OpenVPN 2.4.9 hloov tshiab

Tsim kho qhov tso tawm ntawm lub pob rau tsim virtual private networks OpenVPN 2.4.9. Nyob rau hauv lub tshiab version tshem tawm Qhov tsis zoo (CVE-2020-11810) uas tso cai rau cov neeg siv khoom sib tham kom hloov mus rau qhov chaw nyob IP tshiab uas tsis tau tso cai yav dhau los. Qhov teeb meem siv tau rau cuam ​​tshuam tus neeg tau txais kev sib txuas tshiab nyob rau theem thaum cov neeg sib tw tau tsim, tab sis kev sib tham ntawm cov yuam sij kev sib tham tsis tau ua tiav (ib tus neeg siv khoom tuaj yeem nres qhov kev sib tham ntawm lwm tus neeg siv khoom).

Lwm yam kev hloov pauv muaj xws li:

  • Ntawm lub Windows platform, nws raug tso cai siv unicode tshawb nrhiav cov hlua hauv "-cryptoapicert" kev xaiv;
  • Xyuas kom meej tias daim ntawv pov thawj tas sij hawm tau dhau mus rau hauv Windows daim ntawv pov thawj khw;
  • Qhov teeb meem nrog tsis muaj peev xwm thauj khoom ntau CRLs (Certificate Revocation List) nyob rau hauv ib cov ntaub ntawv thaum siv qhov "--crl-verify" kev xaiv ntawm cov tshuab nrog OpenSSL tau raug daws;
  • Thaum siv cov kev xaiv "-auth-user-pass file", yog tias tsuas muaj ib tus neeg siv lub npe hauv cov ntaub ntawv, thov tus password, tam sim no yuav tsum muaj kev cuam tshuam rau kev tswj cov ntawv pov thawj (thov tus password siv OpenVPN los ntawm kev qhia hauv lub console tsis tau lawm);
  • Qhov kev txiav txim ntawm kev tshuaj xyuas tus neeg siv cov kev pabcuam sib tham tau raug hloov pauv (hauv Windows, qhov chaw teeb tsa tau raug kuaj xyuas thawj zaug, thiab tom qab ntawd qhov kev thov raug xa mus rau tus tswj hwm lub npe);
  • Tsau teeb meem nrog lub tsev ntawm FreeBSD platform thaum siv "--enable-async-push" chij.

Tau qhov twg los: opennet.ru

Ntxiv ib saib