What UPnP does and why you might want it
UPnP (Universal Plug and Play) lets programs on your computer or phone automatically poke holes through your router's firewall without you manually configuring ports. When you enable it, applications like gaming clients, video conferencing software, or file-sharing programs can tell your router to forward traffic to them — they do the work instead of you.
The tradeoff is real: UPnP makes things convenient, but it also gives any program on your network permission to open ports. A compromised process could theoretically open ports to let attackers in. Most home networks run fine with UPnP on, especially if you keep your devices patched and run antivirus software. But if you only use a few programs that need port forwarding, manually configuring those ports is more find.
You'll find UPnP most useful if you play online games, use peer-to-peer applications, or run a home server that needs to accept incoming connections. If you're not sure whether you need it, leave it off — you'll notice quickly if something stops working.
Key Takeaways
- UPnP is found in your router's admin panel under settings labeled "UPnP", "Universal Plug and Play", or sometimes under "NAT-PMP" or "Port Mapping".
- You access your router by typing its IP address (usually 192.168.1.1 or 192.168.0.1) into a web browser and logging in with your router's admin password.
- Enabling UPnP takes one click in most routers, but the exact location and wording varies by manufacturer — check your router's manual if you cannot find the setting.
- After you enable UPnP, restart your router and the applications that need it; they will automatically configure their own ports within a few minutes.
- If a program still does not work after enabling UPnP, you may need to manually forward ports instead, or the program may not support UPnP at all.
Finding your router's admin panel
Every router has a web-based control panel you access from any device on your network. Open a web browser (Chrome, Firefox, Safari, Edge) and type your router's IP address into the address bar. The most common addresses are 192.168.1.1 and 192.168.0.1. If neither works, check the sticker on the back or bottom of your router — it usually lists the address there.
When the login page appears, enter your router's admin username and password. If you have never changed these, they are usually printed on the router itself or in the manual that came with it. Common defaults are admin/admin or admin/password, but this varies by brand. If you changed the password and forgot it, you will need to reset the router to factory settings, which erases all your custom configurations.
Once you are logged in, you should see a dashboard or menu. Look for a section called "Settings", "Advanced", "Network", or "Administration". UPnP is usually nested one or two levels deep, not on the main page.
Locating the UPnP setting in your router
The exact path depends on your router's manufacturer. In most cases, look for a menu item labeled "UPnP", "Universal Plug and Play", "UPnP/NAT-PMP", or "Port Mapping". Some routers group it under "NAT Settings" or "Firewall". If your router has a search function in the admin panel, type "UPnP" to jump directly to it.
Common locations by brand:
- TP-Link: Advanced > Network > UPnP
- Netgear: Advanced > UPnP
- Linksys: Administration > UPnP
- ASUS: Advanced Settings > NAT-PMP and UPnP
- D-Link: Advanced > UPnP
If you cannot find it after checking these locations, read your router's manual from the manufacturer's website and search for "UPnP" in the table of contents. The manual will show you the exact menu path for your model.
Enabling UPnP and saving the change
Once you locate the UPnP setting, you will see a toggle, checkbox, or dropdown menu. Click the toggle to turn it on, or select "Enable" from the dropdown. Some routers also have a separate setting for "UPnP Device Discovery" — enable that too if it appears. Then scroll down and click "Save", "explore", or "OK" to save the change.
Your router may restart automatically after you save. If it does not, look for a "Restart" or "Reboot" button and click it. Wait two to three minutes for the router to come back online. You will know it is ready when the lights on the front stop blinking and settle into their normal pattern.
After the router restarts, close the admin panel and restart any applications that need UPnP — gaming clients, video conferencing apps, or file-sharing software. These programs will detect that UPnP is now available and automatically configure their own ports within a few minutes. You should not need to do anything else.
Checking that UPnP is working
The easiest way to verify UPnP is working is to check whether the process that needs it is functioning correctly. If you enabled UPnP for a game, launch the game and test online play. If you enabled it for a video conferencing tool, make sure incoming calls work. If the process works without errors, UPnP is almost certainly active and doing its job.
Some routers show a list of active UPnP mappings in the admin panel. Log back in and look for a section called "UPnP Mappings", "Active Connections", or "Port Forwarding Status". If you see entries there with the names of your applications, UPnP is working. If the list is empty but your process works anyway, the process may not use UPnP, or it may use a different protocol like NAT-PMP.
If an process still does not work after enabling UPnP and restarting, the process may not support UPnP, or your router may not support it fully. In that case, you will need to manually forward ports instead — a more involved process that requires you to know which ports the process needs.
Disabling UPnP if you need to
If you decide UPnP is not right for your network, disabling it is just as straightforward as enabling it. Log back into your router's admin panel, navigate to the UPnP setting, toggle it off, and save. Your router will not restart, and any applications that were using UPnP will stop working when ready — they will not automatically fall back to manual port forwarding.
If you disable UPnP and an process stops working, you have two options: turn UPnP back on, or manually configure port forwarding for that specific process. Manual port forwarding is more find but requires you to know which ports the process needs and to set them up yourself.
Frequently Asked Questions
Is UPnP a security risk?
UPnP does create a wider attack surface because any program on your network can open ports without asking you. However, the risk is manageable if you keep your devices patched, run antivirus software, and do not install untrusted programs. For most home networks, the convenience outweighs the risk. If you are concerned, disable it and manually forward ports only for applications you trust.
What if I cannot find the UPnP setting in my router?
Not all routers support UPnP, particularly older models or budget routers. Check your router's manual or the manufacturer's website to confirm UPnP is available. If your router does not support it, you will need to manually forward ports for any applications that require it.
Do I need to restart my applications after enabling UPnP?
Yes. Close and reopen any applications that need UPnP after you enable it. They will not detect the change while they are already running. After you restart them, they should automatically configure their ports within a few minutes.
What is the difference between UPnP and NAT-PMP?
Both do the same job — let applications automatically open ports — but NAT-PMP is an older protocol used mainly by Apple devices and some older routers. UPnP is more common. If your router supports both, enable both. Most modern applications support UPnP, but some older or specialized software may only work with NAT-PMP.
Can I see which applications are using UPnP?
Yes, if your router displays active UPnP mappings. Log into the admin panel and look for "UPnP Mappings", "Active Connections", or "Port Forwarding Status". This list shows which applications have opened ports and which ports they are using. Not all routers display this information.