777 or 404
777 or 404
  • 167
  • 503 873

Відео

Ubiquiti UniFi Gateway - DNAT and Port Forwarding (NAT/Destination NAT)
Переглядів 2707 годин тому
Ubiquiti UniFi Gateway - DNAT and Port Forwarding (NAT/Destination NAT)
Ubiquiti UniFi U7-Pro-Max - WiFi7 and Spectrum Analysis
Переглядів 1,1 тис.14 днів тому
Ubiquiti UniFi U7-Pro-Max - WiFi7 and Spectrum Analysis
Ubiquiti UniFi Vantage Point (UNVR Stacking / Shadow Mode High Availability)
Переглядів 31914 днів тому
Ubiquiti UniFi Vantage Point (UNVR Stacking / Shadow Mode High Availability)
Ubiquiti UniFi Gateway - DNS Filter (Content Filtering/Ad Blocking/whitelist/blacklist)
Переглядів 90921 день тому
Ubiquiti UniFi Gateway - DNS Filter (Content Filtering/Ad Blocking/whitelist/blacklist)
Ubiquiti UniFi Gateway - Block Client's Custom DNS Settings (DoH/DoT)
Переглядів 1,5 тис.21 день тому
Ubiquiti UniFi Gateway - Block Client's Custom DNS Settings (DoH/DoT)
Ubiquiti UniFi VLAN - Isolate Network vs. Guest Network
Переглядів 1,5 тис.Місяць тому
Ubiquiti UniFi VLAN - Isolate Network vs. Guest Network
Ubiquiti UniFi Switch - IP ACL vs. MAC ACL
Переглядів 506Місяць тому
Ubiquiti UniFi Switch - IP ACL vs. MAC ACL
Ubiquiti UniFi Firewall Rule - State (conntrack / New, Invalid, Established, Related)
Переглядів 1,5 тис.Місяць тому
Ubiquiti UniFi Firewall Rule - State (conntrack / New, Invalid, Established, Related)
Ubiquiti UniFi Switch - MAC ACL Rules
Переглядів 803Місяць тому
Ubiquiti UniFi Switch - MAC ACL Rules
Ubiquiti UniFi - DNS Shield (DNS Privacy & Security, dnsmasq, dnscrypt-proxy )
Переглядів 4,6 тис.Місяць тому
Ubiquiti UniFi - DNS Shield (DNS Privacy & Security, dnsmasq, dnscrypt-proxy )
Ubiquiti UniFi Network Controller - Connection Interrupted - Troubleshooting
Переглядів 1,3 тис.2 місяці тому
Ubiquiti UniFi Network Controller - Connection Interrupted - Troubleshooting
Ubiquiti UniFi NTP - USG-Pro vs. UDM-Pro/UXG-Pro (Network Time Protocol, DHCP Option 42)
Переглядів 9622 місяці тому
Ubiquiti UniFi NTP - USG-Pro vs. UDM-Pro/UXG-Pro (Network Time Protocol, DHCP Option 42)
Ubiquiti UniFi - WAN/VLAN DNS Server Setting Scenarios
Переглядів 7252 місяці тому
Ubiquiti UniFi - WAN/VLAN DNS Server Setting Scenarios
Ubiquiti UniFi - WAN DNS Server Setting vs. VLAN DNS Server Setting: How They Work Together?
Переглядів 1,1 тис.2 місяці тому
Ubiquiti UniFi - WAN DNS Server Setting vs. VLAN DNS Server Setting: How They Work Together?
Ubiquiti UniFi - Local Domain Name (.internal. / .home.arpa.)
Переглядів 2,9 тис.2 місяці тому
Ubiquiti UniFi - Local Domain Name (.internal. / .home.arpa.)
Ubiquiti UniFi Switch - Device Isolation ACL (MAC ACL/L3 Switch/VLAN/pfSense)
Переглядів 1,2 тис.2 місяці тому
Ubiquiti UniFi Switch - Device Isolation ACL (MAC ACL/L3 Switch/VLAN/pfSense)
mDNS & VLAN - Reflector and Reflect Filter (avahi/Ubiquiti/UniFi)
Переглядів 1,5 тис.3 місяці тому
mDNS & VLAN - Reflector and Reflect Filter (avahi/Ubiquiti/UniFi)
pfSense + Ubiquiti UniFi L3 Switches - L3 Network Isolation ACL
Переглядів 5843 місяці тому
pfSense Ubiquiti UniFi L3 Switches - L3 Network Isolation ACL
Ubiquiti UniFi L3 Switch - L3 Network Isolation ACL
Переглядів 1,6 тис.3 місяці тому
Ubiquiti UniFi L3 Switch - L3 Network Isolation ACL
I tried Ubiquiti UniFi GPT
Переглядів 7723 місяці тому
I tried Ubiquiti UniFi GPT
What is ".local" domain name for? (Ubiquiti/UniFi/mDNS/bonjour/avahi/MacOs/Linux/Windows)
Переглядів 1,9 тис.3 місяці тому
What is ".local" domain name for? (Ubiquiti/UniFi/mDNS/bonjour/avahi/MacOs/Linux/Windows)
Ubiquiti UniFi Hotspot/Captive Portal - The Magic Continued (ebtables/iptables/redirector)
Переглядів 3763 місяці тому
Ubiquiti UniFi Hotspot/Captive Portal - The Magic Continued (ebtables/iptables/redirector)
Ubiquiti UniFi Guest WiFi Network Hotspot/Captive Portal - The Magic Behind the Screen
Переглядів 2 тис.3 місяці тому
Ubiquiti UniFi Guest WiFi Network Hotspot/Captive Portal - The Magic Behind the Screen
Ubiquiti UniFi Guest Network - No Internet - Troubleshooting (Guest Portal/Hotspot Portal)
Переглядів 1,6 тис.4 місяці тому
Ubiquiti UniFi Guest Network - No Internet - Troubleshooting (Guest Portal/Hotspot Portal)
Ubiquiti UniFi Management Network VLAN - Why & How to Configure (in-band/out-of-band)
Переглядів 2,2 тис.4 місяці тому
Ubiquiti UniFi Management Network VLAN - Why & How to Configure (in-band/out-of-band)
Ubiquiti UniFi 2.5 GbE Switch USW-Pro-Max-48
Переглядів 1,7 тис.4 місяці тому
Ubiquiti UniFi 2.5 GbE Switch USW-Pro-Max-48
Running away from ESXi - A Homelabber's Journey - Migrate to XCP-ng
Переглядів 4674 місяці тому
Running away from ESXi - A Homelabber's Journey - Migrate to XCP-ng
Ubiquiti UniFi - High Latency/Packet Loss (Internet Verification Server/Echo Server/dpinger)
Переглядів 2,5 тис.4 місяці тому
Ubiquiti UniFi - High Latency/Packet Loss (Internet Verification Server/Echo Server/dpinger)
Running away from ESXi - A Homelabber's Journey - Migrate to Proxmox
Переглядів 3795 місяців тому
Running away from ESXi - A Homelabber's Journey - Migrate to Proxmox

