[PR #6485] feat: add enableLocalSTUN/enableLocalRelay #25898

Open
opened 2026-08-05 07:06:37 -04:00 by saavagebueno · 0 comments
Owner

Original Pull Request: https://github.com/netbirdio/netbird/pull/6485

State: closed
Merged: No


Describe your changes

Add enableLocalSTUN and enableLocalRelay options to the combined server's simplified config, allowing operators to force-enable the embedded STUN/relay services alongside external ones.

  • When server.stuns is configured, the embedded STUN is disabled by default. Setting server.enableLocalSTUN: true keeps both running.
  • When server.relays is configured, the embedded relay is disabled by default. Setting server.enableLocalRelay: true keeps both running.
  • These flags have no effect when the corresponding external service is not configured (embedded services already run by default).
  • server.authSecret validation now also requires a value when enableLocalRelay: true.

N/A

Stack

Checklist

  • Is it a bug fix
  • Is a typo/documentation fix
  • Is a feature enhancement
  • It is a refactor
  • Created tests that fail without the change (if possible)
  • This change does not modify the public API, gRPC protocols, functionality behavior, CLI / service flags, or introduce a new feature — OR I have discussed it with the NetBird team beforehand (link the issue / Slack thread in the description). See CONTRIBUTING.md.

By submitting this pull request, you confirm that you have read and agree to the terms of the Contributor License Agreement.

Documentation

Select exactly one:

  • I added/updated documentation for this change
  • Documentation is not needed for this change (explain why)

Docs PR URL (required if "docs added" is checked)

Paste the PR link from https://github.com/netbirdio/docs here:

https://github.com/netbirdio/docs/pull/804

Summary by CodeRabbit

  • New Features
    • Added configuration flags to optionally run local STUN and/or local relay even when external STUN/relay overrides are set.
    • Improved client auto-configuration to include local STUN/relay endpoints when the new force-enable options are enabled.
  • Bug Fixes
    • Updated validation to require the appropriate authentication secret when local relay is enabled.
  • Documentation
    • Updated the example configuration file to document the new local service enable/force-enable options and related requirements.
**Original Pull Request:** https://github.com/netbirdio/netbird/pull/6485 **State:** closed **Merged:** No --- ## Describe your changes Add `enableLocalSTUN` and `enableLocalRelay` options to the combined server's simplified config, allowing operators to force-enable the embedded STUN/relay services alongside external ones. - When `server.stuns` is configured, the embedded STUN is disabled by default. Setting `server.enableLocalSTUN: true` keeps both running. - When `server.relays` is configured, the embedded relay is disabled by default. Setting `server.enableLocalRelay: true` keeps both running. - These flags have no effect when the corresponding external service is not configured (embedded services already run by default). - `server.authSecret` validation now also requires a value when `enableLocalRelay: true`. ## Issue ticket number and link N/A ## Stack <!-- branch-stack --> ### Checklist - [ ] Is it a bug fix - [ ] Is a typo/documentation fix - [x] Is a feature enhancement - [ ] It is a refactor - [ ] Created tests that fail without the change (if possible) - [ ] This change does **not** modify the public API, gRPC protocols, functionality behavior, CLI / service flags, or introduce a new feature — **OR** I have discussed it with the NetBird team beforehand (link the issue / Slack thread in the description). See [CONTRIBUTING.md](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTING.md#discuss-changes-with-the-netbird-team-first). > By submitting this pull request, you confirm that you have read and agree to the terms of the [Contributor License Agreement](https://github.com/netbirdio/netbird/blob/main/CONTRIBUTOR_LICENSE_AGREEMENT.md). ## Documentation Select exactly one: - [x] I added/updated documentation for this change - [ ] Documentation is **not needed** for this change (explain why) ### Docs PR URL (required if "docs added" is checked) Paste the PR link from https://github.com/netbirdio/docs here: https://github.com/netbirdio/docs/pull/804 <!-- This is an auto-generated comment: release notes by coderabbit.ai --> ## Summary by CodeRabbit * **New Features** * Added configuration flags to optionally run local STUN and/or local relay even when external STUN/relay overrides are set. * Improved client auto-configuration to include local STUN/relay endpoints when the new force-enable options are enabled. * **Bug Fixes** * Updated validation to require the appropriate authentication secret when local relay is enabled. * **Documentation** * Updated the example configuration file to document the new local service enable/force-enable options and related requirements. <!-- end of auto-generated comment: release notes by coderabbit.ai -->
saavagebueno added the pull-request label 2026-08-05 07:06:37 -04:00
Sign in to join this conversation.
No Label pull-request
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: DYNR/netbird#25898