AlmaLinux 9 ืคืึทืจ-ืžืขืœื“ื•ื ื’ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ RHEL 9 ืฆื•ื•ื™ื™ึทื’

ื ื‘ื™ืชื ืžืขืœื“ื•ื ื’ ืคื•ืŸ ื“ื™ AlmaLinux 9 ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืื™ื– ื“ืขืจืœืื ื’ื˜, ื’ืขื‘ื•ื™ื˜ ืžื™ื˜ ืคึผืึทืงืึทื“ื–ืฉืึทื– ืคื•ืŸ ื“ื™ Red Hat Enterprise Linux 9 ืฆื•ื•ื™ื™ึทื’ ืื•ืŸ ืžื™ื˜ ืึทืœืข ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ ืคืืจื’ืขืœื™ื™ื’ื˜ ืื™ืŸ ื“ืขื ืžืขืœื“ื•ื ื’. ืึทืกืขืžื‘ืœื™ ื–ืขื ืขืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ืคึฟืึทืจ ืงืก86_64, ARM64, s390x ืื•ืŸ ppc64le ืึทืจืงืึทื˜ืขืงื˜ืฉืขืจื– ืื™ืŸ ื“ื™ ืคืึธืจืขื ืคื•ืŸ ืฉื˜ื™ื•ื•ืœ (780 ืžืขื’ืื‘ื™ื™ื˜ืŸ), ืžื™ื ื™ืžื•ื (1.7 ื’ื™ื’ืื‘ื™ื™ื˜) ืื•ืŸ ืคื•ืœ ื‘ื™ืœื“ (8 ื’ื™ื’ืื‘ื™ื™ื˜). RHEL 9 ืื•ืŸ AlmaLinux 9 ืจื™ืœื™ืกื™ื– ื–ืขื ืขืŸ ื’ืขืจื™ื›ื˜ ืื™ืŸ ืคืจื™ ืžื™ื™ึท.

ื“ื™ ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืื™ื– ื™ื™ื“ืขื ื™ืงืึทืœ ืฆื• RHEL ืื™ืŸ ืคืึทื ื’ืงืฉืึทื ืึทืœื™ื˜ื™, ืึทื—ื•ืฅ ืคึฟืึทืจ ืจื™ื‘ืจืึทื ื“ื™ื ื’ ืื•ืŸ ื‘ืึทื–ื™ื™ึทื˜ื™ืงื•ื ื’ ืคื•ืŸ RHEL-ืกืคึผืขืฆื™ืคื™ืฉ ืคึผืึทืงืึทื“ื–ืฉืึทื– ืึทื–ืึท ื•ื•ื™ Redhat-*, Insights-Client ืื•ืŸ Subscription-Manager-Migration*. AlmaLinux ืื™ื– ืคืจื™ื™ ืคึฟืึทืจ ืึทืœืข ืงืึทื˜ืขื’ืึธืจื™ืขืก ืคื•ืŸ ื ื™ืฆืขืจืก, ื“ืขื•ื•ืขืœืึธืคึผืขื“ ืžื™ื˜ ื“ื™ ื™ื ื•ื•ืึทืœื•ื•ืžืึทื ื˜ ืคื•ืŸ ื“ื™ ืงื”ืœ ืื•ืŸ ื ื™ืฆืŸ ืึท ืคืึทืจื•ื•ืึทืœื˜ื•ื ื’ ืžืึธื“ืขืœ ืขื ืœืขืš ืฆื• ื“ืขืจ ืึธืจื’ืึทื ื™ื–ืึทืฆื™ืข ืคื•ืŸ โ€‹โ€‹ื“ื™ ืคืขื“ืึธืจืึท ืคึผืจื•ื™ืขืงื˜. ื“ื™ ืงืจื™ื™ื™ื˜ืขืจื– ืคื•ืŸ AlmaLinux ื’ืขืคืจื•ื•ื•ื˜ ืฆื• ื“ืขืจื’ืจื™ื™ื›ืŸ ืึทืŸ ืึธืคึผื˜ื™ืžืึทืœ ื•ื•ืึธื’ ืฆื•ื•ื™ืฉืŸ ืคึฟื™ืจืžืข ืฉื˜ื™ืฆืŸ ืื•ืŸ ื“ื™ ืื™ื ื˜ืขืจืขืกืŸ ืคื•ืŸ ื“ื™ ืงื”ืœ - ืื•ื™ืฃ ื“ื™ ืื™ื™ืŸ ื”ืึทื ื˜, ื“ื™ ืจืขืกื•ืจืกืŸ ืื•ืŸ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ืคื•ืŸ CloudLinux, ื•ื•ืึธืก ื”ืื˜ ื‘ืจื™ื™ื˜ ื“ืขืจืคืึทืจื•ื ื’ ืื™ืŸ ืฉื˜ื™ืฆืŸ RHEL ืคืึธืจืงืก, ื–ืขื ืขืŸ ื™ื ื•ื•ืึทืœื•ื•ื“ ืื™ืŸ ื“ืขืจ ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’, ืื•ืŸ ืื•ื™ืฃ ื“ื™ ืื ื“ืขืจืข ื”ืึทื ื˜, ื“ื™ ืคึผืจื•ื™ืขืงื˜ ืื™ื– ื˜ืจืึทื ืกืคึผืขืจืึทื ื˜ ืื•ืŸ ืงืึทื ื˜ืจืึธื•ืœื“ ื“ื•ืจืš ื“ื™ ืงื”ืœ.