КОМЕНТАРІ

  • @pb3662
    @pb3662 День тому

    Great video - appreciate these. Have learned a lot

  • @Blaarg987
    @Blaarg987 2 дні тому

    Wow man, you have some great videos. I have been wondering what's going on in the backend with Unifi equipment for a long time and it has made advanced configurations quite challenging, but you have definitely helped!

  • @TanvirAhmed101
    @TanvirAhmed101 4 дні тому

    Hi, Greate tutorial, I have the same unifi setup, except I use mikrotik router as the firewall router, and the wifi clients get DHCP address from the Mikrotik via VLAN configured both at the Unifi controller and Mikrotik, I was wondering how I can make this work on that.

    • @hz777
      @hz777 12 годин тому

      I have not tried freeradius with mikrotik, but as I know mikrotik can run it without problem. However I am not sure whether its configuration is similar to pfSense or not.

  • @Sommyie
    @Sommyie 4 дні тому

    :facepalm: I forgot about vlan 4040! Derp! As of writing, my USW Pro Max 16 didn't show it's IP information for the VLAN4040 setup, but manually setting the values like yours totally allowed everything to work finally. I'll have a stiff one for you later.

  • @eng.abdulqaderalsaqaf7853
    @eng.abdulqaderalsaqaf7853 5 днів тому

    Where is the first video?

