Annotation of embedaddon/miniupnpd/miniupnpd.conf, revision 1.1.1.2
1.1 misho 1: # WAN network interface
1.1.1.2 ! misho 2: ext_ifname=eth1
! 3: #ext_ifname=xl1
1.1 misho 4: # if the WAN interface has several IP addresses, you
5: # can specify the one to use below
6: #ext_ip=
7:
8: # LAN network interfaces IPs / networks
9: # there can be multiple listening ips for SSDP traffic.
10: # should be under the form nnn.nnn.nnn.nnn/nn
1.1.1.2 ! misho 11: # It can also be the network interface name (ie "eth0")
! 12: # It if mandatory to use the network interface name to enable IPv6
! 13: # HTTP is available on all interfaces.
1.1 misho 14: # When MULTIPLE_EXTERNAL_IP is enabled, the external ip
15: # address associated with the subnet follows. for example :
16: # listening_ip=192.168.0.1/24 88.22.44.13
1.1.1.2 ! misho 17: #listening_ip=192.168.0.1/24
! 18: listening_ip=192.168.10.109/24
! 19: #listening_ip=eth0
1.1 misho 20: # port for HTTP (descriptions and SOAP) traffic. set 0 for autoselect.
21: port=0
22:
23: # path to the unix socket used to communicate with MiniSSDPd
24: # If running, MiniSSDPd will manage M-SEARCH answering.
25: # default is /var/run/minissdpd.sock
26: #minissdpdsocket=/var/run/minissdpd.sock
27:
28: # enable NAT-PMP support (default is no)
29: enable_natpmp=yes
30:
31: # enable UPNP support (default is yes)
32: enable_upnp=yes
33:
34: # chain names for netfilter (not used for pf or ipf).
35: # default is MINIUPNPD for both
36: #upnp_forward_chain=forwardUPnP
37: #upnp_nat_chain=UPnP
38:
39: # lease file location
40: #lease_file=/var/log/upnp.leases
41:
1.1.1.2 ! misho 42: # name of this service, default is "`uname -s` Router"
! 43: #friendly_name=MiniUPnPd router
! 44:
1.1 misho 45: # bitrates reported by daemon in bits per second
46: bitrate_up=1000000
47: bitrate_down=10000000
48:
49: # "secure" mode : when enabled, UPnP client are allowed to add mappings only
50: # to their IP.
51: #secure_mode=yes
52: secure_mode=no
53:
54: # default presentation url is http address on port 80
55: # If set to an empty string, no presentationURL element will appear
56: # in the XML description of the device, which prevents MS Windows
57: # from displaying an icon in the "Network Connections" panel.
58: #presentation_url=http://www.mylan/index.php
59:
60: # report system uptime instead of daemon uptime
61: system_uptime=yes
62:
63: # notify interval in seconds. default is 30 seconds.
64: #notify_interval=240
65: notify_interval=60
66:
67: # unused rules cleaning.
68: # never remove any rule before this threshold for the number
69: # of redirections is exceeded. default to 20
70: #clean_ruleset_threshold=10
71: # clean process work interval in seconds. default to 0 (disabled).
72: # a 600 seconds (10 minutes) interval makes sense
73: clean_ruleset_interval=600
74:
1.1.1.2 ! misho 75: # log packets in pf (default is no)
1.1 misho 76: #packet_log=no
77:
1.1.1.2 ! misho 78: # anchor name in pf (default is miniupnpd)
! 79: #anchor=miniupnpd
! 80:
1.1 misho 81: # ALTQ queue in pf
82: # filter rules must be used for this to be used.
83: # compile with PF_ENABLE_FILTER_RULES (see config.h file)
84: #queue=queue_name1
85:
86: # tag name in pf
87: #tag=tag_name1
88:
89: # make filter rules in pf quick or not. default is yes
90: # active when compiled with PF_ENABLE_FILTER_RULES (see config.h file)
91: #quickrules=no
92:
93: # uuid : generate your own with "make genuuid"
1.1.1.2 ! misho 94: uuid=3d3cec3a-8cf0-11e0-98ee-001a6bd2d07b
1.1 misho 95:
96: # serial and model number the daemon will report to clients
97: # in its XML description
98: serial=12345678
99: model_number=1
100:
101: # UPnP permission rules
102: # (allow|deny) (external port range) ip/mask (internal port range)
103: # A port range is <min port>-<max port> or <port> if there is only
104: # one port in the range.
105: # ip/mask format must be nn.nn.nn.nn/nn
106: # it is advised to only allow redirection of port above 1024
107: # and to finish the rule set with "deny 0-65535 0.0.0.0/0 0-65535"
108: allow 1024-65535 192.168.0.0/24 1024-65535
109: allow 1024-65535 192.168.1.0/24 1024-65535
110: allow 1024-65535 192.168.0.0/23 22
111: allow 12345 192.168.7.113/32 54321
112: deny 0-65535 0.0.0.0/0 0-65535
113:
FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>