*** Official Ubiquiti Discussion Thread ***

Do you use smart queues or QoS? It could be that, I use it to rate limit upload to 90 Mbps.
No, smart queues kills the speed so never use them and QoS isn't really needed as even with multiple people at home at the same time doing calls etc we don't get anywhere near needing it.
 
No, smart queues kills the speed so never use them and QoS isn't really needed as even with multiple people at home at the same time doing calls etc we don't get anywhere near needing it.
I still find on the Openreach 100 upload that cloud backups tend to saturate the connection and cause latency.
 
So I returned the UDR7 because as soon as you try to do anything fancy with it (IPS or QOS) it absolutely nuked performance with PPPoE because apparently it doesn’t have hardware offloading. My connection dropped to around 400/70 with IPS enabled and even further with QOS enabled. I eventually got a response from Ubiquiti that agreed it was an issue and they were looking at software fix options. I wasn’t really willing to wait at the time.
That's good to know, personally I'm really happy with my DR7 but I didn't see a need to turn on ids, just blocked some countries and put some other devices on vlans which is miles better than previous setup anyway.
 
Some nice new goodies!

7HNSqEP.jpeg


UCG-Fiber, 2.5Gb POE Flex & 10Gb POE++ 60w!
 
Really tempted to order a UDM-SE and consolidate CKGK2+, NVR and 3rd party firewalls, but I do wonder if I'll miss the flexibility of pfsense / Sophos XG.

My understanding is the rule makeup is my more basic compared to these firewalls? I'm using Geo in rules, ASN data in pfsense etc.

I've got port forwarding for a flex instance, but with ASN and GeoIP restrictions etc. along with the pfblockerng aspects, how reliable and good are these lists I need to delv further. If I'm running Sophos XG, I just use the Sophos supplied lists.

VPN wise, how are the UDM devices for VPN performance? I've S2S to my parents for Synology replication, OpenVPN with AD/Entra integration for my laptops and Wireguard for IOS devices. I'm on Virgin atm as Toob can't pull their find out.. 1000/100 connection with Smarty 4/5G failover, will prob ditch as Virgin has been rock solid.

Unifi stack compromises of:
US-8, Switch Flex, Switch Flex 2.5G 5, USW Flex Mini, USW-Lite-16-PoE, USW-Pro-48-PoE, AC Mesh, U6-Pro

The 48 Port is less than half populated, but I picked it up on a decent deal and could use the 10Gb DAC connection between the SE as an uplink. Equally I could migrate all the downlink connections to the SE and change to a 24 Port PoE switch etc.

Network 10 I imagine will just bring refinements, not deeper configuration options.

Anyone else been through this migration? As I don't fancy a £425 miss purchase for a SE. Obviously I'd sell the NVR, CK and Sophos XG hardware so that'd help.

I'm using Network, Protect and Talk atm.
 
Really tempted to order a UDM-SE and consolidate CKGK2+, NVR and 3rd party firewalls, but I do wonder if I'll miss the flexibility of pfsense / Sophos XG.

My understanding is the rule makeup is my more basic compared to these firewalls? I'm using Geo in rules, ASN data in pfsense etc.

I've got port forwarding for a flex instance, but with ASN and GeoIP restrictions etc. along with the pfblockerng aspects, how reliable and good are these lists I need to delv further. If I'm running Sophos XG, I just use the Sophos supplied lists.

VPN wise, how are the UDM devices for VPN performance? I've S2S to my parents for Synology replication, OpenVPN with AD/Entra integration for my laptops and Wireguard for IOS devices. I'm on Virgin atm as Toob can't pull their find out.. 1000/100 connection with Smarty 4/5G failover, will prob ditch as Virgin has been rock solid.

Unifi stack compromises of:
US-8, Switch Flex, Switch Flex 2.5G 5, USW Flex Mini, USW-Lite-16-PoE, USW-Pro-48-PoE, AC Mesh, U6-Pro

The 48 Port is less than half populated, but I picked it up on a decent deal and could use the 10Gb DAC connection between the SE as an uplink. Equally I could migrate all the downlink connections to the SE and change to a 24 Port PoE switch etc.

Network 10 I imagine will just bring refinements, not deeper configuration options.

Anyone else been through this migration? As I don't fancy a £425 miss purchase for a SE. Obviously I'd sell the NVR, CK and Sophos XG hardware so that'd help.

I'm using Network, Protect and Talk atm.
Wouldn't a Cloud Gateway Fiber be a better fit if you already have seperate APs?
 
Last edited:
Keep the NVR and buy the UGC-F to replace everything else?

Used CKG2 plus go for £100 without a hard disk, more if you include one so the upgrade wouldn’t be so expensive.
 
Dated, what's dated about it? Though if I had to make the choice right now the UCG Fiber looks really good.
Its 3 and a half year old hardware and the offerings for the money don't represent great value. Its almost twice as expensive as the UCG Fiber which has better specs across the board.

The UDM line is clearly due a refresh and I personally wouldn't buy it now if I wanted to keep it in service longer term.
 
Its 3 and a half year old hardware and the offerings for the money don't represent great value. Its almost twice as expensive as the UCG Fiber which has better specs across the board.

The UDM line is clearly due a refresh and I personally wouldn't buy it now if I wanted to keep it in service longer term.
I think I'd find it hard to look past the Fiber now though.
 
If the UDM got a refresh and had 2 SFP+ (ideally 4), 2 10GbE and 8 2.5GbE and a sensible architecture that meant each interface could access the CPU without having to worry about what you plug in where, I'd be interested. The Cloud Gateway Fibre gets very close but it's not quite there.
 
Keep the NVR and buy the UGC-F to replace everything else?

Used CKG2 plus go for £100 without a hard disk, more if you include one so the upgrade wouldn’t be so expensive.

Blimey, they're holding a decent value! Mine did have a 19TB SSD in it until I moved things to the NVR, now just got a 128GB SSD smallest that I had knocking around
 
Last edited:
Back
Top Bottom