Mwepụta nke OpenSSH 9.5

Ebipụtala ntọhapụ nke OpenSSH 9.5, mmeghe mmeghe nke onye ahịa na ihe nkesa maka ịrụ ọrụ site na iji SSH 2.0 na SFTP protocols.

Isi mgbanwe:

  • ssh-keygen site na ndabara na-agụnye ọgbọ isi dabere na Ed25519 mbinye aka dijitalụ, nke Daniel Bernstein mepụtara ma kwadoro na RFC 8709. A na-achọpụta na igodo Ed25519 na-akwado kemgbe ntọhapụ nke OpenSSH 6.5 (2014) ma dị mfe karịa n'ihi obere obere ha. nha. N'otu oge ahụ, Ed25519 mbinye aka dijitalụ nwere nchekwa dị elu karịa ECDSA na DSA, ma gosipụta oke ọsọ nke nkwenye na ịmepụta mbinye aka. Nguzogide hacking maka Ed25519 bụ ihe dịka 2 ^ 128 (na nkezi, ọgụ na Ed25519 ga-achọ ọrụ 2 ^ 140 bit), nke kwekọrọ na nguzogide nke algọridim dị ka NIST P-256 na RSA nwere isi nke 375 bytes. ma ọ bụ 128-bit block cipher. Ed25519 adịghịkwa enwe ike ịnweta nsogbu na nkukota hash, ọ naghị enwe mmetụta maka mwakpo oge cache na mwakpo ọwa akụkụ.
  • Ngwa ssh agbakwunyela nchebe megide mwakpo ọwa n'akụkụ na-enyocha igbu oge dị n'etiti igodo igodo na ahụigodo iji megharịa ntinye. Mwakpo dị otú ahụ na-adabere n'eziokwu ahụ bụ na igbu oge n'etiti igodo igodo mgbe ị na-ede ihe na-adabere na ebe igodo dị na keyboard (dịka ọmụmaatụ, nzaghachi mgbe ị na-ede mkpụrụedemede "F" dị ngwa karịa mgbe ị na-ede "Q" ma ọ bụ "X", ebe ọ bụ na a chọrọ obere mmegharị mkpịsị aka ka ịpị). SSH nwere ike ịdaba na mwakpo ndị a n'ihi na o zipụrụ ozi gbasara agwa pịnyere na ngwugwu dị iche ozugbo emechara igodo ọ bụla, yabụ igbu oge n'etiti izipu ngwugwu jikọtara ya na igbu oge n'etiti igodo igodo.

    Iji zoo ihe dị iche iche nke ntinye mmekọrịta na okporo ụzọ, ssh na-arụ ọrụ izipu data ọ bụghị ka a na-ede ya, kama ọ bụ naanị n'oge etiti (20 ms na ndabara). Na mgbakwunye, iji mebie ndị na-awakpo ahụ, a na-eziga clicks chepụtara echepụta n'oge enweghị usoro mgbe izipu ezigbo data. Iji hazie nchekwa, agbakwunyela “ObscureKeystrokeTiming” na ssh_config.

  • ssh na sshd na-akwado ndọtị protocol SSH "ping@openssh.com", nke na-agbakwunye ụdị ozi ọhụrụ, SSH2_MSG_PING na SSH2_MSG_PONG, maka izipu ngwugwu kwa oge n'oge oge. Mgbatị a dị mkpa maka nchebe ahụ ekwuru n'elu megide mwakpo ọwa n'akụkụ.
  • sshd na-enye ohere ka ihichapụ ntuziaka Sybsystem site na ngọngọ Match.
  • Na sshd, ntuziaka Subsystem agbanweela njikwa nrụtụ aka, nke echekwara ugbu a maka iwu na arụmụka, nke nwere ike ibute ndakọrịta na nhazi dị ụkọ.

isi: opennet.ru

Zụta nnabata ntụkwasị obi maka saịtị nwere nchekwa DDoS, sava VPS VDS 🔥 Zụta ebe nrụọrụ weebụ a pụrụ ịtụkwasị obi na nchekwa DDoS, sava VPS VDS | ProHoster