Het pakket OPNsense is een firewall met uitgebreide mogelijkheden. Het is gebaseerd op het besturingssysteem FreeBSD en is oorspronkelijk een fork van m0n0wall en pfSense. Het pakket kan volledig via een webinterface worden ingesteld en heeft onder andere ondersteuning voor 2fa, openvpn, ipsec, carp en captive portal. Daarnaast kan het packetfiltering toepassen en beschikt het over een traffic shaper. De ontwikkelaars hebben OPNsense 22.1.9 uitgebracht met de volgende aankondiging:
OPNsense 22.1.9 releasedToday we are addressing kernel memory leaks that occur when reading firewall rule information from the system. It seems that these leaks even slipped into the FreeBSD 13.1 release so we are happy to see them fixed now.
22.7 is very much on track. Our final target is getting ready for the PHP 8 upgrade but the timing is unclear as we wait for an official Phalcon 5 release version that supports it. Other than that please enjoy the summer and hydrate responsibly.
Here are the full patch notes:
- system: improve gateway subnet validation to fix IPv6 edge cases
- system: dpinger support for IPv6 aliases
- system: support 1500000 baudrate selection for ARM
- system: non-functional cleanups for upcoming move to PHP 8
- interfaces: add unique constraint for tag+if on VLANs
- firewall: bring back missing toggle button in aliases
- firewall: exclude internal aliases on import
- firewall: fix alias removal
- captive portal: add missing validation message for empty interface selection
- dhcp: revert back to not adding an IP to static lease creation from leases page
- openvpn: add domain search option to servers and overrides
- unbound: disabling the first DNS override entry invalidates config
- unbound: make blocklist additions/removals dynamic to prevent a restart
- unbound: zero_ttl is no longer a valid statistic (contributed by David Mora)
- plugins: os-ddclient 1.7
- plugins: os-debug 1.5 fixes deprecated xdebug syntax
- plugins: os-frr 1.29
- plugins: os-nginx 1.28
- plugins: os-wireguard 1.11
- src: pf: fix memory leaks in nvlist usage
- src: pf: stop resolving hosts as dns that use ":" modifier
- src: e1000: Increase rx_buffer_size to 32b
- src: igc: Increase rx_buffer_size local variable to 32b
- src: assorted non-functional cleanups and typo corrections
- ports: krb5 1.20
- ports: lighttpd 1.4.65
- ports: nss 3.79
- ports: openvpn 2.5.7
- ports: php 7.4.30
- ports: py-certifi 2022.5.18.1
- ports: sqlite3 3.38.5
- ports: sudo 1.9.11p2
- ports: unbound 1.16.0