Security 10907 Published by

IPFire 2.29 - Core Update 197 has been released, marking a significant milestone for this professional-grade open-source firewall and security platform. The update includes a comprehensive overhaul of OpenVPN to version 2.6, bringing improved security, client compatibility, and codebase modernization, as well as fine-tuned system performance to reduce energy consumption while maintaining lightning-fast speed. Additionally, IPFire has been rebased on Linux 6.12.41, features new mitigations against Transient Scheduler Attacks, and includes numerous package upgrades and add-on updates. 



IPFire 2.29 - Core Update 197 released

IPFire 2.29 - Core Update 197 has been released, which represents a major accomplishment for this professional-grade open-source firewall and security platform. Trusted by thousands of organizations, businesses, and individuals worldwide, IPFire continues to evolve in response to the ever-changing landscape of cybersecurity threats.

Developed and maintained by a dedicated team and a vibrant community, IPFire has always prioritized security, performance, and flexibility. Its ability to adapt to networks of all sizes, from home offices to global enterprises, is just one reason why it's a go-to solution for those seeking robust protection.

At the heart of this latest release is a comprehensive overhaul of OpenVPN, now upgraded to version 2.6. This upgrade brings significant improvements in security, client compatibility, and codebase modernization – all seamlessly integrated without requiring changes to existing configurations. However, that's not the only innovation; IPFire has also been fine-tuned for improved system performance.

The update is designed to enable CPUs to spend more time in power-saving states, reducing energy consumption while maintaining lightning-fast performance. Moreover, this release includes a substantial package update, ensuring your system remains secure, stable, and prepared for any challenge that comes its way.

Behind the scenes lies a team of passionate contributors who have invested countless hours in making IPFire 2.29 - Core Update 197 a reality. However, their efforts rely on the support of users like you. As donations have been lower than usual, it's essential to demonstrate appreciation for this free software that protects your network.

One notable aspect of this release is the upgrade to OpenVPN 2.6, which brings several key changes. Notably, client configuration export has become simpler and more unified, with certificates and key material now embedded in a single configuration file. This makes importing settings across various clients easier than ever.

OpenVPN has also enhanced its cryptographic capabilities, including cipher negotiation between the server and client, as well as SHA512 as the default hash method when no AEAD cipher is used. Moreover, compression support has been removed due to potential security risks, while subnet topology has been revamped for improved performance and resource management.

IPFire's OpenVPN settings can now be changed without requiring a restart of the service, allowing clients to reconnect immediately upon notification from the server. Additionally, descriptions, labels, and headlines in the web UI have been clarified for an easier configuration experience.

Furthermore, IPFire will now default to clocking down its CPUs, reducing power consumption and heat emission while maintaining performance. This decision is based on benchmark results showing improved efficiency without compromising packet forwarding latency.

Miscellaneous improvements include better support for WireGuard configurations, intrusion prevention system updates, backup enhancements, a remedy for network interface issues at boot time, and rebasing the IPFire kernel on Linux 6.12.41. The update also includes various package upgrades and adds new features such as Chinese translation and updated add-ons.

The update brings numerous improvements to IPFire's performance, security, and user experience. With its extensive overhaul of OpenVPN and focus on power efficiency, this release demonstrates the team's commitment to keeping users safe in an increasingly complex cybersecurity landscape.

For more information, visit the release announcement below:

IPFire 2.29 - Core Update 197 released

www.ipfire.org - IPFire 2.29 - Core Update 197 released