  • @NCap1
    @NCap1 6 днів тому

    Do any of the sfp+ ports support Poe on the usw-aggregation ?

  • @LeventhaShiborga
    @LeventhaShiborga 6 днів тому

    wow very thanks

  • @derekcassese9280
    @derekcassese9280 6 днів тому

    Thanks for this. Amazing level of detail.

  • @labrtn
    @labrtn 7 днів тому

    Great video What is the easiest way to actually secure these RTSPS feeds?

    • @hz777
      @hz777 7 днів тому

      I am not aware of a way.

  • @JuanGomez-bu4bm
    @JuanGomez-bu4bm 9 днів тому

    Hello, what is your email? I would like to contact you. All the best

  • @kenHatakedaVenero
    @kenHatakedaVenero 12 днів тому

    Buenazo.

  • @sherlockholmes6990
    @sherlockholmes6990 13 днів тому

    Thank you very much, sir. This is exactly what I needed.

  • @clwolf567
    @clwolf567 14 днів тому

    Curious why a house has to have two UNVR Pros and two UNVRs? Do you have 200 cameras?

  • @j.b.6762
    @j.b.6762 15 днів тому

    Today they improved Vantage Point to feature 5 Sites

    • @hz777
      @hz777 15 днів тому

      Great!

  • @kristopherleslie8343
    @kristopherleslie8343 17 днів тому

    Excellent

  • @EmiNetworks
    @EmiNetworks 17 днів тому

    Can you check if the stainless steel ceiling mount system U-PRO-MP is the same for the U6-Pro and U7-Pro Max? I mean, I want to replace the U6-Pro with the U7-Pro Max.

    • @hz777
      @hz777 17 днів тому

      I climbed to my attic and found the box for my u6-pro. Yes, they have the same steel mounting systems.

    • @EmiNetworks
      @EmiNetworks 17 днів тому

      @@hz777 Thx, 👍

  • @cmoraes06
    @cmoraes06 17 днів тому

    Thanks for the video!! Can we run L3 switching with 2 Aggregations together? One the main one and the other the secondary (for redundancy)?

    • @hz777
      @hz777 17 днів тому

      They will be equal: no master-slave, no primary-secibdary, no main-backup.

    • @cmoraes06
      @cmoraes06 17 днів тому

      @@hz777 but how the DHCP-SERVER will work on both?

    • @hz777
      @hz777 17 днів тому

      Each L3 Switch runs its own DHCP server

  • @muchada1
    @muchada1 17 днів тому

    Cool video.

  • @ventlucas
    @ventlucas 18 днів тому

    I will have 50 cameras on 2x UNVR PRO and 1x UNVR. Will report back on performance. Will break the stack of the PROs and balance the load manually. They have the same compute, so in theory its a storage question. Currently rocking 5x 8TB on the PROs, will bring it down to 4x 8tb on each NVR.

  • @sanpietroprogettista9887
    @sanpietroprogettista9887 20 днів тому

    What do you believe is the limiting factor?

    • @hz777
      @hz777 20 днів тому

      Too much load to the viewer? Sum of the upper limits of cameras for 3 nvrs is not a small number. Currently I don't see how you can use vantage point without connecting to unifi's website. If the function has to be supported by unifi's backend server, there may also be concern about the loads to their server.

  • @sobik2433
    @sobik2433 20 днів тому

    one step in good way. For now I have 2 UNVR stacked and I will stay on that but in future I wil ad 3rd UNVR and break stacking :) It is still hope that they find the way to add more when 3 UNVR wil be not enaught for me :) THX for this review

  • @user-ym7ss6xb3j
    @user-ym7ss6xb3j 22 дні тому

    so just use Secure DNS as a client or a vpn with DNS leak protection. Bye bye gateway dns

  • @Kehf27
    @Kehf27 22 дні тому

    So another question: I have my UDMPRO with the VLANS/firewall rules already configured. Is it possible to just change the subnet on the IP address of the pfsense server (so as not to conflict with my UDMPRO) and then set up the exact same VLANs in pfsense and disable existing the firewall rules in UniFi to use the pfsense as my firewall? Thanks.

