How to Setup Ubiquiti UniFi Network for a Small Business Office 🛜

Поділитися
Вставка
  • Опубліковано 28 вер 2024

КОМЕНТАРІ • 51

  • @ApexOneTech
    @ApexOneTech  Місяць тому

    Might want consider the UCG-Max instead that was released after I made this video: ua-cam.com/video/e7VWdddMamw/v-deo.html

  • @Richard_GIS
    @Richard_GIS 3 місяці тому +9

    50:28 if you use vlans for example iot, then just set also to 'block all' in tagged vlan. Because when someone clone the mac address of any device of default network it can be accessed by this port as you did not block other traffic -security risk

    • @brandonw1604
      @brandonw1604 Місяць тому +1

      Good call. That is a security risk a lot of people miss.

  • @zero604
    @zero604 2 місяці тому +2

    38:52 the Wifi Schedule is for times you want to PAUSE the WiFi, not enable it. Your example basically stops the guest wifi from working during business hours 7am to 6pm.

    • @ApexOneTech
      @ApexOneTech  2 місяці тому

      ah yeah, thanks for the correction! It would want it to work the way I showed it lol seems more intuitive.

    • @zero604
      @zero604 2 місяці тому

      @@ApexOneTech i think that's how it worked with the classic interface (select the times you want it to be active) but for some reason they changed it for the new interface.

  • @robflate
    @robflate 3 місяці тому

    Any reason you're not using Private Pre-Shared Keys seeing as though you're not using the 6GHz band?

  • @21Lettere
    @21Lettere 2 місяці тому +2

    The very first thing I always do after creating my VLANs is to block traffic between VLANs: by default, Unifi Network allows traffic to pass between VLANs (except for Guest VLAN) which is imho very dangerous from a security perspective.

  • @gregoryortiz82
    @gregoryortiz82 Місяць тому

    Excellent video. Really helpful

  • @prospermaseko2280
    @prospermaseko2280 Місяць тому

    Hie, thanks for this informative video.
    Keep it up

  • @tombshara6618
    @tombshara6618 Місяць тому

    what network design tool are you using?

    • @ApexOneTech
      @ApexOneTech  Місяць тому

      I'm using Apple's Freeform app. Unfortunately, it's only available on Apple devices as of now. If you know a better app, let me know. Everything else so far has been worse to use.

  • @artursinderman
    @artursinderman Місяць тому

    Hi Bogdan, thank you for sharing your knowledge. Thanks to you, my network is now working great.

  • @danb.7723
    @danb.7723 3 місяці тому +2

    Hi. It is a very useful instruction.
    But could you film an instruction further regarding VLAN - Security (surveillance cameras, sensors...) with setting the rules for the firewall, for this network to be secured?

    • @ApexOneTech
      @ApexOneTech  3 місяці тому

      Yes, I need to do that. In the meantime, @ethernetBlueprint has good video ua-cam.com/video/B_0dXLNCGp8/v-deo.html

  • @itsJoshW
    @itsJoshW 2 місяці тому

    Was there a reason you didn't use the Ubiquiti Cable Modem?

    • @ApexOneTech
      @ApexOneTech  2 місяці тому +1

      I would if this was from scratch. But since it's just an upgrade, their modem is fine and even has a 2.5 port. They're not even anywhere close to capacity so not need to change that.

  • @jasonmc7031
    @jasonmc7031 20 днів тому

    Would you be able to share the network devices and IP schemas?

  • @Coodex1337
    @Coodex1337 26 днів тому +1

    By far, the most comprehensive and easiest (All-in-one) setup guide I ever seen. Good job, liked and subbed! 👏

  • @Nimitz_oceo
    @Nimitz_oceo 19 днів тому

    I’m not sure if you mentioned or if i missed it, you didn’t talk about inter-VLAN routing, is it enabled by default or do you have to enable it manually.

    • @ApexOneTech
      @ApexOneTech  6 днів тому

      It is enabled by default. You would have to create traffic firewall rules to block inter VLAN communication. I didn’t go into that in this one.

  • @22illingworth
    @22illingworth Місяць тому

    Great Video... I never considered 10.1.*.* for the networks. Way easier to manage. Can you change them all after inittially setting them up and if so do you re configure all together in one go or do them one by one ?

    • @ApexOneTech
      @ApexOneTech  Місяць тому +1

      Change your gateway IP address scheme. Your devices attached to the network will automatically get the new 10.1** range within 24 hours or you can also power cycle devices.

