OpenWrt 19.07.3 ์ถœ์‹œ

์— ์˜ํ•ด ์ค€๋น„ ๋ฐฐํฌ ์—…๋ฐ์ดํŠธ OpenWrt 19.07.3, ๋ผ์šฐํ„ฐ ๋ฐ ์•ก์„ธ์Šค ํฌ์ธํŠธ์™€ ๊ฐ™์€ ๋‹ค์–‘ํ•œ ๋„คํŠธ์›Œํฌ ์žฅ์น˜์—์„œ ์‚ฌ์šฉํ•˜๋„๋ก ์ง€ํ–ฅํ•ฉ๋‹ˆ๋‹ค. OpenWrt๋Š” ๋‹ค์–‘ํ•œ ํ”Œ๋žซํผ๊ณผ ์•„ํ‚คํ…์ฒ˜๋ฅผ ์ง€์›ํ•˜๋ฉฐ ์–ด์…ˆ๋ธ”๋ฆฌ์˜ ๋‹ค์–‘ํ•œ ๊ตฌ์„ฑ ์š”์†Œ๋ฅผ ํฌํ•จํ•˜์—ฌ ํฌ๋กœ์Šค ์ปดํŒŒ์ผ์„ ์‰ฝ๊ณ  ํŽธ๋ฆฌํ•˜๊ฒŒ ์ˆ˜ํ–‰ํ•  ์ˆ˜ ์žˆ๋Š” ๋นŒ๋“œ ์‹œ์Šคํ…œ์„ ๊ฐ–์ถ”๊ณ  ์žˆ์–ด ํŠน์ • ์ž‘์—… ๋˜๋Š” ๋””์Šคํฌ ์ด๋ฏธ์ง€์— ๋งž๊ฒŒ ๊ธฐ์„ฑํ’ˆ ํŽŒ์›จ์–ด๋ฅผ ์‰ฝ๊ฒŒ ์ƒ์„ฑํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ์›ํ•˜๋Š” ์‚ฌ์ „ ์„ค์น˜๋œ ํŒจํ‚ค์ง€ ์„ธํŠธ๋กœ.
์–ด์…ˆ๋ธ”๋ฆฌ ํ˜•์„ฑ๋œ 37๊ฐœ์˜ ๋Œ€์ƒ ํ”Œ๋žซํผ์šฉ.

์œผ๋กœ ๋ณ€๊ฒฝ OpenWrt 19.07.3 ์ฐธ๊ณ ์‚ฌํ•ญ:

  • ์—…๋ฐ์ดํŠธ๋œ ์‹œ์Šคํ…œ ๊ตฌ์„ฑ ์š”์†Œ: Linux ์ปค๋„ 4.14.180, ํ•˜์œ„ ์‹œ์Šคํ…œ mac80211์ด ์ปค๋„ 4.19.120์—์„œ ์ด๋™๋จ, openssl 1.1.1g, mbedtls 2.16.6, ์ƒˆ ๋ฒ„์ „์˜ Wi-Fi ๋“œ๋ผ์ด๋ฒ„ mt76, wireless-regdb ๋ฐ fstools๊ฐ€ ์ถ”๊ฐ€๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
  • LuCI ์›น ์ธํ„ฐํŽ˜์ด์Šค๋Š” HTTPS ์‚ฌ์šฉ ์‹œ ๋‹ค์šด๋กœ๋“œ ์„ฑ๋Šฅ์„ ํฌ๊ฒŒ ํ–ฅ์ƒ์‹œ์ผฐ์Šต๋‹ˆ๋‹ค. Wi-Fi์šฉ WPA3 ๋ชจ๋“œ๋ฅผ ๊ตฌ์„ฑํ•˜๋Š” ๊ธฐ๋Šฅ์ด ์ถ”๊ฐ€๋˜์—ˆ์Šต๋‹ˆ๋‹ค. ๋ฒˆ์—ญ์ด ๊ฐœ์„ ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
  • ์•ก์„ธ์Šค ํฌ์ธํŠธ Luxul XAP-1610 ๋ฐ Luxul XWR-3150, TP-Link TL-WR740N v5, TP-Link Archer C60 v3, TP-Link WDR3500 v1, TP-Link TL-WA850RE v1, TP-Link TL-WA860RE์— ๋Œ€ํ•œ ์ง€์›์ด ์ถ”๊ฐ€๋˜์—ˆ์Šต๋‹ˆ๋‹ค. v1, TP-๋งํฌ TL-WDR4310 v1.
  • TP-Link TL-WA71ND v79, TP-Link TL-WDR901 v2, TP-Link TL-WR4900N v2/v810, TP-Link TL-WR1N/ND v2, TP-Link TL-WR842N์— ๋Œ€ํ•œ ar1xx์—์„œ ath740 ์•„ํ‚คํ…์ฒ˜๋กœ์˜ ์ „ํ™˜์ด ์ˆ˜์ •๋˜์—ˆ์Šต๋‹ˆ๋‹ค. v1/v2/v3/v4/v5, TP-๋งํฌ TL-WR741N/ND v1/v2, TP-๋งํฌ TL-WR743ND v1, TP-๋งํฌ TL-WR841N/ND v5/v6, TP-๋งํฌ TL-WR941N/ND v2/v3/v4.
  • ์žฅ์น˜ AVM FRITZ Repeater 450E, TP-Link Archer C7, TP-Link Archer C60 v1/v2, TP-Link TL-MR3040 v2, GL.iNet GL-AR750S, Mikrotik RB951G-2HnD, ZyXEL Keenetic, ์ž„๋ฒ ๋””๋“œ ์žฅ์น˜ ์ž‘๋™ ๋ฌธ์ œ Wireless Dorin, Traverse LS1043, SolidRun ClearFog๊ฐ€ ํ•ด๊ฒฐ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
  • scriptarp ์˜ต์…˜์ด dnsmasq์— ์ถ”๊ฐ€๋˜์–ด arp-add ๋ฐ arp-del ์ด๋ฒคํŠธ์— ๋Œ€ํ•ด /etc/hotplug.d/neigh/์—์„œ ์Šคํฌ๋ฆฝํŠธ๋ฅผ ์‹คํ–‰ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • GCC 10์˜ ๋นŒ๋“œ ๊ด€๋ จ ๋ฌธ์ œ๊ฐ€ ํ•ด๊ฒฐ๋˜์—ˆ์Šต๋‹ˆ๋‹ค.
  • Relayd(CVE-2020-11752) ๋ฐ umdns ๋ฉ€ํ‹ฐ์บ์ŠคํŠธ DNS ๋ฐ๋ชฌ(CVE-2020-11750), ์ด๋กœ ์ธํ•ด ํŠน์ • ๋ฐ์ดํ„ฐ๋ฅผ ์ฒ˜๋ฆฌํ•  ๋•Œ ๋ฒ„ํผ ์˜ค๋ฒ„ํ”Œ๋กœ๊ฐ€ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
  • opkg ํŒจํ‚ค์ง€ ๊ด€๋ฆฌ์ž์˜ ๋ฉ”๋ชจ๋ฆฌ ์†Œ๋น„๊ฐ€ ๊ฐ์†Œํ–ˆ์Šต๋‹ˆ๋‹ค.

์ถœ์ฒ˜ : opennet.ru

์ฝ”๋ฉ˜ํŠธ๋ฅผ ์ถ”๊ฐ€