FreeBSD 13.2 ืžืขืœื“ื•ื ื’ ืžื™ื˜ Netlink ืื•ืŸ WireGuard ืฉื˜ื™ืฆืŸ

ื ืึธืš 11 ื—ื“ืฉื™ื ืคื•ืŸ ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’, FreeBSD 13.2 ืื™ื– ื‘ืืคืจื™ื™ื˜. ื™ื ืกื˜ืึทืœืœืึทื˜ื™ืึธืŸ ื‘ื™ืœื“ืขืจ ื–ืขื ืขืŸ ื“ื–ืฉืขื ืขืจื™ื™ื˜ืึทื“ ืคึฟืึทืจ amd64, i386, powerpc, powerpc64, powerpc64le, powerpcspe, armv6, armv7, aarch64 ืื•ืŸ riscv64 ืึทืจืงืึทื˜ืขืงื˜ืฉืขืจื–. ืึทื“ื“ื™ื˜ื™ืึธื ืึทืœืœื™, ืึทืกืขืžื‘ืœื™ื– ื–ืขื ืขืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ืคึฟืึทืจ ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ ืกื™ืกื˜ืขืžืขืŸ (QCOW2, VHD, VMDK, ืจื•ื™) ืื•ืŸ ื•ื•ืึธืœืงืŸ ื™ื ื•ื•ื™ื™ืจืึทื ืžืึทื ืฅ Amazon EC2, Google Compute Engine ืื•ืŸ Vagrant.

ืฉืœื™ืกืœ ืขื ื“ืขืจื•ื ื’ืขืŸ:

  • ื“ื™ ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ืฉืึทืคึฟืŸ ืกื ืึทืคึผืฉืึทืฅ ืคื•ืŸ UFS ืื•ืŸ FFS ื˜ืขืงืข ืกื™ืกื˜ืขืžืขืŸ ืžื™ื˜ ืœืึธื’ื™ื ื’ ืขื ื™ื™ื‘ืึทืœื“ (ื•ื•ื™ื™ืš ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื•ื ื’ืขืŸ) ืื™ื– ื™ืžืคึผืœืึทืžืขื ืึทื“. ืื•ื™ืš ืฆื•ื’ืขื’ืขื‘ืŸ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื”ื™ื ื˜ืขืจื’ืจื•ื ื˜ ืฉืคึผืึธืจืŸ ืคื•ืŸ ื“ืึทืžืคึผืก (ืคืœื™ืกื ื“ื™ืง ื“ืึทืžืคึผ ืžื™ื˜ ื“ื™ "-ืœ" ืคืึธืŸ) ืžื™ื˜ ื“ื™ ืื™ื ื”ืึทืœื˜ ืคื•ืŸ ืžืึธื•ื ื˜ืขื“ UFS ื˜ืขืงืข ืกื™ืกื˜ืขืžืขืŸ ื•ื•ืขืŸ ื“ื–ืฉืึธื•ืจื ืึทืœื™ื ื’ ืื™ื– ืขื ื™ื™ื‘ืึทืœื“. ืื™ื™ื ืขืจ ืคื•ืŸ ื“ื™ ืคึฟืขื™ึดืงื™ื™ื˜ืŸ ื•ื•ืึธืก ื–ืขื ืขืŸ ื ื™ืฉื˜ ื‘ื ื™ืžืฆื ื•ื•ืขืŸ ืื™ืจ ื ื•ืฆืŸ ืœืึธื’ื™ื ื’ ืื™ื– ื“ืขืจ ื”ื™ื ื˜ืขืจื’ืจื•ื ื˜ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืคื•ืŸ ืึธืจื ื˜ืœืขื›ืงื™ื™ึทื˜ ื˜ืฉืขืงืก ืžื™ื˜ ื“ื™ fsck ื ื•ืฆืŸ.
