Inguqulelo entsha ye-GnuPG 2.3.0 sele ikhutshiwe kwaye ezi ziindaba zayo

Emva kweminyaka emithathu enesiqingatha yokusekwa kwesebe lokugqibela elibalulekileyo Inguqulelo entsha ye-GnuPG 2.3.0 sele ikhutshiwe (Guard Guard yabucala), ehambelana nemigangatho ye-OpenPGP kunye ne-S / MIME kwaye ibonelela ngezixhobo zokubethela idatha, ukusebenza ngemisayino ye-elektroniki, ulawulo oluphambili kunye nokufikelela kwiivenkile eziphambili zikawonke-wonke.

Le nguqulo intsha yeGnuPG 2.3.0 ibekwe njengenguqulo yokuqala yesiseko sekhowudi entsha equka izinto ezintsha.

I-GnuPG 2.2 ithathwa njengesebe elizinzileyo, elungiselelwe ukusetyenziswa gwenxa kwaye iya kuxhaswa kude kube ubuncinci kude kube ngu-2024, ngelixa inguqulelo ye I-GnuPG 1.4, oku kuyaqhubeka nokuthumela njengothotho lweklasikhi Ubuncinci bobutyebi, obulungele iinkqubo ezigxunyekwe, kwaye ziyahambelana nobuchule bokubethela kwilifa.

Iimpawu ezintsha eziphambili zeGnuPG 2.3.0

Kule nguqulo intsha yeGnuPG 2.3.0 Kuyacetyiswa inkqubo yangasemva yolingelo nge ukusebenzisa isiseko sedatha esisiseko usebenzisa i-SQLite ukugcina nokubonisa ukukhangela okukhawulezayo. Ukwenza ugcino olutsha, vumela ukhetho "use-keyboxd" kwi gpg.conf kunye gpgsm.conf.

Olunye utshintsho olwahlukileyo kukuba iarhente inokusebenzisa "ileyibhile:" ixabiso kwifayile ephambili ukwenza ngokwezifiso isicelo sePIN, ukongeza kuphunyezo lwenkxaso yolwandiso lwe-ssh-arhente yokuguquguquka kwendalo.

Kwakhona, sinokuyifumana loo nto Inkxaso ye-scd yamakhadi amaninzi kunye neethokheni zabafundi ziphuculwenjengoko amandla okusebenzisa usetyenziso oluninzi ngekhadi elithile le-smart aphunyezwa kunye nenkxaso yamakhadi e-PIV, iiKhadi zoTyikityo lweTelesec v2.0 kunye neRohde & Schwarz Cybersecurity nayo yongezwa.

Kwakhona ikhadi elitsha elisebenzisayo le-gpg longezelelwe, que inokusetyenziswa njengesixhobo esibonakalayo esiguqukayo kuzo zonke iintlobo zamakhadi smart ixhaswe ngenkqubo entsha yangasemva, i-tpm2d, ukwenza ukusetyenziswa kweetshipsi ze-TPM 2.0 ukukhusela amaqhosha abucala kunye nokwenza ukubethela okanye ukutyikitya kwidijithali kwicala le-TPM.

I-Gpg iyekile ukusebenzisa ii-algorithms ezingama-64 zokwenza ufihlo. Ukusetyenziswa kwe-3DES akuvumelekanga kwaye i-AES ibhengezwe njengeyona algorithm incinci ixhaswayo. Ukhetho lwe- "-allow-old-cipher-algos" lunokusetyenziselwa ukukhubaza ingxaki.

Ye- Olunye utshintsho ezidityanisiweyo kule nguqulo intsha:

  • Kukhethwe iindlela ezintsha "–ukusetyenziswa kuqala" kunye "–pcsc-shared".
  • I-algorithms emiselweyo yezitshixo zoluntu zi-ed25519 kunye ne-cv25519.
  • Yongezwe inkxaso ye-AEAD OCB kunye ne-EAX yeendlela zebhloko.
  • Inkxaso yenguqulo yesihlanu (ngesazisi esisekwe kwi-SHA256 endaweni ye-SHA1) yezitshixo kunye nokutyikitywa kwedijithali kubonelelwe.
  • Inkxaso eyongeziweyo yee-X448 curves (ed448, cv448).
  • Ukusetyenziswa kwamagama eqela kwizintlu eziphambili kuvunyelwe.
  • Kwi-gpg, iziphumo zokungqinisisa ngoku zixhomekeke kukhetho lwe “–sender” kunye nesazisi somyili womsayino.
  • Yongeze "-chuid" ukhetho kwi-gpg, gpgsm, gpgconf, gpg-card kunye gpg-connect-arhente ukutshintsha i-ID yomsebenzisi.
  • Ukongezwa kweenketho kwi-gpg "-izalisekile yamaxesha" (bonisa umhla kunye nexesha), "- force-sign-key" kunye "-no-auto-trust-new-key".
  • Inkxaso yelifa le-PKA yeendlela eziphambili zokufumanisa zisusiwe kwaye iindlela ezinxulumene noko zisusiwe.
  • Wongeze amandla okuthumela ngaphandle amaqhosha e-Ed448 e-SSH kwi-gpg.
  • I-Gpgsm yongeza inkxaso ye-ECC esisiseko kunye nokukwazi ukwenza izatifikethi ze-EdDSA.
  • Ukususwa kwesevisi ye-symcryptrun (ikhonkco elingasasebenziyo kwi-Chiasmus yangaphandle.
  • Inkxaso yomyalelo opheleleyo we-Unicode iyafumaneka kwiqonga leWindows.

Uyifaka njani i-GnuPG kwi-Ubuntu nakwiziphumo?

Okwangoku ingxelo entsha ye-GnuPG ayifumaneki Kwindawo yokugcina esemthethweni Ubuntu, ke abo bakhetha le ndlela yokufaka kuya kufuneka balinde ukuba iphakheji ihlaziywe, mhlawumbi phakathi evekini kwaye iphakheji iyafumaneka.

Kulungiselelwe abo sele befuna ukwenza uhlaziyo ukusombulula iingxaki, kufuneka bakhuphele ikhowudi yemvelaphi yeGnuPG kwiwebhusayithi yayo esemthethweni, ikhonkco yile.

Emva koko kuya kufuneka ukuba bavule iziphu ezikhutshelweyo kwaye bazibeke kwisiphelo sendlela ngaphakathi kwifolda enesiphumo.

Unokwenza oku Ukuchwetheza kwisiphelo sendlela:

tar xvzf gnupg-2.3.0.tar.bz2

Emva koko siya kuthi ngenisa ifolda eyenziweyo nge:

cd gnupg-2.3.0

Sele kwisiphelo sendlela kuya kufuneka bachwetheze kuphela le miyalelo ilandelayo:

./configure
make
make check
make install

Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.

  1.   Am sitsho

    Into ekufuneka beyenzile kukongeza ujongano lomzobo ngokunjalo, ukwenza ukuba kube lula kubasebenzisi ngaphandle kwamava nge-terminal ...