
Entsha Uhlaziyo lwe-IPFire 2.29 Core 199 ngoku iyafumaneka Olu hlaziyo lufike njengohlaziyo olukhulu lokusasazwa kwe-firewall okusekelwe kwi-Linux, okusetyenziswa kakhulu njenge-router kunye ne-firewall ezinikeleyo. Olu hlaziyo lugxile ekuqiniseni ukhuseleko, ukuphucula ulawulo lweenethiwekhi ezingenazingcingo zesizukulwana esilandelayo, kunye nokuphucula imisebenzi emininzi ebalulekileyo yolawulo lwemihla ngemihla lweenethiwekhi zobungcali.
Ngolu qaliso, i-IPFire ithatha elinye inyathelo lokuziqhelanisa neendawo zenethiwekhi ezintsonkothileyo, apho I-Wi-Fi ekhawulezayo, ukwahlulwahlulwa okuphambili, kunye neemfuno ezingqongqo zokubeka esweniNangona iyiprojekthi yehlabathi, uninzi lweempawu ezintsha zinomdla ngokukodwa kumaqela okhuseleko kunye nemisebenzi yenethiwekhi eSpain nakwamanye amazwe aseYurophu, apho ukusasazwa kwe-Wi-Fi 6 kunye ne-Wi-Fi 7 kunye noxinzelelo lolawulo kukhuseleko lwe-cyber kuqhubeka kusanda.
Inkxaso ye-Wi-Fi 6 kunye ne-Wi-Fi 7 enolawulo oluthe kratya
Olunye lolona tshintsho lubonakalayo kwi-IPFire 2.29 Core Update 199 kukongezwa kwe inkxaso yendalo yemigangatho ye-Wi-Fi 6 kunye ne-Wi-Fi 7Inkqubo ngoku ikuvumela ukuba ukhethe imowudi yakho ye-wireless oyithandayo kwaye iyakwazi ukubona ngokuzenzekelayo amandla anikezelwa yihardware efakiweyo, ivumela imisebenzi ehambelanayo ngaphandle kwesidingo soqwalaselo olunzima kakhulu lwesandla.
Uhlaziyo lukwasebenza ngokuzenzekelayo Ukhuseleko lwe-SSIDEli nyathelo lenzelwe ukuqinisa ukhuseleko lweenethiwekhi ezingenazingcingo kwiintlobo ezahlukeneyo zokuhlaselwa kunye nokuzenza umntu ongenguye. Ngaphezu koko, libandakanya ukukwazi ukuguqula iipakethi ze-multicast zibe ziipakethi ze-unicast ngokuzenzekelayo, nto leyo enokuphucula ukusebenza kakuhle kunye nozinzo kwiindawo ezithile zokusasazwa kwe-Wi-Fi, ingakumbi kwiinethiwekhi ezinenani elikhulu labathengi.
Olunye uphawu olutsha olunxulumene necandelo le-wireless yi ukubhaqwa kwerada yangasemvaOku kubalulekile ekuthobeleni imithetho yokusetyenziswa kwe-radio spectrum, into ebaluleke kakhulu eYurophu. Lo msebenzi unceda ukuthintela ukuphazamiseka kwiinkqubo ezibalulekileyo ezisebenza kwiibhendi ezithile zefrikhwensi, ukulungelelanisa iqonga neemfuno zomthetho.
Ukubonakala okukhulu kwenethiwekhi nge-LLDP kunye ne-CDPv2
Kwiindawo zamashishini kunye nababoneleli ngeenkonzo, ukubona into edibanisa nento ebalulekileyo. Yiyo loo nto i-IPFire 2.29 Core Update 199 idibanisa inkxaso yendalo ye I-LLDP (i-Link-Local Discovery Protocol) kunye ne-Cisco Discovery Protocol version 2 ngqo kwi-web interface yabo, ngaphakathi kwecandelo leenkonzo elizinikele kwi-LLDP.
Ngenxa yolu dibaniso, i-firewall iyakwazi Chonga izixhobo zenethiwekhi eziqhagamshelwe kwiindawo zazo zonxibelelwano Kwaye, iluncedo ngakumbi kwiindawo ezinkulu zokufakelwa, ukwazi ukuba iqhagamshelwe kweziphi ii-switch ports. Olu lwazi lunokondla izixhobo zokubeka esweni inethiwekhi kunye nezixhobo ze-inventory ezisetyenziswa kwiindawo ezinkulu zokusasazwa, zenza kube lula ukuxilongwa, uphicotho-zincwadi, kunye nokulungiswa kwakhona kwe-topology.
Kubaphathi abalawula iiwebhusayithi ezininzi, iikhabhathi zonxibelelwano, okanye amaziko edatha, ukuba nale datha ibekwe kwindawo enye yinzuzo enkulu. Ujongano lwewebhu lwe-IPFire Inceda ekunciphiseni amaxesha okungenelela kwaye inciphise iimpazamo xa kulungiswa uqhagamshelo olubonakalayo okanye ukwenza utshintsho loqwalaselo kwiiswitshi kunye nee-routers ezikufutshane.
Uhlaziyo lweKernel kunye notshintsho oluphambili lwenkqubo
Iqela lophuhliso lihlaziye I-linux kernel esebenzisa i-IPFire, eyidlula kwinguqulelo 6.12.58Olu phuculo lubandakanya uzinzo oluninzi kunye nophuculo lokhuseleko oluvela kwi-ecosystem yeLinux, nto leyo ekhokelela ekusebenzeni komlilo oqinileyo, ingakumbi xa ulayishiwe okanye kwiimeko apho ithrafikhi ihluka kakhulu.
Kunye nolu hlaziyo luphambili, kubekho utshintsho olukhulu kwinkqubo yokuvelisa i-initramfs: isixhobo se-dracut sithatyathelwe indawo yi i-dracut-ngOlu tshintsho luza emva kokuba iprojekthi yokuqala ishiywe ngumlondolozi wayo oyintloko. Injongo kukuqinisekisa ukugcinwa kwexesha elide kunye nokuziqhelanisa ngakumbi notshintsho lweqonga elizayo.
Ngaphezu koko, idemon I-D-Bus ngoku isebenza ngokuzenzekelayo Kwi-IPFire, oku kuvula indlela yokuphucula kwixesha elizayo kunye neempawu ezintsha ezinokusebenzisa le bhasi yonxibelelwano lwangaphakathi. Olu hlobo lohlengahlengiso alusoloko lubonakala ngoko nangoko, kodwa luhlala lubalulekile ekubandakanyeni imisebenzi ephucukileyo ngaphandle kokubeka emngciphekweni uzinzo.
Ukomeleza inkqubo yokuthintela ukungena (IPS)
Ngokuphathelele ukhuseleko, i-IPFire 2.29 Core Update 199 ihlaziya injini yayo yenkqubo yokuthintela ukungena kwi-intanethi ukuze IMeerkat 8.0.2Le nguqulelo izisa izilungiso ezinxulumene nokuphathwa kwezilumkiso kunye nokuziphatha kwenkqubo yokunika ingxelo, izinto ezibalulekileyo kumaqela okhuseleko axhomekeke kule datha ukuze asabele kwiziganeko.
Ukucwangciswa kweengxelo ze-IPS nako kuhlengahlengisiwe, ukuze Iingxelo zihlala zithunyelwa ngo-1 kusasa.Esi sigqibo sijolise ekulinganiseni nasekululani imisebenzi yokujonga imihla ngemihla, okuvumela inkqubo eqhelekileyo enokuqikelelwa ngakumbi kumaqela ahlalutya iziganeko ezingaphandle kweeyure zomsebenzi eziqhelekileyo.
Ukongeza, kukho ingxaki esonjululwe apho indlela entsha yokunika ingxelo inokuthi ndiphoswa zizilumkiso ezithile xa isiseko sedatha sangaphakathi se-SQLite sasixakekileOlu lungiso lubaluleke kakhulu kwimibutho efuna irekhodi epheleleyo kangangoko yeziganeko zokhuseleko, njengoko kunciphisa umngcipheko wemisebenzi ethile ekrokrisayo engaqatshelwa kwiimeko ezixineneyo.
Uphuculo kwi-OpenVPN kunye noqhagamshelo olukude
I-IPFire isetyenziswa kakhulu ekufikeleleni kude kunye noqhagamshelo lwe-VPN ukusuka kwindawo ukuya kwenye, ngoko ke le projekthi ikwazise utshintsho kwi-intanethi yayo. Ukuphunyezwa kwe-OpenVPNPhakathi kweempawu ezintsha, ukukwazi ukuthumela iiseva ezininzi ze-DNS kunye ne-WINS kubathengi kuyaphawuleka, nto leyo eyenza kube lula ukuseta amagama kwiinethiwekhi ezineedomeyini zangaphakathi ezahlukeneyo.
Iseva ye-OpenVPN ngoku ingasebenza imowudi ehlala ihleli yamakhaya amaninziOku kuluncedo kwiimeko apho i-firewall ine-WAN interfaces ezininzi okanye iindlela eziphumayo, into eqhelekileyo kwiinkampani ezidibanisa ababoneleli bonxibelelwano abahlukeneyo ukuze bafumane ukuqina.
Ukongeza, umyalelo ususiwe kwiifayile zoqwalaselo lweklayenti. auth-nocache, ithathwa njengengasebenziyo kule meko. Ingxaki ebinokuthi ithintele indlela yokuqala eyenzelwe wena Ulwazi oluchazwe ngumlawuli luya kusasazwa ngokuchanekileyo kubathengi, ngaloo ndlela kuthintelwe ukuziphatha okungalindelekanga kwiitopoloji ezintsonkothileyo.
Uhlengahlengiso kwi-web interface kunye nolawulo lokusebenza
I-interface yolawulo esekwe kwisiphequluli, into ebalulekileyo kumsebenzi wemihla ngemihla weengcali ezininzi, ibandakanya uphuculo oluninzi ukuze icace kwaye ithembeke ngakumbi. Umyalezo wesaziso ovelayo uphuculwe. xa inkqubo ingahambelani ne-SMT (Simultaneous Multithreading)ukuze umlawuli afumane ingcaciso echanekileyo ngakumbi ngalo mda wehardware.
Kwicandelo leposi, i-IPFire 2.29 Core Update 199 iphucula ukuphathwa kweziqinisekiso, kuquka abalinganiswa abakhethekileyoOku kunciphisa iingxaki xa kumiselwa iinkqubo zesaziso okanye kuthunyelwa izilumkiso nge-imeyile. Olu hlobo lweenkcukacha luqhelekile kwiindawo zoshishino apho kukho imigaqo-nkqubo yephasiwedi enzima.
Ibug ethinteleyo dala amaqela amatsha endawo kwiphepha le-firewallLe yinto ebalulekileyo xa uhlela imithetho ngokwengingqi, uluhlu lwe-IP, okanye iindawo ezahlukeneyo zokhuseleko. Kubalawuli abahlulahlula ithrafikhi ngokusekwe kwimvelaphi yendawo okanye umsebenzi wenethiwekhi, olu lungiso lwenza lula ulawulo kwaye luphephe imfuneko yezisombululo zokuvumelana.
Ukunciphisa ukhuseleko lwe-proxy kunye nokulungiswa kwemeko yohlanga
Kwindawo ye-proxy, inguqulelo entsha ibandakanya ukunciphisa ubuthathaka obuchongiweyo njenge-CVE-2025-62168Eli nyathelo liqinisa ukhuseleko kwiintlaselo ezinokuthi zisebenzise le vektha, into ekufuneka iqwalaselwe yimibutho esebenzisa iproxy ye-IPFire njengenxalenye ephambili yokucoca ithrafikhi yewebhu.
Ezininzi nazo zisombululiwe iimeko zomdyarho nto leyo enokubangela ukuziphatha okungahambelaniyo. Enye yazo inokubangela ukupheliswa ngenkani kwenkqubo yokucoca i-URL ngexesha lokuhlanganiswa kwedatha, nto leyo eyachaphazela ngokuthe ngqo amandla okuvala iiwebhusayithi ezingafunekiyo okanye ezinobungozi.
Enye imeko yomsebenzi elungisiweyo ichaphazele ukusetyenziswa kwe imithetho firewallOku kwavumela imithetho eyayisetyenziswa ngaphambili ukuba ingafakwa xa kufakwa entsha. Olu hlobo lweempazamo lubaluleke kakhulu, njengoko lunokudala izikhewu zexeshana kumgaqo-nkqubo wokhuseleko lwenethiwekhi ukuba alufunyanwanga ngokukhawuleza, nto leyo eyenza isisombululo sazo sibe luphuculo olukhulu ekuthembekeni kokusebenza.
