[mythtv-users] mythtv user login password

jam jam at tigger.ws
Thu Jun 11 04:13:37 UTC 2020



> On 11 Jun 2020, at 11:46 am, Stephen Worthington <stephen_agent at jsw.gen.nz> wrote:

[snip]
> There are some security implications of doing that, but I always do it
> shortly after I install a new system.  I also install SSH and allow
> root logins, but I only allow connections to the SSH port from within
> the secure part of my home network, by way of the firewall rules in my
> router.

Which is another of my pet peeves

Presumably your machine has a private address, say 192.168.x.y
now RFCs prevent a router on the internet fowarding private addresses
so every router from bad-guys to you is broken

Next unless you allow port forwarding bad-guys make it to your router, how do they get from there to your machine?

Assume they hijack some service out. Usually one allows RELATED, ESTABLISHED back so your firewall is of no help.

Firewall rules on the router prevent a rouge winders machine sprouting to the world, but in general have no value (other than making you feel good)

So effectivly your, and my mythtv machine is a castle surrounded by a deep mout
James


More information about the mythtv-users mailing list