New ZeroConf Spec

Andrew Jorgensen andrew.jorgensen at gmail.com
Sat Jul 22 18:36:18 BST 2006


On 7/22/06, Dan Kegel <dank at kegel.com> wrote:
> And how about the suggestion in
> http://www.watersprings.org/pub/id/draft-williams-zeroconf-security-00.txt
> that IPSec would help?
> http://www.securityfocus.com/infocus/1859 describes how to turn IPsec
> on between two OpenBSD machines, and it doesn't sound too bad.
> Could we set up Avahi to ignore any incoming packets that were not
> protected by IPSec, but let every other service use plain old non-IPSec packets?
> That might be easier than cobbling up an authentication method just for
> Zeroconf.

Probably not without a firewall to do that filtering for you... and
setting up IPSec.



More information about the ubuntu-devel mailing list