Skip to content

OpenSandbox

vdocker/egress/v1.1.1 Feature

This release adds 1 notable feature for engineering teams evaluating rollout.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

ai ai-agent ai-infra kubernetes sandbox

Affected surfaces

auth breaking_upgrade

Summary

AI summary

Updates 📝 Documentation, 🐛 Bug Fixes, and ✨ Features across a mixed release.

Full changelog

What's New

✨ Features

  • Credential vault TLS transport check configurable — new OPENSANDBOX_EGRESS_CREDENTIAL_VAULT_REQUIRE_TLS env var controls whether vault writes require TLS/loopback. When enabled, also trusts X-Forwarded-Proto: https for TLS-terminating proxies. Default off. (#1063)

🐛 Bug Fixes

  • DNS race on crash restart eliminated — pre-start hook now cleans up stale iptables rules that survived crashes. Replaced 200ms blind wait with NotifyStartedFunc to confirm socket bind before installing redirects. (#1061)

  • Credential vault works with defaultAction: allow — vault bindings no longer require explicit egress allow rules when default policy is allow. Explicit deny rules still enforced. (#1066)

📝 Documentation

  • README synced with current code — added credential vault docs, missing env vars, IP/CIDR support, and corrected "Graceful Degradation" → "Fail-Closed Enforcement". (#1080)

👥 Contributors

Thanks to these contributors ❤️

  • @Pangjiping

  • Docker Hub: opensandbox/egress:v1.1.1
  • Aliyun Registry: sandbox-registry.cn-zhangjiakou.cr.aliyuncs.com/opensandbox/egress:v1.1.1

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track OpenSandbox

Get notified when new releases ship.

Sign up free

About OpenSandbox

Secure, Fast, and Extensible Sandbox runtime for AI agents.

All releases →

Related context

Earlier breaking changes

Beta — feedback welcome: [email protected]