ืืจื™ื‘ืขืจื’ืขืคืืจืŸ VPN WireGuard ืฉื˜ื™ืฆืŸ ืฆื• ืึทื ื“ืจื•ื™ื“ ื”ืึทืจืฅ

ื’ื•ื’ืœ ืฆื•ื’ืขื’ืขื‘ืŸ ืื™ืŸ ื“ื™ ื”ื•ื™ืคึผื˜ ืึทื ื“ืจื•ื™ื“ ืงืึธื“ืขื‘ืึทืกืข ืงืึธื“ ืžื™ื˜ ืึท ื’ืขื‘ื•ื™ื˜-ืื™ืŸ ื•ื•ืคึผืŸ ืฉื˜ื™ืฆืŸ WireGuard. WireGuard ืงืึธื“ ืืจื™ื‘ืขืจื’ืขืคืืจืŸ ืฆื• ืžืึธื“ื™ืคื™ืงืึทื˜ื™ืึธืŸ ืœื™ื ื•ืงืก 5.4 ืงืขืจื ืึทืœื–, ื“ืขื•ื•ืขืœืึธืคึผืขื“ ืคึฟืึทืจ ื“ืขืจ ืฆื•ืงื•ื ืคึฟื˜ ืžืขืœื“ื•ื ื’ ืคื•ืŸ ื“ื™ ืึทื ื“ืจื•ื™ื“ 12 ืคึผืœืึทื˜ืคืึธืจืžืข, ืคึฟื•ืŸ ื“ื™ ื”ื•ื™ืคึผื˜ ืœื™ื ื•ืงืก ืงืขืจืŸ 5.6, ื•ื•ืึธืก ืขืจื™ื“ื–ืฉื ืึทืœื™ ืึทืจื™ื™ึทื ื’ืขืจืขื›ื ื˜ ืื ื’ืขื ื•ืžืขืŸ WireGuard. ื•ื•ื™ืจืขื’ื•ืึทืจื“ ืฉื˜ื™ืฆืŸ ืื™ืŸ ืงืขืจื ืขืœ ืžื“ืจื’ื” ืขื ื™ื™ื‘ืึทืœื“ ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜.

ื‘ื™ื– ืื™ืฆื˜, ื“ื™ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ืคื•ืŸ WireGuard ืคึฟืึทืจ ืึทื ื“ืจื•ื™ื“ ืคืึธืจืฉืœืึธื’ืŸ ืจื™ืจืขื•ื•ื“ื™ืง ืึทืคึผืœืึทืงื™ื™ืฉืึทืŸ ื•ื•ืึธืก ืื™ื– ืฉื•ื™ืŸ ืื™ื– ืื•ื™ืกื’ืขืžืขืงื˜ ื“ื•ืจืš Google ืคึฟื•ืŸ ื“ื™ Google Play ืงืึทื˜ืึทืœืึธื’ ืจืขื›ื˜ ืฆื• ืึท ืœื™ื ืง ืฆื• ื“ื™ ืึทืงืกืขืคึผื˜ืึทื ืก ื‘ืœืึทื˜ ืคื•ืŸ ื“ื™ ืฆื•ืฉื˜ื™ื™ึทืขืจ ืื•ื™ืฃ ื“ื™ ืคึผืจื•ื™ืขืงื˜ ื•ื•ืขื‘ื–ื™ื™ื˜ืœ, ื•ื•ืึธืก ื•ื•ื™ื™ืึทืœื™ื™ื˜ื™ื“ ื“ื™ ื›ึผืœืœื™ื ืคึฟืึทืจ ืคึผื™ื™ืžืึทื ืฅ (ื“ืึธื ืึทื˜ื™ืึธื ืก ื–ืขื ืขืŸ ืื ื’ืขืฆื™ื™ื›ื ื˜ ื•ื•ื™ ืึทื ืึทืงืกืขืคึผื˜ืึทื‘ืึทืœ ืื•ื™ื‘ ื–ื™ื™ ื–ืขื ืขืŸ ื ื™ืฉื˜ ื’ืขื–ืืžืœื˜ ื“ื•ืจืš ืึท ืกืคึผืขืฆื™ืขืœ ืจืขื’ื™ืกื˜ืจื™ืจื˜ ื ืึทืŸ-ื ื•ืฅ ืึธืจื’ืึทื ื™ื–ืึทืฆื™ืข).

