Sonatype is committed to ensuring that Maven Central is a reliable resource for the community. We are continuing to invest in enhancements that improve system availability, including the conversion to virtual systems and adding redundancy to Central's Internet connection. These new improvements follow the deployment of the new official Maven Central repositories in the UK that enabled much faster access for all Maven users in Europe, as well as providing another geographically redundant backup of artifacts.
Virtual servers: We now have six nodes in a private cloud cluster, and both Central machines in the US are fully converted to virtual machines. This will allow the two systems to be completely isolated from hardware failure and provides greater flexibility for load balancing and performance tuning.
Internet redundancy: Maven Central is now connected to Contegix's fully managed network which provides multiple routes to the Internet. While the existing connection was stable in the past, we believe that using the managed and redundant network is the best choice for providing a reliable service to our users. The conversion to the new network is already completed, and you may notice that Maven Central now has a new IP address.
We are aware that some users have firewall rules locked to the external service IP. Because of this, we strive to maintain a consistent IP for each system, but the primary mechanism for accessing the repository is by DNS for most users. Sometimes, our failover escalation or maintenance procedures may require us to redirect the DNS for one system to another.
For this reason, if you have firewall rules that need specific IPs, please allow this list so that temporary transitions affect you:
- 207.223.240.88 : US primary
- 207.223.240.92 : US staging / standby
- 89.167.251.252: UK Primary
- 89.167.251.253: UK standby
Brian Fox, CTO and co-founder of Sonatype, is a Governing Board Member for the Open Source Security Foundation (OpenSSF), a Governing Board Member for the Fintech Open Source Foundation (FINOS), a member of the Monetary Authority of Singapore Cyber and Technology Resilience Experts (CTREX) Panel, a member of the Apache Software Foundation and former Chair of the Apache Maven project. Working with OpenSSF, Brian helped create The Open Source Consumption Manifesto, urging organizations to elevate awareness of open source usage. He also chaired efforts to provide official responses to requests for information from the The Office of the National Cybersecurity Directorate (ONCD) and the Cybersecurity and Infrastructure Security Agency (CISA). Within the Atlantic Council's Open Source Policy Network, Brian actively helps shape cybersecurity strategy, offering valuable insights on critical documents, such as ONCD's recent National Cyber Security Strategy. Brian has over 20 years of experience driving the vision behind, as well as developing and leading the development of software for organizations ranging from startups to large enterprises. Brian is a frequent speaker at national and regional events including Java User Groups and other security and development-related conferences.
Explore All Posts by Brian FoxTags
Try Nexus Repository Free Today
Sonatype Nexus Repository is the world’s most trusted artifact repository manager. Experience the difference and download Community Edition for free.