iFire, unikezelo lomlilo olusekwe kwiLinux, li papashwe uhlaziyo lwayo 2.29 Cores 194, ukongeza iseti ebalulekileyo yokhuseleko, ukuphuculwa kozinzo, kunye neempawu ezintsha zemibutho emincinci kunye nemikhulu. Olu khululo, lufumaneka phakathi kuMeyi ka-2025, lomeleza injongo yalo yokugcina uthungelwano olukhuselweyo, olusebenzayo nolulula ukulawula.
Le nguqulo iza nje inyanga emva kohlaziyo lwangaphambili, IPFire 2.29 Isiseko 193, ukugcina isantya sawo esiqhelekileyo sokukhutshwa kunye nokuphendula kubuthathaka obuvelayo. Ngolu kukhululwa, i-IPFire ifuna ukuthatha ukuzinikela kwayo ekuthembekeni nasekukhuseleni inyathelo eliya phambili.
Iimpawu ezintsha eziphambili kwi-IPFire 2.29 Core kunye nokhuseleko
Olona tshintsho luphawulekayo kwi-Core Update 194 kukwamkelwa kwe I-Linux kernel 6.12.23 LTS, edibanisa uzinzo oluninzi olubalulekileyo kunye neepatches zokhuseleko. Le yaziswe ngaphambili kodwa ngoku ingundoqo ehlaziyiweyo ibonelela ngophuculo lokusebenza kofihlo oluphawuleka ngakumbi kuphunyezo lwe-IPsec, elinamanani ukuya kuthi ga. Ukunyuka kwe-162% kwisantya sokubethelwa kwe-AES-GCM kwi-hardware ehambelanayo (i-Intel kunye ne-AMD), inzuzo ecacileyo yeendawo ezifuna ii-VPNs ezikhawulezayo nezikhuselekileyo.
Ngaphakathi kwecandelo le Ubuthathaka obusonjululwe, IPFire 2.29 Core 194 idibanisa i-expat version 2.7.1, ukulungisa I-CVE-2024-8176 (i-stack ephuphumayo ekwahlulahluleni i-XML enezinto ezifakwe kwindlwane), kunye ne-XZ Utils version 5.8.1, elungisa I-CVE-2025-31115, isiphene esilinganiswe ngokubalulekileyo esinokuvumela ukwenziwa kwekhowudi kwiifayile ezicinezelweyo ezenziweyo.
Ukuphuculwa komlilo kunye notshintsho lwenethiwekhi
Ukusebenza kwe-firewall kukwabone inkqubela phambili ebonakalayo. Ukuqala ngolu khululo, uqhagamshelo oluphumayo olusebenzisa i-Alias IP alusayi kuphinda luguqulelwe (NAT) kwi-IP engagqibekanga kujongano lweRED., ukubonelela ngolawulo oluhambelanayo noluqikelelweyo kwitrafikhi ephumayo kunye nokuququzelela ulungelelwaniso oluchanekileyo ngakumbi lwenethiwekhi kubasebenzisi abaphambili.
Ngokumalunga nolawulo lwesatifikethi se-IPsec, inkqubo yokuhlaziywa kwesatifikethi somninimzi iye yahlaziywa ukuze ihlaziywe ngokuchanekileyo zonke iifayile zangaphakathi ezinxulumeneyo, ukwandisa ukuqina kunye nokhuseleko loqhagamshelwano lwe-VPN.
Iiphakheji ezihlaziyiweyo kunye nezixhobo
Iqela lophuhliso lenze a uhlaziyo lwephakheji olubanzi yenkqubo ukugubungela ubuthathaka kunye nokongeza imisebenzi emitsha. Eminye imizekelo ziinguqulelo ezintsha ze BIND 9.20.8, ca-certificates, Cairo, D-Bus, gdbm, harfbuzz, Suricata 7.0.10 kunye ne-Zabbix 7.0.11 LTS (eyamva iphula ukuhambelana neeseva ze-Zabbix 6.x, ngoko ke udibaniso lwangaphambili luya kufuneka luphononongwe), kunye nokutsibela libidn2 kulo lonke usasazo, ukulungelelanisa nemigangatho ye-IDNA 2008 kunye nokuphucula ukuhambelana nokukhuseleko xa kuthelekiswa ne-libidn yangaphambili.
Phakathi ezongezo kunye nezixhobo zomsebenzisi Uhlaziyo yi-Bacula 15.0.2, FFmpeg 7.1.1, Git 2.49.0, mpd, OVMF, Samba 4.22.0 kunye nezinye iipakethe ezibalulekileyo zolawulo lwenethiwekhi, ukubeka iliso kunye ne-backup.
Iimpawu ezintsha kumava omsebenzisi kunye nolawulo
Ulawulo olwandisiweyo kunye nenkqubo yohlaziyo, I-Pakfire ifumene i-interface epheleleyo. kunye nokuphuculwa kweenguqulelo, ngenxa yentsebenziswano yamalungu oluntu, okwenza kube lula ukuyisebenzisa, ngakumbi kubasebenzisi bamazwe ngamazwe. Oku kwenza kube lula ukufakela kunye nohlaziyo lweeplagi ezitsha zokhuseleko okanye iimodyuli.
Iimpawu eziphambili ze-IPFire
- Uhlolo lwe-Firewall olusemthethweni ixhaswa yi-Linux Netfilter yokhuseleko lothungelwano oluphezulu.
- Ukubona ukungena kunye nokuthintela ngeSuricata, enceda ukuchonga kunye nokunciphisa izoyikiso ezivelayo.
- Inkxaso yeVPN ngetekhnoloji efana ne-IPsec, i-OpenVPN kunye ne-WireGuard.
- Ulawulo lwezithuthi oluphezulu: Indlela ephucukileyo kunye neQoS ukubeka phambili iinkonzo ezibalulekileyo.
- Ummeli kunye nohluzo lomxholo idityanisiwe, iluncedo kwindawo yemfundo okanye yezoshishino.
- Khusela inkqubo yohlaziyo, eyenzelwe ukunciphisa imingcipheko kunye nokugcina iziseko ezingundoqo ezomeleleyo.
IPFire 2.29 Core 194 Ubukho kunye neNkqubo yoHlaziyo
IPFire 2.29 Isiseko 194 inokukhutshelwa ngokuthe ngqo kwi iphepha elisemthethweni, zombini kwi-ISO kunye neefomati ze-USB, ze-x86_64 kunye ne-ARM64 yezakhiwo. Abasebenzisi abasele benofakelo bafuna nje ukuhlaziya ukuze bafumane ngokuzenzekelayo iipetshi ezintsha, izincedisi, kunye nezixhobo. Iqela le-IPFire lincoma kakhulu ukwenza i-backup kunye nokuvavanya inguqu entsha kwiindawo ezingabalulekanga ngaphambi kokuyithumela kwimveliso.
Olu hlaziyo ludibanisa isikhundla salo njengenye yezona zisombululo ezinamandla kunye neziguquguqukayo zasimahla zokukhusela inethiwekhi, ukubeka iliso, kunye nolawulo, ukongeza uphuculo olomeleza zombini ukhuseleko ngokuchasene nezoyikiso zamva nje kunye nokulula kokusetyenziswa kunye nokugcinwa. Ukunyuselwa kwiCore 194 ngokungathandabuzekiyo sisigqibo esinengqiqo kwabo bafuna ukugcina iziseko zabo zikhuselekile kwaye zihlaziyiwe.