ืžื”ื“ื•ืจืช GnuPG 2.4.0

ืœืื—ืจ ื—ืžืฉ ืฉื ื™ื ืฉืœ ืคื™ืชื•ื—, ืžื•ืฆื’ืช ื”ื”ืคืฆื” ืฉืœ ืขืจื›ืช ื”ื›ืœื™ื GnuPG 2.4.0 (GNU Privacy Guard), ื”ืชื•ืืžืช ืœืชืงื ื™ OpenPGP (RFC-4880) ื•-S/MIME, ื•ืžืกืคืงืช ื›ืœื™ ืขื–ืจ ืœื”ืฆืคื ืช ื ืชื•ื ื™ื, ืขื‘ื•ื“ื” ืขื ื—ืชื™ืžื•ืช ืืœืงื˜ืจื•ื ื™ื•ืช, ืžืคืชื— ื ื™ื”ื•ืœ ื•ื’ื™ืฉื” ืœืžืคืชื—ื•ืช ืื—ืกื•ืŸ ืฆื™ื‘ื•ืจื™ื™ื.

GnuPG 2.4.0 ืžืžื•ืงืžืช ื›ื’ืจืกื” ื”ืจืืฉื•ื ื” ืฉืœ ืขื ืฃ ื™ืฆื™ื‘ ื—ื“ืฉ, ื”ืžืฉืœื‘ ืฉื™ื ื•ื™ื™ื ืฉื”ืฆื˜ื‘ืจื• ื‘ืžื”ืœืš ื”ื›ื ืช ืžื”ื“ื•ืจื•ืช 2.3.x. ืกื ื™ืฃ 2.2 ื™ืจื“ ืœืกื ื™ืฃ ื”ืื•ืจื•ื•ื” ื”ื•ื•ืชื™ืง, ืฉื™ื™ืชืžืš ืขื“ ืกื•ืฃ 2024. ืขื ืฃ GnuPG 1.4 ืžืžืฉื™ืš ืœื”ื™ืฉืžืจ ื›ืกื“ืจื” ืงืœืืกื™ืช ื”ืฆื•ืจื›ืช ืžืฉืื‘ื™ื ืžื™ื ื™ืžืœื™ื™ื, ืžืชืื™ืžื” ืœืžืขืจื›ื•ืช ืžืฉื•ื‘ืฆื•ืช ื•ืชื•ืืžืช ืœืืœื’ื•ืจื™ืชืžื™ ื”ืฆืคื ื” ืžื“ื•ืจ ืงื•ื“ื.

ืฉื™ื ื•ื™ื™ื ืžืจื›ื–ื™ื™ื ื‘-GnuPG 2.4 ื‘ื”ืฉื•ื•ืื” ืœืขื ืฃ ื”ื™ืฆื™ื‘ ื”ืงื•ื“ื 2.2:

  • ื ื•ืกืฃ ืชื”ืœื™ืš ืจืงืข ืœื”ื˜ืžืขืช ืžืกื“ ื ืชื•ื ื™ื ืฉืœ ืžืคืชื—ื•ืช, ืชื•ืš ืฉื™ืžื•ืฉ ื‘- SQLite DBMS ืœืื—ืกื•ืŸ ื•ื”ื“ื’ืžื” ืฉืœ ื—ื™ืคื•ืฉ ืžื”ื™ืจ ืžืฉืžืขื•ืชื™ืช ืฉืœ ืžืคืชื—ื•ืช. ื›ื“ื™ ืœื”ืคืขื™ืœ ืืช ื”ืžืื’ืจ ื”ื—ื“ืฉ, ืขืœื™ืš ืœื”ืคืขื™ืœ ืืช ื”ืืคืฉืจื•ืช "use-keyboxd" ื‘-common.conf.
