Do I need avahi?

Reindl Harald h.reindl at thelounge.net
Sat Aug 3 15:20:45 UTC 2013


Am 03.08.2013 16:46, schrieb poma:
> To complement the group of 'avahilable' clients,
> 
> e.g. SFTP-SSH service discovery,
> /etc/avahi/services/sftp-ssh.service
> <?xml version="1.0" standalone='no'?><!--*-nxml-*-->
> <!DOCTYPE service-group SYSTEM "avahi-service.dtd">
> 
> <!-- This is a custom avahi sftp service file -->
> 
> <service-group>
>   <name replace-wildcards="yes">%h</name>
>   <service>
>     <type>_sftp-ssh._tcp</type>
>     <port>22</port>
>   </service>
> </service-group>
> EOF
> 
> /etc/ssh/sshd_config
> Subsystem	sftp	/usr/libexec/openssh/sftp-server

that makes avahi not more useful and does not change anything in
the security-flaw of blwoing out services to everyone so that
they even no longer need to do portscans

the only place where you need avahi is if you are surrounded
by a lot of apple-users to announce them the fileserver and
hence even they manage "connect to server"

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 263 bytes
Desc: OpenPGP digital signature
URL: <http://lists.fedoraproject.org/pipermail/users/attachments/20130803/11b525f2/attachment.sig>


More information about the users mailing list