Releases: ok/mirall-relay-startos
Release list
0.4.2:0
What's Changed
0.4.2:0: the Internet Reachability check now fails when the relay’s outbound port is being rewritten. Until now it stayed green in that state while peers could not connect. If it goes red after this update, the message says what to change; see Limitations 12 in the package README. After a change of your public IP it now shows loading for a few minutes while the relay re-learns its address, and turns red only if that takes more than 10 minutes. Test Reachability also shows the address the internet sees the relay at. The instructions now spell out switching on the relay’s Public address, which StartOS leaves off, and recommend StartTunnel for home servers: a router address stops working after each change of your public IP.
0.4.1:0 brings the version in line with upstream 0.4.1. Nothing changes in how the relay works: 0.4.0:1 already contained this code, and the relay now reports 0.4.1 on its status page. If you use an Outbound Gateway, the known issue below applies to this update too. What 0.4.0:1 introduced, for anyone coming from an older version:
StartOS now offers one Open UI button instead of separate Status and Members entries — the Members page is one click away at the top of the page — and Show Admin Token no longer asks for confirmation first. Both pages now state reachability and the public/private mode together at the top, the same way, and the members page no longer shows ordinary guidance as yellow warnings.
0.4.0:1 fixes two things seen on a live box. Stopping or restarting the relay no longer hangs for 15 seconds and exits with an error when a browser or proxy has an idle connection open to the status page. And a failing Internet Reachability check is now re-tested every 30 seconds instead of every second, so it no longer buries the relay’s own log lines. The relay also re-tests its own reachability while it is firewalled, after 10, 20 and 30 seconds, then 1, 2 and 5 minutes, then every 5 minutes: HyperDHT only tests once at startup, so a relay that came up red used to stay red until the next restart. Known issue: if you use an Outbound Gateway, StartOS does not re-apply it after an install or update, and the relay goes red because its traffic leaves through the wrong connection. After updating, set the Outbound Gateway back to the default and then to your gateway again, and restart the relay; a Restart alone is not enough.
The relay can now be made private from StartOS. Configure Relay gains an Access setting: Public admits anyone with the relay key, Private admits only the people you have invited on the Members Page. Existing installs stay public until you change it.
There is no precondition for going private. With no members yet the relay lets nobody in, and the new Access health check and the status page both say so until you add someone. If people already use your relay, send their invites first — an invite works on a public relay too, so nobody is cut off when you switch.
Upstream’s pages now follow the mode. A private relay’s status page points at invites and no longer offers a QR code of a key that cannot connect anyone, and the members page says plainly when invites are not yet gating the relay.
The Allowlist field is renamed Static Keys (advanced): it cannot admit Mirall users, and was never the way to run a private relay for people.
SHA256 Hashes
da37ddf939241b3c1cc73b659be1f2057a9033fd7caca93c4dee205c915a3192 mirall-relay_aarch64.s9pk
a4304fc050bff23f34968f6848a4d9f25de3f13737d9e3ae003a716655ca3022 mirall-relay_x86_64.s9pk
0.4.1:0
What's Changed
0.4.1:0 brings the version in line with upstream 0.4.1. Nothing changes in how the relay works: 0.4.0:1 already contained this code, and the relay now reports 0.4.1 on its status page. If you use an Outbound Gateway, the known issue below applies to this update too. What 0.4.0:1 introduced, for anyone coming from an older version:
StartOS now offers one Open UI button instead of separate Status and Members entries — the Members page is one click away at the top of the page — and Show Admin Token no longer asks for confirmation first. Both pages now state reachability and the public/private mode together at the top, the same way, and the members page no longer shows ordinary guidance as yellow warnings.
0.4.0:1 fixes two things seen on a live box. Stopping or restarting the relay no longer hangs for 15 seconds and exits with an error when a browser or proxy has an idle connection open to the status page. And a failing Internet Reachability check is now re-tested every 30 seconds instead of every second, so it no longer buries the relay’s own log lines. The relay also re-tests its own reachability while it is firewalled, after 10, 20 and 30 seconds, then 1, 2 and 5 minutes, then every 5 minutes: HyperDHT only tests once at startup, so a relay that came up red used to stay red until the next restart. Known issue: if you use an Outbound Gateway, StartOS does not re-apply it after an install or update, and the relay goes red because its traffic leaves through the wrong connection. After updating, set the Outbound Gateway back to the default and then to your gateway again, and restart the relay; a Restart alone is not enough.
The relay can now be made private from StartOS. Configure Relay gains an Access setting: Public admits anyone with the relay key, Private admits only the people you have invited on the Members Page. Existing installs stay public until you change it.
There is no precondition for going private. With no members yet the relay lets nobody in, and the new Access health check and the status page both say so until you add someone. If people already use your relay, send their invites first — an invite works on a public relay too, so nobody is cut off when you switch.
Upstream’s pages now follow the mode. A private relay’s status page points at invites and no longer offers a QR code of a key that cannot connect anyone, and the members page says plainly when invites are not yet gating the relay.
The Allowlist field is renamed Static Keys (advanced): it cannot admit Mirall users, and was never the way to run a private relay for people.
