ืฉื—ืจื•ืจ ืขืจื›ืช ื”ืคืฆื” ืœื™ืฆื™ืจืช ื—ื•ืžื•ืช ืืฉ OPNsense 23.1

ื ื•ืฆืจื” ืžื”ื“ื•ืจื” ืฉืœ ืขืจื›ืช ื”ื”ืคืฆื” ืœื™ืฆื™ืจืช ื—ื•ืžื•ืช ืืฉ OPNsense 23.1, ืฉื”ื™ื ืฉืœื•ื—ื” ืฉืœ ืคืจื•ื™ืงื˜ pfSense, ืฉื ื•ืฆืจื” ื‘ืžื˜ืจื” ืœื™ืฆื•ืจ ืขืจื›ืช ื”ืคืฆื” ืคืชื•ื—ื” ืœื—ืœื•ื˜ื™ืŸ ืฉื™ื›ื•ืœื” ืœื”ื™ื•ืช ื‘ืขืœืช ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ื‘ืจืžื” ืฉืœ ืคืชืจื•ื ื•ืช ืžืกื—ืจื™ื™ื ืœืคืจื™ืกืช ื—ื•ืžื•ืช ืืฉ ื•ืจืฉืช. ืฉืขืจื™ื. ื‘ื ื™ื’ื•ื“ ืœ-pfSense, ื”ืคืจื•ื™ืงื˜ ืžืžื•ืงื ื›ืœื ื ืฉืœื˜ ืขืœ ื™ื“ื™ ื—ื‘ืจื” ืื—ืช, ืคื•ืชื— ื‘ื”ืฉืชืชืคื•ืช ื™ืฉื™ืจื” ืฉืœ ื”ืงื”ื™ืœื” ื•ื™ืฉ ืœื• ืชื”ืœื™ืš ืคื™ืชื•ื— ืฉืงื•ืฃ ืœื—ืœื•ื˜ื™ืŸ, ื›ืžื• ื’ื ืžืชืŸ ื”ื–ื“ืžื ื•ืช ืœื”ืฉืชืžืฉ ื‘ื›ืœ ืื—ื“ ืžื”ืคื™ืชื•ื—ื™ื ืฉืœื• ื‘ืžื•ืฆืจื™ื ืฉืœ ืฆื“ ืฉืœื™ืฉื™, ื›ื•ืœืœ ืžืกื—ืจื™ ื™ื—ื™ื“ื•ืช. ืงื•ื“ ื”ืžืงื•ืจ ืฉืœ ืจื›ื™ื‘ื™ ื”ื”ืคืฆื”, ื›ืžื• ื’ื ื”ื›ืœื™ื ื”ืžืฉืžืฉื™ื ืœื”ืจื›ื‘ื”, ืžื•ืคืฆื™ื ืชื—ืช ืจื™ืฉื™ื•ืŸ BSD. ื”ื”ืจื›ื‘ื•ืช ืžื•ื›ื ื•ืช ื‘ืฆื•ืจื” ืฉืœ LiveCD ื•ืชืžื•ื ืช ืžืขืจื›ืช ืœื”ืงืœื˜ื” ืขืœ ื›ื•ื ื ื™ ืคืœืืฉ (399 ืžื’ื”).

ื”ืชื•ื›ืŸ ื”ื‘ืกื™ืกื™ ืฉืœ ื”ื”ืคืฆื” ืžื‘ื•ืกืก ืขืœ ืงื•ื“ FreeBSD. ื‘ื™ืŸ ื”ืชื›ื•ื ื•ืช ืฉืœ OPNsense ื ื™ืชืŸ ืœืžืฆื•ื ืขืจื›ืช ื›ืœื™ื ืœื‘ื ื™ื™ื” ืคืชื•ื—ื” ืœื—ืœื•ื˜ื™ืŸ, ื™ื›ื•ืœืช ื”ืชืงื ื” ื‘ืฆื•ืจืช ื—ื‘ื™ืœื•ืช ืขืœ ื’ื‘ื™ FreeBSD ืจื’ื™ืœื”, ื›ืœื™ ืื™ื–ื•ืŸ ืขื•ืžืกื™ื, ืžืžืฉืง ืื™ื ื˜ืจื ื˜ ืœืืจื’ื•ืŸ ื—ื™ื‘ื•ืจื™ ืžืฉืชืžืฉื™ื ืœืจืฉืช (Captive portal), ื ื•ื›ื—ื•ืช ืฉืœ ืžื ื’ื ื•ื ื™ื ืœืžืขืงื‘ ืื—ืจ ืžืฆื‘ื™ ื—ื™ื‘ื•ืจ (ื—ื•ืžืช ืืฉ ืžืฆื‘ื™ืช ื”ืžื‘ื•ืกืกืช ืขืœ pf), ื”ื’ื“ืจืช ืžื’ื‘ืœื•ืช ืจื•ื—ื‘ ืคืก, ืกื™ื ื•ืŸ ืชืขื‘ื•ืจื”, ื™ืฆื™ืจืช VPN ื”ืžื‘ื•ืกืก ืขืœ IPsec, OpenVPN ื•-PPTP, ืื™ื ื˜ื’ืจืฆื™ื” ืขื LDAP ื•-RADIUS, ืชืžื™ื›ื” ื‘-DDNS (DNS ื“ื™ื ืžื™), ืžืขืจื›ืช ืฉืœ ื“ื•ื—ื•ืช ื•ื™ื–ื•ืืœื™ื™ื ื• ื’ืจืคื™ื.

