v1.8.0 — Eisiúint chobhsaí is déanaí

Cuimhne-shábháilte
Freastalaí imeallach
Tógtha i Rust

Seachfhreastalaí droim ar ais modúlach, taisce, cothromóir ualaigh agus óstach statach scríofa i Rust. Slán de réir réamhshocraithe le TLS, ACME, comhbhrú, beartas imeallach, aimsiú dinimiciúil upstream agus scáthánú tráchta sábháilte ionsuite.

Rust Croí Fluxheim EUPL-1.2 x86_64 Linux ARM64 Linux Forbairt macOS Coimeádáin gan fréamh
/etc/fluxheim/fluxheim.toml
include_conf_d = false

[server]
listen = ["0.0.0.0:80"]
tls_listen = ["0.0.0.0:443"]
default_vhost = "fluxheim.eu"

[tls]
enabled = true
backend = "rustls"
profile = "intermediate"
min_protocol = "tls1.2"
alpn = "http1-and-http2"
curve_preferences = ["X25519", "CurveP256", "CurveP384"]

[[vhosts]]
name = "fluxheim.eu"
hosts = ["fluxheim.eu"]

[vhosts.tls]
enabled = true

[vhosts.tls.certificate]
cert_path = "/etc/fluxheim/tls/fluxheim.eu/fullchain.pem"
key_path = "/etc/fluxheim/tls/fluxheim.eu/privkey.pem"

[vhosts.web]
root = "/srv/sites/fluxheim.eu"
index_files = ["index.html"]

Gach rud atá uait ag an imeall

Tagann Fluxheim mar thógálacha dírithe modúlacha — bain úsáid as an méid atá de dhíth ar do chur i bhfeidhm amháin.

Cuimhne-shábháilte de réir dearaidh

Scríofa i Rust le toolchain cobhsaí pinnte. Gan ró-shreabhadh maoláin, gan úsáid tar éis saoraithe, gan rásaí sonraí de réir tógála.

Croí HTTP Fluxheim

A Rust-dúchasach edge am rite le connection pooling, upstream retries, active seiceálacha sláinte, HTTP/2, WebSocket upgrades, agus gRPC pass-through.

Eisínteachtaí WASM

Leagan tiomnaithe Wasm bunaithe ar an bpróifíl táirgthe iomlán, le crúcaí polasaí teoranta, ACME, méadrachtaí agus OpenTelemetry.

Eitleán rialaithe cothromóra ualaigh

Focused 1.5 load-balancer binary agus image le advanced selection, áitiúil persistence, sláinte/ejection beartas, teoranta queueing, agus am rite member rialuithe.

Próifílí tógála modúlacha

Compile amháin what you need. Focused próifílí do static suíomh, cache edge, seachfhreastalaí droim ar ais, load balancing, TCP stream proxying, PHP-FPM, GeoIP, scáthánú tráchta, agus comhbhrú-enabled production bundles.

TLS agus ACME bainistithe

rustls-first le supported OpenSSL agus FIPS/ISO proof tógáil cosáin, client teastas auth, upstream mTLS, automatic ACME issuance, agus multi-cert SNI.

Córas taisce ardleibhéil

Memory, diosca, tiered, agus criptithe cache backends le cache-sábháilte gzip, Zstandard, agus Brotli comhbhrú plus range caching do large objects.

Dúchasach do choimeádáin

Gan fréamh Podman images do Wolfi, Alpine, SUSE Micro, agus Debian. Systemd/RPM do dúchasach deployments. Zero external assets on startup.

Prometheus agus OpenTelemetry

Opt-in Prometheus méadrachtaí éisteoir, OTLP méadrachtaí export, trace context propagation, agus OTLP trace export do full observability.

GeoIP / Geo-Chomhthéacs

Roghnach áitiúil MMDB lookups do country agus ASN beartas using MaxMind GeoIP2/GeoLite2 nó CIRCL Geo Open datasets. No remote lookup nó downloader in the iarratas cosán.

Seachfhreastalaí srutha TCP

Raw L4 TCP services le dedicated stream bealaí, true idle/lifetime/byte caps, upstream TLS/mTLS rialuithe, weighted/drain/backup beartas, agus bealach-áitiúil PROXY protocol.

Tacaíocht PHP-FPM

Opt-in PHP-FPM FastCGI bridge do WordPress-style front-controller applications. Dian script resolution agus teoranta iarratas handling.

Rialuithe beartais imeallacha

Trusted-proxy-aware ACLs, rate teorainneacha, auth subrequests, scáthánú tráchta, regex rewrites, teoranta queues, dian bailíochtú config, agus cruaite iarratas handling.

Tosaigh i gceann cúpla nóiméad

Download a pre-built binary, drop in a config file, and start serving. Native systemd units and container images included.

bash
# Íoslódáil agus bain an tógáil iomlán amach
curl -L https://github.com/valkyoth/fluxheim/releases/download/v1.8.0/fluxheim-1.8.0-full-x86_64-linux.tar.gz \
  | tar xz

# Bog an dénártha go cosán an chórais
sudo mv fluxheim /usr/local/bin/

# Bailíochtaigh do config sula dtosaíonn tú
fluxheim --check-config --config /etc/fluxheim/fluxheim.toml

# Rith le systemd (comhad aonad san áireamh)
sudo systemctl enable --now fluxheim
bash
# Tarraing ó GHCR nó Quay
podman pull ghcr.io/valkyoth/fluxheim:v1.8.0
podman pull quay.io/valkyoth/fluxheim:v1.8.0

# Rith gan fréamh agus do config feistithe
podman run -d \
  --name fluxheim \
  -p 8080:8080 -p 8443:8443 \
  -v /srv/sites:/srv/sites:ro \
  -v ./fluxheim.toml:/etc/fluxheim/fluxheim.toml:ro \
  ghcr.io/valkyoth/fluxheim:v1.8.0

# Leaganacha íomhá atá ar fáil: full, load-balancer, cache, proxy, wasm, php
bash
# Clónáil agus tóg an phróifíl réamhshocraithe
git clone https://github.com/valkyoth/fluxheim
cd fluxheim

# Tógáil réamhshocraithe (proxy + web + cache + tls-rustls + security)
cargo build --release

# Nó tóg próifíl dhírithe
cargo build --release --no-default-features \
  --features profile-proxy-edge,acme-client

# Bailíochtaigh config agus rith
cargo run --release -- \
  --check-config --config examples/fluxheim.toml

Cén fáth Fluxheim?

Tógtha d’oibreoirí atá ag iarraidh stack nua-aimseartha iniúchta gan iompraíocht oidhreachta i bhfolach.

Gan titim siar prótacail oidhreachta i bhfolach

Tá bailíochtú config dian. Diúltaítear do roghanna doiléire nó neamhshlána; ní ghlactar leo go ciúin.

Cargo.lock seiceáilte isteach

Tógálacha in-atáirgthe. Tá gach spleáchas pinnte. cargo audit and cargo deny run in CI.

Coimeádáin gan fréamh ar dtús

Rith gan fréamh. Calafoirt inmheánacha 8080/8443 de réir réamhshocraithe. Íomhánna am rite soiléire do bheartais oibríochta éagsúla.

Foinse oscailte EUPL-1.2

Ceadúnas copyleft comhoiriúnach le go leor ceadúnas OSS. Bunaithe san AE agus soiléir ó thaobh dlí de d’úsáid rialtais agus fiontair.

Forléargas

Sracfhéachaint ar chuma Fluxheim i gcur i bhfeidhm táirgeachta.

Forléargas ailtireachta Fluxheim
Gaeilge