ื“ื™ AlmaLinux ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืื™ื– ื’ืขื’ืจื™ื ื“ืขื˜ ื“ื•ืจืš CloudLinux, ื•ื•ืึธืก, ื˜ืจืึธืฅ ื“ื™ ื™ื ื•ื•ืึทืœื•ื•ืžืึทื ื˜ ืคื•ืŸ ื–ื™ื™ืŸ ืื™ื™ื’ืขื ืข ืจืขืกื•ืจืกืŸ ืื•ืŸ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก, ื˜ืจืึทื ืกืคืขืจื“ ื“ื™ ืคึผืจื•ื™ืขืงื˜ ืฆื• ืึท ื‘ืึทื–ื•ื ื“ืขืจ ื ืึทืŸ-ื ื•ืฅ ืึธืจื’ืึทื ื™ื–ืึทืฆื™ืข AlmaLinux OS Foundation ืคึฟืึทืจ ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’ ืื™ืŸ ืึท ื ื™ื™ื˜ืจืึทืœ ืคึผืœืึทื˜ืคืึธืจืžืข ืžื™ื˜ ืงื”ืœ ืึธื ื˜ื™ื™ืœ. ื ืžื™ืœื™ืึธืŸ ื“ืึธืœืœืึทืจืก ืึท ื™ืึธืจ ืื™ื– ืึทืœืึทืงื™ื™ื˜ื™ื“ ืคึฟืึทืจ ื“ืขืจ ืึทื ื˜ื•ื•ื™ืงืœื•ื ื’ ืคื•ืŸ ื“ื™ ืคึผืจื•ื™ืขืงื˜. ื›ืœ ื“ื™ื•ื•ืขืœืึทืคึผืžืึทื ืฅ ืคื•ืŸ AlmaLinux ื–ืขื ืขืŸ ืืจื•ื™ืก ืื•ื ื˜ืขืจ ืคืจื™ื™ ืœื™ื™ืกืึทื ืกื™ื–.

ื”ื•ื™ืคึผื˜ ืขื ื“ืขืจื•ื ื’ืขืŸ ืื™ืŸ AlmaLinux 9 ืื•ืŸ RHEL 9 ืงืึทืžืคึผืขืจื“ ืžื™ื˜ ื“ื™ RHEL 8 ืฆื•ื•ื™ื™ึทื’:

  • ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืกื™ืกื˜ืขื ืกื•ื•ื™ื•ื•ืข ืื•ืŸ ืคึฟืึทืจื–ืึทืžืœื•ื ื’ ืžื›ืฉื™ืจื™ื. GCC 11 ืื™ื– ื’ืขื ื™ืฆื˜ ืฆื• ื‘ื•ื™ืขืŸ ืคึผืึทืงืึทื“ื–ืฉืึทื–. ื“ื™ ื ืึธืจืžืึทืœ C ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• Glibc 2.34. ื“ื™ ืœื™ื ื•ืงืก ืงืขืจืŸ ืคึผืขืงืœ ืื™ื– ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ืžืขืœื“ื•ื ื’ 5.14. RPM ืคึผืขืงืœ ืคืึทืจื•ื•ืึทืœื˜ืขืจ ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ื•ื•ืขืจืกื™ืข 4.16 ืžื™ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ืึธืจื ื˜ืœืขื›ืงื™ื™ึทื˜ ืงืึธื ื˜ืจืึธืœ ื“ื•ืจืš ืคืึทืคึผืึธืœื™ืกื™ื“.
  • ื“ื™ ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืžื™ื™ื’ืจื™ื™ืฉืึทืŸ ืฆื• Python 3 ืื™ื– ื’ืขืขื ื“ื™ืงื˜. ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, ื“ื™ Python 3.9 ืฆื•ื•ื™ื™ึทื’ ืื™ื– ืคืืจื’ืขืœื™ื™ื’ื˜. ืคึผื™ื˜ื”ืึธืŸ 2 ืื™ื– ื“ื™ืกืงืึทื ื˜ื™ื ื™ื•ื“.
