{"id":178718,"date":"2025-07-22T13:01:32","date_gmt":"2025-07-22T13:01:32","guid":{"rendered":"https:\/\/linuxiac.com\/?p=178718"},"modified":"2025-07-22T13:32:27","modified_gmt":"2025-07-22T13:32:27","slug":"ipfire-2-29-core-update-196-firewall-released-with-wireguard-boost","status":"publish","type":"post","link":"https:\/\/linuxiac.com\/ipfire-2-29-core-update-196-firewall-released-with-wireguard-boost\/","title":{"rendered":"IPFire 2.29 Core Update 196 Firewall Released with WireGuard Boost"},"content":{"rendered":"\n<p>IPFire, a free, open-source Linux-based hardened firewall designed to be deployed as a dedicated firewall\/router system for protecting network environments, has issued IPFire 2.29 \u2013 Core Update 196.<\/p>\n\n\n\n<p>In this release, the kernel has been updated to Linux 6.12.34, which provides improved hardware support, security patches, and overall smoother operation. Plus, the team bumped GCC, the core compiler, to version 15.<\/p>\n\n\n\n<p>Moreover, IPFire has leaned hard into <a href=\"https:\/\/linuxiac.com\/how-to-set-up-wireguard-vpn-with-docker\/\">WireGuard<\/a> for the last couple of cycles, and Core 196 improves things even further:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Per-device kernel threads<\/strong> \u2013 Each WireGuard interface now spins up its own kernel thread, meaning multi-core boxes can finally stretch their legs instead of piling all tunnel processing onto a single CPU.<\/li>\n\n\n\n<li><strong>Dashboard visibility<\/strong> \u2013 Active tunnels now surface right on the web UI\u2019s main screen, saving you a click whenever you need a quick health check.<\/li>\n\n\n\n<li><strong>Throughput boost<\/strong> \u2013 Engineers cherry-picked Generic Segmentation Offload improvements from the upcoming Linux 6.13 tree, essentially letting the kernel juggle bigger packets before handing them off to the NIC.<\/li>\n<\/ul>\n\n\n\n<p>It\u2019s also worth noting that the text console has been ported to the Linux Direct Rendering Manager stack, allowing fresh installs to automatically detect high-resolution modes\u2014such as Full HD, 4K, and beyond.<\/p>\n\n\n\n<p>As a result, text now looks sharper, virtual-terminal switches feel smoother, and multi-GPU boxes behave far better. Existing installations retain the legacy path by default (no surprise, the project aims to avoid disabling remote-only appliances), but new ISOs ride the modern graphics train from day one.<\/p>\n\n\n\n<p>Lastly, Core 196 updates or replaces roughly 80 user-space components. Highlights include cURL 8.14.1, Squid 6.14, Ruby 3.4.4, Vim 9.1.1406, and zlib-ng 2.2.4. On the add-on side, admins will see ClamAV 1.4.3, Git 2.50.0, Tor 0.4.8.16, plus a brand-new \u201cFORT Validator\u201d package for checking BGP RPKI data.<\/p>\n\n\n\n<p>For more information, <a href=\"https:\/\/www.ipfire.org\/blog\/ipfire-2-29-core-update-196-released\" target=\"_blank\" rel=\"noreferrer noopener\">see the announcement<\/a>.<\/p>\n\n\n\n<p>Core Update 196 is already <a href=\"https:\/\/www.ipfire.org\/downloads\/ipfire-2.29-core196\" target=\"_blank\" rel=\"noreferrer noopener\">available for download<\/a> on IPFire\u2019s website. Two build flavours cover the most common hardware: x86_64 and aarch64 for those needing a fresh install. Existing systems can be upgraded via IPFire\u2019s web UI or the <code>pakfire update<\/code> command.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>IPFire 2.29 Core Update 196 open-source firewall is out with Linux kernel 6.12.34, GCC 15, improved WireGuard performance, and more.<\/p>\n","protected":false},"author":10,"featured_media":178721,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7,5],"tags":[4155,6365,3374,4647],"class_list":["post-178718","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-software","category-news","tag-firewall","tag-ipfire","tag-security","tag-wireguard"],"blocksy_meta":[],"_links":{"self":[{"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/posts\/178718","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/comments?post=178718"}],"version-history":[{"count":0,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/posts\/178718\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/media\/178721"}],"wp:attachment":[{"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/media?parent=178718"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/categories?post=178718"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/linuxiac.com\/wp-json\/wp\/v2\/tags?post=178718"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}