FYI: vnc console now only accessible on 127.0.0.1 by default

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Just a heads-up for anyone who uses the VNC service for accessing the 
graphical framebuffer for fully-virt & para-virt guests. As of xen-3.0.2-43
in rawhide, the VNC server will default to only accepting connections on 
localhost (127.0.0.1). The reason for this change is that the VNC servers 
do not currently[1] have any support for VNC password authentication, so 
listening on 0.0.0.0 by default is rather a bad idea.

If you need to revert to old behaviour either set vnclisten="0.0.0.0" in
the guest domain's config, or to change it system wide, set the vnc-listen
parameter in /etc/xen/xend-config.sxp. I'd recommend though to just forward
the VNC port securely over SSH instead if feasible.

Regards,
Dan.

[1] Password support is under active development & will hopefully also
    appear real soon now...
-- 
|=- Red Hat, Engineering, Emerging Technologies, Boston.  +1 978 392 2496 -=|
|=-           Perl modules: http://search.cpan.org/~danberr/              -=|
|=-               Projects: http://freshmeat.net/~danielpb/               -=|
|=-  GnuPG: 7D3B9505   F3C9 553F A1DA 4AC2 5648 23C1 B3DF F742 7D3B 9505  -=| 

--
Fedora-xen mailing list
Fedora-xen@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/fedora-xen

[Index of Archives]     [Fedora General]     [Fedora Music]     [Linux Kernel]     [Fedora Desktop]     [Fedora Directory]     [PAM]     [Big List of Linux Books]     [Gimp]     [Yosemite News]

  Powered by Linux