  • ื“ื™ ื“ืขืกืงื˜ืึทืคึผ ืื™ื– ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ GNOME 40 (RHEL 8 ืฉื™ืคึผื˜ GNOME 3.28) ืื•ืŸ ื“ื™ GTK 4 ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืื™ืŸ GNOME 40, ื•ื•ื™ืจื˜ื•ืึทืœ ื“ืขืกืงื˜ืึทืคึผืก ืื™ืŸ ื“ื™ ืึทืงื˜ื™ื•ื•ื™ื˜ืขื˜ืŸ ืื™ื‘ืขืจื‘ืœื™ืง ืžืึธื“ืข ื–ืขื ืขืŸ ืกื•ื•ื™ื˜ืฉื˜ ืฆื• ืœืึทื ื“ืฉืึทืคื˜ ืžืึธื“ืข ืื•ืŸ ื–ืขื ืขืŸ ื’ืขื•ื•ื™ื–ืŸ ื•ื•ื™ ืึท ืงืึทื ื˜ื™ื ื™ื•ืึทืกืœื™ ืกืงืจืึธืœืœื™ื ื’ ืงื™ื™ื˜ ืคื•ืŸ ืœื™ื ืงืก ืฆื• ืจืขื›ื˜. ื™ืขื“ืขืจ ื“ืขืกืงื˜ืึทืคึผ ื’ืขื•ื•ื™ื–ืŸ ืื™ืŸ ืื™ื‘ืขืจื‘ืœื™ืง ืžืึธื“ืข ื’ื™ื˜ ืึท ื•ื•ื™ื–ืฉืึทื•ื•ืึทืœ ืคืึทืจื˜ืจืขื˜ื•ื ื’ ืคื•ืŸ ื“ื™ ื‘ื ื™ืžืฆื ืคึฟืขื ืฆื˜ืขืจ ื•ื•ืึธืก ื–ืขื ืขืŸ ื“ื™ื ืึทืžื™ืงืึทืœืœื™ ืคึผืึทื ื“ ืื•ืŸ ื–ื•ืžื“ ื•ื•ืขืŸ ื“ืขืจ ื‘ืึทื ื™ืฆืขืจ ื™ื ื˜ืขืจืึทืงืฅ. ื ืกื™ืžืœืึทืก ื™ื‘ืขืจื’ืึทื ื’ ืฆื•ื•ื™ืฉืŸ ื“ื™ ืจืฉื™ืžื” ืคื•ืŸ ืžื’ื™ืœื” ืื•ืŸ ื•ื•ื™ืจื˜ื•ืึทืœ ื“ืขืกืงื˜ืึทืคึผืก ืื™ื– ืฆื•ื’ืขืฉื˜ืขืœื˜.
  • GNOME ื”ืื˜ ืึท ืžืึทื›ื˜-ืคึผืจืึธืคื™ืœืขืก-ื“ืขืžืึธืŸ ื”ืึทื ื“ืœืขืจ ื•ื•ืึธืก ื’ื™ื˜ ื“ื™ ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ื‘ืึทืฉื˜ื™ืžืขืŸ ืื•ื™ืฃ ื“ื™ ืคืœื™ืขืŸ ืฆื•ื•ื™ืฉืŸ ืžืึทื›ื˜ ืฉืคึผืึธืจืŸ ืžืึธื“ืข, ืžืึทื›ื˜ ื•ื•ืึธื’ ืžืึธื“ืข ืื•ืŸ ืžืึทืงืกื™ืžื•ื ืคืึธืจืฉื˜ืขืœื•ื ื’ ืžืึธื“ืข.
