Ho lokolloa ha Lighttpd 1.4.74 http seva

E bobebe http server lighttpd 1.4.74 e lokollotsoe. E leka ho kopanya ts'ebetso e phahameng, ts'ireletso, ho lumellana le litekanyetso le ho feto-fetoha ha maemo. Lighttpd e loketse ho sebelisoa lits'ebetsong tse laetsoeng haholo mme e etselitsoe mohopolo o tlase le ts'ebeliso ea CPU. Khoutu ea projeke e ngotsoe ka C mme e ajoa tlasa laesense ea BSD.

Khatisong e ncha:

  • Boitšoaro ha u boloka data ho log u sebelisa syslog e fetotsoe (e lumelloa ke parameter "server.errorlog-use-syslog = 'enable'") - pele, melaetsa eohle e ne e romelloa feela ka LOG_ERROR ea bohlokoa, empa joale ho khethoa ho ea pele ho latela mofuta oa molaetsa (LOG_WARNING, LOG_DEBUG).
  • Litsamaisong tse nang le laeborari ea Musl C, ts'ebeliso ea mohala oa sendfile() e fanoa.
  • Mod_dirlisting module joale e na le khetho ea "dir-listing.sort" bakeng sa ho hlakisa tlhahiso ea tlhahiso.
  • Ho mod_deflate, "deflate.allowed-encodings" e lumelloa, 'me algorithm ea bzip2 e behiloe ho khetho e tlaase ka ho fetisisa.
  • Ts'ehetso ea "if", "elif", "elsif", "elseif" le "else if" e kenyellelitsoe faeleng ea tlhophiso.
  • E kentse cheke bakeng sa tšehetso ea ts'ebetsong ea TLS ea boemo ba kernel ho mod_openssl le mod_gnutls Linux (kTLS).
  • Ho netefalitsoe hore e lumellana le sistimi ea ts'ebetso ea DragonflyBSD.

Liphetoho tse 'maloa tse robehileng li reriloe bakeng sa tokollo e latelang. Ho tla sebelisoa cipher suite e sireletsehileng haholoanyane bakeng sa TLS, e nang le ts'ireletso khahlano le ho sekisetsa nakong ea ts'ebetso ea nako e telele ea senotlolo (sephiri sa pele) le ts'ebeliso ea encryption e netefalitsoeng (AEAD). "EECDH+AESGCM:AES256+EECDH:CHACHA20:!SHA1:!SHA256:!SHA384" cipher suite e reretswe ho nkelwa sebaka ke "EECDH+AESGCM:CHACHA20:!PSK:!DHE."

Phetoho ea bobeli e tlang ea ho lumellana e tla ba phetoho ea mod_redirect's HTTP/1.1 redirect code ho tloha 301 (Moved Permanently) ho 308 (Permanent Redirect) ntle le haeba "url.redirect-code" parameter e behiloe ka ho hlaka. TLSv1.3 e reriloe hore e be mofuta oa kamehla ka 2025 (parameter ea MinProtocol e tla fetoleloa ho TLSv1.3).

Source: opennet.ru

Reka sebaka se tšepahalang sa libaka tse nang le ts'ireletso ea DDoS, li-server tsa VPS VDS 🔥 Reka sebaka se tšepahalang sa ho amohela webosaete ka tšireletso ea DDoS, li-server tsa VPS VDS | ProHoster