OpenWrt ื’ืจืกื” 21.02.0

ืžื”ื“ื•ืจื” ืžืฉืžืขื•ืชื™ืช ื—ื“ืฉื” ืฉืœ ื”ืคืฆืช OpenWrt 21.02.0 ื”ื•ืฆื’ื”, ืฉืžื˜ืจืชื” ืฉื™ืžื•ืฉ ื‘ื”ืชืงื ื™ ืจืฉืช ืฉื•ื ื™ื ื›ื’ื•ืŸ ื ืชื‘ื™ื, ืžืชื’ื™ื ื•ื ืงื•ื“ื•ืช ื’ื™ืฉื”. OpenWrt ืชื•ืžืš ื‘ืคืœื˜ืคื•ืจืžื•ืช ื•ืืจื›ื™ื˜ืงื˜ื•ืจื•ืช ืจื‘ื•ืช ื•ืฉื•ื ื•ืช ื•ื™ืฉ ืœื• ืžืขืจื›ืช assembly ื”ืžืืคืฉืจืช ืงื•ืžืคื™ืœืฆื™ื” ืฆื•ืœื‘ืช ืคืฉื•ื˜ื” ื•ื ื•ื—ื”, ื›ื•ืœืœ ืจื›ื™ื‘ื™ื ืฉื•ื ื™ื ื‘ืžื›ืœื•ืœ, ืžื” ืฉืžืงืœ ืขืœ ื™ืฆื™ืจืช ืงื•ืฉื—ื” ืžื•ื›ื ื” ืื• ืชืžื•ื ืช ื“ื™ืกืง ืขื ื”ืกื˜ ื”ืจืฆื•ื™ ืฉืœ ืงื“ื- ื—ื‘ื™ืœื•ืช ืžื•ืชืงื ื•ืช ื”ืžื•ืชืืžื•ืช ืœืžืฉื™ืžื•ืช ืกืคืฆื™ืคื™ื•ืช. ืžื›ืœื•ืœื™ื ื ื•ืฆืจื™ื ืขื‘ื•ืจ 36 ืคืœื˜ืคื•ืจืžื•ืช ื™ืขื“.

ื‘ื™ืŸ ื”ืฉื™ื ื•ื™ื™ื ื‘-OpenWrt 21.02.0 ืžืฆื•ื™ื ื™ื ื”ื‘ืื™ื:

  • ื“ืจื™ืฉื•ืช ื”ื—ื•ืžืจื” ื”ืžื™ื ื™ืžืœื™ื•ืช ื”ื•ื’ื“ืœื•. ื‘-build ื‘ืจื™ืจืช ื”ืžื—ื“ืœ, ืขืงื‘ ื”ื›ืœืœืช ืชืช-ืžืขืจื›ื•ืช ืœื™ื‘ืช ืœื™ื ื•ืงืก ื ื•ืกืคื•ืช, ื”ืฉื™ืžื•ืฉ ื‘-OpenWrt ื“ื•ืจืฉ ื›ืขืช ื”ืชืงืŸ ืขื 8 MB Flash ื•-64 MB RAM. ืื ืชืจืฆื”, ืืชื” ืขื“ื™ื™ืŸ ื™ื›ื•ืœ ืœื™ืฆื•ืจ ืžื›ืœื•ืœ ืžื•ืคืฉื˜ ืžืฉืœืš ืฉื™ื›ื•ืœ ืœืขื‘ื•ื“ ืขืœ ืžื›ืฉื™ืจื™ื ืขื 4 MB Flash ื•-32 MB RAM, ืืš ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉืœ ืžื›ืœื•ืœ ื›ื–ื” ืชื”ื™ื” ืžื•ื’ื‘ืœืช, ื•ื™ืฆื™ื‘ื•ืช ื”ืคืขื•ืœื” ืื™ื ื” ืžื•ื‘ื˜ื—ืช.