  • ืึทืœืข ืึทื•ื“ื™ืึธ ืกื˜ืจื™ืžื– ื–ืขื ืขืŸ ืืจื™ื‘ืขืจื’ืขืคืืจืŸ ืฆื• ื“ื™ PipeWire ืžืขื“ื™ืข ืกืขืจื•ื•ืขืจ, ื•ื•ืึธืก ืื™ื– ืื™ืฆื˜ ื“ื™ ืคืขืœื™ืงื™ื™ึทื˜ ืึทื ืฉื˜ืึธื˜ ืคื•ืŸ PulseAudio ืื•ืŸ JACK. ื ื™ืฆืŸ PipeWire ืึทืœืึทื•ื– ืื™ืจ ืฆื• ืฆื•ืฉื˜ืขืœืŸ ืคืึทื›ืžืึทืŸ ืึทื•ื“ื™ืึธ ืคึผืจืึทืกืขืกื™ื ื’ ืงื™ื™ืคึผืึทื‘ื™ืœืึทื˜ื™ื– ืื™ืŸ ืึท ืจืขื’ื•ืœืขืจ ื“ืขืกืงื˜ืึทืคึผ ืึทื“ื™ืฉืึทืŸ, ื‘ืึทืงื•ืžืขืŸ ื‘ืึทืคืจื™ื™ึทืขืŸ ืคื•ืŸ ืคืจืึทื’ืžืึทื ื˜ื™ื™ืฉืึทืŸ ืื•ืŸ ืคืึทืจื™ื™ื ื™ืงืŸ ื“ื™ ืึทื•ื“ื™ืึธ ื™ื ืคืจืึทืกื˜ืจืึทืงื˜ืฉืขืจ ืคึฟืึทืจ ืคืึทืจืฉื™ื“ืขื ืข ืึทืคึผืœืึทืงื™ื™ืฉืึทื ื–.
  • ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, ื“ื™ GRUB ืฉื˜ื™ื•ื•ืœ ืžืขื ื™ื• ืื™ื– ืคืึทืจื‘ืึธืจื’ืŸ ืื•ื™ื‘ RHEL ืื™ื– ื“ื™ ื‘ืœื•ื™ื– ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืื™ื ืกื˜ืึทืœื™ืจืŸ ืื•ื™ืฃ ื“ื™ ืกื™ืกื˜ืขื ืื•ืŸ ืื•ื™ื‘ ื“ื™ ืœืขืฆื˜ืข ืฉื˜ื™ื•ื•ืœ ืื™ื– ื’ืขืจืึธื˜ืŸ. ืฆื• ื•ื•ื™ื™ึทื–ืŸ ื“ื™ ืžืขื ื™ื• ื‘ืขืฉืึทืก ืฉื˜ื™ื•ื•ืœ, ื ืึธืจ ื”ืึทืœื˜ืŸ ื“ื™ ืฉื™ืคื˜ ืฉืœื™ืกืœ ืึธื“ืขืจ ื“ืจื™ืงืŸ ื“ื™ Esc ืึธื“ืขืจ F8 ืฉืœื™ืกืœ ืขื˜ืœืขื›ืข ืžืึธืœ. ืคื•ืŸ ื“ื™ ืขื ื“ืขืจื•ื ื’ืขืŸ ืื™ืŸ ื“ื™ ื‘ืึธืึธื˜ืœืึธืึทื“ืขืจ, ื“ื™ ืคึผืœื™ื™ืกืžืึทื ื˜ ืคื•ืŸ GRUB ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ื˜ืขืงืขืก ืคึฟืึทืจ ืึทืœืข ืึทืจืงืึทื˜ืขืงื˜ืฉืขืจื– ืื™ืŸ ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ /boot/grub2/ ื•ื•ืขื’ื•ื•ื™ื™ึทื–ืขืจ ืื™ื– ืื•ื™ืš ื‘ืืžืขืจืงื˜ (ื“ื™ /boot/efi/EFI/redhat/grub.cfg ื˜ืขืงืข ืื™ื– ืื™ืฆื˜ ืึท ืกื™ืžื‘ืึธืœื™ืฉ ืœื™ื ืง ืฆื• / boot/grub2/grub.cfg), ื“ื™. ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ืื™ื ืกื˜ืึทืœื™ืจืŸ ืกื™ืกื˜ืขื ืงืขื ืขืŸ ื–ื™ื™ืŸ ื‘ื•ื˜ื™ื“ ืžื™ื˜ ื‘ื™ื™ื“ืข EFI ืื•ืŸ ื‘ื™ื™ืึธื•ืก.
  • ืงืึทืžืคึผืึธื•ื ืึทื ืฅ ืคึฟืึทืจ ืฉื˜ื™ืฆืŸ ืคื•ืŸ ืคืึทืจืฉื™ื“ืŸ ืฉืคึผืจืึทื›ืŸ ื–ืขื ืขืŸ ื’ืขืฉื˜ืขืœื˜ ืื™ืŸ ืœืึทื ื’ืคึผืึทืงืง ืคึผืึทืงื™ื“ื–ืฉื™ื–, ืึทืœืึทื•ื™ื ื’ ืื™ืจ ืฆื• ื‘ื™ื™ึทื˜ืŸ ื“ื™ ืžื“ืจื’ื” ืคื•ืŸ ืื™ื ืกื˜ืึทืœื™ืจืŸ ืฉืคึผืจืึทืš ืฉื˜ื™ืฆืŸ. ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, langpacks-core-font ืึธืคืคืขืจืก ื‘ืœื•ื™ื– ืคืึทื ืฅ, langpacks-core ื’ื™ื˜ ื“ื™ Glibc ืœืึธืงืึทืœืข, ื‘ืึทื–ืข ืฉืจื™ืคึฟื˜ ืื•ืŸ ืึทืจื™ื™ึทื ืฉืจื™ื™ึทื‘ ืื•ืคึฟืŸ, ืื•ืŸ ืœืึทื ื’packs ื’ื™ื˜ ืื™ื‘ืขืจื–ืขืฆื•ื ื’ืขืŸ, ื ืึธืš ืคืึทื ืฅ ืื•ืŸ ืื•ื™ืกืœื™ื™ื’ ื“ื™ืงืฉืึทื ืขืจื™ื–.
  • ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ื–ื™ื›ืขืจื”ื™ื™ึทื˜ ืงืึทืžืคึผืึธื•ื ืึทื ืฅ. ื“ื™ ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ื›ื•ืœืœ ืึท ื ื™ื™ึทืข ืฆื•ื•ื™ื™ึทื’ ืคื•ืŸ ื“ื™ OpenSSL 3.0 ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ื‘ื™ื‘ืœื™ืึธื˜ืขืง. ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, ืžืขืจ ืžืึธื“ืขืจืŸ ืื•ืŸ ื–ื™ื›ืขืจ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ืึทืœื’ืขืจื™ื“ืึทืžื– ื–ืขื ืขืŸ ืขื ื™ื™ื‘ืึทืœื“ (ืœืžืฉืœ, ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ SHA-1 ืื™ืŸ TLS, DTLS, SSH, IKEv2 ืื•ืŸ Kerberos ืื™ื– ืคืึทืจืงืจื™ืคึผืœื˜, TLS 1.0, TLS 1.1, DTLS 1.0, RC4, Camellia, DSA, 3DES ืื•ืŸ FFDHE-1024 ื–ืขื ืขืŸ ืคืึทืจืงืจื™ืคึผืœื˜). ื“ื™ OpenSSH ืคึผืขืงืœ ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ื•ื•ืขืจืกื™ืข 8.6p1. Cyrus SASL ืืจื™ื‘ืขืจื’ืขืคืืจืŸ ืฆื• GDBM ื‘ืึทืงืขื ื“ ืึทื ืฉื˜ืึธื˜ ืคื•ืŸ Berkeley DB. ื“ื™ NSS (ื ืขื˜ื•ื•ืึธืจืง ืกืขืงื•ืจื™ื˜ื™ ื‘ืึทื“ื™ื ื•ื ื’ืก) ืœื™ื™ื‘ืจืขืจื™ื– ืฉื˜ื™ืฆืŸ ื ื™ื˜ ืžืขืจ ื“ื™ DBM (Berkeley DB) ืคึฟืึธืจืžืึทื˜. GnuTLS ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ื•ื•ืขืจืกื™ืข 3.7.2.
  • ื‘ืื˜ื™ื™ื˜ื™ืง ื™ืžืคึผืจื•ื•ื•ื“ SELinux ืคืึธืจืฉื˜ืขืœื•ื ื’ ืื•ืŸ ืจื™ื“ื•ืกื˜ ื–ื›ึผืจื•ืŸ ืงืึทื ืกืึทืžืฉืึทืŸ. ืึทื•ื•ืขืงื’ืขื ื•ืžืขืŸ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ "SELinux = ืคืึทืจืงืจื™ืคึผืœื˜" ืฆื• ื“ื™ืกื™ื™ื‘ืึทืœ SELinux ืื™ืŸ /etc/selinux/config (ื“ื™ ืกืคึผืขืกื™ืคื™ืขื“ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืื™ืฆื˜ ื‘ืœื•ื™ื– ื“ื™ืกื™ื™ื‘ืึทืœ ืคึผืึธืœื™ื˜ื™ืง ืœืึธื•ื“ื™ื ื’, ืื•ืŸ ืึทืงื˜ืฉืึทื•ื•ืึทืœื™ ื“ื™ืกื™ื™ื‘ืึทืœ SELinux ืคืึทื ื’ืงืฉืึทื ืึทืœื™ื˜ื™ ืื™ืฆื˜ ืจื™ืงื•ื•ื™ื™ืขืจื– ื“ื™ "selinux = 0" ืคึผืึทืจืึทืžืขื˜ืขืจ ืฆื• ื“ื™ ืงืขืจืŸ).
  • ืฆื•ื’ืขืœื™ื™ื’ื˜ ื™ืงืกืคึผืขืจืžืขื ืึทืœ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ VPN WireGuard.
  • ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, SSH ืœืึธื’ื™ืŸ ื•ื•ื™ ื•ื•ืึธืจืฆืœ ืื™ื– ืคืึทืจืงืจื™ืคึผืœื˜.
  • ื“ื™ iptables-nft ืคึผืึทืงืึทื˜ ืคื™ืœื˜ืขืจ ืคืึทืจื•ื•ืึทืœื˜ื•ื ื’ ืžื›ืฉื™ืจื™ื (iptables, ip6tables, ebtables ืื•ืŸ arptables ื™ื•ื˜ื™ืœืึทื˜ื™ื–) ืื•ืŸ ipset ื–ืขื ืขืŸ ื“ื™ืคึผืจื™ืฉื™ื™ื™ื˜ื™ื“. ืขืก ืื™ื– ืื™ืฆื˜ ืจืขืงืึทืžืขื ื“ื™ื“ ืฆื• ื ื•ืฆืŸ ื ืคื˜ืึทื‘ืœืขืก ืฆื• ืคื™ืจืŸ ื“ื™ ืคื™ื™ืจื•ื•ืึทืœ.
  • ื ื ื™ื™ึทืข mptcpd ื“ืขืžืึธืŸ ืื™ื– ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ ืคึฟืึทืจ ืงืึทื ืคื™ื’ื™ืขืจื™ื ื’ MPTCP (MultiPath TCP), ืึท ืคืึทืจืœืขื ื’ืขืจื•ื ื’ ืคื•ืŸ ื“ื™ ื˜ืงืคึผ ืคึผืจืึธื˜ืึธืงืึธืœ ืคึฟืึทืจ ืึธืจื’ืึทื ื™ื™ื–ื™ื ื’ ื“ื™ ืึธืคึผืขืจืึทืฆื™ืข ืคื•ืŸ โ€‹โ€‹ืึท ื˜ืงืคึผ ืงืฉืจ ืžื™ื˜ ื“ื™ ืขืงืกืคึผืจืขืก ืคื•ืŸ ืคึผืึทืงื™ืฅ ืกื™ื™ืžืึทืœื˜ื™ื™ื ื™ืึทืกืœื™ ืฆื•ื–ืืžืขืŸ ืขื˜ืœืขื›ืข ืจื•ืฅ ื“ื•ืจืš ืคืึทืจืฉื™ื“ืขื ืข ื ืขืฅ ื™ื ื˜ืขืจืคื™ื™ืกื™ื– ื’ืขื‘ื•ื ื“ืŸ ืฆื• ืคืึทืจืฉื™ื“ืขื ืข IP ืึทื“ืจืขืกืขืก. ื ื™ืฆืŸ mptcpd ืžืื›ื˜ ืขืก ืžืขื’ืœืขืš ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ MPTCP ืึธืŸ ื ื™ืฆืŸ ื“ื™ iproute2 ื ื•ืฆืŸ.
  • ื“ื™ ื ืขืฅ-ืกืงืจื™ืคึผืก ืคึผืขืงืœ ืื™ื– ืึทื•ื•ืขืงื’ืขื ื•ืžืขืŸ, NetworkManager ื–ืึธืœ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜ ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ ื ืขืฅ ืงืึทื ืขืงืฉืึทื ื–. ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ ifcfg ืกืขื˜ื˜ื™ื ื’ืก ืคึฟืึธืจืžืึทื˜ ืื™ื– ืจื™ื˜ื™ื™ื ื“, ืึธื‘ืขืจ NetworkManager ื“ื™ืคืึธืœืฅ ืฆื• ืึท ืคึฟืึธืจืžืึทื˜ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ื“ื™ ืงื™ื™ ื˜ืขืงืข.
  • ื ื™ื™ึท ื•ื•ืขืจืกื™ืขืก ืคื•ืŸ ืงืึทืžืคึผื™ื™ืœืขืจ ืื•ืŸ ื“ืขื•ื•ืขืœืึธืคึผืขืจ ืžื›ืฉื™ืจื™ื ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜: GCC 11.2, LLVM/Clang 12.0.1, Rust 1.54, Go 1.16.6, Node.js 16, OpenJDK 17, Perl 5.32, PHP 8.0, Python 3.9, Ruby 3.0, Git ืกื•ื‘ื•ื•ืขืจืกื™ืึธืŸ 2.31, ื‘ื™ื™ื ื•ื˜ื™ืœืก 1.14, CMake 2.35, Maven 3.20.2, Ant 3.6.
  • ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืกืขืจื•ื•ืขืจ ืคึผืึทืงืึทื“ื–ืฉืึทื– ืึทืคึผืึทื˜ืฉื™ ื”ื˜ื˜ืคึผ ืกืขืจื•ื•ื™ืจืขืจ 2.4.48, nginx 1.20, Varnish Cache 6.5, Squid 5.1.
  • ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ DBMS MariaDB 10.5, MySQL 8.0, PostgreSQL 13, Redis 6.2.
  • ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, Clang ืื™ื– ื’ืขื ื•ืฆื˜ ืฆื• ื‘ื•ื™ืขืŸ ื“ื™ QEMU ืขืžื•ืœืึทื˜ืึธืจ, ื•ื•ืึธืก ืขืจืœื•ื™ื‘ื˜ ืขื˜ืœืขื›ืข ื ืึธืš ืฉื•ืฅ ืžืขืงืึทื ื™ื–ืึทืžื– ืฆื• ื–ื™ื™ืŸ ื’ืขื•ื•ืขื ื“ื˜ ืื™ืŸ ื“ื™ KVM ื›ื™ื™ืคึผืขืจื•ื•ื™ื™ื–ืขืจ, ืึทื–ืึท ื•ื•ื™ SafeStack ืฆื• ื‘ืึทืฉื™ืฆืŸ ืงืขื’ืŸ ืขืงืกืคึผืœื•ื™ื˜ื™ื™ืฉืึทืŸ ืžืขื˜ื”ืึธื“ืก ืคื•ืŸ ืฆื•ืจื™ืงืงื•ืžืขืŸ-ืึธืจื™ืขื ื˜ื™ื“ ืคึผืจืึธื’ืจืึทืžืžื™ื ื’ (ROP).
  • ื“ื™ SSSD (ืกื™ืกื˜ืขื ืกืขืงื•ืจื™ื˜ื™ ื‘ืึทื“ื™ื ื•ื ื’ืก ื“ืึทืขืžืึธืŸ) ื”ืื˜ ื’ืขื•ื•ืืงืกืŸ ื“ื™ ื“ืขื˜ืึทืœ ืคื•ืŸ ื“ื™ ืœืึธื’ืก, ืคึฟืึทืจ ื‘ื™ื™ึทืฉืคึผื™ืœ, ื“ื™ ืึทืจื‘ืขื˜ ืงืึทืžืคึผืœื™ืฉืึทืŸ ืฆื™ื™ื˜ ืื™ื– ืื™ืฆื˜ ืึทื˜ืึทื˜ืฉื˜ ืฆื• ื“ื™ ื’ืขืฉืขืขื ื™ืฉืŸ ืื•ืŸ ื“ื™ ืึธื˜ืขื ื˜ืึทืงื™ื™ืฉืึทืŸ ืœื•ื™ืคืŸ ืื™ื– ืฉืคื™ื’ืœื˜. ืฆื•ื’ืขืœื™ื™ื’ื˜ ื–ื•ื›ืŸ ืคืึทื ื’ืงืฉืึทื ืึทืœื™ื˜ื™ ืฆื• ืคื•ื ืึทื ื“ืขืจืงืœื™ื™ึทื‘ืŸ ืกืขื˜ื˜ื™ื ื’ืก ืื•ืŸ ืคืึธืจืฉื˜ืขืœื•ื ื’ ื™ืฉื•ื–.
  • ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื™ืžืึท (ื™ื ื˜ื’ืจื™ื˜ื™ ืžืขืึทืกื•ืจืขืžืขื ื˜ ืึทืจื˜ืฉื™ื˜ืขืงื˜ื•ืจืข) ืื™ื– ืขืงืกื˜ืขื ื“ืขื“ ืฆื• ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ืึธืจื ื˜ืœืขื›ืงื™ื™ึทื˜ ืคื•ืŸ ืึธืคึผืขืจื™ื™ื˜ื™ื ื’ ืกื™ืกื˜ืขื ืงืึทืžืคึผืึธื•ื ืึทื ืฅ ื ื™ืฆืŸ ื“ื™ื’ื™ื˜ืึทืœ ืกื™ื’ื ืึทื˜ืฉืขืจื– ืื•ืŸ ื”ืึทืฉืขืก.
  • ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, ืึท ืื™ื™ืŸ ื™ื•ื ืึทืคื™ื™ื“ cgroup ื›ื™ื™ืขืจืึทืจืงื™ (cgroup v2) ืื™ื– ืขื ื™ื™ื‘ืึทืœื“. Cgroups v2 ืงืขื ืขืŸ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜, ืœืžืฉืœ, ืฆื• ื‘ืึทื’ืจืขื ืขืฆืŸ ื–ื›ึผืจื•ืŸ, ืงืคึผื• ืื•ืŸ I/O ืงืึทื ืกืึทืžืฉืึทืŸ. ื“ืขืจ ืฉืœื™ืกืœ ื—ื™ืœื•ืง ืฆื•ื•ื™ืฉืŸ cgroups v2 ืื•ืŸ v1 ืื™ื– ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ืึท ืคึผืจืึธืกื˜ cgroups ื›ื™ื™ืขืจืึทืจืงื™ ืคึฟืึทืจ ืึทืœืข ืžื™ื˜ืœ ื˜ื™ื™ืคึผืก, ืึทื ืฉื˜ืึธื˜ ืคื•ืŸ ื‘ืึทื–ื•ื ื“ืขืจ ื›ื™ื™ืขืจืึทืจืงื™ื– ืคึฟืึทืจ ืงืคึผื• ืึทืœืึทืงื™ื™ืฉืึทืŸ, ื–ื›ึผืจื•ืŸ ืคืึทืจื•ื•ืึทืœื˜ื•ื ื’ ืื•ืŸ I/O. ื‘ืึทื–ื•ื ื“ืขืจ ื›ื™ื™ืขืจืึทืจืงื™ื– ื’ืขืคึฟื™ืจื˜ ืฆื• ืฉื•ื•ืขืจื™ืงื™ื™ื˜ืŸ ืื™ืŸ ืึธืจื’ืึทื ื™ื™ื–ื™ื ื’ ื™ื ื˜ืขืจืึทืงืฉืึทืŸ ืฆื•ื•ื™ืฉืŸ ื”ืึทื ื“ืœืขืจืก ืื•ืŸ ืฆื• ื ืึธืš ืงืึธืก ืคื•ืŸ ืงืขืจืŸ ืจืขืกื•ืจืกืŸ ื•ื•ืขืŸ ืึทืคึผืœื™ื™ื™ื ื’ ื›ึผืœืœื™ื ืคึฟืึทืจ ืึท ืคึผืจืึธืฆืขืก ื“ืขืจืžืื ื˜ ืื™ืŸ ืคืึทืจืฉื™ื“ืขื ืข ื›ื™ื™ืขืจืึทืจืงื™ื–.
  • ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื’ืขื ื•ื™ ืฆื™ื™ื˜ ืกื™ื ื’ืงืจืึทื ืึทื–ื™ื™ืฉืึทืŸ ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ื“ื™ NTS (ื ืขื˜ื•ื•ืึธืจืง ืฆื™ื™ื˜ ืกืขืงื•ืจื™ื˜ื™) ืคึผืจืึธื˜ืึธืงืึธืœ, ื•ื•ืึธืก ื ื™ืฆื˜ ืฆื™ื‘ื•ืจ ืฉืœื™ืกืœ ื™ื ืคืจืึทืกื˜ืจืึทืงื˜ืฉืขืจ (PKI) ืขืœืขืžืขื ื˜ืŸ ืื•ืŸ ืึทืœืึทื•ื– ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ TLS ืื•ืŸ ืึธื˜ืขื ื˜ืึทืงื™ื™ื˜ืึทื“ AEAD (ืึทื•ื˜ื”ืขื ื˜ื™ืงืึทื˜ืขื“ ืขื ืงืจื™ืคึผื˜ื™ืึธืŸ ืžื™ื˜ ืึทืกืกืึธืกื™ืึทื˜ืขื“ ื“ืึทื˜ืึท) ืขื ืงืจื™ืคึผืฉืึทืŸ ืคึฟืึทืจ ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ืฉื•ืฅ ืคื•ืŸ ืงืœื™ืขื ื˜-ืกืขืจื•ื•ืขืจ ื™ื ื˜ืขืจืึทืงืฉืึทืŸ ืื™ื‘ืขืจ ื“ื™ NTP ืคึผืจืึธื˜ืึธืงืึธืœ (ื ืขื˜ื•ื•ืึธืจืง ืฆื™ื™ื˜ ืคึผืจืึธื˜ืึธืงืึธืœ). ื“ื™ ื›ืจืึธื ื™ืฉ NTP ืกืขืจื•ื•ืขืจ ืื™ื– ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงื˜ ืฆื• ื•ื•ืขืจืกื™ืข 4.1.
  • ืฆื•ื’ืขืฉื˜ืขืœื˜ ื™ืงืกืคึผืขืจืžืขื ืึทืœ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ KTLS (ืงืขืจื ืขืœ-ืžื“ืจื’ื” ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ TLS), Intel SGX (Software Guard Extensions), DAX (ื“ื™ืจืขืงื˜ ืึทืงืกืขืก) ืคึฟืึทืจ ext4 ืื•ืŸ XFS, ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ AMD SEV ืื•ืŸ SEV-ES ืื™ืŸ ื“ื™ KVM ื›ื™ื™ืคึผืขืจื•ื•ื™ื™ื–ืขืจ.
  • ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’