Sakin uwar garken ftp ProFTPD 1.3.8

Bayan shekaru biyu da rabi na ci gaba, an buga mahimmancin sakin sabar ProFTPD 1.3.8 ftp, ƙarfin ƙarfin su shine haɓakawa da aiki, amma raunin shine gano lokaci-lokaci na raunin haɗari. A lokaci guda, ana samun sakin kulawa na ProFTPD 1.3.7f, wanda zai zama na ƙarshe a cikin jerin ProFTPD 1.3.7.

Babban sabbin abubuwa na ProFTPD 1.3.8:

  • An aiwatar da goyan bayan CSID (ID ɗin Abokin Ciniki / Server) FTP umarni, wanda za'a iya amfani dashi don aika bayanai don gano software na abokin ciniki akan uwar garke kuma karɓar amsa tare da bayani don gano uwar garken. Misali, abokin ciniki na iya aika “CSID Name=BSD FTP; Shafin = 7.3" kuma karɓa a cikin amsa "Sunan 200=ProFTPD; Shafin=1.3.8; OS=Ubuntu Linux; OSVer=22.04; CaseSensitive=1; DirSep=/;".
  • Aiwatar da ka'idar SFTP ta ƙara goyon baya ga tsawo na "gidaje-gida" don fadada ~/ da ~ mai amfani / hanyoyi. Don kunna shi, zaku iya amfani da umarnin "SFTPExtensions homeDirectory".
  • Ƙara goyon baya ga ma'aunin AES-GCM zuwa mod_sftp"[email kariya]"Kuma"[email kariya]", da kuma jujjuyawar maɓalli ("SFTPOptions NoHostkeyRotation") ta amfani da kari na OpenSSH "[email kariya]"Kuma"[email kariya]" Ƙara goyon baya don kunna AES GCM ciphers zuwa umarnin SFTPCiphers.
  • Ƙara zaɓin "-enable-pcre2" don ginawa tare da ɗakin karatu na PCRE2 maimakon PCRE. An ƙara ikon zaɓar injin magana na yau da kullun tsakanin PCRE2, POSIX da PCRE zuwa umarnin RegexOptions.
  • An ƙara umarnin SFTPHostKeys don nuna maɓalli na maɓalli na rundunar da aka bayar ga abokan ciniki don tsarin mod_sftp.
  • Ƙaddara FactsDefault umarni don ayyana a sarari jerin "gaskiya" da za a mayar da su a cikin martanin FTP na MLSD/MLSD.
  • Ƙara umarnin LDAPConnectTimeout don ƙayyade lokacin ƙarewar haɗi zuwa uwar garken LDAP.
  • Ƙaddara umarnin ListStyle don ba da damar jerin abubuwan da ke cikin tsarin tsarin tsarin Windows.
  • An aiwatar da umarnin RedisLogFormatExtra don ƙara maɓallan ku da ƙimar ku a cikin log ɗin JSON wanda RedisLogOnCommand da umarnin RedisLogOnEvent suka haɗa.
  • An ƙara ma'aunin MaxLoginAttemptsFromUser zuwa umarnin BanOnEvent don toshe ƙayyadaddun haɗakar masu amfani da adiresoshin IP.
  • An ƙara tallafin TLS zuwa umarnin RedisSentinel lokacin haɗi zuwa Redis DBMS. Umarnin RedisServer yanzu yana goyan bayan ingantaccen tsarin umarni na AUTH da aka yi amfani da shi tun Redis 6.x.
  • Ƙara goyon baya don ETM (Encrypt-Sai-MAC) hashes zuwa umarnin SFTPiges.
  • An ƙara tutar ReusePort zuwa umarnin SocketOptions don kunna yanayin soket na SO_REUSEPORT.
  • An ƙara tutar AllowSymlinkUpload zuwa umarnin Canja wurin Zaɓuɓɓuka don dawo da ikon loda zuwa hanyoyin haɗin yanar gizo.
  • Ƙara tallafi don "curve448-sha512" maɓalli na musayar algorithm zuwa umarnin SFTPKeyExchanges.
  • An ƙara ikon musanya ƙarin fayiloli a cikin allunan izini/ƙin yarda da su zuwa tsarin mod_wrap2.
  • An canza tsohuwar ƙimar ma'aunin FSCachePolicy zuwa "kashe".
  • An daidaita tsarin mod_sftp don amfani tare da ɗakin karatu na OpenSSL 3.x.
  • Ƙara goyon baya don ginawa tare da ɗakin karatu na libidn2 don amfani da Sunayen Yanki na Ƙasashen Duniya (IDN).
  • A cikin mai amfani na ftpasswd, tsohuwar algorithm don samar da hashes kalmar sirri shine SHA256 maimakon MD5.

source: budenet.ru

Add a comment