{"id":76048,"date":"2020-03-30T19:42:06","date_gmt":"2020-03-30T17:42:06","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/dostupen-vpn-wireguard-1-0-0"},"modified":"2020-03-30T19:42:06","modified_gmt":"2020-03-30T17:42:06","slug":"dostupen-vpn-wireguard-1-0-0","status":"publish","type":"post","link":"https:\/\/prohoster.info\/et\/blog\/news\/dostupen-vpn-wireguard-1-0-0","title":{"rendered":"Saadaval on VPN WireGuard 1.0.0","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><noindex><a rel=\"nofollow\" href=\"https:\/\/lists.zx2c4.com\/pipermail\/wireguard\/2020-March\/005206.html\">Esitletud<\/a><\/noindex> m\u00e4rgiline versioon VPN <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.io\/\">WireGuard 1.0.0<\/a><\/noindex>, mis t\u00e4histas WireGuard'i komponentide tarnimist Linuxi tuuma p\u00f5hikoosseisu <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52632\">Linux 5.6<\/a><\/noindex> ja arenduse stabiliseerimist. Tuuma Linuxi kood <noindex><a rel=\"nofollow\" href=\"https:\/\/lore.kernel.org\/netdev\/20200319003047.113501-1-Jason@zx2c4.com\/\">l\u00e4bis<\/a><\/noindex> t t\u00e4iendava turbeauditi, mille viis l\u00e4bi s\u00f5ltumatu firma, mis spetsialiseerub selliste kontrollide teostamisele. Audit ei tuvastanud mingeid probleeme.<\/p>\n<p>Kuna WireGuard areneb n\u00fc\u00fcd Linuxi tuuma p\u00f5hikoosseisus, on kasutajatele, kes j\u00e4tkavad vanade tuumaversioonide kasutamist, ette valmistatud allikas <noindex><a rel=\"nofollow\" href=\"https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/zx2c4\/wireguard-linux-compat.git\/\">wireguard-linux-compat.git<\/a><\/noindex>. Allikas sisaldab WireGuard'i tagasiviidatud koodi ja kihti compat.h, et tagada \u00fchilduvus vanade tuumadega. T\u00f5detakse, et seni, kuni on arendajate v\u00f5imalused ja kasutajate vajadus, hoitakse eraldiseisvat patch variant t\u00f6\u00f6tavana. Praeguses vormis eraldiseisev versioon WireGuard'i saab kasutada tuumadega versioonidest <noindex><a rel=\"nofollow\" href=\"https:\/\/git.launchpad.net\/~ubuntu-kernel\/ubuntu\/+source\/linux\/+git\/focal\/tree\/debian\/dkms-versions?h=master-next\">Ubuntu 20.04<\/a><\/noindex> ja <noindex><a rel=\"nofollow\" href=\"https:\/\/salsa.debian.org\/kernel-team\/linux\/-\/tree\/master\/debian%2Fpatches%2Ffeatures%2Fall%2Fwireguard\">Debian 10 \u201eBuster\u201c<\/a><\/noindex>, samuti on see saadaval Linuxi tuumade patch'idena <noindex><a rel=\"nofollow\" href=\"https:\/\/git.zx2c4.com\/wireguard-linux\/log\/?h=backport-5.4.y\">5.4<\/a><\/noindex> ja <noindex><a rel=\"nofollow\" href=\"https:\/\/git.zx2c4.com\/wireguard-linux\/log\/?h=backport-5.5.y\">5.5<\/a><\/noindex>. Distro'd, mis kasutavad uusimaid tuumasid, nagu Arch, Gentoo ja<br \/>\nFedora 32, saavad kasutada WireGuard'i koos tuuma 5.6 v\u00e4rskendamisega.<\/p>\n<p>Arenduse p\u00f5hiprotsess toimub n\u00fc\u00fcd allikas <noindex><a rel=\"nofollow\" href=\"https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/zx2c4\/wireguard-linux.git\/\">wireguard-linux.git<\/a><\/noindex>, mis sisaldab t\u00e4ielikku Linuxi tuumade puu Wireguard'i projekti muudatustega. Selle allika patch'id saavad olema \u00fclevaatamiseks, et Need sisalduda p\u00f5hituumas ja regulaarselt edastatakse net\/net-next harudesse. Kasutustehnikate ja skriptide, nagu wg ja wg-quick, arendamine toimub allikas <noindex><a rel=\"nofollow\" href=\"https:\/\/git.kernel.org\/pub\/scm\/linux\/kernel\/git\/zx2c4\/wireguard-tools.git\/\">wireguard-tools.git<\/a><\/noindex>, mida saab kasutada pakettide loomiseks distrosse.<\/p>\n<p>Tuletame meelde, et VPN WireGuard p\u00f5hineb kaasaegsetel kr\u00fcpteerimismeetoditel, pakub v\u00e4ga k\u00f5rget j\u00f5udlust, on lihtne kasutada, puuduvad keerukused ning on end t\u00f5estanud mitmes suures rakenduses, mis t\u00f6\u00f6tlevad suuri andmemahtusid. Projekt on k\u00e4inud alates 2015. aastast, l\u00e4binud audit ja <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.com\/formal-verification\/\">formaalse kontrollimise<\/a><\/noindex> rakendatud kr\u00fcpteerimismeetodite osas. WireGuard'i tugi on juba integreeritud NetworkManagerisse ja systemd-sse, ning tuuma patch'id kuuluvad jaotuste p\u00f5hikoosseisu <noindex><a rel=\"nofollow\" href=\"https:\/\/wiki.debian.org\/Wireguard\">Debian Unstable<\/a><\/noindex>, Mageia, Alpine, Arch, Gentoo, OpenWrt, NixOS, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=47266\">Subgraph<\/a><\/noindex> ja <noindex><a rel=\"nofollow\" href=\"https:\/\/packages.altlinux.org\/ru\/search?query=kernel-modules-wireguard\">ALT<\/a><\/noindex>.