  • ื ื•ืกืฃ ืชื”ืœื™ืš ืจืงืข tpm2d ื›ื“ื™ ืœืืคืฉืจ ืฉื™ืžื•ืฉ ื‘ืฉื‘ื‘ื™ TPM 2.0 ื›ื“ื™ ืœื”ื’ืŸ ืขืœ ืžืคืชื—ื•ืช ืคืจื˜ื™ื™ื ื•ืœื‘ืฆืข ืคืขื•ืœื•ืช ื”ืฆืคื ื” ืื• ื—ืชื™ืžื” ื“ื™ื’ื™ื˜ืœื™ืช ื‘ืฆื“ ืžื•ื“ื•ืœ TPM.
  • ื ื•ืกืฃ ื›ืœื™ ืขื–ืจ ื—ื“ืฉ ืฉืœ gpg-card, ืฉื™ื›ื•ืœ ืœืฉืžืฉ ื›ืžืžืฉืง ื’ืžื™ืฉ ืœื›ืœ ืกื•ื’ื™ ื”ื›ืจื˜ื™ืกื™ื ื”ื—ื›ืžื™ื ื”ื ืชืžื›ื™ื.
  • ื ื•ืกืฃ ื›ืœื™ ืขื–ืจ ื—ื“ืฉ ืœ-gpg-auth ืœืื™ืžื•ืช.
  • ื ื•ืกืฃ ืงื•ื‘ืฅ ืชืฆื•ืจื” ื ืคื•ืฅ ื—ื“ืฉ, common.conf, ื”ืžืฉืžืฉ ืœื”ืคืขืœืช ืชื”ืœื™ืš ืจืงืข keyboxd ืžื‘ืœื™ ืœื”ื•ืกื™ืฃ ื”ื’ื“ืจื•ืช ืœ-gpg.conf ื•ืœ-gpgsm.conf ื‘ื ืคืจื“.
  • ื ื™ืชื ืช ืชืžื™ื›ื” ื‘ื’ืจืกื” ื”ื—ืžื™ืฉื™ืช ืฉืœ ืžืคืชื—ื•ืช ื•ื—ืชื™ืžื•ืช ื“ื™ื’ื™ื˜ืœื™ื•ืช, ื”ืžืฉืชืžืฉืช ื‘ืืœื’ื•ืจื™ืชื SHA256 ื‘ืžืงื•ื SHA1.
  • ืืœื’ื•ืจื™ืชืžื™ ื‘ืจื™ืจืช ื”ืžื—ื“ืœ ืขื‘ื•ืจ ืžืคืชื—ื•ืช ืฆื™ื‘ื•ืจื™ื™ื ื”ื ed25519 ื•-cv25519.
  • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืžืฆื‘ื™ ื”ืฆืคื ืช ื‘ืœื•ืง AEAD OCB ื•-EAX.
  • ื ื•ืกืคื” ืชืžื™ื›ื” ืขื‘ื•ืจ ืขืงื•ืžื•ืช ืืœื™ืคื˜ื™ื•ืช X448 (ed448, cv448).
  • ืžื•ืชืจ ืœื”ืฉืชืžืฉ ื‘ืฉืžื•ืช ืงื‘ื•ืฆื•ืช ื‘ืจืฉื™ืžื•ืช ืžืคืชื—ื•ืช.
  • ื ื•ืกืคื” ืืคืฉืจื•ืช "--chuid" ืœ-gpg, gpgsm, gpgconf, gpg-card ื•-gpg-connect-agent ื›ื“ื™ ืœืฉื ื•ืช ืืช ืžื–ื”ื” ื”ืžืฉืชืžืฉ.
  • ื‘ืคืœื˜ืคื•ืจืžืช Windows, ืชืžื™ื›ื” ืžืœืื” ื‘-Unicode ืžื™ื•ืฉืžืช ื‘ืฉื•ืจืช ื”ืคืงื•ื“ื”.
  • ื ื•ืกืคื” ืืคืฉืจื•ืช ื‘ื ื™ื™ื” "--with-tss" ื›ื“ื™ ืœื‘ื—ื•ืจ ืืช ืกืคืจื™ื™ืช ื”-TSS.
  • gpgsm ืžื•ืกื™ืคื” ืชืžื™ื›ืช ECC ื‘ืกื™ืกื™ืช ื•ื™ื›ื•ืœืช ืœื™ืฆื•ืจ ืื™ืฉื•ืจื™ EdDSA. ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืคืขื ื•ื— ื ืชื•ื ื™ื ืžื•ืฆืคื ื™ื ื‘ืืžืฆืขื•ืช ืกื™ืกืžื”. ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ืคืขื ื•ื— AES-GCM. ื ื•ืกืคื• ืืคืฉืจื•ื™ื•ืช ื—ื“ืฉื•ืช "--ldapserver" ื•-"--show-certs".
  • ื”ืกื•ื›ืŸ ืžืืคืฉืจ ืฉื™ืžื•ืฉ ื‘ืขืจืš "ืชื•ื•ื™ืช:" ื‘ืงื•ื‘ืฅ ื”ืžืคืชื— ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืืช ื‘ืงืฉืช ื”-PIN. ื”ื˜ืžื™ืขื” ืชืžื™ื›ื” ื‘ื”ืจื—ื‘ื•ืช ssh-agent ืขื‘ื•ืจ ืžืฉืชื ื™ ืกื‘ื™ื‘ื”. ื ื•ืกืคื” ืืžื•ืœืฆื™ื™ืช Win32-OpenSSH ื“ืจืš gpg-agent. ื›ื“ื™ ืœื™ืฆื•ืจ ื˜ื‘ื™ืขื•ืช ืืฆื‘ืข ืฉืœ ืžืคืชื—ื•ืช SSH, ื ืขืฉื” ืฉื™ืžื•ืฉ ื‘ืืœื’ื•ืจื™ืชื SHA-256 ื›ื‘ืจื™ืจืช ืžื—ื“ืœ. ื ื•ืกืคื• ืืคืฉืจื•ื™ื•ืช "--pinentry-formatted-passphrase" ื•-"--check-sym-passphrase-pattern".
  • ืœ-SCD ื™ืฉ ืชืžื™ื›ื” ืžืฉื•ืคืจืช ืœืขื‘ื•ื“ื” ืขื ืžืกืคืจ ืงื•ืจืื™ ื›ืจื˜ื™ืกื™ื ื•ืืกื™ืžื•ื ื™ื. ื”ื•ื˜ืžืขื” ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ืžืกืคืจ ื™ื™ืฉื•ืžื™ื ืขื ื›ืจื˜ื™ืก ื—ื›ื ืกืคืฆื™ืคื™. ื ื•ืกืคื” ืชืžื™ื›ื” ืขื‘ื•ืจ ื›ืจื˜ื™ืกื™ PIV, Telesec Signature Cards v2.0 ื•-Rohde&Schwarz Cybersecurity. ื ื•ืกืคื• ืืคืฉืจื•ื™ื•ืช ื—ื“ืฉื•ืช "--application-priority" ื•-"--pcsc-shared".
  • ื”ืืคืฉืจื•ืช "--show-configs" ื ื•ืกืคื” ืœื›ืœื™ ื”ืฉื™ืจื•ืช gpgconf.
  • ืฉื™ื ื•ื™ื™ื ื‘-gpg:
    • ื ื•ืกืฃ ืคืจืžื˜ืจ "--list-filter" ืœื”ืคืงื” ืกืœืงื˜ื™ื‘ื™ืช ืฉืœ ืจืฉื™ืžืช ืžืคืชื—ื•ืช, ืœืžืฉืœ "gpg -k --list-filter 'select=revoked-f && sub/algostr=ed25519โ€ฒ".
    • ื ื•ืกืคื• ืคืงื•ื“ื•ืช ื•ืืคืฉืจื•ื™ื•ืช ื—ื“ืฉื•ืช: "--quick-update-pref", "show-pref", "show-pref-verbose", "-export-filter export-revocs", "-full-timestrings", "-min - rsa-length", "--forbid-gen-key", "--override-compliance-check", "--force-sign-key" ื•-"--no-auto-trust-new-key".
