Unifi network 8.2.93 : Custom DNS , MLO, ACL Rules
Вставка
- Опубліковано 3 лип 2024
- In this video I take a look at the new Unifi network 8.2.93 update that brings a ton of new features and improvements. From Custom DNS records, MLO and ACL rules
Unifi network 8.2.93 release notes:
community.ui.com/releases/Uni...
Everything RF MLO article:
www.everythingrf.com/communit...
▶ Ubiquiti affiliate link :
store.ui.com/us/en?a_aid=MacT...
▶ Hire us on our website
mactelecomnetworks.com/
▶ Watch my VLOG channel:
/ @techntails
▶ Join our Discord Channel:
/ discord
------------------------------------------------------------------------------------
Affiliates I use:
▶ VOIP.MS
www.voip.ms/en/code/Mactelecom
▶Canadian Amazon Store front:
www.amazon.ca/shop/mactelecom...
▶USA Amazon store front:
www.amazon.com/shop/macteleco...
▶NordVPN:
go.nordvpn.net/aff_c?offer_id...
------------------------------------------------------------------------------------
▶ Find us on social media:
▶ Instagram:
/ mactelecomnetworks
▶ Facebook:
/ mactelecomnetworks
▶ Twitter:
/ mactelecomn
▶ TikTok:
/ mactelecomnetworks
0:00 Intro
0:13 Inspection page
1:02 ACL Rules
2:51 Custom DNS Entries
4:10 MLO Multi-link operation
5:01 Minor changes
6:32 Final thoughts - Наука та технологія
DNS forward domain - yeeeesss - took an eternity, but finally we have it.
Wow 2024 we finally get custom dns in the Ui. Hallelujah
Thank you for this video! Awesome changes!
Thanks for the learning.
Thanks for the post!
This update literally answered my prayers in regards to manipulating DNS entries, cause I have a few IPSec tunnels.
Great Video, thank you!
Very very nice! For me the two big wins are DNS and the ACL's. Looks like I'll want to replace at least one of my Flex Mini switches with a higher-end switch so I take advantage of those ACL's for the devices on that switch!
They still don't appear have unidirectional ACLs, which makes them pretty useless if you run VLANs.
Finally now I may buy a UDM for home. This is one for the reasons what hold me back!
Oh wow thanks!!
Did not expect this video to magically show up on your channel after demanding it 😅
We need DESTINATION PORT information under Triggers! It shows everything except what port the blocked IP was trying to connect to.
Wow a DNS Server finally… but unfortunately not available on the cloud gateway ultra. What a bummer
I have a Cloud Gateway Ultra and can use the new DNS Features.
@@alexpio hi thanks for your reply. Now it works for me as well but only after updating UniFi OS to latest version 3.2.18 yesterday evening. Before that and only after updating UniFi network to 8.2.93 the DNS options where not available
Thank gods. The last thing I kept my domain controller for was dns. I got rid of dhcp, active directory and file server from it. But now I can go serverless.
ACLs are nice, but it would be a lot nicer if I could define groups of devices. Any idea if this will be coming in the future?
Or any other suggestions on how to manage a bunch of IoT devices of the same vlan?
Any ideas on what will block mobile game advertising?
Can't see an identification in the listed traffic
Congrats to Unifi for catching up. If they hade better prices they would dominate the enterprise market also.
awesome RE: DNS, It was however anticlimactic for me.. I thought for a moment it was going to be custom 'secure dns' servers (DOH/dns over https)
I'd love to investigate all this new stuff but my UDR has completely failed and had to be RMA'ed back to Ubiquiti. 😢 My network is in shambles as I've had to drop back to my ISP router whilst waiting for the replacement UDR.
Still, I shall watch your video in eager anticipation of getting back into the UI world soon. 🙂
Mine has gone down twice now. Reboot it recovers. Support said to upgrade to EA firmware. So far it's been ok. The POE switch still operates but the switch is non operative.
@@lawdawg1942 Multiple reboots and it worked occasionally but the Network process failed to start, so impossible to update. Support diagnosed a Hardware issue sadly.
@@lawdawg1942 same, EA firmware, we'll have to see
Was super excited to see the DNS A host record. After adding my desired hostname and pointing to my synology's internal IP I can still not get a ping response via name. Even verified the synology's set to DHCP /Auto to the UDM Pro's gateway address. Firewall off or on on the nas makes no difference. pining the IP from my PC works just fine :/
So, I had the same issue, couldn't resolve any DNS records. Then used command "nslookup" to see what DNS server I was resolving. Forgot all about using NextDNS, which redirected my DNS resolvers to them. So nslookup was showing "192.0.2.42". try using nslookup
I'm still dreaming of the day we get NAT settings and decent syslog output... Its fine having all these logs on a Controller, but thats no good if your a business or professionals who have a requirement for centralised log management. Though witth all these changes, I'm hopefully they're getting to that..
Where or how would you configure a pihole as an upstream server so that the local domains are resolved by unifi, but the rest by pihole (blocked where necessary)?