<\/p>\n<p>WireGuard kasutab kr\u00fcpteerimisv\u00f5tmete p\u00f5hist marsruutimise kontseptsiooni, mis t\u00e4hendab, et iga v\u00f5rgu liidese jaoks seostatakse privaatv\u00f5ti ja avalike v\u00f5tmete sidumine toimub sarnaselt SSH-le. Avalike v\u00f5tmete vahetamine \u00fchenduse loomise jaoks toimub sama printsiibi j\u00e4rgi nagu SSH-s. V\u00f5tmete kokku leppimiseks ja \u00fchenduse loomiseks ilma eraldi kasutajaruumis deemonit k\u00e4ivitamata kasutatakse mehhanismi Noise_IK <noindex><a rel=\"nofollow\" href=\"http:\/\/noiseprotocol.org\/\">Noise Protocol Framework<\/a><\/noindex>, mis sarnaneb authorized_keys haldamisega SSH-s. Andmete edastamine toimub UDP-pakettidesse kapseldamise kaudu. VPN-serveri IP-aadressi vahetamine (roaming) on toetatud ilma \u00fchenduse katkemiseta ja kliendi automaatse \u00fcmberkonfigureerimisega.<\/p>\n<p>Kr\u00fcpteerimiseks <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.io\/protocol\/\">kasutatakse<\/a><\/noindex>  voosredensus <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/chacha.html\">ChaCha20<\/a><\/noindex> ja s\u00f5numite autentimise algoritm (MAC) <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/mac.html\">Poly1305<\/a><\/noindex>, mille on t\u00f6\u00f6tanud v\u00e4lja Daniel Bernstein (<noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/djb.html\">Daniel J. Bernstein<\/a><\/noindex>), Tanja Lange<br \/>\n(Tanja Lange) ja Peter Schwabe (Peter Schwabe). ChaCha20 ja Poly1305 on esitatud kiiremate ja turvalisemate variantidena AES-256-CTR ja HMAC, mille tarkvaraline teostus v\u00f5imaldab saavutada fikseeritud t\u00f6\u00f6tlemisaega ilma spetsiaalse riistvaratoe kaasamiseta. \u00dchise salajase v\u00f5tme genereerimiseks kasutatakse elliptsete k\u00f5verate j\u00e4rgi t\u00f6\u00f6tavat Diffie-Hellmani protokolli, mille teostas <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/ecdh.html\">Curve25519<\/a><\/noindex>, mille samuti pakkus v\u00e4lja Daniel Bernstein. Hashimise jaoks kasutatakse algoritmi <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=35676\">BLAKE2s (RFC7693)<\/a><\/noindex>. <\/p>\n<p>Vana <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.com\/performance\/\">testimise<\/a><\/noindex> WireGuard n\u00e4itas vana j\u00f5udlustestimise k\u00e4igus 3,9 korda k\u00f5rgemat andmeedastuskiirus ja 3,8 korda k\u00f5rgemat reageerimiskiirus v\u00f5rreldes OpenVPN-iga (256-bit AES HMAC-SHA2-256-ga). V\u00f5rreldes IPsec-iga (256-bit ChaCha20+Poly1305 ja AES-256-GCM-128) paistab WireGuard-i j\u00f5udlus pisut silmapaistvamat (13-18%) ja aeglane aeg (21-23%). Projekti veebisaidil avaldatud testide tulemused h\u00f5lmavad vana eraldiseisvat WireGuard-i teostust ja on m\u00e4rgitud mitte piisavalt kvaliteetsetena. Alates testide l\u00e4biviimisest on WireGuard ja IPsec koodi veelgi optimeeritud ja toimivad n\u00fc\u00fcd kiiremini. \u00dcksikasjalikuma testimise kohta, mis h\u00f5lmab tuuma integreeritud teostust, pole veel l\u00e4bi viidud. Sellegipoolest on m\u00e4rgitud, et WireGuard \u00fcletab teatud olukordades endiselt IPsec-i mitme protsessimise t\u00f5ttu, samas kui OpenVPN j\u00e4\u00e4b v\u00e4ga aeglaseks.<\/p>\n<p><center><noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.io\/performance\/\"><img decoding=\"async\" alt=\"Saadaval on VPN WireGuard 1.0.0\" src=\"\/wp-content\/uploads\/2020\/03\/949feed20bd26d3c691fcd82646d5d94.png\" style=\"display:block;margin: 0 auto;\" \/><\/a><\/noindex><\/center><\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Allikas: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52636\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d \u0437\u043d\u0430\u043a\u043e\u0432\u044b\u0439 \u0432\u044b\u043f\u0443\u0441\u043a VPN WireGuard 1.0.0, \u043a\u043e\u0442\u043e\u0440\u044b\u0439 \u043e\u0442\u043c\u0435\u0442\u0438\u043b \u0441\u043e\u0431\u043e\u0439 \u043f\u043e\u0441\u0442\u0430\u0432\u043a\u0443 \u043a\u043e\u043c\u043f\u043e\u043d\u0435\u043d\u0442\u043e\u0432 WireGuard \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u043c \u0441\u043e\u0441\u0442\u0430\u0432\u0435 \u044f\u0434\u0440\u0430 Linux 5.6 \u0438 \u0441\u0442\u0430\u0431\u0438\u043b\u0438\u0437\u0430\u0446\u0438\u044e \u0440\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u043a\u0438. \u0412\u043a\u043b\u044e\u0447\u0451\u043d\u043d\u044b\u0439 \u0432 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 Linux \u043a\u043e\u0434 \u043f\u0440\u043e\u0448\u0451\u043b \u0434\u043e\u043f\u043e\u043b\u043d\u0438\u0442\u0435\u043b\u044c\u043d\u044b\u0439 \u0430\u0443\u0434\u0438\u0442 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438, \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u043d\u044b\u0439 \u043d\u0435\u0437\u0430\u0432\u0438\u0441\u0438\u043c\u043e\u0439 \u0444\u0438\u0440\u043c\u043e\u0439, \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u044e\u0449\u0435\u0439\u0441\u044f \u043d\u0430 \u043f\u043e\u0434\u043e\u0431\u043d\u044b\u0445 \u043f\u0440\u043e\u0432\u0435\u0440\u043a\u0430\u0445. \u0410\u0443\u0434\u0438\u0442 \u043d\u0435 \u0432\u044b\u044f\u0432\u0438\u043b \u043a\u0430\u043a\u0438\u0445-\u043b\u0438\u0431\u043e \u043f\u0440\u043e\u0431\u043b\u0435\u043c. \u0422\u0430\u043a \u043a\u0430\u043a WireGuard \u0442\u0435\u043f\u0435\u0440\u044c \u0440\u0430\u0437\u0432\u0438\u0432\u0430\u0435\u0442\u0441\u044f \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u043c \u0441\u043e\u0441\u0442\u0430\u0432\u0435 \u044f\u0434\u0440\u0430 Linux, \u0434\u043b\u044f \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":76049,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-76048","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d \u0437\u043d\u0430\u043a\u043e\u0432\u044b\u0439 \u0432\u044b\u043f\u0443\u0441\u043a VPN WireGuard.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/et\/blog\/news\/dostupen-vpn-wireguard-1-0-0\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"et_EE\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d VPN WireGuard 1.0.0 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d \u0437\u043d\u0430\u043a\u043e\u0432\u044b\u0439 \u0432\u044b\u043f\u0443\u0441\u043a VPN WireGuard.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/et\/blog\/news\/dostupen-vpn-wireguard-1-0-0\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-03-30T17:42:06+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-03-30T17:42:06+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47VPN WireGuard 1.0.0 | ProHoster on saadaval","description":"Esitletud on t\u00e4helepanuv\u00e4\u00e4rne VPN WireGuard versioon.","canonical_url":"https:\/\/prohoster.info\/et\/blog\/news\/dostupen-vpn-wireguard-1-0-0","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"et_EE","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0414\u043e\u0441\u0442\u0443\u043f\u0435\u043d VPN WireGuard 1.0.0 | ProHoster","og:description":"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d \u0437\u043d\u0430\u043a\u043e\u0432\u044b\u0439 \u0432\u044b\u043f\u0443\u0441\u043a VPN WireGuard.","og:url":"https:\/\/prohoster.info\/et\/blog\/news\/dostupen-vpn-wireguard-1-0-0","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-03-30T17:42:06+00:00","article:modified_time":"2020-03-30T17:42:06+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"76048","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 17:44:27","updated":"2022-10-01 21:43:00","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/posts\/76048","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/comments?post=76048"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/posts\/76048\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/media\/76049"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/media?parent=76048"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/categories?post=76048"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/et\/wp-json\/wp\/v2\/tags?post=76048"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}