LibreSSL 3.1.1 ืงืจื™ืคึผื˜ืึธื’ืจืึทืคื™ืง ื‘ื™ื‘ืœื™ืึธื˜ืขืง ืžืขืœื“ื•ื ื’

OpenBSD ืคึผืจืึธื™ืขืงื˜ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ื“ืขืจืœืื ื’ื˜ ืžืขืœื“ื•ื ื’ ืคื•ืŸ ืึท ืคึผืึธืจื˜ืึทื˜ื™ื•ื• ืึทื“ื™ืฉืึทืŸ ืคื•ืŸ ื“ืขื ืคึผืขืงืœ LibreSSL 3.1.1, ืื™ืŸ ื•ื•ืึธืก ืึท ื’ืึธืคึผืœ ืคื•ืŸ OpenSSL ืื™ื– ื“ืขื•ื•ืขืœืึธืคึผืขื“, ืึทื™ืžืขื“ ืฆื• ืฆื•ืฉื˜ืขืœืŸ ืึท ื”ืขื›ืขืจ ืžื“ืจื’ื” ืคื•ืŸ ื–ื™ื›ืขืจื”ื™ื™ื˜. ื“ื™ LibreSSL ืคึผืจื•ื™ืขืงื˜ ืื™ื– ืคืึธื•ืงื™ืกื˜ ืื•ื™ืฃ ื”ื•ื™ืš-ืงื•ื•ืึทืœื™ื˜ืขื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ SSL / TLS ืคึผืจืึธื˜ืึธืงืึธืœืก ื“ื•ืจืš ืจื™ืžื•ื•ื•ื™ื ื’ ื•ืžื ื™ื™ื˜ื™ืง ืคืึทื ื’ืงืฉืึทื ืึทืœื™ื˜ื™, ืึทื“ื™ื ื’ ื ืึธืš ื–ื™ื›ืขืจื”ื™ื™ื˜ ืคึฟืขื™ึดืงื™ื™ื˜ืŸ ืื•ืŸ ื‘ืื˜ื™ื™ื˜ื™ืง ืจื™ื™ื ื™ืงื•ื ื’ ืื•ืŸ ืจื™ื•ื•ืขืจืงื™ื ื’ ื“ื™ ืงืึธื“ ื‘ืึทื–ืข. LibreSSL 3.1.1 ืื™ื– ืื ื’ืขืฆื™ื™ื›ื ื˜ ื•ื•ื™ ื“ืขืจ ืขืจืฉื˜ืขืจ ืกื˜ืึทื‘ื™ืœ ื•ื•ืขืจืกื™ืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹ื“ื™ 3.1 ืฆื•ื•ื™ื™ึทื’, ื•ื•ืึธืก ื•ื•ืขื˜ ื–ื™ื™ืŸ ืึท ื˜ื™ื™ืœ ืคื•ืŸ ื“ื™ OpenBSD 6.7 ืžืขืœื“ื•ื ื’ ื“ืขืจื•ื•ืึทืจื˜ ืื™ืŸ ื“ื™ ืงื•ืžืขื ื“ื™ืง ื˜ืขื’.

ืคึฟืขื™ึดืงื™ื™ื˜ืŸ ืคื•ืŸ LibreSSL 3.1.1:

  • ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ TLS 1.3 ื‘ืื–ื™ืจื˜ ืื•ื™ืฃ ืึท ื ื™ื™ึทืข ืขื ื“ืœืขืš ืฉื˜ืึทื˜ ืžืึทืฉื™ืŸ ืื•ืŸ ืึท ืกืึทื‘ืกื™ืกื˜ืึทื ืคึฟืึทืจ ืืจื‘ืขื˜ืŸ ืžื™ื˜ ืจืขืงืึธืจื“ืก ืื™ื– ื’ืขืขื ื“ื™ืงื˜. ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜, ื‘ืœื•ื™ื– ื“ืขืจ ืงืœื™ืขื ื˜ ื˜ื™ื™ืœ ืคื•ืŸ TLS 1.3 ืื™ื– ืขื ื™ื™ื‘ืึทืœื“ ืคึฟืึทืจ ืื™ืฆื˜; ื“ื™ ืกืขืจื•ื•ืขืจ ื˜ื™ื™ืœ ืื™ื– ืคึผืœืึทื ื ืขื“ ืฆื• ื–ื™ื™ืŸ ืึทืงื˜ื™ื•ื•ื™ื™ื˜ื™ื“ ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜ ืื™ืŸ ืึท ืฆื•ืงื•ื ืคึฟื˜ ืžืขืœื“ื•ื ื’. ืึทืŸ OpenSSL TLS 1.3 ืงืึทืžืคึผืึทื˜ืึทื‘ืึทืœ ืึทืคึผื™ ืื™ื– ื ืึธืš ื ื™ืฉื˜ ื‘ื ื™ืžืฆื.
  • ืกื™ืคืขืจ ืกื•ื•ื™ื˜ ืคึผืจืึทืกืขืกื™ื ื’ ืื™ื– ืขืงืกื˜ืขื ื“ืขื“ ืฆื• ืื•ื™ื˜ืึธืžืึทื˜ื™ืฉ ืึทืจื™ื™ึทื ื ืขืžืขืŸ ืึทืœื’ืขืจื™ื“ืึทืžื– ืคืืจืœืื ื’ื˜ ืคึฟืึทืจ TLSv1.3 ืื•ื™ื‘ ื–ื™ื™ ื–ืขื ืขืŸ ื ื™ืฉื˜ ื‘ืคื™ืจื•ืฉ ื“ืขืจืžืื ื˜ ื‘ืขืฉืึทืก ืงืฉืจ ืคืึทืจื”ืึทื ื“ืœื•ื ื’;
  • ืฆื•ื’ืขืฉื˜ืขืœื˜ ืกื™ื™ืคืขืจ ื ืึธืžืขืŸ ื™ื™ืœื™ืึทืกื™ื– ืคื•ืŸ ื“ื™ TLSv1.3 ืกื•ื•ื™ื˜, ื“ื™ืคื™ื™ื ื“ ืื™ืŸ RFC 8446;
  • ื“ื™ RSA-PSS ืื•ืŸ RSA-OAEP ืžืขื˜ื”ืึธื“ืก ื–ืขื ืขืŸ ืืจื™ื‘ืขืจื’ืขืคืืจืŸ ืคื•ืŸ OpenSSL 1.1.1;
  • ืคึฟื•ืŸ OpenSSL 1.1.1, ื“ื™ ื™ืžืคึผืœืึทืžืขื ื˜ื™ื™ืฉืึทืŸ ืคื•ืŸ CMS (Cryptographic Message Syntax) ืื™ื– ืคึผืึธืจื˜ื™ื“ ืื•ืŸ ืขื ื™ื™ื‘ืึทืœื“ ื“ื•ืจืš ืคืขืœื™ืงื™ื™ึทื˜;
  • ื“ื™ "cms" ื‘ืึทืคึฟืขืœ ืื™ื– ืฆื•ื’ืขื’ืขื‘ืŸ ืฆื• ื“ื™ ืึธืคึผืขื ืกืกืœ ื ื•ืฆืŸ, ื•ื•ื™ ื’ืขื–ื•ื ื˜ ื•ื•ื™ ื“ื™ ืึธืคึผืฆื™ืขืก "req -addext" ืื•ืŸ "s_server -groups". ืฆื•ื’ืขืœื™ื™ื’ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ TLSv1.3 ืคืึทืจืœืขื ื’ืขืจื•ื ื’ ื˜ื™ื™ืคึผืก ืฆื• ื“ื™ "-tlsextdebug" ืึธืคึผืฆื™ืข;
    ;

  • ื™ืžืคึผืจื•ื•ื•ื“ ืงืึทืžืคึผืึทื˜ืึทื‘ื™ืœืึทื˜ื™ ืžื™ื˜ OpenSSL 1.1.1;
  • ื“ื™ ื ืึทื˜ื•ืจ ืคื•ืŸ EVP_chacha20 () ืื™ื– ื ืขืขื ื˜ืขืจ ืฆื• OpenSSL;
  • ื“ืขืจ ืงืึธื“ ืื™ื– ืงืœื™ื ื“, ื™ืžืคึผืจื•ื•ื•ืžืึทื ืฅ ื–ืขื ืขืŸ ื’ืขืžืื›ื˜ ืฆื• ื“ื™ ืคืึทื ื’ืงืฉืึทื ื– ืคื•ืŸ ืืจื‘ืขื˜ืŸ ืžื™ื˜ ื–ื›ึผืจื•ืŸ ืื•ืŸ ืคึผืึทืจืกื™ื ื’ ืคึผืจืึธื˜ืึธืงืึธืœืก.

ืžืงื•ืจ: opennet.ru

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’