macOS
brew install cfenginelocal Homebrew formula metadata
brew / rank 7537
Help manage and understand IT infrastructure. Version 3.28.0 via Homebrew; verified 2026-07-31. Also installable with apk: sudo apk add cfengine.
install
brew install cfenginelocal Homebrew formula metadata
sudo apk add cfengineAlpine Linux edge package indexes · cfengine · source: dl-cdn.alpinelinux.org
overview
Help manage and understand IT infrastructure
history
CFEngine is a long-running open source configuration management and infrastructure automation system. Official docs describe lightweight C-based agents that continually converge machines toward desired state written in the CFEngine policy language.
The CFEngine core README says CFEngine was originally created by Mark Burgess and that CFEngine 3 is a popular open source configuration management system for automated configuration and maintenance of large-scale computer systems. The same README describes CFEngine 3 as a significant, incompatible generation after CFEngine 2.
The official overview says CFEngine runs across many platforms, from embedded devices through servers, cloud systems, and mainframes, and can handle tens or hundreds of thousands of hosts. The input package facts show it packaged for Homebrew and Alpine.
Administrators write desired state in `.cf` policy files, normally stored under `/var/cfengine/masterfiles` on policy hubs and cached into `/var/cfengine/inputs` on clients before local `cf-agent` execution.
CFEngine matters in package-manager culture because it is one of the classic Unix-native configuration management agents: a pile of small `cf-*` binaries, a private `/var/cfengine` workspace, local convergence, and policy-as-code before that term became fashionable.
security posture
infrastructure mutation or orchestration signal.
orange risk · medium confidence · infrastructure
Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.
local files
These source-backed paths show where this package keeps local settings or durable credentials. Automic Vault can use them as review targets for secret scanning, migration, and command approval.
Config paths the tool may read or write during local use.
/var/cfengine/masterfiles/var/cfengine/inputsCredential-bearing paths to review before unattended agent runs.
/var/cfengine/ppkeysexecutables
| Command | Kind | Exposure | Note |
|---|---|---|---|
cf-agent | executable | indexed executable | Discovered from the local executable index. |
cf-check | executable | indexed executable | Discovered from the local executable index. |
cf-execd | executable | indexed executable | Discovered from the local executable index. |
cf-key | executable | indexed executable | Discovered from the local executable index. |
cf-monitord | executable | indexed executable | Discovered from the local executable index. |
cf-net | executable | indexed executable | Discovered from the local executable index. |
cf-promises | executable | indexed executable | Discovered from the local executable index. |
cf-runagent | executable | indexed executable | Discovered from the local executable index. |
cf-secret | executable | indexed executable | Discovered from the local executable index. |
cf-serverd | executable | indexed executable | Discovered from the local executable index. |
cf-support | executable | indexed executable | Discovered from the local executable index. |
cf-upgrade | executable | indexed executable | Discovered from the local executable index. |
rpmvercmp | executable | indexed executable | Discovered from the local executable index. |
freshness
These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.
install metadata
| Package key | brew:cfengine |
|---|---|
| Version | 3.28.0 |
| Package manager | Homebrew |
| Homepage | https://cfengine.com/ |
| Last updated | 2026-07-31T08:47:01+01:00 |
| Pulse | updated |
| Bottle | not recorded |
| Service | none declared |
source database matches
Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.
cfengine 3.27.1-r0
A systems administration tool for networks
sudo apk add cfenginecfengine-doc 3.27.1-r0
A systems administration tool for networks (documentation)
sudo apk add cfengine-doccfengine-masterfiles 3.27.1-r0
Cfengine default masterfiles
sudo apk add cfengine-masterfilessource trail
This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.
View the package source record on GitHub.