    • @hz777
      @hz777 22 дні тому

      Two routers sharing the same switches is always problematic... A switch can only be adopted in one site, usm pro or pfSense, so the vlans always work with one router. I switched between udm pro and pfSense multiple times and it's pretty easy if you only have one active router. If you can afford some down time, I would not recommend running them together.

    • @Kehf27
      @Kehf27 22 дні тому

      @@hz777I see. I can afford the downtime. I just wondered if it was possible to use the UDMPRO pro in conjunction with the pfsense. One of the reasons is that I use UniFi Protect for some cameras.

  • @Kehf27
    @Kehf27 24 дні тому

    Do you happen to know the dimensions of this server? I’m looking at getting it but want to ensure it will fit in my rack Thanks. Also. Do you recommend any other server for running pfsense? Since this video is ~ 2 years old

    • @hz777
      @hz777 23 дні тому

      It's 1 U, ~26 inches deep.

    • @Kehf27
      @Kehf27 23 дні тому

      @@hz777Thank you. I assume you are still using this device as your firewall?

    • @hz777
      @hz777 23 дні тому

      @@Kehf27yes but only in my lab though.

    • @Kehf27
      @Kehf27 23 дні тому

      I apologize for the number of questions but I’m considering switching to pfsense for my firewall. Are you saying that you no longer recommend pfsense or the Supermicro server? Or are you recommending something else for home usage?

    • @hz777
      @hz777 23 дні тому

      @Kehf27 to really use Unifi gateway in my "production" environment, recently I started using UniFi udm-pro seriously. However, I may switch back to pfSense anytime. BTW, my switching to UniFi was completely due to my youtube channel mainly focusing on UniFi. pfSense is still way ahead of UniFi when it comes to functionality/documentation/community/etc.

  • @TangDynasty1983
    @TangDynasty1983 26 днів тому

    Could you please share how to set up WS to capture the WAN port of the UXG-Pro? Thank you.

    • @hz777
      @hz777 26 днів тому

      It's very easy. My uxg-pro runs behind another router, and the wan port is connected to a UniFi switch in my home network. I simply set a port on the same switch to monitor the port that connects to uxg-pro's wan port, then run Wireshark against the monitoring port

    • @TangDynasty1983
      @TangDynasty1983 26 днів тому

      @@hz777 makes sense. what if I have the Unifi as my WAN router, is there way to have WS capture the WAN traffic?

    • @hz777
      @hz777 26 днів тому

      @@TangDynasty1983 the easiest way is to use tcpdump in the router to capture wan traffic to a file, then later using Wireshark to display the captured file.

  • @bavobostoen
    @bavobostoen 27 днів тому

    Thanks, very clear, I wonder if doh blocking can ever be implemented without full SSL decryption at gateway?

    • @hz777
      @hz777 27 днів тому

      If the server also has other functions you need so you only want to block the doh function, you are right that's impossible. In this video I assume it's fine to block the server completely.

  • @reelmccoyfx
    @reelmccoyfx 27 днів тому

    Thanks for the video. I love the thoroughness and testing of changes made. Looking forward to future videos. And stupid me accidentally got click happy on my previous comment and deleted it. Sorry about that.

    • @hz777
      @hz777 27 днів тому

      np😊

  • @hostifi
    @hostifi 28 днів тому

    Good content! If you are looking for work get in touch we are hiring.🔥

  • @dp1971pd
    @dp1971pd 29 днів тому

    Very informative, but still device's hard-coded DNS take priority and ignore DNS shield.

  • @christianrensch2903
    @christianrensch2903 Місяць тому

    Thanks for this great video. In the Multi Switches & Multi Layers Szenario: can a Client on "Access Switch 1" on a non isolated Port communicate with a Client on "Access Switch 2" on a non isolated Port, when the two Ports on the "Aggregation Switch" are isolated?

    • @hz777
      @hz777 Місяць тому

      @@christianrensch2903no it can't. In fact whether the port on access switch is isolated or not does not matter.

  • @suprakar
    @suprakar Місяць тому

    Thank you for the very informative video. Now the one question I have is can we use our own DNS over HTTPS server? Can I manually override this in the cli?