  • ื“ื™ ื’ืจื•ื ื˜ ื–ืึทืฅ ื›ื•ืœืœ ืึท ื•ื•ื’ ืฉืึธืคืขืจ ืึทืคึผืขืจื™ื™ื˜ื™ื ื’ ืื•ื™ืฃ ื“ื™ ืงืขืจืŸ ืžื“ืจื’ื” ืžื™ื˜ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ืึท ื ืขืฅ ืฆื•ื‘ื™ื ื“ ืคึฟืึทืจ VPN WireGuard. ืฆื• ื ื•ืฆืŸ ื“ื™ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ืึทืœื’ืขืจื™ื“ืึทืžื– ืคืืจืœืื ื’ื˜ ื“ื•ืจืš ื“ื™ ืฉืึธืคืขืจ, ื“ื™ API ืคื•ืŸ ื“ื™ FreeBSD ืงืขืจืŸ ืงืจื™ืคึผื˜ืึธ-ืกื•ื‘ืกื™ืกื˜ืขื ืื™ื– ืขืงืกื˜ืขื ื“ืขื“, ืฆื• ื•ื•ืึธืก ืึท ื›ืึทืจื ื™ืก ืื™ื– ืฆื•ื’ืขืœื™ื™ื’ื˜ ื•ื•ืึธืก ืึทืœืึทื•ื– ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ืึทืœื’ืขืจื™ื“ืึทืžื– ืคื•ืŸ ื“ื™ ืœื™ื‘ืกืึธื“ื™ื•ื ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื•ื•ืึธืก ื–ืขื ืขืŸ ื ื™ืฉื˜ ื’ืขืฉื˜ื™ืฆื˜ ืื™ืŸ FreeBSD ื“ื•ืจืš ื“ื™ ื ืึธืจืžืึทืœ ืงืจื™ืคึผื˜ืึธ-ืึทืคึผื™. . ื‘ืขืฉืึทืก ื“ืขืจ ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’ ืคึผืจืึธืฆืขืก, ืึทืคึผื˜ืึทืžืึทื–ื™ื™ืฉืึทืŸ ืื™ื– ืื•ื™ืš ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ืฆื• ื™ื•ื•ืึทื ืœื™ ื‘ืึทืœืึทื ืกื™ืจืŸ ื“ื™ ื‘ื™ื™ื ื“ื™ื ื’ ืคื•ืŸ ืคึผืึทืงืึทื˜ ืขื ืงืจื™ืคึผืฉืึทืŸ ืื•ืŸ ื“ืขืงืจื™ืคึผื˜ื™ืึธืŸ ื˜ืึทืกืงืก ืฆื• ืงืคึผื• ืงืึธืจืขืก, ื•ื•ืึธืก ืจื™ื“ื•ืกื˜ ื“ื™ ืึธื•ื•ื•ืขืจื›ืขื“ ื•ื•ืขืŸ ืคึผืจืึทืกืขืกื™ื ื’ WireGuard ืคึผืึทืงื™ืฅ.

    ื“ื™ ืœืขืฆื˜ืข ืคึผืจื•ื•ื•ืŸ ืฆื• ืึทืจื™ื™ึทื ื ืขืžืขืŸ WireGuard ืื™ืŸ FreeBSD ืื™ื– ื’ืขืžืื›ื˜ ืื™ืŸ 2020, ืึธื‘ืขืจ ืขื ื“ื™ืงื˜ ื–ื™ืš ืื™ืŸ ืึท ืกืงืึทื ื“ืึทืœ, ื•ื•ื™ ืึท ืจืขื–ื•ืœื˜ืึทื˜ ืคื•ืŸ ื•ื•ืึธืก ื“ื™ ืฉื•ื™ืŸ ืฆื•ื’ืขืœื™ื™ื’ื˜ ืงืึธื“ ืื™ื– ืึทื•ื•ืขืงื’ืขื ื•ืžืขืŸ ืจืขื›ื˜ ืฆื• ื ื™ื“ืขืจื™ืง ืงื•ื•ืึทืœื™ื˜ืขื˜, ืึธืคึผื’ืขืœืึธื–ืŸ ืึทืจื‘ืขื˜ ืžื™ื˜ ื‘ืึทืคืขืจื–, ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ืกื˜ืึทื‘ืก ืึทื ืฉื˜ืึธื˜ ืคื•ืŸ ื˜ืฉืขืงืก, ื“ืขืจืขื