Kamora lilemo tse peli le halofo tsa nts'etsopele, tokollo e kholo ea seva ea ProFTPD 1.3.8 ftp e lokollotsoe, 'me matla a eona e le katoloso le ts'ebetso, mme mefokolo ea eona e le ho sibolloa ha nako le nako ha bofokoli bo kotsi. Ka nako e ts'oanang, tokollo ea tokiso ea ProFTPD 1.3.7f e fumaneha, e tla ba ea ho qetela letotong la ProFTPD 1.3.7.
Litlhahiso tse ka sehloohong tsa ProFTPD 1.3.8:
- Tšehetso e se e kentsoe tšebetsong bakeng sa taelo ea FTP CSID (Client/Server ID), e ka sebelisoang ho romela tlhahisoleseling ho khetholla software ea moreki ho seva le ho fumana karabo e nang le tlhahisoleseling ho khetholla seva. Mohlala, moreki a ka romela "CSID Name=BSD FTP; Version=7.3" 'me a amohela karabo "200 Name=ProFTPD; Version=1.3.8; OS="Ubuntu Linux; OSVer=22.04; CaseSensitive=1; DirSep=/;".
- Ts'ebetsong ea protocol ea SFTP joale e ts'ehetsa katoloso ea "home-directory" ho holisa ~/ le ~user/ litsela. Taelo ea "SFTExtensions homeDirectory" e ka sebelisoa ho e nolofalletsa.
- Ts'ehetso e ekelitsoeng bakeng sa li-ciphers tsa AES-GCM "aes128-gcm@openssh.com" le "aes256-gcm@openssh.com" ho mod_sftp, hammoho le ho potoloha ha senotlolo sa moamoheli ("SFTPOptions NoHostkeyRotation") u sebelisa li-extensions tsa OpenSSH "hostkeys-00@openssh.com" le "host-prove00@openssh.com". Tšehetso e ekelitsoeng bakeng sa ho nolofalletsa li-ciphers tsa AES GCM ho taelo ea SFTPCiphers.
- E kenyellelitsoe "--enable-pcre2" khetho ea ho aha ka laeborari ea PCRE2 sebakeng sa PCRE. Bokhoni bo ekelitsoeng ba ho khetha enjine ea polelo e tloaelehileng lipakeng tsa PCRE2, POSIX le PCRE ho taelo ea RegexOptions.
- E kentse taelo ea SFTPHostKeys ho hlakisa li-algorithms tsa bohlokoa tse fuoang bareki bakeng sa mod_sftp module.
- Taelo e ekelitsoeng ea FactsDefault ho hlalosa ka ho hlaka lenane la "linnete" tse khutlisitsoeng ho likarabo tsa MLSD/MLSD FTP.
- E kentse taelo ea LDAPConnectTimeout ho hlalosa nako ea ho hokela ho seva sa LDAP.
- Taelo e ekelitsoeng ea ListStyle, e u lumellang ho nolofalletsa tlhahiso ea lethathamo la litaba tsa directory ka setaele Windows.
- Taelo ea RedisLogFormatExtra e kentsoe ts'ebetsong ho kenya linotlolo le boleng ba tloaelo ho log ea JSON e nolofalitsoeng ke litaelo tsa RedisLogOnCommand le RedisLogOnEvent.
- Paramethara ea MaxLoginAttemptsFromUser e ekelitsoe taelong ea BanOnEvent ho thibela metsoako e boletsoeng ea basebelisi le Liaterese tsa IP.
- Taelo ea RedisSentinel e ntlafalitsoe ho tšehetsa TLS ha e hokela ho Redis DBMS. Taelo ea RedisServer e ntlafalitsoe ho tšehetsa syntax ea taelo ea AUTH e sebelisitsoeng ho tloha Redis 6.x.
- Tšehetso e ekelitsoeng bakeng sa ETM (Encrypt-Then-MAC) hashes ho taelo ea SFTPDigests.
- Folakha ea ReusePort e kentsoe ho taelo ea SocketOptions ho nolofalletsa SO_REUSEPORT mokhoa oa sokete.
- E kentse folakha ea AllowSymlinkUpload ho TransferOptions ho khutlisa bokhoni ba ho kenya lihokelo tsa tšoantšetso.
- Ts'ehetso e ekelitsoeng bakeng sa "curve448-sha512" algorithm ea phapanyetsano ho taelo ea SFTPKeyExchanges.
- Mod_wrap2 module e ntlafalitsoe ho lumella ho kenya lifaele tse ling sebakeng sa litafole tsa ho lumella / ho hana.
- Boleng ba kamehla ba parameter ea FSCachePolicy bo fetotsoe ho "tima".
- Mod_sftp module e fetotsoe hore e sebelisoe le laeborari ea OpenSSL 3.x.
- Tšehetso e eketsehileng bakeng sa ho haha ka laeborari ea libidn2 ho sebelisoa machabeng mabitso a domain (IDN).
- Sesebelisoa sa ftpasswd se sebelisa algorithm ea SHA256 ka ho sa feleng sebakeng sa MD5 ho hlahisa li-hashes tsa password.
Source: opennet.ru
