wolfSSL 5.1.0 ืฉื—ืจื•ืจ ืกืคืจื™ื™ื” ืงืจื™ืคื˜ื•ื’ืจืคื™ืช

ื”ื•ื›ื ื” ื”ืฉื—ืจื•ืจ ืฉืœ ืกืคืจื™ื™ืช ื”ื”ืฆืคื ื” ื”ืงื•ืžืคืงื˜ื™ืช wolfSSL 5.1.0, ื”ืžื•ืชืืžืช ืœืฉื™ืžื•ืฉ ื‘ืžื›ืฉื™ืจื™ื ืžืฉื•ื‘ืฆื™ื ืขื ืžืฉืื‘ื™ ืžืขื‘ื“ ื•ื–ื™ื›ืจื•ืŸ ืžื•ื’ื‘ืœื™ื, ื›ื’ื•ืŸ ืžื›ืฉื™ืจื™ ื”ืื™ื ื˜ืจื ื˜ ืฉืœ ื”ื“ื‘ืจื™ื, ืžืขืจื›ื•ืช ื‘ื™ืช ื—ื›ื, ืžืขืจื›ื•ืช ืžื™ื“ืข ืœืจื›ื‘, ื ืชื‘ื™ื ื•ื˜ืœืคื•ื ื™ื ื ื™ื™ื“ื™ื. ื”ืงื•ื“ ื›ืชื•ื‘ ื‘ืฉืคืช C ื•ืžื•ืคืฅ ืชื—ืช ืจื™ืฉื™ื•ืŸ GPLv2.

ื”ืกืคืจื™ื™ื” ืžืกืคืงืช ื™ื™ืฉื•ืžื™ื ื‘ืขืœื™ ื‘ื™ืฆื•ืขื™ื ื’ื‘ื•ื”ื™ื ืฉืœ ืืœื’ื•ืจื™ืชืžื™ื ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ืžื•ื“ืจื ื™ื™ื, ื›ื•ืœืœ ChaCha20, Curve25519, NTRU, RSA, Blake2b, TLS 1.0-1.3 ื•-DTLS 1.2, ืฉืœืคื™ ื”ืžืคืชื—ื™ื ื”ื ืงื•ืžืคืงื˜ื™ื™ื ืคื™ 20 ืžื”ื˜ืžืขื•ืช ืž-OpenSSL. ื”ื•ื ืžืกืคืง ื’ื API ืžืคื•ืฉื˜ ืžืฉืœื• ื•ื’ื ืฉื›ื‘ื” ืœืชืื™ืžื•ืช ืขื OpenSSL API. ื™ืฉ ืชืžื™ื›ื” ื‘-OCSP (Online Certificate Status Protocol) ื•-CRL (Certificate Revocation List) ืœื‘ื“ื™ืงืช ื‘ื™ื˜ื•ืœื™ ืื™ืฉื•ืจื™ื.

ื”ื—ื™ื“ื•ืฉื™ื ื”ืขื™ืงืจื™ื™ื ืฉืœ wolfSSL 5.1.0:

  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืคืœื˜ืคื•ืจืžื”: NXP SE050 (ืขื ืชืžื™ื›ื” ื‘-Curve25519) ื•-Renesas RA6M4. ืขื‘ื•ืจ Renesas RX65N/RX72N, ื ื•ืกืคื” ืชืžื™ื›ื” ื‘-TSIP 1.14 (Trusted Secure IP).
  • ื ื•ืกืคื” ืืช ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ืืœื’ื•ืจื™ืชืžื™ ื”ืฆืคื ื” ืคื•ืกื˜-ืงื•ื•ื ื˜ื™ื™ื ื‘ื™ืฆื™ืื” ืขื‘ื•ืจ ืฉืจืช ื”-Apache http. ืขื‘ื•ืจ TLS 1.3, ื”ื•ื˜ืžืขื” ืกื›ื™ืžืช ื”ื—ืชื™ืžื” ื”ื“ื™ื’ื™ื˜ืœื™ืช ืฉืœ FALCON ื‘ืกื™ื‘ื•ื‘ 3 ืฉืœ NIST. ื ื•ืกืคื• ื‘ื“ื™ืงื•ืช ืฉืœ cURL ืฉื”ื•ืจื›ื‘ื• ืž-wolfSSL ื‘ืžืฆื‘ ืฉืœ ืฉื™ืžื•ืฉ ื‘ืืœื’ื•ืจื™ืชืžื™ื ืงืจื™ืคื˜ื•, ืขืžื™ื“ื™ื ืœื‘ื—ื™ืจื” ื‘ืžื—ืฉื‘ ืงื•ื•ื ื˜ื™.
  • ื›ื“ื™ ืœื”ื‘ื˜ื™ื— ืชืื™ืžื•ืช ืขื ืกืคืจื™ื•ืช ื•ื™ื™ืฉื•ืžื™ื ืื—ืจื™ื, ื ื•ืกืคื” ืœืฉื›ื‘ื” ืชืžื™ื›ื” ืขื‘ื•ืจ NGINX 1.21.4 ื•- Apache httpd 2.4.51.
  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ื“ื’ืœ SSL_OP_NO_TLSv1_2 ื•ื”ืคื•ื ืงืฆื™ื•ืช SSL_CTX_get_max_early_data, SSL_CTX_set_max_early_data, SSL_set_max_early_data, SSL_get_max_early_data, SSL_CTX_clear_mode, SSL_value_mode, SSL_value_w. ื˜ืงืก ืœืงื•ื“ ืขื‘ื•ืจ ืชืื™ืžื•ืช OpenSSL _early_data.
  • ื ื•ืกืคื” ืืช ื”ื™ื›ื•ืœืช ืœืจืฉื•ื ืคื•ื ืงืฆื™ื™ืช ื”ืชืงืฉืจื•ืช ื—ื•ื–ืจืช ื›ื“ื™ ืœื”ื—ืœื™ืฃ ืืช ื”ื™ื™ืฉื•ื ื”ืžื•ื‘ื ื” ืฉืœ ืืœื’ื•ืจื™ืชื AES-CCM.
  • ื ื•ืกืฃ ืžืืงืจื• WOLFSSL_CUSTOM_OID ื›ื“ื™ ืœื™ืฆื•ืจ OIDs ืžื•ืชืืžื™ื ืื™ืฉื™ืช ืขื‘ื•ืจ CSR (ื‘ืงืฉืช ื—ืชื™ืžืช ืชืขื•ื“ื”).
  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ื—ืชื™ืžื•ืช ECC ื“ื˜ืจืžื™ื ื™ืกื˜ื™ื•ืช, ืžื•ืคืขืœืช ืขืœ ื™ื“ื™ ื”ืžืืงืจื• FSSL_ECDSA_DETERMINISTIC_K_VARIANT.
  • ื ื•ืกืคื• ืคื•ื ืงืฆื™ื•ืช ื—ื“ืฉื•ืช wc_GetPubKeyDerFromCert, wc_InitDecodedCert, wc_ParseCert ื•-wc_FreeDecodedCert.
  • ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืฉื“ื•ืจื’ื• ื‘ื“ืจื’ืช ื—ื•ืžืจื” ื ืžื•ื›ื” ื ืคืชืจื•. ื”ืคื’ื™ืขื•ืช ื”ืจืืฉื•ื ื” ืžืืคืฉืจืช ื”ืชืงืคืช DoS ืขืœ ื™ื™ืฉื•ื ืœืงื•ื— ื‘ืžื”ืœืš ื”ืชืงืคืช MITM ืขืœ ื—ื™ื‘ื•ืจ TLS 1.2. ื”ืคื’ื™ืขื•ืช ื”ืฉื ื™ื™ื” ืžืชื™ื™ื—ืกืช ืœืืคืฉืจื•ืช ืœื”ืฉื™ื’ ืฉืœื™ื˜ื” ืขืœ ื—ื™ื“ื•ืฉ ื”ืคืขืœืช ืœืงื•ื— ื‘ืขืช ืฉื™ืžื•ืฉ ื‘ืคืจื•ืงืกื™ ืžื‘ื•ืกืก wolfSSL ืื• ื—ื™ื‘ื•ืจื™ื ืฉืื™ื ื ื‘ื•ื“ืงื™ื ืืช ื›ืœ ืฉืจืฉืจืช ื”ืืžื•ืŸ ื‘ืชืขื•ื“ืช ื”ืฉืจืช.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”