ืฉื—ืจื•ืจ ืกืคืจื™ื™ื” ืงืจื™ืคื˜ื•ื’ืจืคื™ืช ืฉืœ OpenSSL 3.1.0

ืœืื—ืจ ืฉื ื” ื•ื—ืฆื™ ืฉืœ ืคื™ืชื•ื—, ื™ืฆืื” ืกืคืจื™ื™ืช OpenSSL 3.1.0 ืขื ื”ื˜ืžืขืช ืคืจื•ื˜ื•ืงื•ืœื™ SSL/TLS ื•ืืœื’ื•ืจื™ืชืžื™ ื”ืฆืคื ื” ืฉื•ื ื™ื. OpenSSL 3.1 ื™ื”ื™ื” ื ืชืžืš ืขื“ ืžืจืฅ 2025. ื”ืชืžื™ื›ื” ื‘ืกื ื™ืคื™ื ืงื•ื“ืžื™ื ืฉืœ OpenSSL 3.0 ื•-1.1.1 ืชื™ืžืฉืš ืขื“ ืกืคื˜ืžื‘ืจ 2026 ื•ืกืคื˜ืžื‘ืจ 2023, ื‘ื”ืชืืžื”. ืงื•ื“ ื”ืคืจื•ื™ืงื˜ ืžื•ืคืฅ ืชื—ืช ืจื™ืฉื™ื•ืŸ Apache 2.0.

ื”ื—ื™ื“ื•ืฉื™ื ื”ืขื™ืงืจื™ื™ื ืฉืœ OpenSSL 3.1.0:

  • ืžื•ื“ื•ืœ FIPS ืชื•ืžืš ื‘ืืœื’ื•ืจื™ืชืžื™ื ืงืจื™ืคื˜ื•ื’ืจืคื™ื™ื ื”ืขื•ืžื“ื™ื ื‘ืชืงืŸ ื”ืื‘ื˜ื—ื” FIPS 140-3. ืชื”ืœื™ืš ื”ืกืžื›ืช ื”ืžื•ื“ื•ืœ ื”ื—ืœ ืœืงื‘ืœ ืื™ืฉื•ืจ ืขืœ ืขืžื™ื“ื” ื‘ื“ืจื™ืฉื•ืช FIPS 140-3. ืขื“ ืœื”ืฉืœืžืช ื”ื”ืกืžื›ื”, ืœืื—ืจ ืขื“ื›ื•ืŸ OpenSSL ืœืกื ื™ืฃ 3.1, ืžืฉืชืžืฉื™ื ื™ื›ื•ืœื™ื ืœื”ืžืฉื™ืš ืœื”ืฉืชืžืฉ ื‘ืžื•ื“ื•ืœ FIPS ืฉืื•ืฉืจ ืœืคื™ FIPS 140-2. ื‘ื™ืŸ ื”ืฉื™ื ื•ื™ื™ื ื‘ื’ืจืกื” ื”ื—ื“ืฉื” ืฉืœ ื”ืžื•ื“ื•ืœ, ืžืฆื•ื™ืŸ ื”ื›ืœืœืช ื”ืืœื’ื•ืจื™ืชืžื™ื Triple DES ECB, Triple DES CBC ื•-EdDSA, ืฉื˜ืจื ื ื‘ื“ืงื• ืœืขืžื™ื“ื” ื‘ื“ืจื™ืฉื•ืช FIPS. ื”ื’ืจืกื” ื”ื—ื“ืฉื” ื›ื•ืœืœืช ื’ื ืื•ืคื˜ื™ืžื™ื–ืฆื™ื•ืช ืœืฉื™ืคื•ืจ ื”ื‘ื™ืฆื•ืขื™ื ื•ืžืขื‘ืจ ืœื”ืคืขืœืช ื‘ื“ื™ืงื•ืช ืคื ื™ืžื™ื•ืช ื‘ื›ืœ ืคืขื ืฉื”ืžื•ื“ื•ืœ ื ื˜ืขืŸ, ื•ืœื ืจืง ืœืื—ืจ ื”ื”ืชืงื ื”.
  • ืงื•ื“ OSSL_LIB_CTX ืขื•ื‘ื“ ืžื—ื“ืฉ. ื”ืืคืฉืจื•ืช ื”ื—ื“ืฉื” ืžื‘ื˜ืœืช ื—ืกื™ืžื” ืžื™ื•ืชืจืช ื•ืžืืคืฉืจืช ื‘ื™ืฆื•ืขื™ื ื’ื‘ื•ื”ื™ื ื™ื•ืชืจ.
  • ื‘ื™ืฆื•ืขื™ื ืžืฉื•ืคืจื™ื ืฉืœ ืžืกื’ืจื•ืช ื”ืžืงื•ื“ื“ ื•ื”ืžืคืขื ื—.
  • ื‘ื•ืฆืขื” ืื•ืคื˜ื™ืžื™ื–ืฆื™ื” ืฉืœ ื‘ื™ืฆื•ืขื™ื ื”ืงืฉื•ืจื™ื ืœืฉื™ืžื•ืฉ ื‘ืžื‘ื ื™ื ืคื ื™ืžื™ื™ื (ื˜ื‘ืœืื•ืช ื’ื™ื‘ื•ื‘) ื•ืฉืžื™ืจื” ื‘ืžื˜ืžื•ืŸ.
  • ืžื”ื™ืจื•ืช ื™ืฆื™ืจืช ืžืคืชื—ื•ืช RSA ื‘ืžืฆื‘ FIPS ื”ื•ื’ื“ืœื”.
  • ืขื‘ื•ืจ ืืจื›ื™ื˜ืงื˜ื•ืจื•ืช ืžืขื‘ื“ื™ื ืฉื•ื ื•ืช, ื”ื•ื›ื ืกื• ืื•ืคื˜ื™ืžื™ื–ืฆื™ื•ืช ืฉืœ ื”ืจื›ื‘ื” ืกืคืฆื™ืคื™ื•ืช ื‘ื™ื™ืฉื•ื ื”ืืœื’ื•ืจื™ืชืžื™ื AES-GCM, ChaCha20, SM3, SM4 ื•-SM4-GCM. ืœื“ื•ื’ืžื”, ืงื•ื“ AES-GCM ืžื•ืืฅ ื‘ืืžืฆืขื•ืช ื”ื”ื•ืจืื•ืช AVX512 vAES ื•-vPCLMULQDQ.
  • KBKDF (ืคื•ื ืงืฆื™ื™ืช ื’ื–ื™ืจืช ืžืคืชื— ืžื‘ื•ืกืกืช ืžืคืชื—) ืชื•ืžืš ื›ืขืช ื‘ืืœื’ื•ืจื™ืชื KMAC (ืงื•ื“ ืื™ืžื•ืช ื”ื•ื“ืขื•ืช KECCAK).
  • ืคื•ื ืงืฆื™ื•ืช "OBJ_*" ืฉื•ื ื•ืช ืžื•ืชืืžื•ืช ืœืฉื™ืžื•ืฉ ื‘ืงื•ื“ ืžืจื•ื‘ื” ื”ืœื™ื›ื™.
  • ื ื•ืกืคื” ืืช ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘ื”ื•ืจืื•ืช RNDR ื•ื‘ืื•ื’ืจื™ RNDRRS, ื”ื–ืžื™ื ื™ื ื‘ืžืขื‘ื“ื™ื ื”ืžื‘ื•ืกืกื™ื ืขืœ ืืจื›ื™ื˜ืงื˜ื•ืจืช AArch64, ื›ื“ื™ ืœื™ืฆื•ืจ ืžืกืคืจื™ื ืคืกืื•ื“ื• ืืงืจืื™ื™ื.
  • ื”ืคื•ื ืงืฆื™ื•ืช OPENSSL_LH_stats, OPENSSL_LH_node_stats, OPENSSL_LH_node_usage_stats, OPENSSL_LH_stats_bio, OPENSSL_LH_node_stats_bio ื•-OPENSSL_LH_node_usage_stats_bio ื”ื•ืฆืื• ืžืฉื™ืžื•ืฉ. ื”ืžืืงืจื• DEFINE_LHASH_OF ื”ื•ืฆื ืžืฉื™ืžื•ืฉ.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”