Release of Angie 1.7.0, a fork of Nginx.

The release of the high-performance HTTP server and multiprotocol proxy server Angie 1.7.0, forked from Nginx by a group of former developers from F5 Network, has been published. The source code of Angie is available under the BSD license. The project has received compatibility certificates with Russian operating systems Red OS, Astra Linux Special Edition, Rosa Chrome Server, Alt, and the FSTEC version of Alt.

The development is supported by the company "Web-server", formed in the fall of 2022 and having received investments of 1 million dollars. Among the co-owners of the Web server are: Valentin Bartenyev (team leader who developed the Nginx Unit product), Ivan Poluyanov (former head of front-end development at Rambler and Mail.Ru), Oleg Mamontov (head of the technical support team at NGINX Inc), and Ruslan Ermilov (ru@FreeBSD.org).

Changes in Angie 1.7.0:

  • New directives proxy_connection_drop, grpc_connection_drop, fastcgi_connection_drop, scgi_connection_drop, and uwsgi_connection_drop have been added to force close all connections to the proxied server after its exclusion from the group. server Statistics included through the status_zone parameter in the resolver directive now include counters for sent DNS requests.
  • A new variable $ssl_server_cert_type has been added, containing the type of the selected TLS connection certificate.
  • The pid directive has been updated to allow disabling the creation of a PID file by specifying 'off' instead of a file name. During reconfiguration, the PID file will not be recreated if its name has been changed in the pid directive, provided that the value is a symbolic link to the same file. This feature was moved from freenginx.
  • Error logging for sending to Syslog is limited to one message per second to prevent log flooding with typical messages in case of overload or syslog server failure. This feature was moved from freenginx.
  • To enhance protection against DoS attacks, the proxy module now has the directive max_commands to limit the maximum number of commands accepted during authentication. This feature was moved from freenginx.
  • A new option ‘—feature-cache’ has been added to the build script ./configure to cache results when building multiple modules.
  • HTTP status code descriptions have been aligned with RFC 9110. This feature was moved from freenginx.
  • To improve protection against DoS attacks, no more than one empty line is allowed to be sent before an HTTP request. Sending HTTP/1.x header field names without specifying a colon is prohibited. This feature was moved from freenginx.
  • To enhance defense against DoS attacks, the size of readable data in the request body when using chunked mode in HTTP/1.1, as well as the total size of ignored header fields, is now limited by the value specified in the client_max_body_size directive. This feature was moved from freenginx.
  • To improve security against DoS attacks, the size of readable data in the request body while using chunked mode in HTTP/1.1 and the total size of ignored header fields is now restricted by the value from the client_max_body_size directive. This update was moved from freenginx.
  • In the mime.types file, the MIME type for files with the bmp extension has been changed to image/bmp, and for files with the rar extension — to application/vnd.rar.
  • Changes proposed in version nginx 1.27.1 have been merged from the nginx project repository. The angie-module-opentracing 0.36.0 and angie-module-lua 0.10.27 modules have been updated.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster