IPFire 2.29 Core 193 isebenzisa i-post-quantum cryptography kunye nophuculo olubanzi lwenkqubo

  • IPFire 2.29 Core Update 193 ibandakanya i-post-quantum cryptography kwi-IPsec tunnels usebenzisa i-ML-KEM.
  • I-algorithms yokubethelwa ngokusisigxina ihlaziywe, isusa i-AES-128 kwaye ithanda i-AES-256 kunye ne-ChaCha20-Poly1305.
  • Uhlengahlengiso lwesiseko senkqubo: uhlaziyo kwi-glibc, Binutils, firmware, kunye ne-microcode.
  • Ukulungiswa kwebug, ujongano oluphuculweyo, kunye nezinto eziphambili ezihlaziyiweyo njengeApache kunye neSquid.

Uhlaziyo lwe-IPFire 2.29 Core 193

Iqela lophuhliso iFire Usungule Uhlaziyo lweCore 193 kwinguqulo 2.29, inyathelo elibalulekileyo elomeleza ukhuseleko lwale Linux-based firewall distribution. Njengenxalenye yokugxila kwayo okuqhubekayo ekuziqhelaniseni nezoyikiso ezivelayo, le nguqulo entsha ibandakanya inkxaso i-post-quantum cryptography kunxibelelwano IPsec VPN, ngaphezu koluhlu lophuculo lobugcisa olwenzelwe ukugcina ukusebenza kwenkqubo kunye nokuthembeka.

Olu hlaziyo lulandela uHlaziyo lweCore 192 kwaye imele ukuqhubela phambili okuphambili ekukhuseleni kuhlaselo lwe-cyber oluzayo, ngakumbi ezo zinokusebenzisa amandla ekhompuyutha ye-quantum. Ke ngoko, ukudibanisa i-algorithms echasene nolu hlobo lwetekhnoloji ibe yinto ephambili kubaphuhlisi be-IPFire, abazimisele ukuhlala phambili kwi-cybersecurity.

UKhuseleko
Inqaku elidibeneyo:
Ezona nkqubo zokusebenza zibalaseleyo kunye nolwabiwo lowama-2016 lwee-obsessives zokhuseleko

I-Post-Quantum Cryptography: Uluhlu olutsha loKhuselo lwe-IPsec Tunnels

Inqaku elitsha eliphambili le-IPFire 2.29 Core Update 193 yi Ukufakwa kwemveli ye-post-quantum cryptography kwiitonela zayo ze-IPsec. Ngokukodwa, i-key encapsulation mechanism esekelwe kuthungelwano lwemodyuli, eyaziwa ngokuba yi-ML-KEM (I-Module-Lattice-Based Key-Encapsulation Mechanism), iphunyeziwe. Le algorithm iphuhliswe ngeemeko engqondweni apho abahlaseli banokuba neekhompyuter ze-quantum ezikwazi ukwaphula i-cryptography eqhelekileyo kwixesha elizayo.

Olu phawu lutsha lwenziwa lusebenze ngokuzenzekelayo kuzo zonke iitonela ezisanda kumiswa., enokuphinda isebenzise i-algorithms yanamhlanje evunywe liZiko leSizwe leMigangatho neTekhnoloji (NIST), njengeCurve448, Curve25519, RSA-4096, kunye neRSA-3072. Ukongeza, abasebenzisi abaneetonela ezikhoyo banokuhlaziya useto lwabo ukuze bamkele le teknoloji ukusuka kwiphepha leseto eliphezulu.

ntpsec
Inqaku elidibeneyo:
I-NTPsec, ukuphunyezwa okuphuculweyo kwe-NTP

Uphononongo olunzulu lwe-Crypto Algorithm kunye nokususwa kwe-AES-128 kwi-IPFire 2.29 Core 193

Ngokhuseleko njengento ephambili, Uluhlu lwee-algorithms zofihlo olungagqibekanga luhlaziyiwe. I-IPFire ngoku isemgangathweni kwi-AES-256 kwiindlela ze-GCM kunye ne-CBC, kunye ne-ChaCha20-Poly1305. Kulo mongo, i-AES-128 isuswe ngokupheleleyo kwi-configuration engagqibekanga, njengoko ithathwa njengesengozini ngakumbi xa kuthelekiswa nomlingani wayo we-256-bit.

Abaphuhlisi bathi i-hardware yanamhlanje ibandakanya ukukhawuleza kwemisebenzi ye-AES, ngoko i-AES-256 inokufikelela ekusebenzeni okufana ne-AES-128 kodwa ngezinga eliphezulu lokukhusela. Olu tshintsho lumele inguquko kumgaqo-nkqubo weprojekthi ngokubhekiselele kwimodeli yokhuseleko esekelwe kuthintelo kunye nokusebenza.

kuvulwa
Inqaku elidibeneyo:
I-OpenSSH 9.6 ifika ilungisa iingxaki ezintathu zokhuseleko, iphumeza uphuculo nokunye

Uhlaziyo lwesiseko senkqubo: amathala eencwadi, izixhobo, kunye nokusebenza

Undoqo wenkqubo uphinde wafumana uphuculo olubonakalayo malunga nezixhobo zokuhlanganisa kunye nokusebenza.. Phakathi kwezinto ezintsha kubandakanywa i-GNU C Library (glibc) kwinguqulo yayo ye-2.41 kunye ne-GNU Binutils 2.44, evumela ukuvelisa ikhowudi esebenzayo kunye neyongeziweyo kwi-hardware yakutshanje. Oku akuphuculi kuphela ukusebenza ngokubanzi, kodwa komeleza ukhuseleko lokusebenza kwenkqubo.

Kwakhona, I-Firmware kunye nohlaziyo lwe-microcode lubandakanyiwe ukunciphisa ubuthathaka obaziwayo obufana ne-INTEL-SA-01213 kunye neminye imiba echaphazela imfezeko yeenkqubo zanamhlanje. Le yimilinganiselo yokuba, nangona ingabonakali kumsebenzisi wokugqibela, ichaphazela ngokuthe ngqo ukuthembeka kwendawo yenethiwekhi ekhuselwe yi-IPFire.

vula iZFS
Inqaku elidibeneyo:
I-OpenZFS 2.3.1 ifika nokusebenza, ukuhambelana kunye nophuculo lolawulo olukhawulezayo

Olunye utshintsho olubalulekileyo: DNS-over-TLS, uphuculo olubonakalayo, kunye nokulungiswa kwebug

Uluhlu lweenkonzo ezihlala zikhona yandisiwe ukuquka inkxaso yemveli ye-DNS-over-TLS, eyomeleza ubumfihlo bemibuzo ye-DNS ngokuchasene nokuvezwa kwangaphandle okanye ukukhohlisa. Igciwane elithintele isatifikethi sommkeli IPsec ekubeni sihlaziywe ngenxa yenombolo yesiriyeli engachanekanga nayo iye yalungiswa, ibug enokuthi ibangele umngeni omkhulu kwimo engqongileyo yeshishini.

Ngokuphathelele ujongano lomsebenzisi, Uphuculo olubonakalayo lwenziwe kwicandelo lamaqela e-firewall, enkosi ngokuyinxenye kwiminikelo evela kubaxhasi boluntu abafana noStephen Cuka. Ezi ntlobo zotshintsho, ngelixa zincinci, zinceda ukuphucula amava omsebenzisi wemihla ngemihla kwaye zenze ulawulo lomthetho lube lula kubalawuli benethiwekhi.

Ekugqibeleni, Uluhlu lwebhloko lwemiyalelo ye-C2 kunye neeseva ezifakwe ngaphambili yi-Abuse.ch zisusiwe, ekubeni oku kuyekiwe. Esi sigqibo sinciphisa ukuthembela kwimithombo yedatha yangaphandle engagcinwanga, ukuqinisa ukuhambelana kwe-IPFire ecosystem.

Usetyenziso oluhlaziyiweyo kunye neepakethe ezongezelelweyo kwi-IPFire 2.29 Core 193

Ukuze ugcine ukuhambelana nobuchwepheshe bamva nje, iipakethe ezininzi eziphambili ziye zahlaziywa. Phakathi kwazo kukho I-Apache 2.4.63, I-StrongSwan 6.0.0 y Ingwane 6.13, amacandelo abalulekileyo kwiimeko zenethiwekhi ezinzima ezisekelwe kwiproxy okanye iiseva zeVPN. Ukongeza, umsebenzi wenziwe ukuphucula izongezo ezininzi, kuqaqambisa iinguqulelo ezintsha ze IHAProxy 3.1.2, IGit 2.48.1 y ISamba 4.21.4.

Olu hlaziyo alunikezeli kuphela iimpawu ezintsha kodwa lulungisa iibhugi ezikhoyo kwaye luqinisekise ukuba indawo zemveliso zinokuqhubeka nokusebenza ngaphandle kwemiba evela kwiinguqulelo ezindala.

Iqela le-IPFire lithathe eli thuba lokubulela uluntu lwalo lwehlabathi ngokubambisana kwabo okuqhubekayo, nokuba kungegalelo lekhowudi, iingxelo ze-bug, okanye inkxaso yoontanga. Njengoko kuqhelekile kwiiprojekthi zomthombo ovulekileyo, uthatho-nxaxheba lwabasebenzisi olusebenzayo belubalulekile ekuveliseni ukhululo olubanzi.

IPFire 2.29 Core Update 193 ngoku iyafumaneka ukuze ikhutshelwe kwiwebhusayithi esemthethweni yeprojekthi.. Iifayile zifumaneka kuzo zombini iifomati ze-ISO kunye ne-USB yemifanekiso, kwaye sincoma ukuba uzifake ngokukhawuleza ukuze uthathe ithuba lokuphucula kunye nokugcina indawo ekhuselekileyo ehlangabezana nezoyikiso zamva nje.

Olu khululo lutsha lomeleza ukuzibophelela kwe-IPFire kwindaleko ethe gqolo ebusweni bokwanda kobunkunkqele bomhlaba wokhuseleko lwe-cyber. Ngokuzibophelela kwayo kwi i-post-quantum cryptography, ukuphuculwa kobugcisa bangaphakathi, kunye nengqalelo kwiinkcukacha, uluntu lwabasebenzisi lunesixhobo esinamandla ngakumbi, esilungiselelwe imingeni yangoku neyexesha elizayo.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Inoxanduva lwedatha: I-AB Internet Networks 2008 SL
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.