The Unifi UDM-Pro is Getting Better!

Поділитися
Вставка
  • Опубліковано 15 січ 2025

КОМЕНТАРІ • 27

  • @maxherman11
    @maxherman11 2 місяці тому +12

    I really hope we can fix firewall rule management, the current way is just awful

  • @paultech9385
    @paultech9385 2 місяці тому +2

    I’d love to see a vid on traffic rules, profiles and firewall rules.

  • @narnol02
    @narnol02 Місяць тому +1

    Multi-site management is in the site manager page. I under stand why they are doing it like this. The UDM is meant to manage that site alone and other sites will get there own gateway that connects to the site manager.

  • @seanwoods1526
    @seanwoods1526 2 місяці тому +3

    Release the directors cut!! :).. All jokes aside I am interested on your thoughts on the FW rules.

    • @ToastyAnswers
      @ToastyAnswers  2 місяці тому +1

      I have a lot of thoughts on the FW rules... lol
      I've moved my rant into a new video that's basically going to just cover Firewall Rules in General.

  • @Chazzaa-n7g
    @Chazzaa-n7g Місяць тому +1

    OSPF is currently half-baked (and you can’t run it on the same interface used for WAN!) so seeing how complex BGP can get I would have thought there first try will be quite lackluster but time will tell…

  • @prongATO
    @prongATO 6 днів тому

    Curious about revisiting this after the latest update with firewall zones and multi-site management.

    • @ToastyAnswers
      @ToastyAnswers  3 дні тому

      Definitely on my list. I got unreasonably excited when I saw Zone-based firewall as an option to enable.

  • @Barracade22
    @Barracade22 2 місяці тому +1

    I've been able to see my OSPF neighbors just fine. Even before 8.6.9

    • @ToastyAnswers
      @ToastyAnswers  Місяць тому

      Where are you finding that information?

  • @jaymax97
    @jaymax97 2 місяці тому

    Could you go into detail of how you set up dns for your domain dns? Currently have everything going to the DC dns but would like to see what you’re doing.

    • @ToastyAnswers
      @ToastyAnswers  Місяць тому +1

      I've added that to my list of planned videos.

  • @Kjaywest
    @Kjaywest 10 днів тому

    I use all Unifi networking gear, but when it comes to firewall rules, I don't understand how to use them for my home use, so I just leave them out. I'm still pushing to learn all of this, so when the time comes for me to understand it, I will.
    Why would you want to have a local DNS?
    I want to use SNMP, but I don't know how.

    • @ToastyAnswers
      @ToastyAnswers  3 дні тому

      For home use, local DNS can just be something "nice to have" especially, if you like to host your own services. For example, if you have a NAS on your network you can setup a local DNS entry for files.myhouse.local so you don't have to type in the IP address every time. Just makes things a bit cleaner, but isn't "necessary" for most people.
      In a more business-type environment, local DNS becomes much more important when you start dealing with Active Directory and other services. Local DNS is almost expected at a certain point.
      SNMP can be.... confusing, but once you've set it up a few times you pretty much understand it.

  • @helmutseiler
    @helmutseiler 5 днів тому

    Follow up for UniFi Network 9.0?

  • @coffeecakecharlie
    @coffeecakecharlie 2 місяці тому

    have they fixed the issue where Surfshark wireguard doesn’t work with Unifi?

    • @ToastyAnswers
      @ToastyAnswers  2 місяці тому +1

      Not that I'm aware of. I've only seen the workaround for this issue by reducing the MSS, but I don't run Surfshark VPN so I can't say one way or the other.

    • @coffeecakecharlie
      @coffeecakecharlie 2 місяці тому

      @ i have a support ticket open at the moment but tried the ea firmware today…no go. tried the mss trick via ssh as well. doesn’t fix it for me. sad times as i just started a 2 yr contract with surfshark 😂

  • @jaimeilha6017
    @jaimeilha6017 10 днів тому +1

    Guarani

  • @Dmkjr
    @Dmkjr 2 місяці тому +3

    Supports BGP now though.

    • @DeadlyDragon_
      @DeadlyDragon_ 2 місяці тому +1

      Supports BGP to what extent? Can you setup AS path prepend? There is a LARGE amount of configuration associated with BGP. There is a massive amount of adjustments that can be made to influence the path selection of BGP.
      Also can this take a full v4 AND v6 routing table? or only accept a default / filtered table.

    • @ToastyAnswers
      @ToastyAnswers  2 місяці тому

      Thought I'd chime in here and say I'd be very surprised if it can support the full routing tables... I've yet to see a "firewall" that can and still work "well".

    • @DeadlyDragon_
      @DeadlyDragon_ 2 місяці тому

      @@ToastyAnswers mainly enterprise kit in my experience. Palo Alto’s and fortigates depending on SKU can take a full table. But again separation of duties is important and should be kept in mind. All firewalls are routers to an extent but that doesn’t mean they should be acting as your primary router.

  • @jameshancock
    @jameshancock Місяць тому +1

    mDNS. Still a mess.