*** Official Ubiquiti Discussion Thread ***

I keep meaning to look at this too re their services. I keep forgetting cloud options as I’m in the on-prem no cloud world :(
It's pretty straight forward. Something along the following should work fine (I've consumed some wine tonight, on PTO tomorrow and Friday!).

  1. Create Oracle Cloud account
  2. Create Always Free Ubuntu instance on Ampere
  3. Configure VCN firewall to only allow your home IP on port 22, port 443, and whatever ports UniFi requires
  4. Check Ubuntu iptables, can't remember what the basic rules are
  5. Use Glenn.R easy install script to install the controller software and dependencies (https://community.ui.com/questions/...Encrypt-/ccbc7530-dd61-40a7-82ec-22b17f027776)
  6. (optional) Create DNS entry in Cloudflare for the public IP of the Oracle VM with your preferred domain name
  7. (optional) add Cloudflare's IPv4 addresses to VCN firewall
  8. (optional) use Glenn's scripts to install a signed cert
  9. (bit vague on this part) think you need to tell the devices the new controller with set-inform or similar method
Before I bought my UDM-SE I ran it like this for about 6 months+ without any major headaches.

I have my blog, my Adguard DNS server, and two car forums hosted in Oracle Cloud and it's free, fast, and relatively maintenance free.
 
Last edited:
It's pretty straight forward. Something along the following should work fine (I've consumed some wine tonight, on PTO tomorrow and Friday!).

  1. Create Oracle Cloud account
  2. Create Always Free Ubuntu instance on Ampere
  3. Configure VCN firewall to only allow your home IP on port 22, port 443, and whatever ports UniFi requires
  4. Use Glenn.R easy install script to install the controller software and dependencies (https://community.ui.com/questions/...Encrypt-/ccbc7530-dd61-40a7-82ec-22b17f027776)
  5. (optional) Create DNS entry in Cloudflare for the public IP of the Oracle VM with your preferred domain name
  6. (optional) add Cloudflare's IPv4 addresses to VCN firewall
  7. (optional) use Glenn's scripts to install a signed cert
  8. (bit vague on this part) think you need to tell the devices the new controller with set-inform or similar method
Before I bought my UDM-SE I ran it like this for about 6 months+ without any major headaches.

I have my blog, my Adguard DNS server, and two car forums hosted in Oracle Cloud and it's free, fast, and relatively maintenance free.
Very handy to know and thanks!
 
It's pretty straight forward. Something along the following should work fine (I've consumed some wine tonight, on PTO tomorrow and Friday!).

  1. Create Oracle Cloud account
  2. Create Always Free Ubuntu instance on Ampere
  3. Configure VCN firewall to only allow your home IP on port 22, port 443, and whatever ports UniFi requires
  4. Check Ubuntu iptables, can't what the basic rules are
  5. Use Glenn.R easy install script to install the controller software and dependencies (https://community.ui.com/questions/...Encrypt-/ccbc7530-dd61-40a7-82ec-22b17f027776)
  6. (optional) Create DNS entry in Cloudflare for the public IP of the Oracle VM with your preferred domain name
  7. (optional) add Cloudflare's IPv4 addresses to VCN firewall
  8. (optional) use Glenn's scripts to install a signed cert
  9. (bit vague on this part) think you need to tell the devices the new controller with set-inform or similar method
Before I bought my UDM-SE I ran it like this for about 6 months+ without any major headaches.

I have my blog, my Adguard DNS server, and two car forums hosted in Oracle Cloud and it's free, fast, and relatively maintenance free.

Many thanks, will have a look out of curiosity anyway :)

What's the blog site? :)
 
Just an update as I’ve finally mounted the U6-Enterprise to the ceiling directly above my VR play area and streaming to Quest 3 is now flawless.
I’m doing 500mbps and can play for hours without any latency spikes whatsoever.

IMG-5102.jpg
 
Last edited:
Morning all! (Happy Friday!)

I have upgraded my VM BB to 1Gig and with 4 x UAP-AC-LR Unifi AP's located around my bungalow I wanted to know are there an radio settings I can change with power/channels/signal to get the best throughput

The system itself works flawlessly but I'm always looking get the best of it, I have them connected to a US-8-60W switch and a Cloud Key

Thanks all!
 
