{"id":92348,"date":"2020-08-25T19:42:57","date_gmt":"2020-08-25T17:42:57","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard"},"modified":"2020-08-25T19:42:57","modified_gmt":"2020-08-25T17:42:57","slug":"v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard","status":"publish","type":"post","link":"https:\/\/prohoster.info\/fr\/blog\/news\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard","title":{"rendered":"Prise en charge de VPN WireGuard ajout\u00e9e au noyau NetBSD","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>D\u00e9veloppeurs du projet NetBSD <noindex><a rel=\"nofollow\" href=\"https:\/\/mail-index.netbsd.org\/current-users\/2020\/08\/20\/msg039393.html\">sur le site de l'entreprise. D\u00e9sormais, les utilisateurs peuvent ajouter un nombre illimit\u00e9 de morceaux \u00e0 leur biblioth\u00e8que.<\/a><\/noindex> Concernant l'int\u00e9gration du pilote wg pour le protocole WireGuard dans le noyau principal de NetBSD. NetBSD est devenue le troisi\u00e8me syst\u00e8me d'exploitation apr\u00e8s Linux et OpenBSD \u00e0 int\u00e9grer le support de WireGuard. Des commandes suppl\u00e9mentaires pour configurer le VPN, telles que wg-keygen et wgconfig, sont \u00e9galement propos\u00e9es. Dans la configuration par d\u00e9faut du noyau (GENERIC), le pilote n'est pas encore activ\u00e9 et n\u00e9cessite une activation explicite dans les param\u00e8tres \u00ab pseudo-device wg \u00bb.<\/p>\n<p>Il convient \u00e9galement de noter <noindex><a rel=\"nofollow\" href=\"https:\/\/lists.zx2c4.com\/pipermail\/wireguard\/2020-August\/005780.html\">publication<\/a><\/noindex> Mise \u00e0 jour corrective du paquet wireguard-tools 1.0.20200820, qui inclut des utilitaires fonctionnant dans l'espace utilisateur, tels que wg et wg-quick. Dans cette nouvelle version, une pr\u00e9paration de l'IPC a \u00e9t\u00e9 effectu\u00e9e en vue du support futur de WireGuard dans le syst\u00e8me d'exploitation FreeBSD. Une s\u00e9paration du code sp\u00e9cifique aux diff\u00e9rentes plateformes a \u00e9t\u00e9 r\u00e9alis\u00e9e. Le fichier unit pour systemd a \u00e9t\u00e9 mis \u00e0 jour pour ajouter le support de la commande \u00ab reload \u00bb, permettant d'ex\u00e9cuter des constructions telles que \u00ab systemctl reload wg-quick at wgnet0 \u00bb.<\/p>\n<p>Rappelons que le VPN WireGuard est bas\u00e9 sur des m\u00e9thodes de chiffrement modernes, offre une tr\u00e8s haute performance, est facile \u00e0 utiliser, d\u00e9pourvu de complications et a bien r\u00e9ussi dans plusieurs grandes mises en \u0153uvre traitant de gros volumes de trafic. Le projet se d\u00e9veloppe depuis 2015, a \u00e9t\u00e9 audit\u00e9 et <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.com\/formal-verification\/\">v\u00e9rification formelle<\/a><\/noindex> des m\u00e9thodes de chiffrement appliqu\u00e9es. Le support de WireGuard est d\u00e9j\u00e0 int\u00e9gr\u00e9 dans NetworkManager et systemd, et les patches pour le noyau font partie des distributions de base <noindex><a rel=\"nofollow\" href=\"https:\/\/wiki.debian.org\/Wireguard\">Debian Unstable<\/a><\/noindex>, Mageia, Alpine, Arch, Gentoo, OpenWrt, NixOS, <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=47266\">Subgraph<\/a><\/noindex> et <noindex><a rel=\"nofollow\" href=\"https:\/\/packages.altlinux.org\/ru\/search?query=kernel-modules-wireguard\">ALT<\/a><\/noindex>.<\/p>\n<p>WireGuard utilise le concept de routage par cl\u00e9s de cryptage, liant chaque interface r\u00e9seau \u00e0 une cl\u00e9 priv\u00e9e et utilisant des cl\u00e9s publiques pour \u00e9tablir des connexions. L'\u00e9change de cl\u00e9s publiques pour \u00e9tablir une connexion se fait de mani\u00e8re analogue \u00e0 SSH. Pour l'accord des cl\u00e9s et la connexion sans d\u00e9marrer un d\u00e9mon s\u00e9par\u00e9 dans l'espace utilisateur, le m\u00e9canisme Noise_IK est utilis\u00e9 <noindex><a rel=\"nofollow\" href=\"http:\/\/noiseprotocol.org\/\">Noise Protocol Framework<\/a><\/noindex>, semblable au maintien des authorized_keys dans SSH. La transmission des donn\u00e9es se fait via encapsulation dans des paquets UDP. Le changement d'adresse IP du serveur VPN (roaming) est pris en charge sans rupture de la connexion, avec une reconfiguration automatique du client.<\/p>\n<p>Pour le cryptage <noindex><a rel=\"nofollow\" href=\"https:\/\/www.wireguard.io\/protocol\/\">on utilise<\/a><\/noindex>  un chiffre de flux <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/chacha.html\">ChaCha20<\/a><\/noindex> et un algorithme d'authentification de message (MAC) <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/mac.html\">Poly1305<\/a><\/noindex>, d\u00e9velopp\u00e9s par Daniel Bernstein (<noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/djb.html\">Daniel J. Bernstein<\/a><\/noindex>), Tanja Lange<br \/>\n(Tanja Lange) et Peter Schwabe (Peter Schwabe). ChaCha20 et Poly1305 sont pr\u00e9sent\u00e9s comme des alternatives plus rapides et plus s\u00e9curis\u00e9es \u00e0 AES-256-CTR et HMAC, dont l'impl\u00e9mentation logicielle permet d'obtenir un temps d'ex\u00e9cution fixe sans n\u00e9cessiter de support mat\u00e9riel particulier. Pour g\u00e9n\u00e9rer une cl\u00e9 secr\u00e8te partag\u00e9e, le protocole de Diffie-Hellman sur des courbes elliptiques est utilis\u00e9, impl\u00e9ment\u00e9 par <noindex><a rel=\"nofollow\" href=\"http:\/\/cr.yp.to\/ecdh.html\">Curve25519<\/a><\/noindex>, \u00e9galement