Uhlaziyo lweepakeji eziphambili kunye nezinto ezisetyenziswayo
Ukongeza kwiinguqu ezisebenzayo, i-IPFire 2.29 Core Update 199 ibandakanya uhlaziyo olukhulu lweepakeji kunye nee-plugins. Phakathi kotshintsho oluphawulekayo kukho: I-FFmpeg 8.0 Kwinkqubo yemultimedia, iClamAV 1.5.1 njengenjini ye-antivirus, iGNU nano 8.7 njengomhleli wombhalo, iSamba 4.23.2 kwiinkonzo zefayile kunye nokuprinta kwiindawo ezixutyiweyo, kunye neTor 0.4.8.19 kunxibelelwano olungaziwa.
Kwicandelo lothungelwano kunye nokhuseleko, uhlaziyo lubandakanya I-Fetchmail 6.5.7, i-cURL 8.17.0, i-OpenSSL 3.6, i-SQLite 3.51.0, i-OpenLDAP 2.6.10, i-OpenSSH 10.2p1 kunye ne-BIND 9.20.16Ezi nguqulelo ziquka nokulungiswa kwazo kokhuseleko kunye nokuphuculwa kokusebenza, nto leyo ebaluleke kakhulu kwimibutho ekufuneka ithobele imigaqo kunye neendlela ezilungileyo malunga nohlaziyo lwesoftware.
Uluhlu lwezinto ezongezelelweyo lwandisiwe ngezixhobo ezintsha, kuquka dmaIsixhobo esenzelwe ukudala iibhokisi zeposi zasekuhlaleni. Olu hlobo lokongeza luvumela i-IPFire ukuba ilungelelaniswe ngcono neendawo apho kufuneka ubhalise kwaye usasaze izaziso okanye imiyalezo ngaphakathi ngaphandle kokusebenzisa izisombululo ze-imeyile ezinzima.
Ukufumaneka kunye neendlela zokufakela izakhiwo ezahlukeneyo
Uhlaziyo lwe-IPFire 2.29 Core 199 ngoku luyafumaneka Khuphela kwiwebhusayithi esemthethweni yeprojekthi kwifomathi yomfanekiso we-ISO kunye ne-USB. Esi sixhobo sixhasa uyilo lwe-x86_64 (64-bit) kunye ne-AArch64 (ARM64), sivula ithuba lokusetyenziswa kwaso kwiiseva zemveli kunye nezixhobo kunye nakwiiplatifomu ezisekwe kwi-ARM ezikhula eYurophu, ingakumbi kwiindawo ezisebenzisa amandla aphantsi okanye izixhobo ezinikezelweyo.
Kwabo sele besebenzisa i-IPFire ekuvelisweni, uhlaziyo luyinxalenye yejelo eliqhelekileyo le Uhlaziyo olungundoqoKe ngoko, ingasetyenziswa ngokulandela iinkqubo ezisemgangathweni zokusasazwa. Nangona kunjalo, njengakutshintsho olukhulu lwenguqulelo, kuyacetyiswa ukuba kugcinwe uqwalaselo kwaye kucetywe iwindow efanelekileyo yokulungisa ukuze kuncitshiswe impembelelo kubasebenzisi bokugqibela.
Kwimeko yokufakelwa okutsha, ukufumaneka Imifanekiso elungiselelwe imithombo yeendaba eyahlukeneyo Kwenza kube lula ukuvavanya i-IPFire kwiilabhoratri, kwiiofisi ezincinci, okanye kwiindawo zokufaka iiprojekti ngaphambi kokuba idityaniswe ngokupheleleyo kwiziseko zophuhliso ezibalulekileyo zenethiwekhi.
Ngale phakheji yotshintsho, i-IPFire 2.29 Core Update 199 idityaniswe njengokhetho oluvuthiweyo lokusebenza njenge-firewall kunye ne-router kwiinethiwekhi zanamhlanje, idibanisa Inkxaso ye-Wi-Fi yesizukulwana esilandelayo, ukuphuculwa kwenkqubo yokuthintela ukungena, ukunciphisa ukhuseleko kwi-proxy, kunye nokuphuculwa okubanzi kwezinto ezibalulekileyo.Konke oku kujoliswe ekuboneleleni ngeqonga elizinzileyo, elilungiselelwe ngcono iimfuno zokhuseleko lwe-intanethi ezikhoyo eSpain nakwamanye amazwe aseYurophu.
