Really tempted to order a UDM-SE and consolidate CKGK2+, NVR and 3rd party firewalls, but I do wonder if I'll miss the flexibility of pfsense / Sophos XG.
My understanding is the rule makeup is my more basic compared to these firewalls? I'm using Geo in rules, ASN data in pfsense etc.
I've got port forwarding for a flex instance, but with ASN and GeoIP restrictions etc. along with the pfblockerng aspects, how reliable and good are these lists I need to delv further. If I'm running Sophos XG, I just use the Sophos supplied lists.
VPN wise, how are the UDM devices for VPN performance? I've S2S to my parents for Synology replication, OpenVPN with AD/Entra integration for my laptops and Wireguard for IOS devices. I'm on Virgin atm as Toob can't pull their find out.. 1000/100 connection with Smarty 4/5G failover, will prob ditch as Virgin has been rock solid.
Unifi stack compromises of:
US-8, Switch Flex, Switch Flex 2.5G 5, USW Flex Mini, USW-Lite-16-PoE, USW-Pro-48-PoE, AC Mesh, U6-Pro
The 48 Port is less than half populated, but I picked it up on a decent deal and could use the 10Gb DAC connection between the SE as an uplink. Equally I could migrate all the downlink connections to the SE and change to a 24 Port PoE switch etc.
Network 10 I imagine will just bring refinements, not deeper configuration options.
Anyone else been through this migration? As I don't fancy a £425 miss purchase for a SE. Obviously I'd sell the NVR, CK and Sophos XG hardware so that'd help.
I'm using Network, Protect and Talk atm.