ื“ื™ืงื˜ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ. ืคื•ืŸ ื“ืขื ืคึผืจืึธื˜ืึธืงืึธืœ ืื•ืŸ ื”ื™ืœืขืœ ืคื•ืŸ ื“ื™ GPL ื“ืขืจืœื•ื™ื‘ืขื ื™ืฉ. ื“ื™ ื ื™ื™ึทืข ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืื™ื– ืฆื•ื–ืึทืžืขืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ื“ื•ืจืš ื“ื™ ื”ืึทืจืฅ FreeBSD ืื•ืŸ WireGuard ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’ ื˜ื™ืžื–, ืžื™ื˜ ืงืึทื ื˜ืจืึทื‘ื™ื•ืฉืึทื ื– ืคื•ืŸ Jason A. Donenfeld, ืžื—ื‘ืจ ืคื•ืŸ VPN WireGuard, ืื•ืŸ John H. Baldwin, ืึท ื‘ืึทืจื™ืžื˜ ืคืจืขืขื‘ืกื“ ื“ืขื•ื•ืขืœืึธืคึผืขืจ. ื ืคื•ืœ ืจืขืฆืขื ื–ื™ืข ืคื•ืŸ โ€‹โ€‹ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ ืื™ื– ื’ืขื•ื•ืขืŸ ื’ืขืคื™ืจื˜ ืžื™ื˜ ื“ื™ ืฉื˜ื™ืฆืŸ ืคื•ืŸ ื“ื™ FreeBSD ื•ื•ื™ืงื™ืคึผืขื“ื™ืข ืื™ื™ื“ืขืจ ื“ื™ ื ื™ื™ึทืข ืงืึธื“ ืื™ื– ืื ื’ืขื ื•ืžืขืŸ.

  • ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ Netlink ืงืึธืžื•ื ื™ืงืึทืฆื™ืข ืคึผืจืึธื˜ืึธืงืึธืœ (RFC 3549), ื’ืขื ื™ืฆื˜ ืื™ืŸ ืœื™ื ื•ืงืก ืฆื• ืึธืจื’ืึทื ื™ื–ื™ืจืŸ ื“ื™ ื™ื ื˜ืขืจืึทืงืฉืึทืŸ ืคื•ืŸ ื“ื™ ืงืขืจืŸ ืžื™ื˜ ืคึผืจืึทืกืขืกืึทื– ืื™ืŸ ื‘ืึทื ื™ืฆืขืจ ืคึผืœืึทืฅ, ืื™ื– ื™ืžืคึผืœืึทืžืขื ืึทื“. ื“ื™ ืคึผืจื•ื™ืขืงื˜ ืื™ื– ืœื™ืžื™ื˜ืขื“ ืฆื• ืฉื˜ื™ืฆืŸ ื“ื™ NETLINK_ROUTE ืžืฉืคึผื—ื” ืคื•ืŸ ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืคึฟืึทืจ ืึธื ืคื™ืจื•ื ื’ ื“ื™ ืฉื˜ืึทื˜ ืคื•ืŸ ื“ื™ ื ืขืฅ ืกืึทื‘ืกื™ืกื˜ืึทื ืื™ืŸ ื“ื™ ืงืขืจืŸ, ื•ื•ืึธืก ืึทืœืึทื•ื– FreeBSD ืฆื• ื ื•ืฆืŸ ื“ื™ ืœื™ื ื•ืงืก ื™ืคึผ ื ื•ืฆืŸ ืคึฟื•ืŸ ื“ื™ iproute2 ืคึผืขืงืœ ืฆื• ืคื™ืจืŸ ื ืขืฅ ื™ื ื˜ืขืจืคื™ื™ืกื™ื–, ืฉื˜ืขืœืŸ IP ืึทื“ืจืขืกืขืก, ืงืึทื ืคื™ื’ื™ืขืจ ืจื•ื˜ื™ื ื’ ืื•ืŸ ืžืึทื ื™ืคึผื•ืœื™ืจืŸ Nexthop ืึทื‘ื“ื–ืฉืขืงืฅ ื•ื•ืึธืก ืงืจืึธื ืฉื˜ืึทื˜ ื“ืึทื˜ืŸ ื’ืขื ื™ืฆื˜ ืคึฟืึทืจ ื˜ืจืึทื ืกืžื™ื˜ื™ื ื’ ื“ื™ ืคึผืึทืงืึทื˜ ืฆื• ื“ื™ ื’ืขื‘ืขื˜ืŸ ื“ืขืกื˜ื™ื ื™ื™ืฉืึทืŸ.