    • @hz777
      @hz777 Місяць тому

      Nope, because the UI's list comes from the url in the DNScrypt-proxy config file. Even if you manually change the file, you won't be able to touch the list of servers hosted on public web. Having said that, I don't see why you want to use DNS Shield if you host your own DNS resolver already.

  • @TangDynasty1983
    @TangDynasty1983 Місяць тому

    At 28:38, was the guest clients isolation enforced because you had the "Client Device Isolation" box checked under vlan90? What if you uncheck that box, will clients be able to talk to each other? Please share. Thank you so much again for making these meaning full in-depth videos!

    • @hz777
      @hz777 Місяць тому

      Good catch! I should have disabled it... Now I have torn down the lab environment, so cannot retest quickly. I will make sure to cover it in my coming "complete wifi client isolation" video.

    • @TangDynasty1983
      @TangDynasty1983 Місяць тому

      @@hz777 I just noticed another thing..."Client Device Isolation" is under the "WiFi" category, per Unifi's definition, it only isolates clients under the SAME AP. But in real life, clients would roam among different APs...In order to isolate clients in the same VLAN, should we utilize ACL? I think you might have mentioned it in one of your previous video...Could you please recap this topic in your upcoming "complet wifi client isolation" video, even though this should not be limited to just WiFi...thanks again.

    • @hz777
      @hz777 Місяць тому

      @TangDynasty1983 yes, in one of my previous videos. Yes will mention again in coming one

  • @michaelafcadio
    @michaelafcadio Місяць тому

    Brilliant demonstrations!

  • @not2tired
    @not2tired Місяць тому

    This video helped me to finally get a USW Flex Mini adopted on another VLAN! Lessons learned: 1) These switches do not support SSH login; 2) DHCP Option 43 works great for adoption discovery on them; 3) Seems like DHCP Option 43 can be switched off after adoption is complete (more testing needed to confirm the adoption remains stable after long times with device offline); 4) I wish my Unifi stack had a built-in or add-in option for DNS resolution... I have a CK2-Plus and a USG-3 and I don't see any way to add a DNS entry on the LAN side for the Unifi controller IP. 5) The USW Flex minis need to have the VLAN where the Unifi controller is set to Native and all other VLANs set to tagged in order for this to work, so you'll need to use the upstream switch/gateway to filter the VLAN tags and determine the actual native network for devices plugged into the USW Flex Mini.

  • @hmurchison8123
    @hmurchison8123 Місяць тому

    Yeah tried to use this feature for a friend last night and it didn't work for us.

  • @Greg.M
    @Greg.M Місяць тому

    At the 4:14 mark (ua-cam.com/video/vplCxMkSg_0/v-deo.html) . . . where you create the "Firewall Rule" to block traffic from 66 to 88, is it possible the reason the firewall rule is ignored is that for those vlans the switch is selected as the gateway? If you were to select the Router as the gateway (on one . . . or both???) of the vlans (66 and/or 88), would the firewall rule then be respected then? (((For clarification, Can I assume that for vlan 66 and 88 that "L3 Network Migration" was selected, and that it was not for the other vlans?)))

    • @hz777
      @hz777 Місяць тому

      right, the firewall rule at 4:14 will never be effective because there won't be that type of traffic going through uxg-pro. If one or two of the vlans are managed by uxg-pro, yes, the firewall rule will be effective. Regarding "L3 Network Migration", it's for different purpose instead of firewall. In fact, I have never used "L3 Network Migration". What it is supposed to do is to change the router for that vlan from gateway to L3 swtich.

    • @Greg.M
      @Greg.M Місяць тому

      @@hz777 I have been confused by that "L3 Network Migration" option for some time and I am guessing that others are too. I don't understand why selecting "L3 Network migration" would change the router for that vlan from the gateway to the L3 switch . . . I can do that already in the "Router" dropdown menu above that link even without selecting the "L3 Network Migration" link/option. I guess I still don't understand what that "L3 Network Migration" link is for. I selected it once and it was a mess . . . my topology was ALL messed up - it ended up putting my switch above my UDM pro and clients were connected in places that they were not actually connected. I have NO idea why anyone would select this option! Maybe it would be good to mention it in future videos that "L3 Network Migration" was never selected as part of your setup. I think that would be very helpful to others - your videos are already SO good . . . I don't want to make them harder for you to make - this is just a suggestion.

