Repository navigation
v0.3.17
·
189 commits
to master
since this release
修正
- TCP の転送で TCP_NODELAY を設定しておらず、小さなデータのやり取りで約 40 ms 待つことがあったのを直しました(#176)。L4 の TCP、TLS の終端、STARTTLS、SNI、L7(
httpのルール)の受け付けた接続と転送先への接続、forward_auth・OIDC・CrowdSec への通信のすべてが対象です。- 手元の計測では、TLS のハンドシェイクが 41 ms → 0.6 ms、HTTP/2 の同時 32 リクエストが 41 ms → 1 ms、TCP の転送の速さが約 11 倍になりました。
変更
- ソースの構成を役割ごとのフォルダに分けました(
control/・config/・core/・net/・l4/・tls/・l7/)。動きは変わりません。RPROXY_LOG_LEVELをモジュール名で絞り込んでいる場合(例rproxy_api::http=debug)は、新しい名前(rproxy_api::l7=debug)に書き換えてください。 - バックアップと復旧の手順(docs/BACKUP.md)を足しました。
- 動くものが変わったほうだけをリリースする決まりにしました(docs/RELEASING.md)。v0.3.16 は UI だけの版で、rproxy-api は v0.3.15 から v0.3.17 に進みます。
対になる UI: v0.3.17
Fixed
- TCP forwarding did not set TCP_NODELAY, so small exchanges could wait about 40 ms (#176). This covers accepted connections and upstream connections for L4 TCP, TLS termination, STARTTLS, SNI and L7 (
httprules), plus calls to forward_auth, OIDC and CrowdSec.- In our measurements, the TLS handshake went from 41 ms to 0.6 ms, 32 concurrent HTTP/2 requests from 41 ms to 1 ms, and TCP throughput rose about elevenfold.
Changed
- The source is now split into folders by role (
control/,config/,core/,net/,l4/,tls/,l7/). Behavior is unchanged. If you filterRPROXY_LOG_LEVELby module name (e.g.rproxy_api::http=debug), switch to the new name (rproxy_api::l7=debug). - Backup and restore guide (docs/en/BACKUP.md).
- Only the side whose running code changed is released now (docs/en/RELEASING.md). v0.3.16 was UI-only; rproxy-api goes from v0.3.15 to v0.3.17.
Paired with UI v0.3.17.