    • ื ื•ืกืคื” ืชืžื™ื›ื” ื‘ื™ื™ื‘ื•ื โ€‹โ€‹ืจืฉื™ืžื•ืช ื‘ื™ื˜ื•ืœ ืื™ืฉื•ืจื™ื ืžื•ืชืืžื™ื ืื™ืฉื™ืช.
    • ืื™ืžื•ืช ื”ื—ืชื™ืžื•ืช ื”ื“ื™ื’ื™ื˜ืœื™ื•ืช ื”ื•ืืฅ ืคื™ 10 ืื• ื™ื•ืชืจ.
    • ืชื•ืฆืื•ืช ื”ืื™ืžื•ืช ืชืœื•ื™ื•ืช ื›ืขืช ื‘ืืคืฉืจื•ืช "--sender" ื•ื‘ื–ื™ื”ื•ื™ ืฉืœ ื™ื•ืฆืจ ื”ื—ืชื™ืžื”.
    • ื ื•ืกืคื” ื”ื™ื›ื•ืœืช ืœื™ื™ืฆื ืžืคืชื—ื•ืช Ed448 ืขื‘ื•ืจ SSH.
    • ืจืง ืžืฆื‘ OCB ืžื•ืชืจ ืœื”ืฆืคื ืช AEAD.
    • ืคืขื ื•ื— ืœืœื ืžืคืชื— ืฆื™ื‘ื•ืจื™ ืžื•ืชืจ ืื ืžื•ื›ื ืก ื›ืจื˜ื™ืก ื—ื›ื.
    • ืขื‘ื•ืจ ื”ืืœื’ื•ืจื™ืชืžื™ื ed448 ื•-cv448, ื™ืฆื™ืจืช ื”ืžืคืชื—ื•ืช ืฉืœ ื”ื’ืจืกื” ื”ื—ืžื™ืฉื™ืช ืžื•ืคืขืœืช ื›ืขืช ื‘ื›ื•ื—
    • ื›ืืฉืจ ืžื™ื™ื‘ืื™ื ืžืฉืจืช LDAP, ื”ืืคืฉืจื•ืช ืฉืœ-sigs ืขืฆืžื™ ื‘ืœื‘ื“ ืžื•ืฉื‘ืชืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ.
  • gpg ื›ื‘ืจ ืœื ืžืฉืชืžืฉ ื‘ืืœื’ื•ืจื™ืชืžื™ื ื‘ื’ื•ื“ืœ ื‘ืœื•ืงื™ื ืฉืœ 64 ืกื™ื‘ื™ื•ืช ืœื”ืฆืคื ื”. ื”ืฉื™ืžื•ืฉ ื‘-3DES ืืกื•ืจ, ื•-AES ืžื•ื›ืจื– ื›ืืœื’ื•ืจื™ืชื ื”ืžื™ื ื™ืžืœื™ ื”ื ืชืžืš. ื›ื“ื™ ืœื”ืฉื‘ื™ืช ืืช ื”ื”ื’ื‘ืœื”, ืืชื” ื™ื›ื•ืœ ืœื”ืฉืชืžืฉ ื‘ืืคืฉืจื•ืช "--allow-old-cipher-algos".
  • ื›ืœื™ ื”ืฉื™ืจื•ืช symcryptrun ื”ื•ืกืจ (ืขื˜ื™ืคื” ืžื™ื•ืฉื ืช ืขืœ ื’ื‘ื™ ื›ืœื™ ื”ืฉื™ืจื•ืช ื”ื—ื™ืฆื•ื ื™ Chiasmus).
  • ืฉื™ื˜ืช ื’ื™ืœื•ื™ ืžืคืชื—ื•ืช PKA ืžื“ื•ืจ ืงื•ื“ื ื”ื•ืคืกืงื” ื•ื”ืืคืฉืจื•ื™ื•ืช ื”ืงืฉื•ืจื•ืช ืืœื™ื” ื”ื•ืกืจื•.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”