SHA256 Hashes
380cd020262161a7ec8ae492b83cd6f057c3bcea8661c22dc3d2790dee6d0f96 mirall-relay_aarch64.s9pk
06871d9add9e7d9837669f30ed4b1a54c5db728214d1f7c85fbb911492d45262 mirall-relay_x86_64.s9pk
0.4.0:1
What's Changed
StartOS now offers one Open UI button instead of separate Status and Members entries — the Members page is one click away at the top of the page — and Show Admin Token no longer asks for confirmation first. Both pages now state reachability and the public/private mode together at the top, the same way, and the members page no longer shows ordinary guidance as yellow warnings.
0.4.0:1 fixes two things seen on a live box. Stopping or restarting the relay no longer hangs for 15 seconds and exits with an error when a browser or proxy has an idle connection open to the status page. And a failing Internet Reachability check is now re-tested every 30 seconds instead of every second, so it no longer buries the relay’s own log lines. The relay also re-tests its own reachability while it is firewalled, after 10, 20 and 30 seconds, then 1, 2 and 5 minutes, then every 5 minutes: HyperDHT only tests once at startup, so a relay that came up red used to stay red until the next restart. Known issue: if you use an Outbound Gateway, StartOS does not re-apply it after an install or update, and the relay goes red because its traffic leaves through the wrong connection. After updating, set the Outbound Gateway back to the default and then to your gateway again, and restart the relay; a Restart alone is not enough.
The relay can now be made private from StartOS. Configure Relay gains an Access setting: Public admits anyone with the relay key, Private admits only the people you have invited on the Members Page. Existing installs stay public until you change it.
There is no precondition for going private. With no members yet the relay lets nobody in, and the new Access health check and the status page both say so until you add someone. If people already use your relay, send their invites first — an invite works on a public relay too, so nobody is cut off when you switch.
Upstream’s pages now follow the mode. A private relay’s status page points at invites and no longer offers a QR code of a key that cannot connect anyone, and the members page says plainly when invites are not yet gating the relay.
The Allowlist field is renamed Static Keys (advanced): it cannot admit Mirall users, and was never the way to run a private relay for people.
SHA256 Hashes
077895129f78c4b3c5c8bf7e8bee50bcda932d248273273e6121b62288ba8aaf mirall-relay_aarch64.s9pk
8d6c227bb25af2ce8186a95acd56cac647e3e23d1ffda3ff17585e87416eb5d0 mirall-relay_x86_64.s9pk
0.4.0:0
What's Changed
The relay can now be made private from StartOS. Configure Relay gains an Access setting: Public admits anyone with the relay key, Private admits only the people you have invited on the Members Page. Existing installs stay public until you change it.
There is no precondition for going private. With no members yet the relay lets nobody in, and the new Access health check and the status page both say so until you add someone. If people already use your relay, send their invites first — an invite works on a public relay too, so nobody is cut off when you switch.
Upstream’s pages now follow the mode. A private relay’s status page points at invites and no longer offers a QR code of a key that cannot connect anyone, and the members page says plainly when invites are not yet gating the relay.
The Allowlist field is renamed Static Keys (advanced): it cannot admit Mirall users, and was never the way to run a private relay for people.
SHA256 Hashes
af929142c977f0339a1ea36d34c7b83f6ff7ebc1c6530c3da4056e35f5c021a8 mirall-relay_aarch64.s9pk
945b9cbf02d80948a869fec82b9701cd0c753e7b11aaf8094419e2fc41aac4de mirall-relay_x86_64.s9pk
0.3.0:0
What's Changed
Upstream rebuilds the operator surface as one product. The status page now opens with the verdict and four live tiles — links, traffic this run, members, uptime — instead of leading with the public key, and the members page gains a one-click Copy invite on each row, drops the stale “new invite” panel, folds revoked members away, and renames ROSTER to Member list. Both pages share a header and footer.
This package adds the two things that made any of it reachable: the members page is now its own interface, opened from Interfaces rather than by typing “admin/” onto the end of an address, and a new Show Admin Token action reveals the token that unlocks it — previously printed once to the log on the boot that minted it and unrecoverable after that.
Note that on a LAN address the browser offers no clipboard, so Copy invite reveals the invite as selectable text instead. That is expected.
SHA256 Hashes
1a8523fd7f820b6c575ec627a9ac77aa1b35ed95daa183950221c73a18fb6d59 mirall-relay_aarch64.s9pk
6b2ef4de8441461796d7b09788d6ab89f53baa659db07a970858b4ab1295cbec mirall-relay_x86_64.s9pk
Mirall Relay 0.1.0:0
Initial release for StartOS.
A blind relay for Mirall: bridges two already-encrypted streams between peers that cannot hole-punch to each other, and can read neither side.
- Package version:
0.1.0:0(upstream mirall-relay 0.1.0) - Built with
@start9labs/start-sdk2.0.9, minimum StartOS0.4.0-beta.10 - Commit: 5a7a187
Requires UDP 49737 to reach the server — see the Instructions tab after install.