propos\u00e9 par Daniel Bernstein. Pour le hachage, l'algorithme <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=35676\">BLAKE2s (RFC7693)<\/a><\/noindex>. <\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Source : <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=53596\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0420\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u0447\u0438\u043a\u0438 \u043f\u0440\u043e\u0435\u043a\u0442\u0430 NetBSD \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0432\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0438 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 NetBSD \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0430 wg \u0441 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0435\u0439 \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u0430 WireGuard. NetBSD \u0441\u0442\u0430\u043b\u0430 \u0442\u0440\u0435\u0442\u044c\u0435\u0439 \u041e\u0421 \u043f\u043e\u0441\u043b\u0435 Linux \u0438 OpenBSD \u0441 \u0438\u043d\u0442\u0435\u0433\u0440\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u0439 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u043e\u0439 WireGuard. \u0422\u0430\u043a\u0436\u0435 \u043f\u0440\u0435\u0434\u043b\u043e\u0436\u0435\u043d\u044b \u0441\u043e\u043f\u0443\u0442\u0441\u0442\u0432\u0443\u044e\u0449\u0438\u0435 \u043a\u043e\u043c\u0430\u043d\u0434\u044b \u0434\u043b\u044f \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0438 VPN &#8212; wg-keygen \u0438 wgconfig. \u0412 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u0438 \u044f\u0434\u0440\u0430 \u043f\u043e \u0443\u043c\u043e\u043b\u0447\u0430\u043d\u0438\u044e (GENERIC) \u0434\u0440\u0430\u0439\u0432\u0435\u0440 \u043f\u043e\u043a\u0430 \u043d\u0435 \u0430\u043a\u0442\u0438\u0432\u0438\u0440\u043e\u0432\u0430\u043d \u0438 \u0442\u0440\u0435\u0431\u0443\u0435\u0442 \u044f\u0432\u043d\u043e\u0433\u043e \u0443\u043a\u0430\u0437\u0430\u043d\u0438\u044f \u0432 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-92348","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0420\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u0447\u0438\u043a\u0438 \u043f\u0440\u043e\u0435\u043a\u0442\u0430 NetBSD \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0432\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0438 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 NetBSD \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0430 wg \u0441.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/fr\/blog\/news\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"fr_FR\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0412 \u044f\u0434\u0440\u043e NetBSD \u0434\u043e\u0431\u0430\u0432\u043b\u0435\u043d\u0430 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u0430 VPN WireGuard | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0420\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u0447\u0438\u043a\u0438 \u043f\u0440\u043e\u0435\u043a\u0442\u0430 NetBSD \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0432\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0438 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 NetBSD \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0430 wg \u0441.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/fr\/blog\/news\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-08-25T17:42:57+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-08-25T17:42:57+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Le noyau de NetBSD a ajout\u00e9 le support VPN WireGuard | ProHoster","description":"Les d\u00e9veloppeurs du projet NetBSD ont annonc\u00e9 l'inclusion du pilote wg dans le noyau principal de NetBSD.","canonical_url":"https:\/\/prohoster.info\/fr\/blog\/news\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"fr_FR","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0412 \u044f\u0434\u0440\u043e NetBSD \u0434\u043e\u0431\u0430\u0432\u043b\u0435\u043d\u0430 \u043f\u043e\u0434\u0434\u0435\u0440\u0436\u043a\u0430 VPN WireGuard | ProHoster","og:description":"\u0420\u0430\u0437\u0440\u0430\u0431\u043e\u0442\u0447\u0438\u043a\u0438 \u043f\u0440\u043e\u0435\u043a\u0442\u0430 NetBSD \u0441\u043e\u043e\u0431\u0449\u0438\u043b\u0438 \u043e \u0432\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u0438 \u0432 \u043e\u0441\u043d\u043e\u0432\u043d\u043e\u0439 \u0441\u043e\u0441\u0442\u0430\u0432 \u044f\u0434\u0440\u0430 NetBSD \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0430 wg \u0441.","og:url":"https:\/\/prohoster.info\/fr\/blog\/news\/v-yadro-netbsd-dobavlena-podderzhka-vpn-wireguard","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-08-25T17:42:57+00:00","article:modified_time":"2020-08-25T17:42:57+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"92348","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 12:10:22","updated":"2022-09-28 01:30:46","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts\/92348","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/comments?post=92348"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/posts\/92348\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/media?parent=92348"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/categories?post=92348"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/fr\/wp-json\/wp\/v2\/tags?post=92348"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}