ืฉื—ืจื•ืจ ืขืจื›ืช ื”ื”ืคืฆื” ืœื™ืฆื™ืจืช ื—ื•ืžื•ืช ืืฉ pfSense 2.4.5

ื”ืชืจื—ืฉ ืฉื—ืจื•ืจ ื”ืคืฆื” ืงื•ืžืคืงื˜ื™ืช ืœื™ืฆื™ืจืช ื—ื•ืžื•ืช ืืฉ ื•ืฉืขืจื™ื ืœืจืฉืช pfSense 2.4.5. ื”ื”ืคืฆื” ืžื‘ื•ืกืกืช ืขืœ ื‘ืกื™ืก ื”ืงื•ื“ ืฉืœ FreeBSD ืชื•ืš ืฉื™ืžื•ืฉ ื‘ืคื™ืชื•ื—ื™ ืคืจื•ื™ืงื˜ m0n0wall ื•ื”ืฉื™ืžื•ืฉ ื”ืคืขื™ืœ ื‘-pf ื•ื‘-ALTQ. ืœื˜ืขื™ื ื” ื–ืžื™ืŸ ืžืกืคืจ ืชืžื•ื ื•ืช ืœืืจื›ื™ื˜ืงื˜ื•ืจืช amd64, ื‘ื’ื•ื“ืœ ืฉืœ 300 ืขื“ 360 ืžื’ื”-ื‘ื™ื™ื˜, ื›ื•ืœืœ LiveCD ื•ืชืžื•ื ื” ืœื”ืชืงื ื” ื‘-USB Flash.

ืขืจื›ืช ื”ื”ืคืฆื” ืžื ื•ื”ืœืช ื‘ืืžืฆืขื•ืช ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜. Captive Portal, NAT, VPN (IPsec, OpenVPN) ื•-PPPoE ื™ื›ื•ืœื™ื ืœืฉืžืฉ ื›ื“ื™ ืœืืจื’ืŸ ืืช ื”ื™ืฆื™ืื” ืฉืœ ืžืฉืชืžืฉื™ื ื‘ืจืฉืช ืงื•ื•ื™ืช ื•ืืœื—ื•ื˜ื™ืช. ืชื•ืžืš ื‘ืžื’ื•ื•ืŸ ืจื—ื‘ ืฉืœ ืืคืฉืจื•ื™ื•ืช ืœื”ื’ื‘ืœืช ืจื•ื—ื‘ ืคืก, ื”ื’ื‘ืœืช ืžืกืคืจ ื”ื—ื™ื‘ื•ืจื™ื ื‘ื•-ื–ืžื ื™ืช, ืกื™ื ื•ืŸ ืชืขื‘ื•ืจื” ื•ื™ืฆื™ืจืช ืชืฆื•ืจื•ืช ืกื‘ื™ืœื•ืช ืœืชืงืœื•ืช ื”ืžื‘ื•ืกืกื•ืช ืขืœ CARP. ืกื˜ื˜ื™ืกื˜ื™ืงื•ืช ืขื‘ื•ื“ื” ืžื•ืฆื’ื•ืช ื‘ืฆื•ืจื” ืฉืœ ื’ืจืคื™ื ืื• ื‘ืฆื•ืจื” ื˜ื‘ืœื”. ื”ื”ืจืฉืื” ื ืชืžื›ืช ืขืœ ื™ื“ื™ ืžืกื“ ื”ื ืชื•ื ื™ื ื”ืžืงื•ืžื™ ืฉืœ ื”ืžืฉืชืžืฉื™ื, ื›ืžื• ื’ื ื‘ืืžืฆืขื•ืช RADIUS ื•-LDAP.

ืžืคืชื— ืฉื™ื ื•ื™ื™ื:

  • ืจื›ื™ื‘ื™ ืžืขืจื›ืช ื”ื‘ืกื™ืก ืขื•ื“ื›ื ื• ืœ- FreeBSD 11-STABLE;
  • ื›ืžื” ื“ืคื™ื ืฉืœ ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜, ื›ื•ืœืœ ืžื ื”ืœ ื”ืื™ืฉื•ืจื™ื, ืจืฉื™ืžืช ื›ืจื™ื›ื•ืช DHCP ื•ื˜ื‘ืœืื•ืช ARP/NDP, ืชื•ืžื›ื™ื ื›ืขืช ื‘ืžื™ื•ืŸ ื•ื‘ื—ื™ืคื•ืฉ;
  • ืคื•ืชืจ DNS ื”ืžื‘ื•ืกืก ืขืœ Unbound ื”ืชื•ื•ืกืฃ ืœื›ืœื™ ืฉื™ืœื•ื‘ ื”ืกืงืจื™ืคื˜ ืฉืœ Python;
  • ืขื‘ื•ืจ IPsec DH (Diffie-Hellman) ื•-PFS (Perfect Forward Secrecy) ื ื•ืกืคื• ืงื‘ื•ืฆื•ืช ื“ื™ืคื™-ื”ืœืžืŸ 25, 26, 27 ื•-31;
  • ื‘ื”ื’ื“ืจื•ืช ืžืขืจื›ืช ื”ืงื‘ืฆื™ื ืฉืœ UFS ืขื‘ื•ืจ ืžืขืจื›ื•ืช ื—ื“ืฉื•ืช, ืžืฆื‘ noatime ืžื•ืคืขืœ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื›ื“ื™ ืœืžื–ืขืจ ืคืขื•ืœื•ืช ื›ืชื™ื‘ื” ืžื™ื•ืชืจื•ืช;
  • ื”ืชื›ื•ื ื” "ื”ืฉืœืžื” ืื•ื˜ื•ืžื˜ื™ืช=ืกื™ืกืžื” ื—ื“ืฉื”" ื ื•ืกืคื” ืœื˜ืคืกื™ ืื™ืžื•ืช ื›ื“ื™ ืœื”ืฉื‘ื™ืช ืžื™ืœื•ื™ ืื•ื˜ื•ืžื˜ื™ ืฉืœ ืฉื“ื•ืช ืขื ื ืชื•ื ื™ื ืจื’ื™ืฉื™ื;
  • ื ื•ืกืคื• ืกืคืงื™ ืจืฉื•ืžื•ืช DNS ื“ื™ื ืžื™ื•ืช ื—ื“ืฉื•ืช - Linode ื•-Gandi;
  • ืžืกืคืจ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ืชื•ืงื ื•, ื›ื•ืœืœ ื‘ืขื™ื” ื‘ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜ ื”ืžืืคืฉืจืช ืœืžืฉืชืžืฉ ืžืื•ืžืช ื‘ืขืœ ื’ื™ืฉื” ืœื•ื•ื™ื“ื’'ื˜ ืœื”ืขืœืืช ื”ืชืžื•ื ื” ืœื‘ืฆืข ื›ืœ ืงื•ื“ PHP ื•ืœืงื‘ืœ ื’ื™ืฉื” ืœื“ืคื™ื ืžื•ืขื“ืคื™ื ืฉืœ ืžืžืฉืง ื”ืžื ื”ืœ.
    ื‘ื ื•ืกืฃ, ื‘ื•ื˜ืœื” ื”ืืคืฉืจื•ืช ืฉืœ ืกืงืจื™ืคื˜ื™ื ื‘ื™ืŸ ืืชืจื™ื (XSS) ื‘ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”