<feed xmlns='http://www.w3.org/2005/Atom'>
<title>packages/net/miniupnpd/files/firewall.include, branch master</title>
<subtitle>Mirror of packages feed</subtitle>
<id>https://git.openwrt.org/feed/packages/atom?h=master</id>
<link rel='self' href='https://git.openwrt.org/feed/packages/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/feed/packages/'/>
<updated>2022-01-05T09:00:02Z</updated>
<entry>
<title>miniupnpd: create iptables and nftables variant</title>
<updated>2022-01-05T09:00:02Z</updated>
<author>
<name>Stijn Tintel</name>
</author>
<published>2021-11-05T22:39:09Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/feed/packages/commit/?id=7fbc5d4db3c03601bd3865a9e9aa13bb7783d036'/>
<id>urn:sha1:7fbc5d4db3c03601bd3865a9e9aa13bb7783d036</id>
<content type='text'>
The next OpenWrt stable release aims to use firewall4 by default. As
this uses nftables as backend, miniupnpd will no longer work. Create an
iptables and nftables variant of the miniupnpd package so that miniupnpd
can be used with either firewall variant.

See #16818 for more info.

Signed-off-by: Stijn Tintel &lt;stijn@linux-ipv6.be&gt;
</content>
</entry>
<entry>
<title>miniupnpd: add patience to firewall include</title>
<updated>2021-03-20T16:01:25Z</updated>
<author>
<name>Kevin Darbyshire-Bryant</name>
</author>
<published>2021-03-08T11:09:21Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/feed/packages/commit/?id=679a7b69ee4313014f0940504a1873faeca0f9fd'/>
<id>urn:sha1:679a7b69ee4313014f0940504a1873faeca0f9fd</id>
<content type='text'>
Occasionally, mostly at startup, miniupnpd reports "Another app is
currently holding the xtables lock. Perhaps you want to use the -w
option?"

Take iptables' advice and wait up to 1 second before giving up.

Signed-off-by: Kevin Darbyshire-Bryant &lt;ldir@darbyshire-bryant.me.uk&gt;
</content>
</entry>
<entry>
<title>miniupnpd: Added chain rule to filter table so udp stun incoming connections rules works</title>
<updated>2020-11-25T22:12:18Z</updated>
<author>
<name>Marco Martins</name>
</author>
<published>2020-11-19T21:53:31Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/feed/packages/commit/?id=773b87977eb176a15f18d31c71987a398d34ee70'/>
<id>urn:sha1:773b87977eb176a15f18d31c71987a398d34ee70</id>
<content type='text'>
Signed-off-by: Marco Martins &lt;marcomartins86@gmail.com&gt;
</content>
</entry>
<entry>
<title>miniupnpd: Import release 20180422 to repo</title>
<updated>2018-05-04T08:03:56Z</updated>
<author>
<name>Kevin Darbyshire-Bryant</name>
</author>
<published>2018-04-30T10:09:05Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/feed/packages/commit/?id=a2e2eeb409a71027e27b858c27a617bb11557ece'/>
<id>urn:sha1:a2e2eeb409a71027e27b858c27a617bb11557ece</id>
<content type='text'>
Import miniupnpd from routing repo and bump to 20180422.

Drop 102-ipv6-ext-port.patch as this looks upstreamed in the pinhole
code to me.
Consolidate all other patches &amp; update with a view to sending upstream.

Add support for runtime IGDv1 mode switch (default to IGDv2)

(not extensively) Tested-on: ar71xx Archer C7 v2 in IGDv1 compatibility
mode.  A variety of devices/applications appear to be able to create
mappings.

Have an attempt at resolving https://github.com/openwrt-routing/packages/issues/286
TL;DR miniupnpd rules get processed before fw3 rules and thus can
override existing/intended redirects.  Ideally the miniupnpd rules would
be last in the relevant chains, unfortunately fw3 can sometimes use the
last rule as a REJECT.  Put miniupnpd rules as penultimate.

Signed-off-by: Kevin Darbyshire-Bryant &lt;ldir@darbyshire-bryant.me.uk&gt;
</content>
</entry>
</feed>
