Nice writeup. Alway put my mDNS-capable server devices behind a fire-walled sub-subnet or disable server’s Avahi/Bonjour if not needed.<p>Clients can run Avahi/Bonjour just fine, provided those ports are firewall-limited to its non-public subnet.