I treat all guests on the network as potentially hostile, so I enable firewalls on all of my hosts.
I believe that Fedora's firewall is enabled by default, but it leaves open ports 1025-65535/tcp and 1025-65535/udp.
To lock down some sane defaults:
sudo firewall-cmd --permanent --remove-port=1025-65535/tcp
sudo firewall-cmd --permanent --remove-port=1025-65535/udp
sudo firewall-cmd --reload
Verify allowed ports with:
sudo firewall-cmd --list-ports
See also:
PS: if you have a Steam Link, you'll want to open these ports for connectivity:
sudo firewall-cmd --permanent --add-port=27031/udp # steam remote play
sudo firewall-cmd --permanent --add-port=27036/udp # steam remote play
sudo firewall-cmd --permanent --add-port=27036/tcp # steam remote play
sudo firewall-cmd --permanent --add-port=27037/tcp # steam remote play