Automic VaultAutomic Vault

brew

使用 Homebrew, Nix 安装 boringtun

查看 boringtun 的安装路径、可执行文件、元数据以及面向 AI 代理工作流的安全说明。

安装

其他安装命令

macOS

Homebrew已验证 · 100%
brew install boringtun

local Homebrew formula metadata

Linux

Nix已验证 · 92%
nix profile install nixpkgs#boringtun

nixpkgs package indexes · pkgs/by-name/bo/boringtun/package.nix · 来源: api.github.com

概览

软件包摘要

Userspace WireGuard implementation in Rust

命令和别名

  • boringtun-cli

历史

项目历史与用法

BoringTun is Cloudflare's Rust userspace implementation of the WireGuard protocol, distributed as both a library and the boringtun-cli command-line tool.

项目历史

Cloudflare announced BoringTun publicly on March 27, 2019 after evaluating existing WireGuard implementations and choosing Rust for a portable, memory-safe, high-performance userspace implementation. The repository itself was created in October 2018, matching the blog's account that the project had been under development before the source release.

The README describes two deliverables: boringtun-cli for Linux and macOS userspace tunnels, and the boringtun library for client applications that supply their own platform-specific tunnel and network stacks.

采用历史

BoringTun's adoption story is unusually concrete for a low-level networking library: Cloudflare's README says it is deployed on millions of iOS and Android consumer devices and thousands of Cloudflare Linux servers.

Cloudflare's WARP posts tie BoringTun to the 1.1.1.1/WARP client stack, making it part of a large production VPN deployment rather than only a reference implementation.

使用方式

As a CLI, boringtun-cli starts a userspace WireGuard tunnel for an interface and can be used with wg and wg-quick through WG_QUICK_USERSPACE_IMPLEMENTATION. As a library, it exposes the WireGuard protocol machinery for clients that implement their own transport and tunnel integration.

Because it is userspace and permissively licensed, BoringTun is useful where the Linux kernel WireGuard module is unavailable or where client apps need portable WireGuard behavior across mobile and desktop platforms.

为什么软件包爱好者会关心

BoringTun matters to package nerds because it is a Rust networking primitive with a real production pedigree, a split library/CLI shape, and a clear relationship to the broader WireGuard ecosystem.

It also illustrates the packaging distinction between protocol implementation, command-line frontend, and OS integration: installing boringtun-cli gives a binary, but useful operation still depends on TUN devices, WireGuard tooling, and platform networking permissions.

时间线

  • 2018-10: Official GitHub repository metadata shows the repository created.
  • 2019-03: Cloudflare announced and open sourced BoringTun.
  • 2021: Cloudflare described WARP for Linux using BoringTun as its WireGuard implementation.
  • 2022: GitHub release metadata shows v0.4.0 in the public release feed.
  • 2026: Repository metadata shows continued activity.

Related projects

  • WireGuard is the VPN protocol BoringTun implements.
  • wireguard-go is the userspace implementation Cloudflare compared against when explaining why BoringTun was created.
  • Cloudflare WARP is the large-scale client product that uses BoringTun.

安全态势

风险级别:绿色

narrow executable package without higher-risk signals.

风险分类器

绿色 风险 · 低 置信度 · appliance

原因

  • narrow executable package without higher-risk signals

信号

  • metadata:no-higher-risk-signals

安装行为

  • formula 元数据中未记录 Homebrew post-install 钩子。
  • Homebrew bottle 元数据适用于 6 个平台目标。
  • 构建元数据列出 1 个构建依赖。

建议审查

在无人值守的代理使用前,请检查该工具是否读取明文凭据、写入远程状态、发布制品或调用插件。

可执行文件

已安装的可执行文件

命令类型暴露范围备注
boringtun-clicli全局可执行文件

新鲜度

版本和新鲜度

这些信号区分页生成时间、软件包管理器活动和上游发布比较。只有存在证据 URL 和可比较版本时,才会提示版本落后。

页面生成时间2026-07-25
管理器版本0.7.1
管理器更新时间2026-05-02
本地数据OK
上游当前
检测到的最新版本boringtun-0.7.1

https://github.com/cloudflare/boringtun

  • OK没有生成新鲜度警告。

安装元数据

软件包元数据

软件包键brew:boringtun
版本0.7.1
软件包管理器Homebrew
软件包管理器页面https://formulae.brew.sh/formula/boringtun
主页https://github.com/cloudflare/boringtun
仓库https://github.com/cloudflare/boringtun
上游文档https://github.com/cloudflare/boringtun#readme
许可证BSD-3-Clause
源码归档https://github.com/cloudflare/boringtun/archive/refs/tags/boringtun-0.7.1.tar.gz
最后更新2026-05-02T04:20:23Z
Pulseupdated
构建依赖rust
Bottle可用 (于 arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, sonoma, x86_64_linux)
Homebrew post-install未定义
服务未声明
注意事项boringtun-cli requires root privileges so you will need to run `sudo boringtun-cli utun`. You should be certain that you trust any software you grant root privileges.

注册表事实

源数据库详情

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Nameboringtun
Version Scheme0
Revision0
Head VersionHEAD
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • head
  • stable

源数据库匹配

其他软件包管理器记录

匹配项来自外部软件包管理器索引,并与本地 Automic Vault 软件包链接分开显示。

Nix95%

boringtun

nix profile install nixpkgs#boringtun
  • normalized package name match
  • 匹配方式:Boringtun
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/bo/boringtun/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1

来源线索

由仓库数据生成

此页面由 av-webscripts/generate-pkg-sqlite.py 生成的私有软件包 SQLite 工件提供。

使用的来源

  • Geiger risk classifier
  • Nucleus package database
  • av.db category and tag curation
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment