Kuyesa kwa beta kwa Red Hat Enterprise Linux 9 kwayamba

Компания Red Hat прСдставила ΠΏΠ΅Ρ€Π²ΡƒΡŽ Π±Π΅Ρ‚Π°-Π²Π΅Ρ€ΡΠΈΡŽ дистрибутива Red Hat Enterprise Linux 9. Π“ΠΎΡ‚ΠΎΠ²Ρ‹Π΅ установочныС ΠΎΠ±Ρ€Π°Π·Ρ‹ ΠΏΠΎΠ΄Π³ΠΎΡ‚ΠΎΠ²Π»Π΅Π½Ρ‹ для зарСгистрированных ΠΏΠΎΠ»ΡŒΠ·ΠΎΠ²Π°Ρ‚Π΅Π»Π΅ΠΉ Red Hat Customer Portal (для ΠΎΡ†Π΅Π½ΠΊΠΈ Ρ„ΡƒΠ½ΠΊΡ†ΠΈΠΎΠ½Π°Π»ΡŒΠ½ΠΎΡΡ‚ΠΈ Ρ‚Π°ΠΊΠΆΠ΅ ΠΌΠΎΠΆΠ½ΠΎ ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΠΎΠ²Π°Ρ‚ΡŒ iso-ΠΎΠ±Ρ€Π°Π·Ρ‹ CentOS Stream 9). Π Π΅ΠΏΠΎΠ·ΠΈΡ‚ΠΎΡ€ΠΈΠΈ с ΠΏΠ°ΠΊΠ΅Ρ‚Π°ΠΌΠΈ доступны Π±Π΅Π· ΠΎΠ³Ρ€Π°Π½ΠΈΡ‡Π΅Π½ΠΈΠΉ для Π°Ρ€Ρ…ΠΈΡ‚Π΅ΠΊΡ‚ΡƒΡ€ x86_64, s390x (IBM System z), ppc64le ΠΈ Aarch64 (ARM64). Π˜ΡΡ…ΠΎΠ΄Π½Ρ‹Π΅ тСксты rpm-ΠΏΠ°ΠΊΠ΅Ρ‚ΠΎΠ² Red Hat Enterprise Linux 9 Ρ€Π°Π·ΠΌΠ΅Ρ‰Π΅Π½Ρ‹ Π² Git-Ρ€Π΅ΠΏΠΎΠ·ΠΈΡ‚ΠΎΡ€ΠΈΠΉ CentOS. Π Π΅Π»ΠΈΠ· оТидаСтся Π² ΠΏΠ΅Ρ€Π²ΠΎΠΉ ΠΏΠΎΠ»ΠΎΠ²ΠΈΠ½Π΅ ΡΠ»Π΅Π΄ΡƒΡŽΡ‰Π΅Π³ΠΎ Π³ΠΎΠ΄Π°. Π’ соотвСтствии с 10-Π»Π΅Ρ‚Π½ΠΈΠΌ Ρ†ΠΈΠΊΠ»ΠΎΠΌ ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΠΈ дистрибутива RHEL 9 Π±ΡƒΠ΄Π΅Ρ‚ ΡΠΎΠΏΡ€ΠΎΠ²ΠΎΠΆΠ΄Π°Ρ‚ΡŒΡΡ Π΄ΠΎ 2032 Π³ΠΎΠ΄Π°. ОбновлСния для RHEL 7 ΠΏΡ€ΠΎΠ΄ΠΎΠ»ΠΆΠ°Ρ‚ Π²Ρ‹ΠΏΡƒΡΠΊΠ°Ρ‚ΡŒΡΡ Π΄ΠΎ 30 июня 2024 Π³ΠΎΠ΄Π°, RHEL 8 β€” Π΄ΠΎ 31 мая 2029 Π³ΠΎΠ΄Π°.

Red Hat Enterprise Linux 9 ndiyodziwikiratu chifukwa chosamukira kunjira yotseguka. Mosiyana ndi nthambi zam'mbuyomu, gawo la phukusi la CentOS Stream 9 limagwiritsidwa ntchito ngati maziko opangira magawano. zisankho zopangidwa. M'mbuyomu, chithunzithunzi cha imodzi mwazotulutsa za Fedora chinagwiritsidwa ntchito ngati maziko a nthambi yatsopano ya RHEL, yomwe idamalizidwa ndikukhazikika kumbuyo kwa zitseko zotsekedwa, popanda kuthekera kowongolera kupita patsogolo kwachitukuko ndi zisankho zomwe zidapangidwa. Tsopano, pogwiritsa ntchito chithunzithunzi cha Fedora, ndi kutenga nawo mbali kwa anthu ammudzi, nthambi ya CentOS Stream ikupangidwa, momwe ntchito yokonzekera ikuchitika ndipo maziko akupangidwira nthambi yatsopano ya RHEL.

Zosintha zazikulu:

  • Malo a dongosolo ndi zida zosonkhana zasinthidwa. GCC 11 imagwiritsidwa ntchito kupanga phukusi. Laibulale yokhazikika ya C yasinthidwa kukhala glibc 2.34. Phukusi la Linux kernel limachokera ku kutulutsidwa kwa 5.14. Woyang'anira phukusi la RPM wasinthidwa kukhala mtundu 4.16 ndi chithandizo chowunikira kukhulupirika kudzera pa fapolicyd.
  • Kusamuka kwa kugawa ku Python 3 kwatha. Nthambi ya Python 3.9 imaperekedwa mwachisawawa. Python 2 yathetsedwa.
  • Desktop imachokera ku GNOME 40 (RHEL 8 yotumizidwa ndi GNOME 3.28) ndi laibulale ya GTK 4. Mu GNOME 40, ma desktops enieni mu Activities Overview mode amasinthidwa kukhala mawonekedwe a malo ndipo amawonetsedwa ngati tcheni choyendayenda mosalekeza kuchokera kumanzere kupita kumanja. Desktop iliyonse yomwe ikuwonetsedwa mu Overview mode imayang'ana zomwe zilipo windows ndi mapoto osinthika ndi makulitsidwe pomwe wogwiritsa ntchito amalumikizana. Kusintha kosasinthika kumaperekedwa pakati pa mndandanda wa mapulogalamu ndi ma desktops enieni.
  • GNOME imaphatikizapo chogwiritsira ntchito-mbiri-daemon chomwe chimapereka mphamvu yosinthira ntchentche pakati pa njira yopulumutsira mphamvu, njira yoyendetsera mphamvu, ndi machitidwe apamwamba kwambiri.
  • Mitsinje yonse yomvera yasunthidwa ku seva yapa media ya PipeWire, yomwe tsopano ndiyosakhazikika m'malo mwa PulseAudio ndi JACK. Kugwiritsa ntchito PipeWire kumakupatsani mwayi wopereka luso laukadaulo wamawu mumtundu wanthawi zonse wapakompyuta, chotsani kugawikana ndikugwirizanitsa zida zamawu pazogwiritsa ntchito zosiyanasiyana.
  • По ΡƒΠΌΠΎΠ»Ρ‡Π°Π½ΠΈΡŽ скрыто Π·Π°Π³Ρ€ΡƒΠ·ΠΎΡ‡Π½ΠΎΠ΅ мСню GRUB, Ссли RHEL являСтся СдинствСнным установлСнным Π² систСмС дистрибутивом ΠΈ Ссли ΠΏΡ€ΠΎΡˆΠ»Π°Ρ Π·Π°Π³Ρ€ΡƒΠ·ΠΊΠ° ΠΏΡ€ΠΎΡˆΠ»Π° Π±Π΅Π· сбоСв. Для ΠΏΠΎΠΊΠ°Π·Π° мСню Π²ΠΎ врСмя Π·Π°Π³Ρ€ΡƒΠ·ΠΊΠΈ достаточно ΡƒΠ΄Π΅Ρ€ΠΆΠΈΠ²Π°Ρ‚ΡŒ ΠΊΠ»Π°Π²ΠΈΡˆΡƒ Shift ΠΈΠ»ΠΈ нСсколько Ρ€Π°Π· Π½Π°ΠΆΠ°Ρ‚ΡŒ ΠΊΠ»Π°Π²ΠΈΡˆΡƒ Esc ΠΈΠ»ΠΈ F8. Из ΠΈΠ·ΠΌΠ΅Π½Π΅Π½ΠΈΠΉ Π² Π·Π°Π³Ρ€ΡƒΠ·Ρ‡ΠΈΠΊΠ΅ Ρ‚Π°ΠΊΠΆΠ΅ отмСчаСтся Ρ€Π°Π·ΠΌΠ΅Ρ‰Π΅Π½ΠΈΠ΅ Ρ„Π°ΠΉΠ»ΠΎΠ² ΠΊΠΎΠ½Ρ„ΠΈΠ³ΡƒΡ€Π°Ρ†ΠΈΠΈ GRUB для всСх Π°Ρ€Ρ…ΠΈΡ‚Π΅ΠΊΡ‚ΡƒΡ€ Π² ΠΎΠ΄Π½ΠΎΠΌ ΠΊΠ°Ρ‚Π°Π»ΠΎΠ³Π΅ /boot/grub2/ (Ρ„Π°ΠΉΠ» /boot/efi/EFI/redhat/grub.cfg Ρ‚Π΅ΠΏΠ΅Ρ€ΡŒ являСтся символичСской ссылкой Π½Π° /boot/grub2/grub.cfg), Ρ‚.Π΅. ΠΎΠ΄Π½Ρƒ ΠΈ Ρ‚Ρƒ ΠΆΠ΅ ΡƒΡΡ‚Π°Π½ΠΎΠ²Π»Π΅Π½Π½ΡƒΡŽ систСму ΠΌΠΎΠΆΠ½ΠΎ Π·Π°Π³Ρ€ΡƒΠΆΠ°Ρ‚ΡŒ ΠΊΠ°ΠΊ с использованиСм EFI, Ρ‚Π°ΠΊΠΈ ΠΈ BIOS.
  • Zida zothandizira zilankhulo zosiyanasiyana zimayikidwa mu langpacks, zomwe zimakulolani kuti musinthe mulingo wa chithandizo cha zilankhulo chomwe chayikidwa. Mwachitsanzo, langpacks-core-font imapereka mafonti okha, langpacks-core imapereka malo amtundu wa glibc, font yoyambira, ndi njira yolowera, ndipo langpacks imapereka matanthauzidwe, mafonti owonjezera, ndi mtanthauzira mawu wowunika masipelo.
  • Для ΠΎΠ΄Π½ΠΎΠ²Ρ€Π΅ΠΌΠ΅Π½Π½ΠΎΠΉ установки Ρ€Π°Π·Π½Ρ‹Ρ… вСрсий ΠΏΡ€ΠΎΠ³Ρ€Π°ΠΌΠΌ ΠΈ Π±ΠΎΠ»Π΅Π΅ частого формирования обновлСния ΠΏΡ€ΠΈΠΌΠ΅Π½ΡΡŽΡ‚ΡΡ ΠΊΠΎΠΌΠΏΠΎΠ½Π΅Π½Ρ‚Ρ‹ Application Streams, ΠΊΠΎΡ‚ΠΎΡ€Ρ‹Π΅ Ρ‚Π΅ΠΏΠ΅Ρ€ΡŒ ΠΌΠΎΠ³ΡƒΡ‚ Ρ„ΠΎΡ€ΠΌΠΈΡ€ΠΎΠ²Π°Ρ‚ΡŒΡΡ с использованиСм всСх ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΈΠ²Π°Π΅ΠΌΡ‹Ρ… Π² RHEL Π²Π°Ρ€ΠΈΠ°Π½Ρ‚ΠΎΠ² распространСния ΠΏΠ°ΠΊΠ΅Ρ‚ΠΎΠ², Π²ΠΊΠ»ΡŽΡ‡Π°Ρ RPM-ΠΏΠ°ΠΊΠ΅Ρ‚Ρ‹, ΠΌΠΎΠ΄ΡƒΠ»ΠΈ (сгруппированныС Π² ΠΌΠΎΠ΄ΡƒΠ»ΠΈ Π½Π°Π±ΠΎΡ€Ρ‹ rpm-ΠΏΠ°ΠΊΠ΅Ρ‚ΠΎΠ²), SCL (Software Collection) ΠΈ Flatpak.
  • Zida zachitetezo zasinthidwa. Kugawa kumagwiritsa ntchito nthambi yatsopano ya laibulale yachinsinsi ya OpenSSL 3.0. Mwachikhazikitso, ma algorithms amakono komanso odalirika a cryptographic amathandizidwa (mwachitsanzo, kugwiritsa ntchito SHA-1 mu TLS, DTLS, SSH, IKEv2 ndi Kerberos ndikoletsedwa, TLS 1.0, TLS 1.1, DTLS 1.0, RC4, Camellia, DSA, 3DES ndi FFDHE-1024 ndizolemala) . Phukusi la OpenSSH lasinthidwa kukhala 8.6p1. Cyrus SASL yasamutsidwira ku GDBM backend m'malo mwa Berkeley DB. malaibulale a NSS (Network Security Services) sakuthandizanso mtundu wa DBM (Berkeley DB). GnuTLS yasinthidwa kukhala 3.7.2.
  • Kupititsa patsogolo magwiridwe antchito a SELinux ndikuchepetsa kukumbukira kukumbukira. Mu /etc/selinux/config, chithandizo cha "SELINUX = disabled" makonda kuti mulepheretse SELinux chachotsedwa (kukhazikitsa uku kumangolepheretsa kutsitsa kwa mfundo, ndipo kuletsa magwiridwe antchito a SELinux tsopano kukufunika kudutsa "selinux = 0" parameter ku mphuno).
  • Adawonjezera chithandizo choyesera cha VPN WireGuard.
  • Mwachikhazikitso, kulowa kudzera pa SSH monga muzu ndikoletsedwa.
  • Zida zowongolera zosefera za iptables-nft (iptables, ip6tables, ebtables ndi ma arptables utilities) ndi ipset zachotsedwa. Tsopano tikulimbikitsidwa kugwiritsa ntchito nftables kuyang'anira firewall.
  • Zimaphatikizapo daemon yatsopano ya mptcpd yokonzekera MPTCP (MultiPath TCP), kuwonjezereka kwa protocol ya TCP yokonzekera kugwira ntchito kwa TCP yolumikizana ndi paketi yobweretsera nthawi imodzi m'njira zingapo kudzera m'malo osiyanasiyana ochezera a pa intaneti omwe amagwirizanitsidwa ndi ma adilesi osiyanasiyana a IP. Kugwiritsa ntchito mptcpd kumapangitsa kuti zitheke kukonza MPTCP osagwiritsa ntchito iproute2.
  • Phukusi la network-scripts lachotsedwa; NetworkManager iyenera kugwiritsidwa ntchito kukonza maukonde. Thandizo la mawonekedwe a ifcfg amasungidwa, koma NetworkManager imagwiritsa ntchito mawonekedwe a keyfile mwachisawawa.
  • Zolembazo zikuphatikiza mitundu yatsopano ya ophatikiza ndi zida za opanga: GCC 11.2, LLVM/Clang 12.0.1, Rust 1.54, Go 1.16.6, Node.js 16, OpenJDK 17, Perl 5.32, PHP 8.0, Python 3.9, Ruby Git 3.0, Kutembenuza 2.31, binutils 1.14, CMake 2.35, Maven 3.20.2, Nyerere 3.6.
  • Phukusi la seva Apache HTTP Server 2.4, nginx 1.20, Varnish Cache 6.5, Squid 5.1 zasinthidwa.
  • DBMS MariaDB 10.5, MySQL 8.0, PostgreSQL 13, Redis 6.2 zasinthidwa.
  • Kuti apange emulator ya QEMU, Clang imathandizidwa mwachisawawa, zomwe zinapangitsa kuti zitheke kugwiritsa ntchito njira zina zotetezera ku hypervisor ya KVM, monga SafeStack kuti ateteze ku njira zowonongeka zochokera ku mapulogalamu obwereranso (ROP - Return-Oriented Programming).
  • Π Π°ΡΡˆΠΈΡ€Π΅Π½Ρ‹ возмоТности web-консоли: Π΄ΠΎΠ±Π°Π²Π»Π΅Π½Ρ‹ Π΄ΠΎΠΏΠΎΠ»Π½ΠΈΡ‚Π΅Π»ΡŒΠ½Ρ‹Π΅ ΠΌΠ΅Ρ‚Ρ€ΠΈΠΊΠΈ ΠΏΡ€ΠΎΠΈΠ·Π²ΠΎΠ΄ΠΈΡ‚Π΅Π»ΡŒΠ½ΠΎΡΡ‚ΠΈ для выявлСния ΡƒΠ·ΠΊΠΈΡ… мСст (CPU, ΠΏΠ°ΠΌΡΡ‚ΡŒ, диск, сСтСвыС рСсурсы), ΡƒΠΏΡ€ΠΎΡ‰Ρ‘Π½ экспорт ΠΌΠ΅Ρ‚Ρ€ΠΈΠΊ для визуализация ΠΏΡ€ΠΈ ΠΏΠΎΠΌΠΎΡ‰ΠΈ Grafana, Π΄ΠΎΠ±Π°Π²Π»Π΅Π½Π° Π²ΠΎΠ·ΠΌΠΎΠΆΠ½ΠΎΡΡ‚ΡŒ управлСния live-ΠΏΠ°Ρ‚Ρ‡Π°ΠΌΠΈ ΠΊ ядру, прСдоставлСна ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΠ° Π°ΡƒΡ‚Π΅Π½Ρ‚ΠΈΡ„ΠΈΠΊΠ°Ρ†ΠΈΠΈ Ρ‡Π΅Ρ€Π΅Π· смарт-ΠΊΠ°Ρ€Ρ‚Ρ‹ (Π² Ρ‚ΠΎΠΌ числС для sudo ΠΈ SSH).
  • Mu SSSD (System Security Services Daemon), tsatanetsatane wa zipikazo zawonjezeka, mwachitsanzo, nthawi yomaliza ntchito tsopano ikuphatikizidwa ndi zochitika ndipo kutuluka kwa chitsimikizo kukuwonekera. Anawonjezera ntchito zofufuzira kuti muwunike zosintha ndi zovuta za magwiridwe antchito.
  • Thandizo la IMA (Integrity Measurement Architecture) lakulitsidwa kuti litsimikizire kukhulupirika kwa zida zogwirira ntchito pogwiritsa ntchito siginecha ya digito ndi ma hashi.
  • Mwachikhazikitso, gulu limodzi logwirizana (cgroup v2) limayatsidwa. Π‘magulu v2 angagwiritsidwe ntchito, mwachitsanzo, kuchepetsa kukumbukira, CPU ndi I/O kumwa. Kusiyana kwakukulu pakati pa cgroups v2 ndi v1 ndikugwiritsa ntchito magulu amtundu wamba pamitundu yonse yazachuma, m'malo mwa magawo osiyana pakugawa zida za CPU, pakuwongolera kugwiritsa ntchito kukumbukira, ndi I/O. Kusiyanasiyana kosiyana kudapangitsa kuti pakhale zovuta pakulinganiza kulumikizana pakati pa ogwira ntchito komanso ndalama zowonjezera za kernel mukamagwiritsa ntchito malamulo pamachitidwe omwe amatchulidwa m'magawo osiyanasiyana.
  • Thandizo lowonjezera pakulunzanitsa nthawi yeniyeni kutengera protocol ya NTS (Network Time Security), yomwe imagwiritsa ntchito zida zachinsinsi zapagulu (PKI) ndikulola kugwiritsa ntchito TLS ndi kubisa kotsimikizika kwa AEAD (Authenticated Encryption with Associated Data) pachitetezo chachinsinsi cha kasitomala. -Kulumikizana kwa seva kudzera pa protocol ya NTP (Network Time Protocol). Seva ya chrony NTP yasinthidwa kukhala mtundu wa 4.1.
  • Π”ΠΎΠ±Π°Π²Π»Π΅Π½Ρ‹ Π½ΠΎΠ²Ρ‹Π΅ систСмныС Ρ€ΠΎΠ»ΠΈ Ansible для Π°Π²Ρ‚ΠΎΠΌΠ°Ρ‚ΠΈΠ·Π°Ρ†ΠΈΠΈ установки, настройки ΠΈ запуска Postfix, Microsoft SQL Server, VPN-Ρ‚ΡƒΠ½Π½Π΅Π»Π΅ΠΉ ΠΈ сСрвиса timesync. Π”ΠΎΠ±Π°Π²Π»Π΅Π½Π° новая Ρ€ΠΎΠ»ΡŒ Ansible для ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΠΈ Ρ€Π°Π·Π΄Π΅Π»ΠΎΠ² LVM (Logical Volume Manager) VDO (Virtual Data Optimizer).
  • Anapereka chithandizo choyesera (Technology Preview) cha KTLS (kukhazikitsa kernel-level TLS), Intel SGX (Software Guard Extensions), DAX (Direct Access) ya ext4 ndi XFS, chithandizo cha AMD SEV ndi SEV-ES mu hypervisor ya KVM.
  • Π’ΠΊΠ»ΡŽΡ‡Π΅Π½Ρ‹ измСнСния, связанныС с Ρ€Π°Π±ΠΎΡ‚ΠΎΠΉ ΠΏΠΎ ΠΏΠ΅Ρ€Π΅Π²ΠΎΠ΄Ρƒ Ρ€Π°Π·Ρ€Π°Π±Π°Ρ‚Ρ‹Π²Π°Π΅ΠΌΠΎΠ³ΠΎ Π² Red Hat ΠΊΠΎΠ΄Π°, Π΄ΠΎΠΊΡƒΠΌΠ΅Π½Ρ‚Π°Ρ†ΠΈΠΈ ΠΈ web-рСсурсов Π½Π° использованиС Π±ΠΎΠ»Π΅Π΅ инклюзивной Ρ‚Π΅Ρ€ΠΌΠΈΠ½ΠΎΠ»ΠΎΠ³ΠΈΠΈ, ΠΏΠΎΠ΄Ρ€Π°Π·ΡƒΠΌΠ΅Π²Π°ΡŽΡ‰ΠΈΠΉ ΠΎΡ‚ΠΊΠ°Π· ΠΎΡ‚ употрСблССния слов master, slave, blacklist ΠΈ whitelist.

Source: opennet.ru

Kuwonjezera ndemanga