IPFire 2.29 core update 200 introduces Linux kernel 6.18 LTS

The IPFire project has released Core Update 200 for version 2.29, rebasing the distribution on Linux kernel 6.18.7 LTS and previewing a new Domain Blocklist system. This update enhances network performance, security, and filtering capabilities while addressing compatibility issues for certain filesystems.

IPFire, an open-source Linux-based firewall distribution, issued Core Update 200 on March 2, 2026. The update rebase the system on Linux kernel 6.18.7 LTS, which offers improvements in network throughput, latency, packet filtering, and hardware security mitigations. According to the developers, this results in more stable connections under high load and faster packet processing.

A significant change involves the deprecation of ReiserFS support in the kernel. Systems using ReiserFS cannot install the update and require reinstallation on a supported filesystem such as ext4 or Btrfs, with data backup and restoration advised. IPFire had previously warned users about this via the web interface.

The update introduces IPFire DBL, a preview of the project's own Domain Blocklist, developed after the Shalla list's retirement in January 2022. DBL provides a curated, community-maintained database of domains categorized for blocking malware, phishing, advertising, pornography, gambling, gaming sites, and DoH servers. Updates occur hourly, and it is licensed under GPLv3+ for code and CC BY-SA 4.0 for data. DBL integrates with the URL filter for proxy blocking or Suricata for deep packet inspection across DNS, TLS, HTTP, and QUIC protocols, offering detailed alerts. It is compatible with tools like Pi-hole, BIND, Unbound, pfSense, SquidGuard, and Adblock-Plus. Community members can report issues or suggest additions online.

Performance enhancements include multi-threading in the Unbound DNS proxy, with one thread per CPU core for faster responses on multi-core systems. PPP connections now send LCP keepalive packets only when inactive, reducing overhead on DSL, 4G, and 5G links. OpenVPN configurations have been revised: the MTU is no longer hardcoded in client files but pushed by the server, along with one-time password tokens when enabled; the CA certificate is removed from clients as it is included in the PKCS#12 container. This aims to improve flexibility and reduce errors, though older clients may face compatibility issues.

Wireless access point support restores 802.11a/g modes, fixes excessive hostapd debug logging, and properly accepts pre-shared keys with special characters. Suricata addresses a signature cache issue from the prior update that caused unlimited growth and disk space consumption; reporting now includes hostname and protocol details for DNS, HTTP, TLS, and QUIC alerts in emails and PDFs.

Security updates feature OpenSSL 3.6.1, fixing CVEs including CVE-2025-15467 (stack overflow with potential remote code execution), CVE-2025-11187 (PKCS#12 buffer overflow), and CVE-2025-66199 (TLS 1.3 DoS). glibc receives fixes for CVEs such as CVE-2026-0861, CVE-2026-0915, and CVE-2025-15281. Other core components updated include Apache 2.4.66, OpenVPN 2.6.17, Suricata 8.0.3, Unbound 1.24.2, Rust 1.92, and BIND 9.20.18. Add-ons refreshed are ClamAV 1.5.1, Tor 0.4.8.21, Samba 4.23.4, and Git 2.52.

Core Update 200 is available for x86_64 and aarch64 architectures via download for fresh installs or through the web UI and pakfire command for upgrades. Developers plan to build a DNS firewall on DBL for native content filtering against ads and malware, independent of proxies.

Liittyvät artikkelit

Realistic illustration of Linus Torvalds announcing Linux kernel 6.19 release, featuring Intel/AMD hardware, GPU, storage, and performance upgrade icons.
AI:n luoma kuva

Linux kernel 6.19 released: end of 6.x series with major Intel/AMD/Arm hardware, GPU, storage, networking, and cloud upgrades

Raportoinut AI AI:n luoma kuva

Linus Torvalds announced the stable release of Linux kernel 6.19 on February 9, 2026, following an eight-week development cycle with a one-week delay. Marking the end of the 6.x series—like 3.x to 4.0 and 5.x to 6.0—this non-LTS version (6.18 LTS until December 2027) brings extensive enhancements for Intel/AMD/Arm hardware, older GPUs, file systems, peripherals, HDR graphics, networking, virtualization, and cloud environments. Torvalds timed it with a major U.S. sporting event, joking, "6.19 is out as expected -- just as the US prepares to come to a complete standstill later today, watching the latest batch of televised commercials," and noted the next kernel will be 7.0 as he's "running out of fingers and toes."

The Linux and open-source world saw a flurry of updates from February 9 to 15, 2026, including new versions of major distributions and software tools. Key highlights feature the Linux Kernel 6.19 and various desktop environment fixes. These releases focus on bug resolutions, performance improvements, and new features for users and developers.

Raportoinut AI

The Free Software Foundation Latin America has released GNU Linux-Libre 6.19, updating deblobbing scripts to align with the upstream Linux 6.19 kernel. This version targets proprietary firmware blobs in components like Intel Xe graphics, IWLWIFI wireless, and NVIDIA Nova. The effort continues a nearly two-decade push to create a fully free kernel free of non-free code.

Security Onion, a free Linux distribution for threat hunting and security monitoring, has released version 2.4.210 based on Oracle Linux. The update introduces major improvements to the Onion AI Assistant, including support for local models. Several core components have also been upgraded.

Raportoinut AI

Developers have released Linux kernel 7.0, featuring improvements for Intel and AMD hardware, enhanced storage handling, and the removal of the experimental label from Rust support. Linus Torvalds announced the update, which is not a long-term support version. The release includes preparations for upcoming CPUs and GPUs, alongside self-healing filesystem capabilities.

Arch Linux has issued its monthly installation ISO for March 2026, incorporating updates from February's repositories. The snapshot includes a new Linux kernel, refreshed libraries, desktop environments, and security enhancements. It serves as installation media for new users without introducing specific distribution changes.

Raportoinut AI

The Linux and open-source community experienced a busy week with several distribution releases and software improvements. Highlights include updates to MX Linux, CachyOS, GNU Guix, and Deepin, alongside enhancements in tools like GIMP and Wine. Hardware announcements featured new Linux-compatible devices.

 

 

 

Tämä verkkosivusto käyttää evästeitä

Käytämme evästeitä analyysiä varten parantaaksemme sivustoamme. Lue tietosuojakäytäntömme tietosuojakäytäntö lisätietoja varten.
Hylkää