Iseva yeposi ye-Postfix 3.8.0 iyatholakala

Ngemva kwezinyanga ezingu-14 zokuthuthukiswa, igatsha elisha elizinzile le-Postfix mail server likhishwe - 3.8.0. Ngesikhathi esifanayo, yamemezela ukuphela kokusekelwa kwegatsha le-Postfix 3.4, elikhishwe ekuqaleni kuka-2019. I-Postfix ingenye yamaphrojekthi ayivelakancane ahlanganisa ukuphepha okuphezulu, ukwethembeka nokusebenza ngasikhathi sinye, okuzuzwe ngenxa yesakhiwo esicatshangelwe kahle kanye nenqubomgomo eqinile eqinile yokuklama ikhodi nokuhlolwa kwe-patch audit. Ikhodi yephrojekthi isatshalaliswa ngaphansi kwe-EPL 2.0 (Eclipse Public License) kanye ne-IPL 1.0 (IBM Public License).

Ngokocwaningo oluzenzakalelayo lwangoJanuwari lwamaseva e-imeyili angaba yizinkulungwane ezingama-400, i-Postfix isetshenziswa ku-33.18% (onyakeni odlule 34.08%) wamaseva e-imeyili, isabelo se-Exim singama-60.27% (58.95%), i-Sendmail - 3.62% (3.58) %), MailEnable - 1.86% ( 1.99%), MDaemon - 0.39% (0.52%), Microsoft Exchange - 0.19% (0.26%), OpenSMTPD - 0.06% (0.06%).

Okuqanjiwe okuyinhloko:

  • Iklayenti le-SMTP/LMTP linamandla okuhlola amarekhodi e-DNS SRV ukuze linqume umsingathi kanye nembobo yeseva yemeyili ezosetshenziswa ukudlulisa imilayezo. Isibonelo, uma ucacisa okuthi "use_srv_lookup = submission" kanye "relayhost = example.com:submission" kuzilungiselelo, iklayenti le-SMTP lizocela irekhodi lomsingathi we-SRV elithi _submission._tcp.example.com ukuze linqume umsingathi wesango lemeyili kanye nembobo. Isici esihlongozwayo singasetshenziswa kungqalasizinda lapho amasevisi anezinombolo zembobo yenethiwekhi esetshenziswa ngamandla asetshenziswa ukuletha imilayezo ye-imeyili.
  • Uhlu lwama-algorithms asetshenziswa ngokuzenzakalelayo kuzilungiselelo ze-TLS alufaki i-SEED, IDEA, 3DES, RC2, RC4 kanye ne-RC5 cipher, MD5 hashi kanye ne-DH kanye ne-ECDH ama-algorithms wokushintshanisa ukhiye, ahlukaniswa njengaphelelwe yisikhathi noma angasetshenziswa. Lapho ucacisa izinhlobo ze-cipher "eziphansi" kanye "eziphansi" kuzilungiselelo, uhlobo "olumaphakathi" manje selusethiwe, njengoba usekelo lwezinhlobo "zokuthekelisa" kanye "neziphansi" kunqanyuliwe ku-OpenSSL 1.1.1.
  • Kwengezwe isilungiselelo esisha esithi "tls_ffdhe_auto_groups" ukuze unike amandla iphrothokholi yeqembu le-FFDHE (Finite-Field Diffie-Hellman Ephemeral) ku-TLS 1.3 uma yakhiwe nge-OpenSSL 3.0.
  • Ukuze kuvikelwe ekuhlaselweni okuhloswe ukuqeda inkumbulo etholakalayo, ukuhlanganiswa kwezibalo “smtpd_client_*_rate” kanye ne-“smtpd_client_*_count” kunikezwa kumongo wamabhulokhi enethiwekhi, usayizi wawo ocaciswa yiziqondiso “smtpd_client_ipv4_prefix_lengthpxmpresd_lengthpxmprefix_length_xxmprefix_length_xxmprefix_length_xpd ngokuzenzakalelayo /6 kanye /32)
  • Ukuvikeleka okwengeziwe ekuhlaselweni okusebenzisa isicelo sokuxoxisana kabusha koxhumo lwe-TLS ngaphakathi koxhumano oseluvele lusunguliwe lwe-SMTP ukuze kudalwe umthwalo we-CPU ongadingekile.
  • Umyalo we-postconf unikeza isexwayiso samazwana achazwe ngokushesha ngemva kwamanani epharamitha kufayela lokucushwa le-Postfix.
  • Kungenzeka ukuthi ulungiselele umbhalo wekhodi weklayenti we-PostgreSQL ngokucacisa isibaluli "sombhalo wekhodi" kufayela lokumisa (ngokuzenzakalelayo, inani manje selisethelwe ku-"UTF8", futhi ngaphambilini umbhalo wekhodi othi "LATIN1" wawusetshenziswa).
  • Emiyalweni ye-postfix neye-postlog, ukuphuma kwelogi ku-stderr manje kukhiqizwa kungakhathaliseki ukuthi uxhumo lokusakaza kwe-stderr kutheminali.
  • Esihlahleni somthombo, amafayela athi “global/mkmap*.[hc]” ahanjiswe kunkomba ethi “util”, amafayela kuphela athi “global/mkmap_proxy.*” ayeshiywe ohlwini lwemibhalo oluyinhloko.

Source: opennet.ru

Engeza amazwana