  • ืึทืœืข ื‘ืึทื–ืข ืกื™ืกื˜ืขื ืขืงืกืขืงื•ื˜ืึทื‘ืœืขืก ืื•ื™ืฃ 64-ื‘ื™ืกืœ ืคึผืœืึทื˜ืคืึธืจืžืก ื”ืึธื‘ืŸ ืึทื“ืจืขืก ืกืคืขื™ืก ืื•ื™ืกืœื™ื™ื’ ืจืึทื ื“ืึธืžื™ื–ืึทื˜ื™ืึธืŸ (ASLR) ืขื ื™ื™ื‘ืึทืœื“ ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜. ืฆื• ืกืึทืœืขืงื˜ื™ื•ื•ืœื™ ื“ื™ืกื™ื™ื‘ืึทืœ ASLR, ืื™ืจ ืงืขื ืขืŸ ื ื•ืฆืŸ ื“ื™ ืงืึทืžืึทื ื“ื– "proccontrol -m aslr -s disable" ืึธื“ืขืจ "elfctl -e +noaslr".
  • ืื™ืŸ ipfw, ืจืึทื“ื™ืงืก ื˜ื™ืฉืŸ ื–ืขื ืขืŸ ื’ืขื ื™ืฆื˜ ืฆื• ื–ื•ื›ืŸ MAC ืึทื“ืจืขืกืขืก, ื•ื•ืึธืก ืึทืœืึทื•ื– ืื™ืจ ืฆื• ืฉืึทืคึฟืŸ ื˜ื™ืฉืŸ ืžื™ื˜ MAC ืึทื“ืจืขืกืขืก ืื•ืŸ ื ื•ืฆืŸ ื–ื™ื™ ืฆื• ืคื™ืœื˜ืขืจ ืคืึทืจืงืขืจ. ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ: ipfw table 1 create type mac ipfw table 1 add 11:22:33:44:55:66/48 ipfw add skipto tablearg src-mac 'table(1)' ipfw add deny src-mac 'table(1, 100)' ipfw ืœื™ื™ื’ืŸ ืœื™ื™ืงืขื ืขืŸ ืœื•ืงืึทืคึผ dst-mac 1
  • ืงืขืจื ืขืœ ืžืึทื“ื–ืฉื•ืœื– dpdk_lpm4 ืื•ืŸ dpdk_lpm6 ื–ืขื ืขืŸ ืฆื•ื’ืขื’ืขื‘ืŸ ืื•ืŸ ื–ืขื ืขืŸ ื‘ืืจืขื›ื˜ื™ื’ื˜ ืคึฟืึทืจ ืœืึธื•ื“ื™ื ื’ ื“ื•ืจืš loader.conf ืžื™ื˜ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ DIR-24-8 ืžืึทืจืฉืจื•ื˜ ื–ื•ื›ืŸ ืึทืœื’ืขืจื™ื“ืึทื ืคึฟืึทืจ IPv4/IPv6, ื•ื•ืึธืก ืึทืœืึทื•ื– ืื™ืจ ืฆื• ืึทืคึผื˜ืึทืžื™ื™ื– ืจื•ื˜ื™ื ื’ ืคืึทื ื’ืงืฉืึทื ื– ืคึฟืึทืจ ืžื—ื ื•ืช ืžื™ื˜ ื–ื™ื™ืขืจ ื’ืจื•ื™ืก ืจื•ื˜ื™ื ื’ ื˜ื™ืฉืŸ ( ืื™ืŸ ื˜ืขืกืฅ, ืึท ื’ื™ื›ืงื™ื™ึทื˜ ืคืึทืจื’ืจืขืกืขืจืŸ ืคื•ืŸ 25 ืื™ื– ื‘ืืžืขืจืงื˜ %). ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ ืžืึทื“ื–ืฉื•ืœื–, ื“ื™ ื ืึธืจืžืึทืœ ืžืึทืจืฉืจื•ื˜ ื ื•ืฆืŸ ืงืขื ืขืŸ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜ (ื“ื™ FIB_ALGO ืึธืคึผืฆื™ืข ืื™ื– ืฆื•ื’ืขื’ืขื‘ืŸ).
  • ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ ZFS ื˜ืขืงืข ืกื™ืกื˜ืขื ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ืžืขืœื“ื•ื ื’ OpenZFS 2.1.9. ื“ื™ ื–ืคืกืงื™ื™ืก ืกื˜ืึทืจื˜ืึทืคึผ ืฉืจื™ืคื˜ ื’ื™ื˜ ืึธื˜ืึทืžืึทื˜ื™ืง ืœืึธื•ื“ื™ื ื’ ืคื•ืŸ ืฉืœื™ืกืœืขืŸ ืกื˜ืึธืจื“ ืื™ืŸ ื“ื™ ZFS ื˜ืขืงืข ืกื™ืกื˜ืขื. ืฆื•ื’ืขืœื™ื™ื’ื˜ ื ื™ื™ึท RC ืฉืจื™ืคื˜ ื–ืคึผืึธืึธืœืจืขื’ื•ื™ื“ ืฆื• ื‘ืึทืฉื˜ื™ืžืขืŸ ืึท GUID ืฆื• ืื™ื™ื ืขืจ ืึธื“ืขืจ ืžืขืจ ื–ืคึผืึธืึธืœืก (ืœืžืฉืœ ื ื•ืฆื™ืง ืคึฟืึทืจ ืฉืขืจื“ ื“ืึทื˜ืŸ ื•ื•ื™ืจื˜ื•ืึทืœื™ื–ืึทื˜ื™ืึธืŸ ื™ื ื•ื•ื™ื™ืจืึทื ืžืึทื ืฅ).
  • ื“ื™ Bhyve ื›ื™ื™ืคึผืขืจื•ื•ื™ื™ื–ืขืจ ืื•ืŸ ื“ื™ VMM ืžืึธื“ื•ืœืข ืฉื˜ื™ืฆืŸ ืึทื˜ืึทื˜ืฉื™ื ื’ ืžืขืจ ื•ื•ื™ 15 ื•ื•ื™ืจื˜ื•ืขืœ ืงืคึผื•ืก ืฆื• ื“ื™ ื’ืึทืกื˜ ืกื™ืกื˜ืขื (ืจืขื’ื™ืึทืœื™ื™ื˜ืึทื“ ื“ื•ืจืš ืกื™ืกื˜ืœ ื”ื•ื•.ื•ื•ืžืž.ืžืึทืงืกืงืคึผื•). ื“ื™ bhyve ื ื•ืฆืŸ ื™ืžืคึผืœืึทืžืึทื ืฅ ืขืžื™ืึทืœื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ ื•ื•ื™ืจื˜ื™ืึธ-ืึทืจื™ื™ึทื ืคื™ืจ ืžื™ื˜ืœ, ืžื™ื˜ ื•ื•ืึธืก ืื™ืจ ืงืขื ืขืŸ ืคืึทืจื‘ื™ื™ึทื˜ืŸ ืงืœืึทื•ื•ื™ืึทื˜ื•ืจ ืื•ืŸ ืžื•ื™ื– ืึทืจื™ื™ึทื ืฉืจื™ื™ึทื‘ ื’ืขืฉืขืขื ื™ืฉืŸ ืื™ืŸ ื“ื™ ื’ืึทืกื˜ ืกื™ืกื˜ืขื.
  • ืื™ืŸ KTLS, ืึทืŸ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ TLS ืคึผืจืึธื˜ืึธืงืึธืœ ืคืœื™ืกื ื“ื™ืง ืื•ื™ืฃ ื“ื™ FreeBSD ืงืขืจืŸ ืžื“ืจื’ื”, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื™ื™ึทื–ื ื•ื•ืึทืจื’ ืึทืงืกืขืœืขืจื™ื™ืฉืึทืŸ ืคื•ืŸ TLS 1.3 ืื™ื– ืฆื•ื’ืขื’ืขื‘ืŸ ื“ื•ืจืš ืึธืคืœืึธื•ื“ื™ื ื’ ืขื˜ืœืขื›ืข ืึทืคึผืขืจื™ื™ืฉืึทื ื– ืฉื™ื™ึทื›ื•ืช ืฆื• ืคึผืจืึทืกืขืกื™ื ื’ ื™ื ืงืจื™ืคึผื˜ื™ื“ ื™ื ืงืึทืžื™ื ื’ ืคึผืึทืงื™ืฅ ืฆื• ื“ื™ ื ืขืฅ ืงืึธืจื˜. ื‘ื™ื– ืึทื”ืขืจ, ืึท ืขื ืœืขืš ืฉื˜ืจื™ืš ืื™ื– ื’ืขื•ื•ืขืŸ ื‘ืืจืขื›ื˜ื™ื’ื˜ ืคึฟืึทืจ TLS 1.1 ืื•ืŸ TLS 1.2.