Morning all! (Happy Friday!)

I have upgraded my VM BB to 1Gig and with 4 x UAP-AC-LR Unifi AP's located around my bungalow I wanted to know are there an radio settings I can change with power/channels/signal to get the best throughput

The system itself works flawlessly but I'm always looking get the best of it, I have them connected to a US-8-60W switch and a Cloud Key

Thanks all!
Well that killed the conversation :)
 
Well that killed the conversation :)
I would do a scan to see what channels are being utilised around you and opt for the less busy ones. As for other settings, I'm a little unsure, I've read folk just say to stick with auto. I was also recommended to have 2.4ghz on low power and 5ghz channel on medium.
 

UXG-Lite will do 1 Gbps with IPS/IDS turned on.

It’s £125. For a very basic Stateful inspection firewall router that does nothing without a controller. IPS/IDS only helps if you’re already infected and don’t know it. Are they have the laugh to end all laughs? AND! You’ll need their £30 rack-mount tray if you want to stack it in the rack with everything else. It’s not even as if they made it the same form factor as any other UniFi component so you could stack them like old-school hi-fi separates. I utterly believe their marketing department is really all about getting everyone drinking the Kool-Aid.
 
It’s £125. For a very basic Stateful inspection firewall router that does nothing without a controller. IPS/IDS only helps if you’re already infected and don’t know it. Are they have the laugh to end all laughs? AND! You’ll need their £30 rack-mount tray if you want to stack it in the rack with everything else. It’s not even as if they made it the same form factor as any other UniFi component so you could stack them like old-school hi-fi separates. I utterly believe their marketing department is really all about getting everyone drinking the Kool-Aid.
pfsense+ tac-lite subscription is £100 or so if I recall and that's just a firewall without NGFW capabilities. Not sure what sort of price is "acceptable". Sophos XG Home is the nearest "free (pending having hardware)" NGFW option. Untangle last time I looked was $150 for Home Pro, not sure where they're at these days post Arista purchase.

I agree marketing dept seem to lead their tech rather than tech lead etc.
 
"NGFW" is a marketing term, when 100% of your web traffic is encrypted and you aren't installing custom root certs on your device (don't do this) there's not really much security you can put at the network edge.
 
"NGFW" is a marketing term, when 100% of your web traffic is encrypted and you aren't installing custom root certs on your device (don't do this) there's not really much security you can put at the network edge.

I agree hence why requirements changing, but it also depends on the environment. I've worked at a number of places where certificates are in-place for man in the middle inspection via device like Finjan proxy, Juniper etc. This is again changing with TLS 1.3 etc

More focus on endpoint and such. I've got pfsense and Sophos XG Home (XG125 hardware) in play these days depending what is powered on. Binned off Untangle.

UXG-Lite does interest me for a family member, but it'd be remotely managed via my cloud key. Shame there isn't a GUI / supported way to do Let's Encrypt on cloud Key. I need to look at the Oracle cloud option too and spin a VM up in there for the potential UXG-Lite. Not that I expect we'll see it anytime soon as UK PSU delays as they've never been quick to sort that and no doubt will be out of stock.
 
Last edited:
pfsense+ tac-lite subscription is £100 or so if I recall and that's just a firewall without NGFW capabilities. Not sure what sort of price is "acceptable". Sophos XG Home is the nearest "free (pending having hardware)" NGFW option. Untangle last time I looked was $150 for Home Pro, not sure where they're at these days post Arista purchase.

I agree marketing dept seem to lead their tech rather than tech lead etc.

How exactly do you define NGFW? In what way is the UXG-lite a “NGFW”. The routing in UniFi is controlled through the controller. A UXG-lite is just hardware the controller tells what to do. So anything a current UXG-Pro will do, a UXG-lite will do, just for less money and potentially slightly slower (although the jury is out on some things). The only thing the UXG-lite will do that nSense won’t is put some money in Robert Pera’s bank account.
 
Back
Top Bottom