Downloading

You should verify the integrity of the download files using provided signatures.

Karaf Container

Schedule

Series OSGi Version Support Java Version Support Current Status Last Version Next Version ETA
2.2.x 4.2 5 / 6 Not Active 2.2.9
2.3.x 4.3 5 / 6 / 7 Not Active 2.3.12
2.4.x 5 7 / 8 Not Active 2.4.4
3.0.x 5 6 (up to Karaf 3.0.5) / 7 / 8 Maintenance 3.0.8
4.0.x 5 7 / 8 Stable 4.0.7 4.0.8 31/10/16
4.1.x 6 8 / 9 Development 4.1.0 11/16

Karaf Container 4.0.7

Karaf Container 3.0.8

Karaf Cellar

Schedule

Series Container Version Support Current Status Last Version Next Version ETA
2.2.x 2.2.x Not Active 2.2.6
2.3.x 2.3.x / 2.4.x Not Active 2.3.6
3.0.x 3.0.x Maintenance 3.0.3
4.0.x 4.0.x Stable 4.0.3 4.0.4 12/16

Karaf Cellar 4.0.3

Karaf Cellar 3.0.3

Karaf Cave

Schedule

Series Container Version Support Current Status Last Version Next Version ETA
3.0.x 3.0.x Maintenance 3.0.0
4.0.x 4.0.x Stable 4.0.0 4.0.1 11/16

Karaf Cave 4.0.0

Karaf Cave 3.0.0

Karaf Decanter

Schedule

Series Container Version Support Current Status Last Version Next Version ETA
1.0.x 2.x / 3.x / 4.x Stable 1.2.0 1.3.0 21/10/16

Karaf Decanter 1.2.0

Verify the integrity of the files

It is essential that you verify the integrity of the downloaded files using the PGP or MD5 signatures.

The PGP signatures can be verified using PGP or GPG. First download the KEYS as well as the asc signature file for the relevant file. Make sure you get these files from the main distribution directory, rather than from a mirror. Then verify the signatures using, for instance:
% gpg --import KEYS
% gpg --verify apache-karaf-4.0.4.tar.gz.asc apache-karaf-4.0.4.tar.gz