  • ืื™ืŸ ื“ื™ ื’ืจืึธื•ื˜ืคืก ืกื˜ืึทืจื˜ืึทืคึผ ืฉืจื™ืคื˜, ื•ื•ืขืŸ ื™ืงืกืคึผืึทื ื“ื™ื ื’ ื“ื™ ื•ื•ืึธืจืฆืœ ื˜ืขืงืข ืกื™ืกื˜ืขื, ืขืก ืื™ื– ืžืขื’ืœืขืš ืฆื• ืœื™ื™ื’ืŸ ืึท ื•ื™ืกื‘ื™ื™ึทื˜ืŸ ืฆืขื˜ื™ื™ืœื•ื ื’ ืื•ื™ื‘ ืึทื–ืึท ืึท ืฆืขื˜ื™ื™ืœื•ื ื’ ืื™ื– ื’ืขื•ื•ืขืŸ ื˜ื›ื™ืœืขืก ืคืขืœื ื“ื™ืง (ืœืžืฉืœ ื ื•ืฆื™ืง ื•ื•ืขืŸ ื™ื ืกื˜ืึธืœื™ื ื’ ืึท ืคืึทืจื˜ื™ืง ืกื™ืกื˜ืขื ื‘ื™ืœื“ ืื•ื™ืฃ ืึท ืกื“ ืงืึธืจื˜). ืฆื• ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ื•ื™ืกื‘ื™ื™ึทื˜ืŸ ื’ืจื™ื™ืก, ืึท ื ื™ื™ึทืข ืคึผืึทืจืึทืžืขื˜ืขืจ growfs_swap_size ืื™ื– ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฆื• rc.conf.
  • ื“ื™ ื”ืึธืกื˜ื™ื“ ืกื˜ืึทืจื˜ืึทืคึผ ืฉืจื™ืคื˜ ื™ื ืฉื•ืจื– ืึทื– ืึท ื˜ืจืึทืค - UUID ืื™ื– ื“ื–ืฉืขื ืขืจื™ื™ื˜ืึทื“ ืื•ื™ื‘ ื“ื™ /etc/hostid ื˜ืขืงืข ืื™ื– ืคืขืœื ื“ื™ืง ืื•ืŸ ื“ื™ UUID ืงืขื ืขืŸ ื ื™ื˜ ื–ื™ื™ืŸ ื‘ืืงื•ืžืขืŸ ืคึฟื•ืŸ ื“ื™ ื™ื™ึทื–ื ื•ื•ืึทืจื’. ืื•ื™ืš ืฆื•ื’ืขื’ืขื‘ืŸ ืึท /etc/machine-id ื˜ืขืงืข ืžื™ื˜ ืึท ืกืึธืœื™ื“ ืคืึทืจื˜ืจืขื˜ื•ื ื’ ืคื•ืŸ ื“ืขืจ ื‘ืึทืœืขื‘ืึธืก ืฉื™ื™ึทืŸ (ืงื™ื™ืŸ ื›ื™ื™ืคืึทื ื–).
  • ื“ื™ defaultrouter_fibN ืื•ืŸ ipv6_defaultrouter_fibN ื•ื•ืขืจื™ืึทื‘ืึทืœื– ื–ืขื ืขืŸ ืฆื•ื’ืขื’ืขื‘ืŸ ืฆื• rc.conf, ื“ื•ืจืš ื•ื•ืึธืก ืื™ืจ ืงืขื ืขืŸ ืœื™ื™ื’ืŸ ืคืขืœื™ืงื™ื™ึทื˜ ืจื•ืฅ ืฆื• FIB ื˜ื™ืฉืŸ ืื ื“ืขืจืข ื•ื•ื™ ื“ื™ ืขืจืฉื˜ื™ืง.
  • ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ SHA-512/224 ื”ืึทืฉืขืก ืื™ื– ืฆื•ื’ืขื’ืขื‘ืŸ ืฆื• ื“ื™ libmd ื‘ื™ื‘ืœื™ืึธื˜ืขืง.
  • ื“ื™ pthread ื‘ื™ื‘ืœื™ืึธื˜ืขืง ื’ื™ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ ืกืขืžืึทื ื˜ื™ืงืก ืคื•ืŸ ืคืึทื ื’ืงืฉืึทื ื– ื’ืขื ื™ืฆื˜ ืื™ืŸ ืœื™ื ื•ืงืก.
  • ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ืงืึธื•ื“ื™ื ื’ ืœื™ื ื•ืงืก ืกื™ืกื˜ืขื ืจื•ืคื˜ ืฆื• kdump. ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ืœื™ื ื•ืงืก-ื ื•ืกื— ืกื™ืกื˜ืขื ืจื•ืคืŸ ื˜ืจื™ื™ืกื™ื ื’ ืฆื• kdump ืื•ืŸ sysdecode.
  • ื“ื™ ืงื™ืœืึทืœืœ ื ื•ืฆืŸ ื”ืื˜ ืื™ืฆื˜ ื“ื™ ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ืฉื™ืงืŸ ืึท ืกื™ื’ื ืึทืœ ืฆื• ืคึผืจืึทืกืขืกืึทื– ืคืืจื‘ื•ื ื“ืŸ ืฆื• ืึท ืกืคึผืขืฆื™ืคื™ืฉ ื•ื•ืึธืงื–ืึทืœ (ืœืžืฉืœ, "killall -t pts / 1").
  • ืฆื•ื’ืขืœื™ื™ื’ื˜ nproc ื ื•ืฆืŸ ืฆื• ื•ื•ื™ื™ึทื–ืŸ ื“ื™ ื ื•ืžืขืจ ืคื•ืŸ ืงืึทืžืคึผื™ื•ื˜ื™ื™ืฉืึทื ืึทืœ ื‘ืœืึทืงืก ื‘ื ื™ืžืฆื ืฆื• ื“ืขื ืงืจืึทื ื˜ ืคึผืจืึธืฆืขืก.
  • ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ืงืึธื•ื“ื™ื ื’ ACS (ืึทืงืกืขืก ืงืึธื ื˜ืจืึธืœ ื‘ืึทื“ื™ื ื•ื ื’ืก) ืคึผืึทืจืึทืžืขื˜ืขืจืก ืื™ื– ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฆื• ื“ื™ pciconf ื ื•ืฆืŸ.
  • ื“ื™ SPLIT_KERNEL_DEBUG ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืื™ื– ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฆื• ื“ื™ ืงืขืจืŸ, ื•ื•ืึธืก ืึทืœืึทื•ื– ืื™ืจ ืฆื• ืจืึทื˜ืขื•ื•ืขืŸ ื“ื™ื‘ืึทื’ื™ื ื’ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืคึฟืึทืจ ื“ื™ ืงืขืจืŸ ืื•ืŸ ืงืขืจืŸ ืžืึทื“ื–ืฉื•ืœื– ืื™ืŸ ื‘ืึทื–ื•ื ื“ืขืจ ื˜ืขืงืขืก.
  • ื“ื™ ืœื™ื ื•ืงืก ABI ืื™ื– ื›ึผืžืขื˜ ื’ืึทื ืฅ ืžื™ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ vDSO (ื•ื•ื™ืจื˜ื•ืึทืœ ื“ื™ื ืึทืžื™ืฉ ืฉืขืจื“ ืึทื‘ื“ื–ืฉืขืงืฅ) ืžืขืงืึทื ื™ื–ืึทื, ื•ื•ืึธืก ื’ื™ื˜ ืึท ืœื™ืžื™ื˜ืขื“ ื’ืึทื ื’ ืคื•ืŸ ืกื™ืกื˜ืขื ืงืึทืœืœืก ื‘ื ื™ืžืฆื ืื™ืŸ ื‘ืึทื ื™ืฆืขืจ ืคึผืœืึทืฅ ืึธืŸ ืงืึธื ื˜ืขืงืกื˜ ืกื•ื•ื™ื˜ืฉื™ื ื’. ื“ื™ Linux ABI ืื•ื™ืฃ ARM64 ืกื™ืกื˜ืขืžืขืŸ ืื™ื– ื’ืขื•ื•ืขืŸ ื’ืœื™ื™ืš ืžื™ื˜ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ AMD64 ืึทืจืงืึทื˜ืขืงื˜ืฉืขืจ.