ื–ืืœ ืื•ื ื“ื– ื“ืขืจืžืึธื ืขืŸ ืื™ืจ ืึทื– VPN WireGuard ืื™ื– ื™ืžืคึผืœืึทืžืขื ืึทื“ ืื•ื™ืฃ ื“ืขืจ ื‘ืื–ืข ืคื•ืŸ โ€‹โ€‹ืžืึธื“ืขืจืŸ ืขื ืงืจื™ืคึผืฉืึทืŸ ืžืขื˜ื”ืึธื“ืก, ื’ื™ื˜ ื–ื™ื™ืขืจ ื”ื•ื™ืš ืคืึธืจืฉื˜ืขืœื•ื ื’, ืื™ื– ื’ืจื™ื ื’ ืฆื• ื ื•ืฆืŸ, ืคืจื™ื™ ืคื•ืŸ ืงืึทืžืคึผืœืึทืงื™ื™ืฉืึทื ื– ืื•ืŸ ืคึผืจืึธื•ื•ืขืŸ ื–ื™ืš ืื™ืŸ ืึท ื ื•ืžืขืจ ืคื•ืŸ ื’ืจื•ื™ืก ื“ื™ืคึผืœื•ื™ืžืึทื ืฅ ื•ื•ืึธืก ืคึผืจืึทืกืขืกื™ื ื’ ื’ืจื•ื™ืก ื•ื•ืึทืœื™ื•ืžื– ืคื•ืŸ ืคืึทืจืงืขืจ. ื“ื™ ืคึผืจื•ื™ืขืงื˜ ืื™ื– ื“ืขื•ื•ืขืœืึธืคึผืขื“ ื–ื™ื ื˜ 2015, ืื™ื– ื’ืขื•ื•ืขืŸ ืึทื•ื“ื™ื˜ืขื“ ืื•ืŸ ืคืึธืจืžืึทืœ ื•ื•ืขืจืึทืคืึทืงื™ื™ืฉืึทืŸ ืขื ืงืจื™ืคึผืฉืึทืŸ ืžืขื˜ื”ืึธื“ืก ื’ืขื ื™ืฆื˜. WireGuard ื ื™ืฆื˜ ื“ืขื ื‘ืึทื’ืจื™ืฃ ืคื•ืŸ ืขื ืงืจื™ืคึผืฉืึทืŸ ืฉืœื™ืกืœ ืจื•ื˜ื™ื ื’, ื•ื•ืึธืก ื™ื ื•ื•ืึทืœื•ื•ื– ืึทื˜ืึทื˜ืฉื™ื ื’ ืึท ืคึผืจื™ื•ื•ืึทื˜ ืฉืœื™ืกืœ ืฆื• ื™ืขื“ืขืจ ื ืขืฅ ืฆื•ื‘ื™ื ื“ ืื•ืŸ ื ื™ืฆืŸ ืขืก ืฆื• ื‘ื™ื ื“ืŸ ื“ื™ ืฆื™ื‘ื•ืจ ืฉืœื™ืกืœืขืŸ.

ืฆื™ื‘ื•ืจ ืฉืœื™ืกืœืขืŸ ื–ืขื ืขืŸ ืคืืจื‘ื™ื˜ืŸ ืฆื• ืคืึทืจืœื™ื™ื’ืŸ ืึท ืงืฉืจ ืื™ืŸ ืึท ืขื ืœืขืš ื•ื•ืขื’ ืฆื• SSH. ืฆื• ืคืึทืจื”ืึทื ื“ืœืขืŸ ืฉืœื™ืกืœืขืŸ ืื•ืŸ ืคืึทืจื‘ื™ื ื“ืŸ ืึธืŸ ืคืœื™ืกื ื“ื™ืง ืึท ื‘ืึทื–ื•ื ื“ืขืจ ื“ื™ื™ืžืึทืŸ ืื™ืŸ ื‘ืึทื ื™ืฆืขืจ ืคึผืœืึทืฅ, ื“ื™ Noise_IK ืžืขืงืึทื ื™ื–ืึทื ืคึฟื•ืŸ ืจืึทืฉ ืคึผืจืึธื˜ืึธืงืึธืœ ืคืจืึทืžืขื•ื•ืึธืจืงืขื ืœืขืš ืฆื• ื”ืึทืœื˜ืŸ Authorized_keys ืื™ืŸ SSH. ื“ืึทื˜ืŸ ื˜ืจืึทื ืกืžื™ืกื™ืข ืื™ื– ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ื“ื•ืจืš ืขื ืงืึทืคึผืกื•ืœืึทื˜ื™ืึธืŸ ืื™ืŸ UDP ืคึผืึทืงื™ืฅ. ืขืก ืฉื˜ื™ืฆื˜ ื˜ืฉืึทื ื’ื™ื ื’ ื“ื™ IP ืึทื“ืจืขืก ืคื•ืŸ ื“ื™ ื•ื•ืคึผืŸ ืกืขืจื•ื•ืขืจ (ืจืึธื•ืžื™ื ื’) ืึธืŸ ื“ื™ืกืงืึทื ืขืงื˜ื™ื ื’ ื“ื™ ืงืฉืจ ืžื™ื˜ ืึธื˜ืึทืžืึทื˜ื™ืง ืงืœื™ืขื ื˜ ืจื™ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ.

