pfSense 2.4.3 已发布,本次更新包含重要的安全修复和 bug 修复,还引入了一些新特性,具体如下。

  值得关注的更新

  包含一些重要的安全修复补丁:

  Kernel PTI mitigations for Meltdown (optional tunable) FreeBSD-SA-18:03.speculative_execution.asc

  IBRS mitigation for Spectre V2 (requires updated CPU microcode) FreeBSD-SA-18:03.speculative_execution.asc

  Fixes for FreeBSD-SA-18:01.ipsec

  Fixed three potential XSS vectors, and two potential CSRF issues

  CSRF protection for all dashboard widgets

  Updated several base system packages to address CVEs

  除了安全修复,pfSense 还包含重要的 bug 修复,如修复 pfSense PHP 模块的内存泄露问题,具体如下:

  Fixed hangs due to Limiters and pfsync in High Availability configurations

  Imported anetstatfix to improve performance and reduce CPU usage, especially on the Dashboard and ARM platforms

  Fixed a memory leak in the pfSense PHP module

  Fixed DHCPv6 lease display for entries that were not parsed properly from the lease database

  Fixed issues on assign_interfaces.php with large numbers of interfaces

  Fixed multiple issues that could result in an invalid ruleset being generated

  Fixed multiple Captive Portal voucher synchronization issues with HA

  Fixed issues with XMLRPC user account synchronization causing GUI inaccessibility on secondary HA nodes

  … and many more!

  重要的新特性:

  Changed IPsec Phase 1 to allow selecting both IPv4 and IPv6 so the local side can allow inbound connections to either address family

  Changed IPsec Phase 1 to allow configuration of multiple IKE encryption algorithms, key lengths, hashes, and DH groups

  Changed SMTP notifications handling so they are batched, to avoid sending multiple e-mail messages in a short amount of time

  Added options to RFC 2136 Dynamic DNS for server key algorithm and to change the source address used to send updates

  Added VLAN priority tagging for DHCPv6 client requests

  Hardware support for the new XG-7100 including C3000 SoC support, C3000 NIC support, and Marvell 88E6190 switch support (Factory installations only)

  … and more!

  详细更新内容请查看发布说明。

  下载地址:https://www.pfsense.org/download/(编辑:雷林鹏 来源:网络)

最新文章

  1. Java--Semaphore控制并发线程数量
  2. 【leetcode】Maximal Rectangle
  3. 《机器学习实战》学习笔记——第14章 利用SVD简化数据
  4. VB6 GDI+ 入门教程[7] Graphics 其他内容
  5. jvm回收方法区
  6. 白话解释IIS并发连接数
  7. c# 对加密的MP4文件进行解密
  8. JavaFX引入资源问题
  9. [转载] Java安全体系简介
  10. 2.6、Android Studio创建可伸缩的图片(9-patch文件)
  11. 《java入门第一季》之面向对象(如何使用帮助文档)
  12. 一文让你明白Redis主从同步
  13. HTML的基础样式之CSS
  14. 如何让 Git 使用 HTTP 代理服务器
  15. Excel技巧--文件批处理
  16. EF Core中DbContext可以被Dispose多次
  17. MVC 下 JsonResult 的使用方法(JsonRequestBehavior.AllowGet)
  18. OneZero第三周第五次站立会议(2016.4.8)
  19. Storm中的定时任务
  20. 自适应XAML布局经验总结 (四)区域布局设计模式

热门文章

  1. JavaWeb—Base64编码(转载)
  2. 2.AS入门教程
  3. 在eclipse中,Python项目遇到:…… from appium import webdriver ImportError: No module named appium
  4. OOM问题分析
  5. Python eval() 的使用:将字符串转换为列表,元祖,字典
  6. k近邻 KNN
  7. SVN无法Cleanup
  8. ACM-ICPC 2018 南京赛区网络预赛 - L Magical Girl Haze (分层迪杰斯特拉)
  9. message from server: "Host '192.168.6.68' is blocked because of many connection errors; unblock with 'mysqladmin flush-hosts
  10. 制作RPM包