fix(#5379,#5380,#5381,#5382): recovery re-dispatch, honest deployment modes, fail-closed security gate, connector generation fencing (#5385) #5379: ReliableDispatcher.recover() no longer advances the subscriber offset as if the absent client had ACKed (a skip across the crash window). Recovery now RE-DISPATCHES each persisted in-flight record through a buffered poll channel with its attempt counter preserved; the offset advances exactly once - when the client actually ACKs. Legacy undecodable records retire without any offset advance. The old retire semantics stays as a @Deprecated private method for source compat. DeliveryRecoveryTest / CrossStoreFaultInjectionTest scenario 1/1b are updated to the re-dispatch contract; new RecoveryRedispatchTest covers the crash->re-dispatch-> ACK-exactly-once shape. #5380: docs/eventmesh-features.md gains "5b. Deployment modes" (core Runtime / session-streaming Runtime / A2A Gateway) so capability claims match what the default bootstrap actually starts; docker/Dockerfile note hardened accordingly. #5381: EventMeshApplication.main() wires a config-backed SecurityGate (eventmesh.security.profile, default "production"; eventmesh.security.tokens) via withSecurityGate(gate) and installs it into the traffic httpServer; production profile with empty token filters fails closed with IllegalStateException. #5382: ConnectorScheduler bumps a per-connector fencing generation on every (re)assignment or def change and splices "generation" into the /control/start envelope; ConnectorManager.startConnector accepts a start iff gen >= running gen (stale delayed starts are rejected and logged), rebuilds on newer generation, and stopConnector clears the running generation. ConnectorDef (both runtime and connector-runtime sides) carries the generation field; new ConnectorGenerationFencingTest covers accept/reject/idempotent-re-push. Local verification: :eventmesh-runtime:test :eventmesh-connector-runtime:test :eventmesh-architecture-guard:test + checkstyleMain/Test for both modules - all green.
đĻ Documentation | đ Examples | âī¸ Roadmap | đ įŽäŊ䏿
Apache EventMesh is a new generation serverless event middleware for building distributed event-driven applications.
EventMesh adopts a unified CloudEvents-over-MQ architecture. The message queue (MQ) acts as a pure write-ahead log (WAL) for durable storage only â there are no consumer groups, no tags, and no broker-side subscription semantics. Instead, the stateless EventMesh Runtime owns all delivery logic: its SubscriptionManager maintains the subscription registry and offset tracking, and dispatches events with load-balance, broadcast, and multicast semantics. Applications interact through a lightweight HTTP + CloudEvents 1.0 SDK (publish / subscribe / unsubscribe), while integration with external systems runs in a standalone Connector Runtime via the connector SPI.
Apache EventMesh is packed with features that help users build event-driven applications with ease. Here are the highlights that set EventMesh apart:
Core architecture
publish, subscribe, unsubscribe); no heavyweight client, no vendor lock-in.Extensibility & ecosystem
Each EventMesh surface carries an explicit maturity status. The table below is the single source of truth â module-level docs link here instead of restating their status. See docs for the per-capability guides.
| Capability | Status | Recommendation | Migration target |
|---|---|---|---|
| HTTP + CloudEvents | GA target | Recommended â the primary user path (CloudEventsClient + /events/*) | Primary path |
| Kafka / RocketMQ storage (4.x, 5.x) | GA target | Recommended â pluggable WAL backends, TCK-covered (MeshStoragePluginTCK) | Primary path |
| SSE / WebSocket push | Beta | Usable â integration-tested; unified ACK/redelivery semantics still landing | Unified push transports |
| Connector Runtime | Experimental | Working end-to-end, but only 4 of 23 plugins (file/kafka/pulsar/rocketmq) have unit tests â the rest are templates; data-loss hardening landed in #5328 | SPI split into eventmesh-connector-api (#5328); remaining plugin tests + GA criteria tracked under the #5296 architecture review |
| A2A / Agent Gateway | Experimental | Evaluate â task store + runtime bridge landed (#5302/#5304); reaper & Meta-backed agent cards pending | Unified Runtime A2A |
| TCP / gRPC / OpenMessaging SDKs | Legacy-compatible | Existing users only â kept so old clients run unmodified; not extended | HTTP + CloudEvents |
Status meanings:
Migrating off TCP / gRPC SDKs? The legacy clients keep working against the current runtime; see the client guide for the HTTP + CloudEvents replacement (
CloudEventsClient).
CloudEventsClient walkthrough (pub/sub, request-reply, streaming, lite topics)A full step-by-step walkthrough â prerequisites, backend choice, run via Docker or from source, first publish, three receive transports, unsubscribe, and the SDK path â lives in Getting started. The first-event examples in that guide work against the standard ports (8080 HTTP, 8081 admin, 8082 WebSocket, 8083 connector admin).
Each contributor has played an important role in promoting the robust development of Apache EventMesh. We sincerely appreciate all contributors who have contributed code and documents.
Apache EventMesh enriches the CNCF Cloud Native Landscape.
Apache EventMesh is licensed under the Apache License, Version 2.0.
| WeChat Assistant | WeChat Public Account | Slack |
|---|---|---|
| Join Slack Chat(Please open an issue if this link is expired) |
Bi-weekly meeting : #Tencent meeting : 346-6926-0133
Bi-weekly meeting record : bilibili
| Name | Description | Subscribe | Unsubscribe | Archive |
|---|---|---|---|---|
| Users | User discussion | Subscribe | Unsubscribe | Mail Archives |
| Development | Development discussion (Design Documents, Issues, etc.) | Subscribe | Unsubscribe | Mail Archives |
| Commits | Commits to related repositories | Subscribe | Unsubscribe | Mail Archives |
| Issues | Issues or PRs comments and reviews | Subscribe | Unsubscribe | Mail Archives |