  • ื™ืžืคึผืจื•ื•ื•ื“ ื™ื™ึทื–ื ื•ื•ืึทืจื’ ืฉื˜ื™ืฆืŸ. ืฆื•ื’ืขืœื™ื™ื’ื˜ ืคืึธืจืฉื˜ืขืœื•ื ื’ ืžืึธื ื™ื˜ืึธืจื™ื ื’ (hwpmc) ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ Intel Alder Lake CPUs. ื“ื™ iwlwifi ืฉืึธืคืขืจ ืคึฟืึทืจ ื™ื ื˜ืขืœ ื•ื•ื™ื™ืจืœื™ืก ืงืึทืจื“ืก ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืžื™ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื ื™ื™ึทืข ื˜ืฉื™ืคึผืก ืื•ืŸ ื“ื™ 802.11ac ื ืึธืจืžืึทืœ. ืฆื•ื’ืขื’ืขื‘ืŸ rtw88 ืฉืึธืคืขืจ ืคึฟืึทืจ Realtek ื•ื•ื™ื™ืจืœื™ืก ืงืึทืจื“ืก ืžื™ื˜ ืคึผืกื™ ืฆื•ื‘ื™ื ื“. ื“ื™ ืงื™ื™ืคึผืึทื‘ื™ืœืึทื˜ื™ื– ืคื•ืŸ ื“ื™ ืœื™ื ื•ืงืกืงืคึผื™ ืฉื™ื›ื˜ืข ื–ืขื ืขืŸ ื™ืงืกืคึผืึทื ื“ื™ื“ ืคึฟืึทืจ ื ื•ืฆืŸ ืžื™ื˜ ืœื™ื ื•ืงืก ื“ืจื™ื•ื•ืขืจืก ืื™ืŸ FreeBSD.
  • ื“ื™ OpenSSL ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ื•ื•ืขืจืกื™ืข 1.1.1ื˜, LLVM/Slang ืฆื• ื•ื•ืขืจืกื™ืข 14.0.5, ืื•ืŸ ื“ื™ SSH ืกืขืจื•ื•ืขืจ ืื•ืŸ ืงืœื™ืขื ื˜ ื–ืขื ืขืŸ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• OpenSSH 9.2p1 (ื“ื™ ืคืจื™ืขืจื“ื™ืงืข ื•ื•ืขืจืกื™ืข ื’ืขื ื™ืฆื˜ OpenSSH 8.8p1). ืื•ื™ืš ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ื–ืขื ืขืŸ ื•ื•ืขืจืกื™ืขืก ื‘ืง 6.2.4, ืขืงืกืคึผืึทื˜ 2.5.0, ื˜ืขืงืข 5.43, ื•ื•ื™ื™ื ื™ืงืขืจ 608, ืœื™ื‘ืึทืจื›ื™ื•ื•ืข 3.6.2, ืกืขื ื“ืžืึทื™ืœ 8.17.1, ืกืงืœื™ื™ื˜ 3.40.1, ืึทื ื‘ืึทื•ื ื“ 1.17.1, ื–ืœื™ื‘ 1.2.13.

ืื™ืŸ ื“ืขืจืฆื•, ืขืก ืื™ื– ืึทื ืึทื•ื ืกื˜ ืึทื–, ืกื˜ืึทืจื˜ื™ื ื’ ืžื™ื˜ ื“ื™ FreeBSD 14.0 ืฆื•ื•ื™ื™ึทื’, ืื™ื™ืŸ-ืฆื™ื™ึทื˜ ืคึผืึทืกื•ื•ืขืจื“ื– OPIE, ce ืื•ืŸ cp ื“ืจื™ื•ื•ืขืจืก, ื“ืจื™ื•ื•ืขืจืก ืคึฟืึทืจ ื™ืกืึท ืงืึทืจื“ืก, ืžืขืจื’ืขืžืึทืกื˜ืขืจ ืื•ืŸ ืžื™ื ื™ื’ื–ื™ืคึผ ื™ื•ื˜ื™ืœืึทื˜ื™ื–, ืึทื˜ื ืงืึทืžืคึผืึธื•ื ืึทื ืฅ ืื™ืŸ ื ืขื˜ื’ืจืึทืฃ (NgATM), ื“ื™ ื˜ืขืœื ืขื˜ื“ ื”ื™ื ื˜ืขืจื’ืจื•ื ื˜ ืคึผืจืึธืฆืขืก ืื•ืŸ ื“ื™ VINUM ืงืœืึทืก ืื™ืŸ ื’ืขืึธื.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’