    • @hz777
      @hz777 Місяць тому

      @Greg.M I GUESS the "L3 Network Migration" does more than simply changing the router option for the VALN. It may change firewall rules to ACL,... When I have time, I will look into it, and if I find anything interesting, I may come up with a video :)

    • @Greg.M
      @Greg.M Місяць тому

      ​@@hz777 Ok. Thank You.

  • @Greg.M
    @Greg.M Місяць тому

    Again, fantastic video. I'm not sure I would have ever figured out (on my own) why the IP version wouldn't work. To me, I think it would have been smarter for UniFi to make sure that you could do the blocking through the GUI Interface across vlans. My reasoning is that you could assign a static IP to a specific Mac address with in the unifi GUI, and then create your rules to block or allow. My reason for saying this is that, For example, on my phone I can use its designated Mac address, or a random address. Because of that, I would have to create too static ip addresses for both Mac addresses for one device in order to control its allowed or denied access to areas on my network - and if you have a device that can clone a MAC address, well then everything goes out the window. That is why I think UniFi should have given full flexibility to the IP functionality rather than the Mac functionality. Am I thinking about this correctly? Your thoughts?

    • @hz777
      @hz777 Місяць тому

      I agree with what you said regarding the MAC address. It's very easy to be faked. I think there is a potential reason for Ubiquiti to put more limitations on the UI for IP ACL rule: it's easier to prevent users from doing stupid things for gateway and cloud key. If I remember it correctly, you can only select client Mac address, instead of UniFi device Mac address when defining Mac ACL rules. To limit the same on ip ACL rules will be much more complicated.

    • @Greg.M
      @Greg.M Місяць тому

      @@hz777 I guess If I want to focus on Limiting device access to my network (IoT devices, guest, etc) I could: 1. Networks>L3 Network Isolation (ACL) enable this for the vlans I want to restrict 2. Networks>L3 Device Isolation (ACL) enable this on each of the vlans that is important (ie: IoT and Guest Networks) 3. Security>ACL Rules - Using this I could "ALLOW" using MAC addresses certain IoT devices to talk to each other (for example, a google home to communicate with a thermostat) - I am assuming that these rules come before the other 2 - could you confirm that for me? It is not the best security as it is "Security thorough Obscurity" - the hacker would have to KNOW what the MAC address is of the devices are that are allowed to talk to each other, and even then the rules would only allow the hacker to access or impersonate those devices . . . . That's not so bad, but if it was a NAS device, then that could be problematic . . . but they'd still need to GUESS what the MAC address of the NAS is. Again, not the best. Does that sound like I am thinking about this correctly?

    • @hz777
      @hz777 Місяць тому

      @@Greg.M - The first step can be replaced with firewall rules in most cases, and I personally prefer firewall rules. - The second step is for MAC ACL if I understand you correctly. If so it's not L3. Yes, it's the best way to achieve isolation in the same vlan. - Yes, "alow-rules" should be treated as exceptions, and yes they will be executed first in the generated access lists in the switch. In fact, for this step if firewall rules work (i.e. not the same vlan or not L3 switch vlan) I would prefer firewall rules.

    • @Greg.M
      @Greg.M Місяць тому

      @@hz777 Can you confirm that the router is set as your gateway and not the switch . . . or would it matter? I am not sure what you meant when you said ". . . not L3 switch vlan).

    • @hz777
      @hz777 Місяць тому

      I mean a vlan has a switch as the "router" by "L3 Switch VLAN"

  • @yankee-in-london
    @yankee-in-london Місяць тому

    great video! nice work.

  • @GrahamWerle
    @GrahamWerle Місяць тому

    what do you use to host your VMs?

    • @hz777
      @hz777 Місяць тому

      ESXi, but will be migrating to something else.

  • @caocao4685
    @caocao4685 Місяць тому

    1

  • @caocao4685
    @caocao4685 Місяць тому

    2

  • @MotorsportsX
    @MotorsportsX Місяць тому

    I really wish ubiquiti would stop changing the damn UI layouts. ffs.