ืคึฟืึทืจ ืขื ืงืจื™ืคึผืฉืึทืŸ ื’ืขื•ื•ื™ื™ื ื˜ ื“ื•ืจืš ื˜ื™ื™ึทืš ืกื™ืคืขืจ ChaCha20 ืื•ืŸ ืึธื ื–ืึธื’ ืึธื˜ืขื ื˜ืึทืงื™ื™ืฉืึทืŸ ืึทืœื’ืขืจื™ื“ืึทื (MAC) ืคึผืึธืœื™ืงืกื ื•ืžืงืก, ื“ื™ื–ื™ื™ื ื“ ื“ื•ืจืš ื“ื ื™ืืœ ื‘ืขืจื ืฉื˜ื™ื™ืŸ (ื“ื ื™ืืœ ื™ ื‘ืขืจื ืฉื˜ื™ื™ืŸ), ื˜ืึทื ื™ืึท ืœืึทื ื’ืข
(ื˜ืึทื ื“ื–ืฉืึท ืœืึทื ื’) ืื•ืŸ ืคืขื˜ืจื•ืก ืฉื•ื•ืึทื‘ืข. ChaCha20 ืื•ืŸ Poly1305 ื–ืขื ืขืŸ ืคึผืึทื–ื™ืฉืึทื ื“ ื•ื•ื™ ืคืึทืกื˜ืขืจ ืื•ืŸ ืกืึทืคืขืจ ืึทื ืึทืœืึธื’ื•ืขืก ืคื•ืŸ AES-256-CTR ืื•ืŸ HMAC, ื“ื™ ื•ื•ื™ื™ื›ื•ื•ืืจื’ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ ื•ื•ืึธืก ืึทืœืึทื•ื– ืึทื˜ืฉื™ื•ื•ื™ื ื’ ืึท ืคืึทืจืคืขืกื˜ื™ืงื˜ ื“ื•ืจื›ืคื™ืจื•ื ื’ ืฆื™ื™ื˜ ืึธืŸ ื“ื™ ื ื•ืฆืŸ ืคื•ืŸ ืกืคึผืขืฆื™ืขืœ ื™ื™ึทื–ื ื•ื•ืึทืจื’ ืฉื˜ื™ืฆืŸ. ืฆื• ื“ื–ืฉืขื ืขืจื™ื™ื˜ ืึท ืฉืขืจื“ ืกื•ื“ ืฉืœื™ืกืœ, ื“ื™ ื™ืœื™ืคึผื˜ื™ืง ื•ื™ืกื‘ื™ื™ื’ Diffie-Hellman ืคึผืจืึธื˜ืึธืงืึธืœ ืื™ื– ื’ืขื ื™ืฆื˜ ืื™ืŸ ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืงื•ืจื•ื•ืขืงืกื ื•ืžืงืก, ืื•ื™ืš ืคืืจื’ืขืœื™ื™ื’ื˜ ื“ื•ืจืš ื“ื ื™ืืœ ื‘ืขืจื ืฉื˜ื™ื™ืŸ. ื“ืขืจ ืึทืœื’ืขืจื™ื“ืึทื ื’ืขื ื™ืฆื˜ ืคึฟืึทืจ ื›ืึทืฉื™ื ื’ ืื™ื– BLAKE2s (RFC7693).

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’