ื”ื”ืคืฆื” ืžืกืคืงืช ื›ืœื™ื ืœื™ืฆื™ืจืช ืชืฆื•ืจื•ืช ืกื‘ื™ืœื•ืช ืœืชืงืœื•ืช ื”ืžื‘ื•ืกืกื•ืช ืขืœ ืฉื™ืžื•ืฉ ื‘ืคืจื•ื˜ื•ืงื•ืœ CARP ื•ืžืืคืฉืจืช ืœื”ืคืขื™ืœ, ื‘ื ื•ืกืฃ ืœื—ื•ืžืช ื”ืืฉ ื”ืจืืฉื™ืช, ืฆื•ืžืช ื’ื™ื‘ื•ื™ ืฉื™ืกืชื ื›ืจืŸ ืื•ื˜ื•ืžื˜ื™ืช ื‘ืจืžืช ื”ืชืฆื•ืจื” ื•ื™ืฉืชืœื˜ ืขืœ ื”ืขื•ืžืก ื‘ ืื™ืจื•ืข ืฉืœ ื›ืฉืœ ืฉืœ ื”ืฆื•ืžืช ื”ืจืืฉื™. ืœืžื ื”ืœ ื”ืžืขืจื›ืช ืžื•ืฆืข ืžืžืฉืง ืžื•ื“ืจื ื™ ื•ืคืฉื•ื˜ ืœื”ื’ื“ืจืช ื—ื•ืžืช ื”ืืฉ, ืฉื ื‘ื ื” ื‘ืืžืฆืขื•ืช ืžืกื’ืจืช ื”ืื™ื ื˜ืจื ื˜ Bootstrap.

ื‘ื™ืŸ ื”ืฉื™ื ื•ื™ื™ื:

  • ื”ืฉื™ื ื•ื™ื™ื ืžืกื ื™ืฃ FreeBSD 13-STABLE ื”ื•ืขื‘ืจื•.
  • ื’ืจืกืื•ืช ืžืขื•ื“ื›ื ื•ืช ืฉืœ ืชื•ื›ื ื™ื•ืช ื ื•ืกืคื•ืช ืžื™ืฆื™ืื•ืช, ืœืžืฉืœ, php 8.1.14 ื•-sudo 1.9.12p2.
  • ื ื•ืกืคื” ื™ื™ืฉื•ื ื—ื“ืฉ ืžื‘ื•ืกืก-DNS ืฉืœ ืจืฉื™ืžืช ื—ืกื™ืžื”, ืฉื ื›ืชื‘ื” ืžื—ื“ืฉ ื‘-Python ื•ืชื•ืžื›ืช ื‘ืจืฉื™ืžื•ืช ื—ืกื™ืžื•ืช ืฉื•ื ื•ืช ืฉืœ ืžื•ื“ืขื•ืช ื•ืชื•ื›ืŸ ื–ื“ื•ื ื™.
  • ื”ืฆื˜ื‘ืจื•ืช ื•ื”ืฆื’ื” ืฉืœ ืกื˜ื˜ื™ืกื˜ื™ืงื•ืช ืขืœ ืคืขื•ืœืช ืฉืจืช ื”-DNS Unbound ืžืกื•ืคืงืช, ื”ืžืืคืฉืจืช ืœืš ืœืขืงื•ื‘ ืื—ืจ ืชืขื‘ื•ืจืช DNS ื‘ื™ื—ืก ืœืžืฉืชืžืฉื™ื.
  • ื ื•ืกืฃ ืกื•ื’ ื—ื“ืฉ ืฉืœ ื—ื•ืžื•ืช ืืฉ BGP ASN.
  • ื ื•ืกืฃ ืžืฆื‘ ืžื‘ื•ื“ื“ PPPoEv6 ื›ื“ื™ ืœื”ืคืขื™ืœ ื‘ืื•ืคืŸ ืกืœืงื˜ื™ื‘ื™ IPv6 Control Protocol.
  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืžืžืฉืงื™ SLAAC WAN ืœืœื DHCPv6.
  • ืจื›ื™ื‘ื™ื ืœืœื›ื™ื“ืช ืžื ื•ืช ื•ื ื™ื”ื•ืœ IPsec ื”ื•ืขื‘ืจื• ืœืžืกื’ืจืช MVC, ืžื” ืฉืืคืฉืจ ืœื”ื˜ืžื™ืข ื‘ื”ื ืชืžื™ื›ืช ื ื™ื”ื•ืœ API.
  • ื”ื’ื“ืจื•ืช IPsec ื”ื•ืขื‘ืจื• ืœืงื•ื‘ืฅ swanctl.conf.
  • ื”ืชื•ืกืฃ os-sslh ื›ืœื•ืœ, ื”ืžืืคืฉืจ ืœืš ืœื‘ืฆืข ืจื™ื‘ื•ื™ ื—ื™ื‘ื•ืจื™ HTTPS, SSH, OpenVPN, tinc ื•-XMPP ื“ืจืš ื™ืฆื™ืืช ืจืฉืช ืื—ืช 443.
  • ืชื•ืกืฃ os-ddclient (Dynamic DNS Client) ืžืฆื™ืข ื›ืขืช ืืช ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ืงืฆื” ื”ืื—ื•ืจื™ ืฉืœืš, ื›ื•ืœืœ Azure.
  • ืชื•ืกืฃ os-wireguard ืขื VPN WireGuard ื”ื•ื—ืœืฃ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ืœืฉื™ืžื•ืฉ ื‘ืžื•ื“ื•ืœ ื”ืงืจื ืœ (ืžืฆื‘ ื”ืคืขื•ืœื” ื”ื™ืฉืŸ ื‘ืจืžืช ื”ืžืฉืชืžืฉ ื”ื•ืขื‘ืจ ืœืชื•ืกืฃ os-wireguard-go ื ืคืจื“).

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”