Tso tawm cov khoom siv faib rau tsim firewalls pfSense 2.4.5

coj qhov chaw tso tawm ib qho kev faib ua compact rau tsim firewalls thiab network gateways pfSense hwm 2.4.5. Qhov kev faib tawm yog raws li FreeBSD code puag siv kev txhim kho ntawm m0n0wall project thiab kev siv cov pf thiab ALTQ. Rau kev thauj khoom muaj ob peb cov duab rau amd64 architecture, xws li qhov loj me ntawm 300 txog 360 MB, suav nrog LiveCD thiab cov duab rau kev teeb tsa ntawm USB Flash.

Kev faib tawm yog tswj hwm ntawm lub vev xaib interface. Txhawm rau npaj cov neeg siv nkag mus rau ntawm lub xov tooj thiab wireless, Captive Portal, NAT, VPN (IPsec, OpenVPN) thiab PPPoE tuaj yeem siv. Muaj ntau lub peev xwm tau txais kev txhawb nqa rau kev txwv bandwidth, txwv cov naj npawb ntawm kev sib txuas ib txhij, lim cov tsheb khiav thiab tsim cov teeb meem tsis raug cai raws li CARP. Kev lag luam txheeb cais tau nthuav tawm hauv daim duab duab lossis hauv daim ntawv tabular. Kev tso cai tau txais kev txhawb nqa siv cov neeg siv hauv zos, nrog rau los ntawm RADIUS thiab LDAP.

Ntsiab hloov:

  • Lub hauv paus system Cheebtsam tau hloov kho rau FreeBSD 11-STABLE;
  • Qee nplooj ntawv ntawm lub vev xaib cuam tshuam, suav nrog tus thawj tswj daim ntawv pov thawj, cov npe ntawm DHCP khi thiab ARP/NDP cov lus, tam sim no txhawb kev txheeb xyuas thiab tshawb nrhiav;
  • Ib tus DNS daws raws li Unbound tau ntxiv rau Python tsab ntawv kev koom ua ke cov cuab yeej;
  • Rau IPsec DH (Diffie-Hellman) thiab PFS (Perfect Forward Secrecy) ntxiv Diffie-Hellman pawg 25, 26, 27 thiab 31;
  • Hauv UFS cov ntaub ntawv kaw lus rau cov tshuab tshiab, noatime hom yog qhib los ntawm lub neej ntawd kom txo qis cov haujlwm tsis tsim nyog;
  • Tus cwj pwm "autocomplete = tshiab-password" tau muab ntxiv rau daim ntawv pov thawj kom lov tes taw nws pib sau cov teb nrog cov ntaub ntawv rhiab;
  • Ntxiv tshiab dynamic DNS cov chaw muab kev pab - Linode thiab Gandi;
  • Ntau qhov tsis zoo tau raug kho, suav nrog qhov teeb meem hauv web interface uas tso cai rau tus neeg siv cov ntaub ntawv pov thawj nrog kev nkag mus rau cov duab upload widget los ua kom tiav PHP code thiab tau txais kev nkag mus rau nplooj ntawv muaj cai ntawm tus thawj tswj hwm interface.
    Tsis tas li ntawd, qhov ua tau ntawm cross-site scripting (XSS) tau raug tshem tawm hauv lub vev xaib interface.

Tau qhov twg los: opennet.ru

Ntxiv ib saib