Since systemd exposes the hostname "_gateway" (ie. `ping _gateway`) on systemd OSes, does this pose any security risk if any website decides to use that hostname to access your router?
On appVMs this apparently can't be an issue, because _gateway points to a 10. IP class, in fact, it point to sys-firewall's IP (assuming sys-firewall is the net VM set for that appVM in its settings). On a vanilla Linux though, it seems that websites could access the router by using the _gateway hostname. Does anyone know if this can be done? It'd be kinda lame if so... and I can only imagine the attacks that could be performed. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/b707a481-d786-4bb3-b62b-bebd962208f1%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
