Cloudflare Makes Pingora Rust Framework Open-Source
phoronix.com
phoronix.com
Then there’s docs on the request phases here: https://github.com/cloudflare/pingora/blob/main/docs/user_gu...
I'm not saying every single site in the world will be on it, but definitely wont be surprised if the number of sites not hosted by CloudFlare using Pingora increases.
Original article about Pingora two years ago:
https://blog.cloudflare.com/how-we-built-pingora-the-proxy-t...
There's also the memory safety aspect with Rust.
Cloudflare has extensive experience with both of these things, including employing Mike Pall for a time. That they've invested in Pingora instead is an interesting data point precisely due to that deep expertise at scale.
As they say in the link that started this subthread:
> In production, Pingora consumes about 70% less CPU and 67% less memory compared to our old service with the same traffic load. The savings come from a few factors.
>
> Our Rust code runs more efficiently compared to our old Lua code. On top of that, there are also efficiency differences from their architectures. For example, in NGINX/OpenResty, when the Lua code wants to access an HTTP header, it has to read it from the NGINX C struct, allocate a Lua string and then copy it to the Lua string. Afterwards, Lua has to garbage-collect its new string as well. In Pingora, it would just be a direct string access.
Thanks for that link, definitely checking it out.
> Today we are announcing plans to build a new high performance and memory safe reverse proxy in partnership with Cloudflare, Shopify, and Chainguard.
That is a strong start.
Edit:
I wonder how long before other major cloud players join in on building River. I could see the value in other players like Google, Microsoft or even Amazon investing in this tech.
I don't see a reason why there would be a mass adoption of Pingora since it's just a proxy and there are other very rock solid solutions with more features. ( Nginx and HAProxy ).
Pingora only fits Cloudflare needs.
I think you'll see a general sentiment among many of, "if it's good enough for Cloudflare, it's good enough for me."
Fitting Cloudflare's needs is not exactly a low bar, considering how much web traffic they route/serve.
Nginx and HAProxy are amazing products that I use every day. But this has merit that's worth interest. I can write my own Rust code for a slim and custom fitted Nginx for my specific use case with this. I think we'll soon be seeing other products like kubernetes Ingress controllers built with the Pingora framework in the near future that start stealing some of the spotlight from Ingress Nginx and family.
More discussion here: https://news.ycombinator.com/item?id=39535969
* Uses 1/3 of the CPU and memory
* Better performance
* Memory safe
- error reporting is quite unclear in my taste, and I'd love to see a "trace" mode where you can debug your misconfiguration
- integrating with kibana/grafana requires NGINX PLUS and/or some hacks
- logging not in systemd
I might try wrapping it in an envoy style service as a weekend project and just dockerizing it, seems pretty straightforward.
They have a recommended systemd config: https://github.com/cloudflare/pingora/blob/8797329225018c4d0...
And their conf support: https://github.com/cloudflare/pingora/blob/8797329225018c4d0...