Am 03.08.2013 16:46, schrieb poma:
> To complement the group of 'avahilable' clients,
> 
> e.g. SFTP-SSH service discovery,
> /etc/avahi/services/sftp-ssh.service
> <?xml version="1.0" standalone='no'?><!--*-nxml-*-->
> <!DOCTYPE service-group SYSTEM "avahi-service.dtd">
> 
> <!-- This is a custom avahi sftp service file -->
> 
> <service-group>
>   <name replace-wildcards="yes">%h</name>
>   <service>
>     <type>_sftp-ssh._tcp</type>
>     <port>22</port>
>   </service>
> </service-group>
> EOF
> 
> /etc/ssh/sshd_config
> Subsystem     sftp    /usr/libexec/openssh/sftp-server

that makes avahi not more useful and does not change anything in
the security-flaw of blwoing out services to everyone so that
they even no longer need to do portscans

the only place where you need avahi is if you are surrounded
by a lot of apple-users to announce them the fileserver and
hence even they manage "connect to server"

Attachment: signature.asc
Description: OpenPGP digital signature

-- 
users mailing list
users@lists.fedoraproject.org
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Fedora Code of Conduct: http://fedoraproject.org/code-of-conduct
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines
Have a question? Ask away: http://ask.fedoraproject.org

Reply via email to