I wish they would make EnterpriseXG 24 with POE++ on each port. That is keeping me from replacing my S5860-24XB-U, 24-Port Ethernet L3 PoE++ Switch
As u asked, just ubscribed 😎
please disable your webcam overlay when you show the UI and also make the UI larger so that it gets easier to read on mobile.
when you show the UI or websites your webcam overlay does not add anthing to the video, it really just gets in the way.
Not a bad idea thanks for the suggestion
Agreed
This must still be in beta? My network (at least on my Unifi Express) is still on 8.1.127. Unless Unifi Express doesn't get a lot of these new features? I am also not on release candidates or such.. so I guess latest is what I got.
I e in my 25 years in the IT business only seen public IPs on private networks one time. That must be a Canadian thing 😉
Definately not a Canadian thing. I've seen it plenty of times too.
@@davidronan2001 And in what country is this?
Is there a list of compatible devices?
I've update my UDM-SE Network App to 8.2.93 but I can't find any of the new options, specifically wanting DNS Records.
Can someone help me how to use this new DNS server? Is necessary to add the router IP as DNS for devices or does it work separately for all networks. Thanks for your help. 😊
Have you run into issues with iPhones dropping off the network constantly? I have a few users and when googling it seems like it's a some what common thing but not alot of fixes.
I olso have this kind of problems with clients of mine. Still no fix for this…
Great video, but please use a lower screen res, really struggled to read your screen recording.
Resolution will stay the same but I’ll make sure I’m more zoomed in next time :)
Ho Cody, do you maybe know why Unifi has removed the dark mode from the current versions?
It's not removed, in FW 4.0 accessing locally doesn't seem to have dark mode atm, it has been acknowledged though and will be fixed soon. dark mode still works if you access the console via the cloud portal though.
do all the ubiquity stuff require their cloud nonsense to configure or do they offer local control of anything?
You can do everything local
You said something about ACL rules only work on Layer 3 switches, but their web page says:
_The following devices do not support ACLs:_
_USW-Flex_
_USW-Flex-Mini_
_US-8_
_USW-Industrial_
_USW-Ultra_
_USW-Ultra-60W_
_USW-Ultra-210W_
_All UniFi Gateways_
_All UniFi Access Points (including In-Wall models)_
which suggests to me that ACL's should be supported on something like a *USW-Lite-8-POE (52W)* which is not a layer-3 switch. I could justify replacing one of my USW-Flex-Mini's with a USW-Light-8-POE, but it's harder for me to jump up to the price of the USW-Pro-8-PoE to get layer-3 abilities.
I don’t think it would work on the usw lite 8 poe as it’s only layer 2 wouldn’t make sense if it did
@@MactelecomNetworks ACL rules work on all the switches that support ACLs in hardware. It is a L2 feature, and has nothing to do with L3. That is why it doesn't work on UDMP, but works on US-8-150W for example.
@@Soda88 Good point. It seems a big oversight not to include ACL support on the switch part of the UDMP.
DNS is super change, i dont know it will works if you are VPN client like wireguard
Not specificaly relevent to this post, but I am having trouble finding VPN logging. I have customer that wanst to see how often users are connecting to the VPN, how can I get this information?
Your url is showing around 3:25. Probably want to update the redaction.
It’s all good I know it was. There was some other things past that I needed to redact :) appreciate the comment though
Wait....Pro Max claims L3, but it can't do the L3 ACL functions? Is your pro max on an old rev perchance?
It's a switch chip function, nothing to do with L3.
How did you get the dark mode back? I can't find it anymore. lol
I was going through Unifi.ui.com not local
@@MactelecomNetworks got it. Thanks!
try to reduce the UI on the monitor even more so that we can see even less :-)
I thought you knew the keyboard shortcuts for controlling the Internet browser
You have so much free space there and you can't use it to see everything well even on monitors smaller than 50"
Good suggestion
The example of blocking Facebook on the smartphone is not new. I still have 8.1.127 and it was already working there. It also worked before this version. What's new about 8.2.93? The function is not new in 8.2.93.
You’re right that’s not new. But the inspection page to see the blocks is
IPv6 is and has always been a second class citizen in the unifi product line
I have hope. There has been far more work on IPv6 recently
DNS... ;-)
Where is source nat Unifi Cmoon
I just want inter vlan blocking and the ability to block tiktok lol. Ticket open for over a month now they cant seem to figure it out.
The screen size you're using is too large for your video, making it hard to read the text, especially when watching on smaller screens. It would be great if you could zoom in or use a smaller display for better clarity. Thanks!
It’s my main monitor I’ll zoom in more :)
Yet still no static NAT. WTF Ubiquiti? All these mostly edge case feature updates, but not something core to being a viable replacement for other “enterprise” routers/firewalls. DNS on device? Seriously? I can’t think of a more useless feature.
Wow a DNS Server finally… but unfortunately not available on the cloud gateway ultra. What a bummer