v2609.0
Important: coordinated upgrade required
This release changes how VIP ownership is retained across an ownerless
gap. Do not perform a rolling upgrade from older versions. Mixed
versions are unsupported, even if the cluster retains quorum. Plan a
maintenance window with an interruption of VIP service.
- Stop every old daemon and prevent its supervisor from restarting it.
- Verify that all old daemons have stopped and their IPv4 and IPv6 VIPs
are absent from every node. - Install the same new version on every voter and check that
cluster-wide settings agree before starting any voter. - Start the upgraded cluster, then verify health and single-owner VIP
placement before ending the maintenance window.
See the upgrade procedure.
Changes
- Preserve VIP-holder history across ownerless gaps and require current,
applied consensus proof before takeover. - Release VIPs before a SIGHUP-triggered supervised restart.
- Harden health timing, child-process cleanup, connection admission,
transport shutdown and configuration-identity checks. - Reject the shipped secret placeholder and install packaged
configuration files root-owned with mode 0600. - Fix IPv6 VIP source-address selection and strengthen crash cleanup.
- Verify public source completeness and ship reproducible build inputs
in the vendored source archive.
The default configuration is an example, not a production-ready setup.
Configure node addresses, VIPs and a unique cluster secret before use.
Downloads
Static Linux binaries, Debian packages and RPM packages are provided for
amd64 and arm64, together with a vendored source archive and SHA256SUMS.
Package and binary versions use 2609.0.0; the release tag is v2609.0.
Verify the files you downloaded:
sha256sum --check SHA256SUMS --ignore-missingRuntime container, supporting linux/amd64 and linux/arm64:
docker pull ghcr.io/croit/keepafloatd:v2609.0