ProFTPD 1.3.8 ftp ho lokolloa ha seva

Kamora lilemo tse peli le halofo tsa nts'etsopele, tokollo e kholo ea seva ea ProFTPD 1.3.8 ftp e lokollotsoe, 'me matla a eona e le katoloso le ts'ebetso, mme mefokolo ea eona e le ho sibolloa ha nako le nako ha bofokoli bo kotsi. Ka nako e ts'oanang, tokollo ea tokiso ea ProFTPD 1.3.7f e fumaneha, e tla ba ea ho qetela letotong la ProFTPD 1.3.7.

Litlhahiso tse ka sehloohong tsa ProFTPD 1.3.8:

  • Tšehetso e se e kentsoe tšebetsong bakeng sa taelo ea FTP CSID (Client/Server ID), e ka sebelisoang ho romela tlhahisoleseling ho khetholla software ea moreki ho seva le ho fumana karabo e nang le tlhahisoleseling ho khetholla seva. Mohlala, moreki a ka romela "CSID Name=BSD FTP; Version=7.3" 'me a amohela karabo "200 Name=ProFTPD; Version=1.3.8; OS="Ubuntu Linux; OSVer=22.04; CaseSensitive=1; DirSep=/;".
  • Ts'ebetsong ea protocol ea SFTP joale e ts'ehetsa katoloso ea "home-directory" ho holisa ~/ le ~user/ litsela. Taelo ea "SFTExtensions homeDirectory" e ka sebelisoa ho e nolofalletsa.
  • Ts'ehetso e ekelitsoeng bakeng sa li-ciphers tsa AES-GCM "aes128-gcm@openssh.com" le "aes256-gcm@openssh.com" ho mod_sftp, hammoho le ho potoloha ha senotlolo sa moamoheli ("SFTPOptions NoHostkeyRotation") u sebelisa li-extensions tsa OpenSSH "hostkeys-00@openssh.com" le "host-prove00@openssh.com". Tšehetso e ekelitsoeng bakeng sa ho nolofalletsa li-ciphers tsa AES GCM ho taelo ea SFTPCiphers.
  • E kenyellelitsoe "--enable-pcre2" khetho ea ho aha ka laeborari ea PCRE2 sebakeng sa PCRE. Bokhoni bo ekelitsoeng ba ho khetha enjine ea polelo e tloaelehileng lipakeng tsa PCRE2, POSIX le PCRE ho taelo ea RegexOptions.
  • E kentse taelo ea SFTPHostKeys ho hlakisa li-algorithms tsa bohlokoa tse fuoang bareki bakeng sa mod_sftp module.
  • Taelo e ekelitsoeng ea FactsDefault ho hlalosa ka ho hlaka lenane la "linnete" tse khutlisitsoeng ho likarabo tsa MLSD/MLSD FTP.
  • E kentse taelo ea LDAPConnectTimeout ho hlalosa nako ea ho hokela ho seva sa LDAP.
  • Taelo e ekelitsoeng ea ListStyle, e u lumellang ho nolofalletsa tlhahiso ea lethathamo la litaba tsa directory ka setaele Windows.
  • Taelo ea RedisLogFormatExtra e kentsoe ts'ebetsong ho kenya linotlolo le boleng ba tloaelo ho log ea JSON e nolofalitsoeng ke litaelo tsa RedisLogOnCommand le RedisLogOnEvent.
  • Paramethara ea MaxLoginAttemptsFromUser e ekelitsoe taelong ea BanOnEvent ho thibela metsoako e boletsoeng ea basebelisi le Liaterese tsa IP.
  • Taelo ea RedisSentinel e ntlafalitsoe ho tšehetsa TLS ha e hokela ho Redis DBMS. Taelo ea RedisServer e ntlafalitsoe ho tšehetsa syntax ea taelo ea AUTH e sebelisitsoeng ho tloha Redis 6.x.
  • Tšehetso e ekelitsoeng bakeng sa ETM (Encrypt-Then-MAC) hashes ho taelo ea SFTPDigests.
  • Folakha ea ReusePort e kentsoe ho taelo ea SocketOptions ho nolofalletsa SO_REUSEPORT mokhoa oa sokete.
  • E kentse folakha ea AllowSymlinkUpload ho TransferOptions ho khutlisa bokhoni ba ho kenya lihokelo tsa tšoantšetso.
  • Ts'ehetso e ekelitsoeng bakeng sa "curve448-sha512" algorithm ea phapanyetsano ho taelo ea SFTPKeyExchanges.
  • Mod_wrap2 module e ntlafalitsoe ho lumella ho kenya lifaele tse ling sebakeng sa litafole tsa ho lumella / ho hana.
  • Boleng ba kamehla ba parameter ea FSCachePolicy bo fetotsoe ho "tima".
  • Mod_sftp module e fetotsoe hore e sebelisoe le laeborari ea OpenSSL 3.x.
  • Tšehetso e eketsehileng bakeng sa ho haha ​​​​ka laeborari ea libidn2 ho sebelisoa machabeng mabitso a domain (IDN).
  • Sesebelisoa sa ftpasswd se sebelisa algorithm ea SHA256 ka ho sa feleng sebakeng sa MD5 ho hlahisa li-hashes tsa password.

Source: opennet.ru

Reka sebaka se tšepahalang sa libaka tse nang le ts'ireletso ea DDoS, li-server tsa VPS VDS 🔥 Reka sebaka se tšepahalang sa ho amohela webosaete ka tšireletso ea DDoS, li-server tsa VPS VDS | ProHoster