Pomerium v0.32.0 includes a round of data-plane and storage improvements aimed at large deployments. Route changes now propagate incrementally instead of triggering full reloads, and the Databroker gains a real query and indexing layer — querying records by field, richer filter operators, ordering, and a faster in-memory store. The payoff is quicker configuration updates and better behavior as the number of routes, sessions, and records grows.
Highlights:
Incremental config diffing for routes – When routes change, Pomerium now computes and applies just the difference rather than rebuilding the whole configuration, reducing churn and speeding up updates on large route sets.
Databroker indexing & query support – Records can be indexed and queried by field, with a new GetOptions API and support for additional filter operators and order by. This makes targeted lookups far more efficient than scanning.
Faster in-memory storage – The in-memory store now uses Pebble, improving performance and bringing it in line with the persistent backend, with a sensible default path for the file backend.
Sturdier sync – Sync now supports a "latest stream" option, safely aborts calls with invalid record versions, and no longer panics on unknown sync message types — a more resilient databroker overall.
See the Pomerium architecture documentation for background on the Databroker.
Embrace Seamless Resource Access, Robust Zero Trust Integration, and Streamlined Compliance with Our App.