IPFire 2.29 – Core Update 203 introduces DNS encryption and security improvements

  • New Knot Resolver as a replacement for Unbound for DNS management.
  • Compatibility with 6 GHz Wi-Fi networks and fix for connectivity problems.
  • Support for AWS IMDSv2, security updates, and performance improvements.

fwupd 2.1.5

IPFire 2.29 – Core Update 203 It is now available Currently in testing, this version arrives with some of the most significant changes seen recently in this network security-focused distribution. The developers have introduced profound improvements to essential system components, opting for a more modern, flexible infrastructure prepared to meet current connectivity and security challenges.

The new update is not limited to bug fixes or security patches. This time, IPFire It modifies one of the fundamental pillars of its operation: DNS managementIn addition, improvements have been made to wireless networks, cloud environment compatibility, and various updates aimed at increasing the overall stability of the system before its final release. As this is a beta version, the team encourages more experienced users to test it and report any issues they encounter.

IPFire 2.29 – Core Update 203 introduces a new DNS system and more key improvements

The main new feature of this update is the replacement of Unbound with Knot Resolver as the default DNS service. This change represents a significant overhaul of IPFire's internal architecture, enabling the incorporation of new capabilities that were previously more complex to implement.

Among the advantages of Knot Resolver is the ability to use encrypted DNS forwarding to external servers, improving the privacy of user queries. It also adds support for DNS firewall functions, an increasingly popular feature for blocking malicious or potentially dangerous domains before they can establish connections.

Another important feature is the addition of a persistent cache. This allows stored DNS queries to be retained even after a system restart, reducing response times and improving overall network efficiency.

The update also improves IPFire's wireless capabilities. The integrated access point now supports the 6 GHz band, a particularly useful feature for modern Wi-Fi 6E-compatible devices. Additionally, issues related to the use of 40 MHz channels, which could cause disconnections or unstable behavior in certain configurations, have been fixed.

Administrators using IPFire in cloud infrastructures will also find important updates. Core Update 203 adds support for AWS IMDSv2, the latest metadata system from Amazon Web Services, strengthening security in deployments hosted on this platform.

As is typical with each new release, this update also includes microcode updates for Intel processors, minor bug fixes, and improvements to various system packages. The developers remind users that, due to changes made to the DNS subsystem, it is advisable to carefully review the configuration before applying the update in production environments.


Add as preferred source