Uhlobo olusha lwe-SUSE Linux Enterprise 15 SP3 selukhishiwe

Abathuthukisi be-SUSE banayo yethulwe ngemuva konyaka wentuthuko inguqulo entsha ye- "SUSE Linux Enterprise 15 SP3" enikezela ukuhambisana okungu-100% kanambambili kwamaphakeji ngokusatshalaliswa okwenziwe ngaphambili kwe-OpenSUSE Leap 15.3, okuvumela ukufuduka okushelelayo kumasistimu we-SUSE Linux Enterprise asebenzisa i-openSUSE futhi okuphambene nalokho.

Iqiniso ukuthi ukuhambisana okuphezulu kufinyelelwe ngenxa yokusetshenziswa kwesethi efanayo yamaphakeji kanambambili evulekileSUSE njengakuSUSE Linux Enterprise, esikhundleni sokwakhiwa kabusha kwamaphakeji e-src okwakwenziwa ngaphambilini.

I-SUSE Linux Enterprise 15 SP3 Izici Ezintsha Eziyinhloko

Le nguqulo entsha yokusabalalisa Izinsiza ze-Btrfs zingeze ukusekelwa kokwenza i-serializing (ukwenza ngokulandelana) imisebenzi engenakwenziwa ngasikhathi sinyenjengokulinganisa, ukususa / ukufaka amadivayisi, nokukhulisa usayizi wezinhlelo zamafayela. Esikhundleni sokubonisa iphutha, imisebenzi efanayo manje yenziwa ngokulandelana.

Kubuye kuqhakanjiswe lokho ama-hotkey angeziwe kusifaki I-Ctrl + Alt + Shift + C (ngemodi yokuqhafaza) ne-Ctrl + D Shift + C (kumodi ye-console) ukubonisa ibhokisi elinamasethingi angeziwe (ukumiswa kwenethiwekhi, khetha amakhosombe bese ushintshela kumodi yochwepheshe).

Kubuye kuqhakanjiswe lokho ukuxhaswa kweModyuli ye-NVIDIA Compute kuthuthukisiwe, I-CUDA (Compute Unified Device Architecture) kanye ne-GPU ebonakalayo, ngaphezu kokungeza ukusekelwa kwezandiso zokwenza i-Secure Encrypted Virtualization (SEV) ezihlongozwayo kuma-processor wesizukulwane sesi-XNUMX se-AMD EPYC, okunikeza ukubethela okusobala kwenkumbulo yemishini ebonakalayo.

Engxenyeni ye-kernel singakuthola lokho I-Linux kernel 5.3 iyaqhubeka nokusetshenziswa okusenokwesekwa okusha kwehardware, kwazise ukwengezelwa ama-processor we-AMD EPYC, i-Intel Xeon, i-Arm neFujitsu kufakwe, kufaka phakathi ukwenziwa okuhle kwamaprosesa we-AMD EPYC 7003, kanye nokuxhaswa kwamakhadi weHabana Labs Goya AI PCIe. Iprosesa (AIP). Kungezwe ukusekelwa kwe-NXP i.MX 8M Mini SoC, NXP Layerscape LS1012A, NVIDIA Tegra X1 (T210), neTegra X2 (T186).

Njengakwinguqulo yangaphambilini, ideskithophu iyathunyelwa I-GNOME 3.34, lapho kudluliselwe khona ukulungiswa kwamaphutha futhi amaphakheji wesistimu abuyekezwe, njenge-Inkscape 1.0.1, Mesa 20.2.4, Firefox 78.10, phakathi kokunye okuningi.

Ngesikhathi I-Xca ishiwo kuzinsiza ezintsha (Isitifiketi se-X nokuphathwa kokhiye) sokuphathwa kwezitifiketi, lapho ungakha khona ama-CA wendawo, ukhiqize, usayine futhi ubuyise izitifiketi, ungenise nokhiye bokungenisa kanye nezitifiketi kumafomethi we-PEM, DER ne-PKCS8.

Kanye ne ukusekelwa kwe-IPSec VPN StrongSwan ku-NetworkManager (idinga ukufakwa kwamaphakeji we-NetworkManager-strongswan ne-NetworkManager-strongswan-gnome). Yehlisiwe futhi ingasuswa ekukhishweni okuzayo, ukusekelwa kwe-NetworkManager kwezinhlelo zeseva (okubi kusetshenziselwa ukulungisa isistimu esekelayo yenethiwekhi).

Okwezinhlelo ze-x86_64, kungezwe umshayeli we-CPU ongasebenzi, "i-haltpoll", enquma ukuthi i-CPU ingafakwa nini kumamodi wokonga amandla ajulile, imodi ijula, ukonga kakhulu, kepha futhi kuthatha isikhathi eside ukuphuma kumodi. Isilawuli esisha senzelwe ukusetshenziswa ezinhlelweni zokwenza izinto futhi sivumela i-CPU ebonakalayo (VCPU) esetshenziswe ohlelweni lwezivakashi ukucela isikhathi esingeziwe ngaphambi kokubeka i-CPU esimweni sokungenzi lutho. Le ndlela ingathuthukisa ukusebenza kwezicelo ezenziwe ngokwezifiso ngokuvimbela ukubuyiselwa kokulawulwa ku-hypervisor.

Kwezinye izinguquko okugqamile:

  • Ukuxhaswa kwe-SELinux kungezwe ku-YaST. Ngesikhathi sokufakwa, manje usungavumela i-SELinux bese ukhetha imodi "ephoqelekile" noma "yokuvumela".
  • Kufaka phakathi ama-exfatprogs namaphakheji wamathuluzi we-bcache anezinsiza ze-exFAT ne-BCache.
  • Amandla angeziwe okunika amandla i-DAX (isinqamuleli) kumafayili ngamanye ku-Ext4 naku-XFS
  • Kungezwe iphakethe le-swtpm ngokusetshenziswa kwe-TPM (Trusted Platform Module) emulator yesoftware.
  • Ukusekelwa okuthuthukisiwe kwemibhalo namaphrofayli ku-AutoYaST.
  • Kukhuliswe umkhawulo enombolweni enkulu yezincazelo zefayela yezinqubo zomsebenzisi (RLIMIT_NOFILE).
  • Umkhawulo onzima uphakanyisiwe kusuka ku-4096 kuya ku-512K, futhi umkhawulo othambile, ongakhuphuka kusuka ngaphakathi kohlelo uqobo, uhlala ungashintshiwe (izincazelo eziyi-1024).
  • IFirewalld ingeza ukusekelwa kwe-backend kokusebenzisa ama-nftables esikhundleni sama-iptables.
  • Kungezwe ukusekelwa kweVPN WireGuard (imodyuli ye-kernel kanye nethuluzi lokuvikela ikhebula).
  • I-Linuxrc ikuvumela ukuthi uthumele izicelo ze-DHCP ngefomethi ye-RFC-2132 ngaphandle kokucacisa ikheli le-MAC ukwenza lula ukugcinwa kwenani elikhulu labasingathi.
  • I-Dm-crypt ingeza ukusekelwa kokubethela kwemodi ehambisanayo, enikwe amandla ngezinketho zomugqa ongafundiwe nongabhali ku / etc / crypttab.

Umthombo: https://www.suse.com/


Yiba ngowokuqala ukuphawula

Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.