    • @22illingworth
      @22illingworth Місяць тому

      @@ApexOneTech I meant to say all my VLANS :)

  • @JhonRestrepo-t6x
    @JhonRestrepo-t6x Місяць тому

    what should I do if I want a vLan for example "The main network" to enter the "Security" Vlan but the "Security" vLan cannot enter "The main network" Vlan

  • @kristianangelocagaoan7969
    @kristianangelocagaoan7969 3 місяці тому

    can you do a video where you use a windows server as the AD, DHCP, DNS and still use the UDMSE as your core network.

  • @adrienpatenotre4820
    @adrienpatenotre4820 3 місяці тому

    Very useful thank you ! It would be interesting to see how to deploy a hotspot with SSL, as I don't find any complete, up-to-date documentation on the matter (I tried with a Unifi Express)

  • @bentheguru4986
    @bentheguru4986 3 місяці тому

    @10:30 UBNT are pricks for removing manual adoption. Go to Legacy Interface and you can manually adopt devices. Your deployment here is easy, when you get to a site where you have hundreds of WAP's installed along with switching and need to do this bullsh!#, yeah, another reason UBNT gets pulled out of sites.
    @15:35 rename default in Legacy Interface. Turn off mDNS unless needed, UniFi known to struggle with lots mDNS traffic. DHCP Guarding also wise.
    @23:25 UniFi Protect cameras on to the UDM are forced to stay on the DEFAULT VLAN, can not seperate. This is one of the reasons the UDM's are for small offices only, not bigger setups.
    @27:30 Be careful, this feature (Guest Network) either forces Captive portal despite it being off and also blocks internet access, welcome to UniFi bugs and half-baked firmwares.
    @33:35 NO, default settings are NOT fine. Turn of band steering, it is extemely well known for connectivity issues. Multicast and Broadcast control highly advised on busy networks.

    • @ApexOneTech
      @ApexOneTech  2 місяці тому +1

      Takes for your input. Trying to keep it simple and not go into work arounds. I haven't yet ran into the issues you mention but I also haven't configured such large sites: maybe it's a matter of time for me lol or they've patched it in an update.

  • @satchigiree1949
    @satchigiree1949 3 місяці тому

    Awesome Video!

  • @34rd69
    @34rd69 3 місяці тому

    15:31 timestamp, I updated the name from "default" to "Management." First, I navigated to Settings (gear icon) > System > Advanced > Interface and switched to "Legacy." In the Legacy UI, I went to "Networks," edited the default name to "Management," and saved the changes. Then, I returned to the new user interface by selecting User Interface > New User Interface.

    • @ApexOneTech
      @ApexOneTech  3 місяці тому

      Totally right! you can do that... I just wanted to keep it simple and in the latest interface.

  • @FelixRosario-s7k
    @FelixRosario-s7k 2 місяці тому

    I'm very interested in what the VoIP profile was. Didn't see in the video. Great Video!!!

    • @ApexOneTech
      @ApexOneTech  2 місяці тому

      Thanks! Video was getting so long that I cut it out. I'm planning to release a separate video on it.

  • @anthimossisk
    @anthimossisk 3 місяці тому

    By blocking printers from the internet they will not receive any firmware updates

    • @ApexOneTech
      @ApexOneTech  3 місяці тому +1

      Correct. As it should be. I hate printers lol. Can always pause the rule once a year to check for an update.

  • @sundarikomputer
    @sundarikomputer 3 місяці тому

    How do you ensure the sound effects match the visuals so well?

    • @ApexOneTech
      @ApexOneTech  2 місяці тому

      I don't know lol. My editor does a good job!

  • @caliber2410
    @caliber2410 3 місяці тому

    Awesome video. Would love to see a followup on the advanced firewall setup tips.

  • @sberga5058
    @sberga5058 3 місяці тому

    Many thanks! You let me understand a lot of things that before was not so clear.

  • @qux8508
    @qux8508 3 місяці тому

    Is the AP u6-plus better than the u6-pro?

    • @ApexOneTech
      @ApexOneTech  3 місяці тому

      Always a tradeoff for every device. U6 Pro is "better" but it comes at a cost. You can always have the "best" setup with buying the most advanced gear. The trick is to pick the correct devices with some overhead so that it doesn't cost more than it should.

  • @avalleskey
    @avalleskey 3 місяці тому

    what ios program you use to make those diagrams?

    • @ApexOneTech
      @ApexOneTech  3 місяці тому +1

      Freeform. I try to stay in one suite for work (Microsoft) but their Whiteboard app is difficult to use. Freeform works much nicer. Apple really needs a better way to share Freeform pages though.

    • @avalleskey
      @avalleskey 3 місяці тому

      @@ApexOneTech Enjoyed your video! Thanks!