Tso tawm nginx 1.29.2 thiab fork FreeNginx 1.29.2

Kev tso tawm ntawm cov ceg tseem ceeb ntawm nginx 1.29.2 tau tshaj tawm, uas txoj kev loj hlob ntawm cov yam ntxwv tshiab txuas ntxiv mus. Nyob rau tib lub sijhawm, cov ceg ruaj khov 1.28.x tau txais kev txhawb nqa, tsuas yog cov kev hloov pauv cuam tshuam txog kev tshem tawm qhov ua yuam kev loj thiab qhov tsis zoo. Nyob rau hauv lub neej yav tom ntej, lub ruaj khov ceg 1.29 yuav tsim nyob rau hauv lub hauv paus ntawm lub ntsiab ceg 1.30.x. Txoj haujlwm code yog sau hauv C thiab muab faib raws li BSD daim ntawv tso cai.

Hauv qhov kev tso tawm tshiab:

  • Ntxiv lub peev xwm los tsim nrog AWS-LC cryptographic Library, tsim los ntawm Amazon.
  • Qhov teeb meem nrog rau cov lus qhia "ssl_protocols" tau daws lawm. tus neeg rau zaub mov virtual, tsis yog lub server ua ntej. Qhov teeb meem tau tshwm sim thaum siv OpenSSL 1.1.1 thiab cov version tom qab.
  • Kho TLSv1.3 kev sib txuas kev sib tham tsis ua haujlwm hauv kev teeb tsa nrog OpenSSL thiab daim ntawv pov thawj cov neeg siv khoom. Qhov tsis ua tiav tau tshwm sim thaum rov pib qhov kev sib tham nrog tus nqi SNI sib txawv.
  • Kho cov kab laum uas ua rau "tsis quav ntsej txog qhov yuam kev thoob ntiaj teb SSL" cov lus kom nkag mus thaum siv QUIC raws tu qauv thiab cov lus qhia "ssl_reject_handshake".
  • Kho qhov teeb meem nrog kev tuav lub sij hawm raws li qhov tseem ceeb hauv Cache-Control HTTP header rov qab los ntawm qhov backend.
  • Kev siv xtext encoding hauv XCLIENT cov lus txib tau tsim.
  • Kho qhov teeb meem caching Daim ntawv pov thawj TLS thaum lub sijhawm rov kho dua tshiab.

Tsis tas li ntawd, nws tsim nyog sau cia qhov kev tso tawm ntawm FreeNginx 1.29.2, rab rawg ntawm Nginx. Txoj kev loj hlob ntawm rab rawg yog coj los ntawm Maxim Dunin, yog ib qho tseem ceeb ntawm Nginx developers. FreeNginx txoj haujlwm nws tus kheej ua ib txoj haujlwm tsis yog lag luam, ua kom muaj kev txhim kho ntawm Nginx codebase yam tsis muaj kev cuam tshuam txog kev lag luam. FreeNginx code tseem muaj ntawv tso cai raws li BSD daim ntawv tso cai. Cov kev hloov pauv hauv FreeNginx 1.29.2 suav nrog ntxiv kev txhawb nqa rau ECH (Encrypted Client Hello) TLS txuas ntxiv.

Tau qhov twg los: opennet.ru

Yuav txhim khu kev qha hosting rau cov chaw nrog DDoS tiv thaiv, VPS VDS servers 🔥 Yuav lub vev xaib hosting txhim khu kev qha nrog kev tiv thaiv DDoS, VPS VDS servers | ProHoster