Ikhithi yokuhambisa yokudala i-OPNsense 20.7 firewall iyafumaneka

wabona ukukhanya ikhithi yokuhambisa yokudala iindonga zomlilo I-OPNsense 20.7, eyifolokhwe yeprojekthi ye-pfSense, eyenziwe ngenjongo yokwenza ukusabalalisa okuvulekileyo ngokupheleleyo okunokuthi kube nokusebenza kwezisombululo zorhwebo zokuthumela i-firewall kunye ne-network gateways. Ngokungafaniyo ne-pfSense, iprojekthi ibekwe njengengalawulwa yinkampani enye, iphuhliswe ngokuthatha inxaxheba ngokuthe ngqo koluntu kwaye inenkqubo yophuhliso ecacileyo ngokupheleleyo, kunye nokubonelela ngethuba lokusebenzisa nayiphi na intuthuko yayo kwiimveliso zomntu wesithathu, kuquka urhwebo. enye. Izicatshulwa zomthombo wamacandelo osasazo, kunye nezixhobo ezisetyenziselwa ukuhlanganisa, usasazeko phantsi kwelayisensi ye-BSD. Iindibano ilungisiwe ngendlela ye-LiveCD kunye nomfanekiso wenkqubo yokurekhoda kwi-Flash drives (420 MB).

Umxholo osisiseko wokusabalalisa usekelwe kwikhowudi InzimaBSD 12.1, exhasa ifolokhwe elungelelanisiweyo ye-FreeBSD, edibanisa iindlela ezongezelelweyo zokhuseleko kunye nobuchule bokuchasana nokusetyenziswa kobuthathaka. Phakathi amathuba I-OPNsense inokwahlulwa nge-toolkit yendibano evuleke ngokupheleleyo, ukukwazi ukufaka ngendlela yeepakethe ngaphezulu kwe-FreeBSD eqhelekileyo, izixhobo zokulinganisa umthwalo, ujongano lwewebhu lokuququzelela unxibelelwano lomsebenzisi kwinethiwekhi (i-Captive portal), ubukho beendlela ukulandelela indawo yokunxibelelana (i-firewall esemthethweni esekelwe kwi-pf), ukubeka izithintelo kwi-bandwidth, ukucoca i-traffic, ukudala i-VPN esekelwe kwi-IPsec, i-OpenVPN kunye ne-PPTP, ukudibanisa ne-LDAP kunye ne-RADIUS, inkxaso ye-DDNS (Dynamic DNS), inkqubo yeengxelo ezibonakalayo kunye neegrafu. .

Ukongezelela, ukusabalalisa kunika izixhobo zokudala ukucwangciswa kokunyamezela kwephutha ngokusekelwe ekusebenziseni i-protocol ye-CARP kunye nokuvumela ukuba uqalise, ngaphezu kwe-firewall engundoqo, i-node yokulondoloza eya kulungelelaniswa ngokuzenzekelayo kwinqanaba lokucwangcisa kwaye iya kuthatha. umthwalo xa kwenzeka ukusilela kwendawo yokuqala. Umlawuli unikezwa ujongano lwangoku kunye olulula lokuqwalasela i-firewall, eyakhiwe kusetyenziswa i-Bootstrap web framework.

Ikhithi yokuhambisa yokudala i-OPNsense 20.7 firewall iyafumaneka

Kwinguqulelo entsha:

  • Inkxaso eyongeziweyo ye-DHCPv6 ye-Multi-WAN yokuxhuma ngeendlela ezininzi;
  • Kuyenzeka ukuba uchaze awakho amaphepha aboniswe kwimeko yeempazamo zoqhagamshelwano usebenzisa ummeli wewebhu;
  • Ukuphunyezwa kwenkqubo yokubona ukungena kwenethiwekhi kunye nokuthintela kuye kwahlaziywa IMeerkat 5;
  • Inkqubo yesiseko ilungelelaniswa ne-HardenedBSD 12.1, ifolokhwe ye-FreeBSD 12.1, edibanisa iindlela ezongezelelweyo zokhuseleko kunye nobuchule bokulwa nokuxhaphazwa kobuthathaka;
  • Yongeza ingxelo ngombono womthi wolwazi malunga noqhagamshelwano lwenethiwekhi;
  • Kwenziwa i-API yolawulo lomlilo;
  • Izakhono eziphuculweyo zokuhluza iilogi kubhabho.

umthombo: opennet.ru

Yongeza izimvo