  • @typischflo4718
    @typischflo4718 Місяць тому

    Thanks for the Grate Video. I have last week Buy a USW-PRO-MAX-24-POE but under ssh i cant go to tellnet Localhost. My Old US-24 POE can this and in you Video can log in the normal Pro.

    • @hz777
      @hz777 Місяць тому

      yep, I have a 48-max and it also does not run telnet. It's sad that Ubiquiti is moving farther and farther away from an "enterprise" brand. LED replaces CLI, what a shame...

    • @typischflo4718
      @typischflo4718 Місяць тому

      @@hz777 My opinion is the CLI this fetur that the swiches makes so good. But witout then is a Dlink Switch DGS-1510 better have for the one Switch more Fetures. But Unifi have the good network controller , that have't dlink and that you use more Switches is the Unifi universus much Better.

  • @dinanathsinha8228
    @dinanathsinha8228 Місяць тому

    Very useful, Thanks man

  • @scotthudson21
    @scotthudson21 Місяць тому

    Hi d oyou need a network controller on gateway for MDNS, i have a scenario were at one school with unifi AP's and unifi switches were mdns does not work yet at another school with Aruba switches and unifi APs it does work, this is both in relation to the guest portal appearing and asking for vouchers. Also on the network tab on the cloud key/controller for the school that does not work it does not show or give me the option to add the vlan for the guest wifi? yet on another site on the controller it does?

    • @hz777
      @hz777 Місяць тому

      I don't quite understand your scenarios and how they are related to mDNS. But for UniFi, the avahi runs on gateway so yes a UniFi gateway is required,; and to make settings a controller is required. However, it does not matter whether the controller is built into the gateway or not.

  • @Outright_Mike
    @Outright_Mike Місяць тому

    What an awesome video! 🔥 Thank you!

  • @toddshreve
    @toddshreve Місяць тому

    Thanks for the video! I would seem there are 3 DNS related features we may want to implement 1) Blocking ads (pihole) 2) Full DNS server (not just a relay/proxy - Unbound) 3) DNS encryption (Unbound and DNS Shield). If you want all 3, it would appear Pihole + Unbound is still the ticket?

    • @hz777
      @hz777 Місяць тому

      I think so as well.

    • @hz777
      @hz777 Місяць тому

      The DNScrypt-proxy features are not completely exposed in unifi's DNS Shield yet, so there are something to improve there for sure. And if Ubiquiti can add DNS log function, it will be perfect.

    • @toddshreve
      @toddshreve Місяць тому

      @@hz777 At the moment I have my pihole DNS upstream server set as the LAN port of my Gateway Max to try out DNS Shield. I just purchased this unit. I haven't had a UniFi security device since the USG. Figured I'd see if they made any progress in the space. Indeed, they have.

  • @Brent0n
    @Brent0n Місяць тому

    Can you make a video on MLO? I think they just enabled it recently for the wifi 7 ap's

    • @hz777
      @hz777 Місяць тому

      I have not tried MLO yet because I don't own a wifi7 client device.

  • @chrisslaunwhite9097
    @chrisslaunwhite9097 Місяць тому

    Love the time you take to make this Videos Thanks! SUBBED!

  • @andreamessina6439
    @andreamessina6439 Місяць тому

    So, what's the point in having the option to select a DNS in WAN if when DNS Shield is enabled, it will take over the WAN DNS anyway? Shouldn't make more sense that options for DNS in WAN became graded out and give an information message to warn the user that DNS Shield settings are inhibiting DNS WAN setting? This would have make it more user-friendly to understand the way it really works. BTW many thanks for your video as I doubt I would have never find out how the settings take over each other without your video. I subscribed already :)

    • @hz777
      @hz777 Місяць тому

      I am completely with you on this! But we all know how Ubiquiti responds to this type of "minor" things in the web interface, so I never bothered to suggest anything to them.

    • @andreamessina6439
      @andreamessina6439 Місяць тому

      @@hz777 actually I was just playing around with it again and I just find out that if you set up the WAN DNS and later go to DNS Shield and change it to auto or manual it gives you a warning message: “the DNS server configured on the WAN will no longer be used” 😂

    • @hz777
      @hz777 Місяць тому

      @andreamessina6439 interesting... So the warning is only implemented in one way instead of completely.