ืฉื—ืจื•ืจ ืฉืœ OpenIKED 7.2, ื™ื™ืฉื•ื ื ื™ื™ื“ ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ IKEv2 ืขื‘ื•ืจ IPsec

ืคืจื•ื™ืงื˜ OpenBSD ื”ื›ืจื™ื– ืขืœ ืฉื—ืจื•ืจื• ืฉืœ OpenIKED 7.2, ื™ื™ืฉื•ื ืฉืœ ืคืจื•ื˜ื•ืงื•ืœ IKEv2 ืฉืคื•ืชื— ืขืœ ื™ื“ื™ ืคืจื•ื™ืงื˜ OpenBSD. ื–ื•ื”ื™ ื”ืžื”ื“ื•ืจื” ื”ืจื‘ื™ืขื™ืช ืฉืœ OpenIKED ื›ืคืจื•ื™ืงื˜ ื ืคืจื“ - ืจื›ื™ื‘ื™ IKEv2 ื”ื™ื• ื‘ืžืงื•ืจ ื—ืœืง ื‘ืœืชื™ ื ืคืจื“ ืžื—ืกื ื™ืช ื”-IPsec ืฉืœ OpenBSD, ืืš ืœืื—ืจ ืžื›ืŸ ื”ื•ืคืจื“ื• ืœื—ื‘ื™ืœื” ื ื™ื™ื“ืช ื ืคืจื“ืช ื•ื›ืขืช ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ื”ื ื‘ืžืขืจื›ื•ืช ื”ืคืขืœื” ืื—ืจื•ืช. OpenIKED ื ื‘ื“ืง ืขืœ FreeBSD, NetBSD, macOS ื•ื”ืคืฆื•ืช ืœื™ื ื•ืงืก ืฉื•ื ื•ืช ื›ื•ืœืœ Arch, Debian, Fedora ื•ืื•ื‘ื•ื ื˜ื•. ื”ืงื•ื“ ื›ืชื•ื‘ ื‘-C ื•ืžื•ืคืฅ ืชื—ืช ืจื™ืฉื™ื•ืŸ ISC.

OpenIKED ืžืืคืฉืจ ืœืš ืœืคืจื•ืก ืจืฉืชื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ืคืจื˜ื™ื•ืช ืžื‘ื•ืกืกื•ืช IPsec. ืžื—ืกื ื™ืช ื”-IPsec ืžื•ืจื›ื‘ืช ืžืฉื ื™ ืคืจื•ื˜ื•ืงื•ืœื™ื ืขื™ืงืจื™ื™ื: ืคืจื•ื˜ื•ืงื•ืœ ื”ื—ืœืคืช ืžืคืชื—ื•ืช (IKE) ื•ืคืจื•ื˜ื•ืงื•ืœ ืชืขื‘ื•ืจื” ืžื•ืฆืคืŸ (ESP). OpenIKED ืžื™ื™ืฉื ืืช ื”ืืœืžื ื˜ื™ื ืฉืœ ืื™ืžื•ืช, ืชืฆื•ืจื”, ื”ื—ืœืคืช ืžืคืชื—ื•ืช ื•ืชื—ื–ื•ืงืช ืžื“ื™ื ื™ื•ืช ืื‘ื˜ื—ื”, ื•ื”ืคืจื•ื˜ื•ืงื•ืœ ืœื”ืฆืคื ืช ืชืขื‘ื•ืจืช ESP ืžืกื•ืคืง ื‘ื“ืจืš ื›ืœืœ ืขืœ ื™ื“ื™ ืœื™ื‘ืช ืžืขืจื›ืช ื”ื”ืคืขืœื”. ืฉื™ื˜ื•ืช ืื™ืžื•ืช ื‘-OpenIKED ื™ื›ื•ืœื•ืช ืœื”ืฉืชืžืฉ ื‘ืžืคืชื—ื•ืช ืžืฉื•ืชืคื™ื ืžืจืืฉ, ื‘-EAP MSCHAPv2 ืขื ืื™ืฉื•ืจ X.509 ื•ื‘ืžืคืชื—ื•ืช ืฆื™ื‘ื•ืจื™ื™ื ืฉืœ RSA ื•-ECDSA.

ื‘ื’ืจืกื” ื”ื—ื“ืฉื”:

  • ื ื•ืกืคื• ืžื•ื ื™ื ืขื ืกื˜ื˜ื™ืกื˜ื™ืงื•ืช ืฉืœ ืชื”ืœื™ืš ื”ืจืงืข ืฉืœ iked, ืฉื ื™ืชืŸ ืœืฆืคื•ืช ื‘ื”ื ื‘ืืžืฆืขื•ืช ื”ืคืงื•ื“ื” 'ikectl show stats'.
  • ื ื™ืชื ื” ื”ื™ื›ื•ืœืช ืœืฉืœื•ื— ืฉืจืฉืจืื•ืช ืื™ืฉื•ืจื™ื ืœืžื˜ืขื ื™ CERT ืžืจื•ื‘ื™ื.
  • ื›ื“ื™ ืœืฉืคืจ ืืช ื”ืชืื™ืžื•ืช ืขื ื’ืจืกืื•ืช ื™ืฉื ื•ืช ื™ื•ืชืจ, ื ื•ืกืฃ ืžื˜ืขืŸ ืขื ืžื–ื”ื” ืกืคืง.
  • ื—ื™ืคื•ืฉ ืžืฉื•ืคืจ ืื—ืจ ื›ืœืœื™ื ืชื•ืš ื”ืชื—ืฉื‘ื•ืช ื‘ืžืืคื™ื™ืŸ srcnat.
  • ื”ืขื‘ื•ื“ื” ืขื NAT-T ื‘ืœื™ื ื•ืงืก ื”ื•ืงืžื”.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”