  • ื”ื—ื‘ื™ืœื” ื”ื‘ืกื™ืกื™ืช ื›ื•ืœืœืช ื—ื‘ื™ืœื•ืช ืœืชืžื™ื›ื” ื‘ื˜ื›ื ื•ืœื•ื’ื™ื™ืช ืื‘ื˜ื—ืช ืจืฉืช ืืœื—ื•ื˜ื™ืช WPA3, ื”ื–ืžื™ื ื” ื›ืขืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื”ืŸ ื‘ืขืช โ€‹โ€‹ืขื‘ื•ื“ื” ื‘ืžืฆื‘ ืœืงื•ื— ื•ื”ืŸ ื‘ืขืช โ€‹โ€‹ื™ืฆื™ืจืช ื ืงื•ื“ืช ื’ื™ืฉื”. WPA3 ืžืกืคืง ื”ื’ื ื” ืžืคื ื™ ื”ืชืงืคื•ืช ื ื™ื—ื•ืฉ ืกื™ืกืžืื•ืช (ื”ื•ื ืœื ื™ืืคืฉืจ ื ื™ื—ื•ืฉ ืกื™ืกืžืื•ืช ื‘ืžืฆื‘ ืœื ืžืงื•ื•ืŸ) ื•ืžืฉืชืžืฉ ื‘ืคืจื•ื˜ื•ืงื•ืœ ืื™ืžื•ืช SAE. ื”ื™ื›ื•ืœืช ืœื”ืฉืชืžืฉ ื‘-WPA3 ืžืกื•ืคืงืช ื‘ืจื•ื‘ ืžื ื”ืœื™ ื”ื”ืชืงื ื™ื ืขื‘ื•ืจ ื”ืชืงื ื™ื ืืœื—ื•ื˜ื™ื™ื.
  • ื—ื‘ื™ืœืช ื”ื‘ืกื™ืก ื›ื•ืœืœืช ืชืžื™ื›ื” ื‘-TLS ื•-HTTPS ื›ื‘ืจื™ืจืช ืžื—ื“ืœ, ื”ืžืืคืฉืจืช ืœืš ืœื’ืฉืช ืœืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜ ืฉืœ LuCI ื“ืจืš HTTPS ื•ืœื”ืฉืชืžืฉ ื‘ื›ืœื™ ืขื–ืจ ื›ืžื• wget ื•-opkg ื›ื“ื™ ืœืื—ื–ืจ ืžื™ื“ืข ื‘ืขืจื•ืฆื™ ืชืงืฉื•ืจืช ืžื•ืฆืคื ื™ื. ื”ืฉืจืชื™ื ืฉื“ืจื›ื ืžื•ืคืฆื•ืช ื—ื‘ื™ืœื•ืช ืฉื”ื•ืจื“ื• ื“ืจืš opkg ืขื•ื‘ืจื™ื ื’ื ื”ื ืœืฉืœื™ื—ืช ืžื™ื“ืข ื‘ืืžืฆืขื•ืช HTTPS ื›ื‘ืจื™ืจืช ืžื—ื“ืœ. ืกืคืจื™ื™ืช mbedTLS ื”ืžืฉืžืฉืช ืœื”ืฆืคื ื” ื”ื•ื—ืœืคื” ื‘-wolfSSL (ื‘ืžื™ื“ืช ื”ืฆื•ืจืš, ื ื™ืชืŸ ืœื”ืชืงื™ืŸ ื‘ืื•ืคืŸ ื™ื“ื ื™ ืืช ื”ืกืคืจื™ื•ืช mbedTLS ื•-OpenSSL, ืฉืžืžืฉื™ื›ื•ืช ืœื”ื™ื•ืช ืžืกื•ืคืงื•ืช ื›ืื•ืคืฆื™ื•ืช). ื›ื“ื™ ืœื”ื’ื“ื™ืจ ื”ืขื‘ืจื” ืื•ื˜ื•ืžื˜ื™ืช ืœ-HTTPS, ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜ ืžืฆื™ืข ืืช ื”ืืคืฉืจื•ืช "uhttpd.main.redirect_https=1".
  • ืชืžื™ื›ื” ืจืืฉื•ื ื™ืช ื”ื•ื˜ืžืขื” ืขื‘ื•ืจ ืชืช-ืžืขืจื›ืช ื”ื’ืจืขื™ืŸ DSA (Distributed Switch Architecture), ื”ืžืกืคืงืช ื›ืœื™ื ืœืงื‘ื™ืขืช ืชืฆื•ืจื” ื•ื ื™ื”ื•ืœ ืฉืœ ืืฉื“ื™ื ืฉืœ ืžืชื’ื™ Ethernet ืžื—ื•ื‘ืจื™ื, ืชื•ืš ืฉื™ืžื•ืฉ ื‘ืžื ื’ื ื•ื ื™ื ื”ืžืฉืžืฉื™ื ืœืงื‘ื™ืขืช ื”ืชืฆื•ืจื” ืฉืœ ืžืžืฉืงื™ ืจืฉืช ืงื•ื ื‘ื ืฆื™ื•ื ืœื™ื™ื (iproute2, ifconfig). ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘-DSA ื›ื“ื™ ืœื”ื’ื“ื™ืจ ื™ืฆื™ืื•ืช ื•-VLAN ื‘ืžืงื•ื ื”ื›ืœื™ swconfig ืฉื”ื•ืฆืข ื‘ืขื‘ืจ, ืืš ืขื“ื™ื™ืŸ ืœื ื›ืœ ืžื ื”ืœื™ ื”ื”ืชืงื ื™ื ืฉืœ ื”ืžืชื’ื™ื ืชื•ืžื›ื™ื ื‘-DSA. ื‘ืžื”ื“ื•ืจื” ื”ืžื•ืฆืขืช, DSA ืžื•ืคืขืœ ืขื‘ื•ืจ ืžื ื”ืœื™ ื”ืชืงื ื™ื ืฉืœ ath79 (TP-Link TL-WR941ND), bcm4908, gemini, kirkwood, mediatek, mvebu, octeon, ramips (mt7621) ื•-realtek.
  • ื‘ื•ืฆืขื• ืฉื™ื ื•ื™ื™ื ื‘ืชื—ื‘ื™ืจ ืฉืœ ืงื‘ืฆื™ ืชืฆื•ืจื” ื”ื ืžืฆืื™ื ื‘-/etc/config/network. ื‘ื‘ืœื•ืง "ืžืžืฉืง ืชืฆื•ืจื”", ืฉื•ื ื” ืฉื ืืคืฉืจื•ืช ื”-"ifname" ืœ-"device", ื•ื‘ื’ื•ืฉ "config device", ื”ืืคืฉืจื•ื™ื•ืช "bridge" ื•-"ifname" ืฉื•ื ื• ืœ-"ports". ืขื‘ื•ืจ ื”ืชืงื ื•ืช ื—ื“ืฉื•ืช, ื ื•ืฆืจื™ื ื›ืขืช ืงื‘ืฆื™ื ื ืคืจื“ื™ื ืขื ื”ื’ื“ืจื•ืช ืขื‘ื•ืจ ื”ืชืงื ื™ื (ืฉื›ื‘ื” 2, ื‘ืœื•ืง "ื”ืชืงืŸ ืชืฆื•ืจื”") ื•ืžืžืฉืงื™ ืจืฉืช (ืฉื›ื‘ื” 3, ื‘ืœื•ืง "ืžืžืฉืง ืชืฆื•ืจื”"). ื›ื“ื™ ืœืฉืžื•ืจ ืขืœ ืชืื™ืžื•ืช ืœืื—ื•ืจ, ื”ืชืžื™ื›ื” ื‘ืชื—ื‘ื™ืจ ื”ื™ืฉืŸ ื ืฉืžืจืช, ื›ืœื•ืžืจ. ื”ื’ื“ืจื•ืช ืฉื ื•ืฆืจื• ื‘ืขื‘ืจ ืœื ื™ื“ืจืฉื• ืฉื™ื ื•ื™ื™ื. ื‘ืžืงืจื” ื–ื”, ื‘ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜, ืื ื”ืชื—ื‘ื™ืจ ื”ื™ืฉืŸ ืžื–ื•ื”ื”, ืชื•ืฆื’ ื”ืฆืขื” ืœืžืขื‘ืจ ืœืชื—ื‘ื™ืจ ื”ื—ื“ืฉ, ื”ื ื—ื•ืฆื” ื›ื“ื™ ืœืขืจื•ืš ืืช ื”ื”ื’ื“ืจื•ืช ื“ืจืš ืžืžืฉืง ื”ืื™ื ื˜ืจื ื˜.

    ื“ื•ื’ืžื” ืœืชื—ื‘ื™ืจ ื”ื—ื“ืฉ: config ืฉื ืืคืฉืจื•ืช ื”ืชืงืŸ 'br-lan' ืกื•ื’ ืืคืฉืจื•ืช 'bridge' ืืคืฉืจื•ืช macaddr '00:01:02:XX:XX:XX' ืจืฉื™ืžื” ื™ืฆื™ืื•ืช 'lan1' ืจืฉื™ืžื” ื™ืฆื™ืื•ืช 'lan2' ืจืฉื™ืžื” ื™ืฆื™ืื•ืช 'lan3' ืจืฉื™ืžืช ื™ืฆื™ืื•ืช 'lan4' ืžืžืฉืง ืชืฆื•ืจื” 'lan' ืืคืฉืจื•ืช ื”ืชืงืŸ 'br-lan' ืืคืฉืจื•ืช ืคืจื•ื˜ื• 'ืกื˜ื˜ื™' ืืคืฉืจื•ืช ipaddr '192.168.1.1' ืืคืฉืจื•ืช ืžืกื›ืช ืจืฉืช '255.255.255.0' ืืคืฉืจื•ืช ip6assign '60' ืฉื ืืคืฉืจื•ืช ื”ืชืฆื•ืจื” 'eth1' ืืคืฉืจื•ืช macaddr '00 :01:02:YY:YY:YY' ืžืžืฉืง ื”ืชืฆื•ืจื” 'wan' option device 'eth1' option proto 'dhcp' config interface 'wan6' option device 'eth1' option proto 'dhcpv6'

    ื‘ืื ืœื•ื’ื™ื” ืœืงื‘ืฆื™ ื”ืชืฆื•ืจื” /etc/config/network, ืฉืžื•ืช ื”ืฉื“ื•ืช ื‘-board.json ืฉื•ื ื• ืž-"ifname" ืœ-"device".

  • ื ื•ืกืคื” ืคืœื˜ืคื•ืจืžืช "realtek" ื—ื“ืฉื”, ื”ืžืืคืฉืจืช ืฉื™ืžื•ืฉ ื‘-OpenWrt ื‘ืžื›ืฉื™ืจื™ื ืขื ืžืกืคืจ ืจื‘ ืฉืœ ื™ืฆื™ืื•ืช Ethernet, ื›ื’ื•ืŸ ืžืชื’ื™ D-Link, ZyXEL, ALLNET, INABA ื•-NETGEAR Ethernet.
  • ื ื•ืกืคื• ืคืœื˜ืคื•ืจืžื•ืช ื—ื“ืฉื•ืช ืฉืœ bcm4908 ื•-rockchip ืขื‘ื•ืจ ืžื›ืฉื™ืจื™ื ื”ืžื‘ื•ืกืกื™ื ืขืœ Broadcom BCM4908 ื•-Rockchip RK33xx SoCs. ื‘ืขื™ื•ืช ืชืžื™ื›ื” ื‘ืžื›ืฉื™ืจ ื ืคืชืจื• ืขื‘ื•ืจ ืคืœื˜ืคื•ืจืžื•ืช ืฉื ืชืžื›ื• ื‘ืขื‘ืจ.
  • ื”ืชืžื™ื›ื” ื‘ืคืœื˜ืคื•ืจืžืช ar71xx ื”ื•ืคืกืงื”, ื‘ืžืงื•ื ื–ืืช ื™ืฉ ืœื”ืฉืชืžืฉ ื‘ืคืœื˜ืคื•ืจืžืช ath79 (ืขื‘ื•ืจ ืžื›ืฉื™ืจื™ื ื”ืžื‘ื•ืกืกื™ื ืขืœ ar71xx, ืžื•ืžืœืฅ ืœื”ืชืงื™ืŸ ืžื—ื“ืฉ ืืช OpenWrt ืžืืคืก). ื”ื•ืคืกืงื” ื’ื ื”ืชืžื™ื›ื” ื‘ืคืœื˜ืคื•ืจืžื•ืช cns3xxx (Cavium Networks CNS3xxx), rb532 (MikroTik RB532) ื•- samsung (SamsungTQ210).
  • ืงื‘ืฆื™ ื”ืคืขืœื” ืฉืœ ื™ื™ืฉื•ืžื™ื ื”ืžืขื•ืจื‘ื™ื ื‘ืขื™ื‘ื•ื“ ื—ื™ื‘ื•ืจื™ ืจืฉืช ืžื•ืจื›ื‘ื™ื ื‘ืžืฆื‘ PIE (Position-Independent Executables) ืขื ืชืžื™ื›ื” ืžืœืื” ื‘ืืงืจืื™ื•ืช ืฉืœ ืžืจื—ื‘ ื›ืชื•ื‘ื•ืช (ASLR) ื›ื“ื™ ืœื”ืงืฉื•ืช ืขืœ ื ื™ืฆื•ืœ ื ืงื•ื“ื•ืช ืชื•ืจืคื” ื‘ื™ื™ืฉื•ืžื™ื ื›ืืœื”.
  • ื‘ืขืช ื‘ื ื™ื™ืช ืœื™ื‘ืช ืœื™ื ื•ืงืก, ืืคืฉืจื•ื™ื•ืช ืžื•ืคืขืœื•ืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ ื›ื“ื™ ืœืชืžื•ืš ื‘ื˜ื›ื ื•ืœื•ื’ื™ื•ืช ื‘ื™ื“ื•ื“ ืžื™ื›ืœื™ื, ืžื” ืฉืžืืคืฉืจ ืœื”ืฉืชืžืฉ ื‘ืขืจื›ืช ื”ื›ืœื™ื ืฉืœ LXC ื•ื‘ืžืฆื‘ procd-ujail ื‘-OpenWrt ื‘ืจื•ื‘ ื”ืคืœื˜ืคื•ืจืžื•ืช.
  • ื ื™ืชื ืช ื”ื™ื›ื•ืœืช ืœื‘ื ื•ืช ืขื ืชืžื™ื›ื” ื‘ืžืขืจื›ืช ื‘ืงืจืช ื”ื’ื™ืฉื” ืฉืœ SELinux (ืžื•ืฉื‘ืช ื›ื‘ืจื™ืจืช ืžื—ื“ืœ).
  • ื’ืจืกืื•ืช ื—ื‘ื™ืœื” ืžืขื•ื“ื›ื ื•ืช, ื›ื•ืœืœ ืžื”ื“ื•ืจื•ืช ืžื•ืฆืขื•ืช musl libc 1.1.24, glibc 2.33, gcc 8.4.0, binutils 2.34, hostapd 2020-06-08, dnsmasq 2.85, dropbear 2020.81, busybox 1.33.1. ืœื™ื‘ืช ื”ืœื™ื ื•ืงืก ืขื•ื“ื›ื ื” ืœื’ืจืกื” 5.4.143, ื•ืžืขื‘ื™ืจื” ืืช ื”ืžื—ืกื ื™ืช ื”ืืœื—ื•ื˜ื™ืช cfg80211/mac80211 ืžื”ืงืจื ืœ 5.10.42 ื•ืžืขื‘ื™ืจื” ืชืžื™ื›ื” ื‘-Wireguard VPN.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”