+ return;
+
+ if (flock(lock_fd, LOCK_UN))
+ warn("Cannot release exclusive lock: %s", strerror(errno));
+
+ close(lock_fd);
+ unlink(FW3_LOCKFILE);
+
+ lock_fd = -1;
+}
+
+
+static void
+write_defaults_uci(struct uci_context *ctx, struct fw3_defaults *d,
+ struct uci_package *dest)
+{
+ char buf[sizeof("0xffffffff\0")];
+ struct uci_ptr ptr = { .p = dest };
+
+ uci_add_section(ctx, dest, "defaults", &ptr.s);
+
+ ptr.o = NULL;
+ ptr.option = "input";
+ ptr.value = fw3_flag_names[d->policy_input];
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "output";
+ ptr.value = fw3_flag_names[d->policy_output];
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "forward";
+ ptr.value = fw3_flag_names[d->policy_forward];
+ uci_set(ctx, &ptr);
+
+ sprintf(buf, "0x%x", d->flags[0]);
+ ptr.o = NULL;
+ ptr.option = "__flags_v4";
+ ptr.value = buf;
+ uci_set(ctx, &ptr);
+
+ sprintf(buf, "0x%x", d->flags[1]);
+ ptr.o = NULL;
+ ptr.option = "__flags_v6";
+ ptr.value = buf;
+ uci_set(ctx, &ptr);
+}
+
+static void
+write_zone_uci(struct uci_context *ctx, struct fw3_zone *z,
+ struct uci_package *dest)
+{
+ struct fw3_device *dev;
+ struct fw3_address *sub;
+ enum fw3_family fam = FW3_FAMILY_ANY;
+
+ char *p, buf[34];
+
+ struct uci_ptr ptr = { .p = dest };
+
+ if (!z->enabled)
+ return;
+
+ if (fw3_no_table(z->flags[0]) && !fw3_no_table(z->flags[1]))
+ fam = FW3_FAMILY_V6;
+ else if (!fw3_no_table(z->flags[0]) && fw3_no_table(z->flags[1]))
+ fam = FW3_FAMILY_V4;
+ else if (fw3_no_table(z->flags[0]) && fw3_no_table(z->flags[1]))
+ return;
+
+ uci_add_section(ctx, dest, "zone", &ptr.s);
+
+ ptr.o = NULL;
+ ptr.option = "name";
+ ptr.value = z->name;
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "input";
+ ptr.value = fw3_flag_names[z->policy_input];
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "output";
+ ptr.value = fw3_flag_names[z->policy_output];
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "forward";
+ ptr.value = fw3_flag_names[z->policy_forward];
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "masq";
+ ptr.value = z->masq ? "1" : "0";
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "conntrack";
+ ptr.value = z->conntrack ? "1" : "0";
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "mtu_fix";
+ ptr.value = z->mtu_fix ? "1" : "0";
+ uci_set(ctx, &ptr);
+
+ ptr.o = NULL;
+ ptr.option = "custom_chains";
+ ptr.value = z->custom_chains ? "1" : "0";
+ uci_set(ctx, &ptr);
+
+ if (fam != FW3_FAMILY_ANY)