| Name | Modified | Size | Downloads / Week |
|---|---|---|---|
| Parent folder | |||
| UgreenNASAdmin_setup_23.8.57.exe | 2026-10-01 | 28.9 MB | |
| UgreenNASAdmin_setup_23.8.57.exe.sig | 2026-10-01 | 90 Bytes | |
| UgreenNASAdmin_v23.8.57_release.zip | 2026-10-01 | 68.2 MB | |
| README.md | 2026-10-01 | 2.5 kB | |
| Ugreen NAS Admin 23.8.57 source code.tar.gz | 2026-10-01 | 2.4 MB | |
| Ugreen NAS Admin 23.8.57 source code.zip | 2026-10-01 | 2.4 MB | |
| Totals: 6 Items | 101.9 MB | 1 | |
Ugreen NAS Admin 23.8.57
Highlights
Major security release (2026-10-01). Includes the full day train from 23.8.49–57 if you upgrade from an older build.
Critical fix
- NAS disk restore (
gzip | dd): usespipefailand the real SSH exit code. A failed/truncated gzip can no longer end as “Restore done” while the disk was only partially overwritten.
Backup & restore
- Mount/filesystem preflight; publish only on tar exit 0 and a non-empty archive
- No automatic prune of older archives by filename prefix
- Cron/job validation before any root writes
- Scheduled helpers under
/var/lib/ugreen-nas-admin/ - Archive restore: single
tar -xf, path allowlists, real failure reporting
Trust & secrets (also 23.8.49–51)
- SSH fingerprint confirm on first connect; corrupt host-key store fails closed
- UGOS TLS pin; API rejects redirects; peer cert checked against the pin
- Passwords/passphrases only in the OS keyring; JSON cleared only after a successful vault write
- Dangerous actions start locked (“Full access” must be enabled deliberately)
Root & upload (also 23.8.52–56)
- Atomic root file publication; private runner directory
- Upload
chownonly for newly created path components - Safer script/cron/Docker/ZFS/rsync quoting; no silent
../script aliasing
Downloads
- UgreenNASAdmin_setup_23.8.57.exe — Windows installer
- UgreenNASAdmin_v23.8.57_release.zip — portable / release pack
Deutsch
Großes Sicherheits-Update (gesamter Stand 23.8.49–57).
- Disk-Restore:
gzip | ddmitpipefail— kein „fertig“ mehr bei teilweise überschriebener Platte - Backup: Preflight, strenger tar, kein Auto-Prune, Cron erst nach Validierung; Helfer unter
/var/lib/ugreen-nas-admin/ - Vertrauen: SSH-/TLS-Stores fail-closed; UGOS ohne Redirects; Keyring; Danger-Lock
- Root/Upload: atomare Root-Dateien;
chownnur für neue Ordner; härteres Shell-Quoting
Nach dem Update
- Watch / Daily Report / Script-Notify / geplante Backups einmal neu aufs NAS schreiben
- Cron prüfen:
/var/lib/ugreen-nas-admin/…statt/volume1/scripts/ugreen_… - Eigene Nutzer-Skripte bleiben unter
/volume1/scripts/
Details: CHANGELOG.md (github.com)