traffic mirroring, dynamic upstream discovery, modular runtime/config split, Apple Silicon og Linux ARM64 release assets, GeoIP/Geo-Context, config-tester archives og hardened TCP stream proxying | Alt på GitHub |
| v1.3.0 – v1.3.7 | Maj 2026 | PHP-FPM production-linje, managed php-fpm supervision, config tester og ACME companion binaries, FIPS/ISO validation tracks, fokuserede cache/proxy profiles og security hardening | Alt på GitHub |
| v1.2.0 – v1.2.6 | Maj 2026 | Cache og observability baseline med route-scoped cache policy, memory/disk/tiered backends, encrypted disk cache, peer fill, range caching, Prometheus og OpenTelemetry export | Alt på GitHub |
| v1.1.x | 2026 | Certificate operations-linje med TLS policy profiles, multi-certificate rustls SNI, managed ACME issuance og renewal, EAB-capable issuers, file-backed TLS secrets og renewal units | Alt på GitHub |
| v1.0.0 | 2026 | Gateway-foundation med vhost routing, route-level static/proxy/redirect actions, static file serving, reverse proxying, rustls TLS, admin control-plane, secure headers, systemd packaging og rootless containers | GitHub |
| v0.5.0 | Forudgivelse | Første offentlige pre-release-milepæl før den stabile 1.x gateway-linje | GitHub |
See Ændringslog for detaljerede release notes.