Seachfhreastalaí droim ar ais modúlach, taisce, cothromóir ualaigh agus óstach statach scríofa i Rust. Slán de réir réamhshocraithe le TLS, ACME, comhbhrú, beartas imeallach, aimsiú dinimiciúil upstream agus scáthánú tráchta sábháilte ionsuite.
include_conf_d = false
[server]
listen = ["0.0.0.0:80"]
tls_listen = ["0.0.0.0:443"]
default_vhost = "fluxheim.eu"
[tls]
enabled = true
backend = "rustls"
profile = "intermediate"
min_protocol = "tls1.2"
alpn = "http1-and-http2"
curve_preferences = ["X25519", "CurveP256", "CurveP384"]
[[vhosts]]
name = "fluxheim.eu"
hosts = ["fluxheim.eu"]
[vhosts.tls]
enabled = true
[vhosts.tls.certificate]
cert_path = "/etc/fluxheim/tls/fluxheim.eu/fullchain.pem"
key_path = "/etc/fluxheim/tls/fluxheim.eu/privkey.pem"
[vhosts.web]
root = "/srv/sites/fluxheim.eu"
index_files = ["index.html"]
Tagann Fluxheim mar thógálacha dírithe modúlacha — bain úsáid as an méid atá de dhíth ar do chur i bhfeidhm amháin.
Scríofa i Rust le toolchain cobhsaí pinnte. Gan ró-shreabhadh maoláin, gan úsáid tar éis saoraithe, gan rásaí sonraí de réir tógála.
A Rust-dúchasach edge am rite le connection pooling, upstream retries, active seiceálacha sláinte, HTTP/2, WebSocket upgrades, agus gRPC pass-through.
Leagan tiomnaithe Wasm bunaithe ar an bpróifíl táirgthe iomlán, le crúcaí polasaí teoranta, ACME, méadrachtaí agus OpenTelemetry.
Focused 1.5 load-balancer binary agus image le advanced selection, áitiúil persistence, sláinte/ejection beartas, teoranta queueing, agus am rite member rialuithe.
Compile amháin what you need. Focused próifílí do static suíomh, cache edge, seachfhreastalaí droim ar ais, load balancing, TCP stream proxying, PHP-FPM, GeoIP, scáthánú tráchta, agus comhbhrú-enabled production bundles.
rustls-first le supported OpenSSL agus FIPS/ISO proof tógáil cosáin, client teastas auth, upstream mTLS, automatic ACME issuance, agus multi-cert SNI.
Memory, diosca, tiered, agus criptithe cache backends le cache-sábháilte gzip, Zstandard, agus Brotli comhbhrú plus range caching do large objects.
Gan fréamh Podman images do Wolfi, Alpine, SUSE Micro, agus Debian. Systemd/RPM do dúchasach deployments. Zero external assets on startup.
Opt-in Prometheus méadrachtaí éisteoir, OTLP méadrachtaí export, trace context propagation, agus OTLP trace export do full observability.
Roghnach áitiúil MMDB lookups do country agus ASN beartas using MaxMind GeoIP2/GeoLite2 nó CIRCL Geo Open datasets. No remote lookup nó downloader in the iarratas cosán.
Raw L4 TCP services le dedicated stream bealaí, true idle/lifetime/byte caps, upstream TLS/mTLS rialuithe, weighted/drain/backup beartas, agus bealach-áitiúil PROXY protocol.
Opt-in PHP-FPM FastCGI bridge do WordPress-style front-controller applications. Dian script resolution agus teoranta iarratas handling.
Trusted-proxy-aware ACLs, rate teorainneacha, auth subrequests, scáthánú tráchta, regex rewrites, teoranta queues, dian bailíochtú config, agus cruaite iarratas handling.
Download a pre-built binary, drop in a config file, and start serving. Native systemd units and container images included.
# Íoslódáil agus bain an tógáil iomlán amach
curl -L https://github.com/valkyoth/fluxheim/releases/download/v1.8.0/fluxheim-1.8.0-full-x86_64-linux.tar.gz \
| tar xz
# Bog an dénártha go cosán an chórais
sudo mv fluxheim /usr/local/bin/
# Bailíochtaigh do config sula dtosaíonn tú
fluxheim --check-config --config /etc/fluxheim/fluxheim.toml
# Rith le systemd (comhad aonad san áireamh)
sudo systemctl enable --now fluxheim
# Tarraing ó GHCR nó Quay
podman pull ghcr.io/valkyoth/fluxheim:v1.8.0
podman pull quay.io/valkyoth/fluxheim:v1.8.0
# Rith gan fréamh agus do config feistithe
podman run -d \
--name fluxheim \
-p 8080:8080 -p 8443:8443 \
-v /srv/sites:/srv/sites:ro \
-v ./fluxheim.toml:/etc/fluxheim/fluxheim.toml:ro \
ghcr.io/valkyoth/fluxheim:v1.8.0
# Leaganacha íomhá atá ar fáil: full, load-balancer, cache, proxy, wasm, php
# Clónáil agus tóg an phróifíl réamhshocraithe
git clone https://github.com/valkyoth/fluxheim
cd fluxheim
# Tógáil réamhshocraithe (proxy + web + cache + tls-rustls + security)
cargo build --release
# Nó tóg próifíl dhírithe
cargo build --release --no-default-features \
--features profile-proxy-edge,acme-client
# Bailíochtaigh config agus rith
cargo run --release -- \
--check-config --config examples/fluxheim.toml
Tógtha d’oibreoirí atá ag iarraidh stack nua-aimseartha iniúchta gan iompraíocht oidhreachta i bhfolach.
Tá bailíochtú config dian. Diúltaítear do roghanna doiléire nó neamhshlána; ní ghlactar leo go ciúin.
Tógálacha in-atáirgthe. Tá gach spleáchas pinnte. cargo audit and cargo deny run in CI.
Rith gan fréamh. Calafoirt inmheánacha 8080/8443 de réir réamhshocraithe. Íomhánna am rite soiléire do bheartais oibríochta éagsúla.
Ceadúnas copyleft comhoiriúnach le go leor ceadúnas OSS. Bunaithe san AE agus soiléir ó thaobh dlí de d’úsáid rialtais agus fiontair.
Sracfhéachaint ar chuma Fluxheim i gcur i bhfeidhm táirgeachta.