Ubiquiti Unifi Firewall Setup - Everything you NEED to KNOW

แชร์
ฝัง
  • เผยแพร่เมื่อ 10 ม.ค. 2025

ความคิดเห็น • 31

  • @johnsfilmsllc
    @johnsfilmsllc  3 ปีที่แล้ว +3

    Seriously, the b roll I used at 1:17 - what did the lady say?

  • @jsnleary
    @jsnleary ปีที่แล้ว +1

    Awesome tutorial, very well explained with good visuals

  • @wcmedic69
    @wcmedic69 3 ปีที่แล้ว +1

    have you any experience getting sonos to work on isolated ioT network and the UDMP?

  • @fabian3265
    @fabian3265 3 ปีที่แล้ว +1

    hi. thanks for the vid.
    i dont really understand when you would use Lan In or Lan Local.
    if i want to open the Local Ingress Ports stated by unify, how should i do that?

  • @austinreeves5221
    @austinreeves5221 3 ปีที่แล้ว +1

    Settting this system up in a clients house. Never done it before but I think the only hard part is going to be the firewall. How complicated is it for a pretty good protection standpooint.

    • @johnsfilmsllc
      @johnsfilmsllc  3 ปีที่แล้ว

      Easy for pretty good protection. Separate your devices into IOT and everything else. Turn on the intrusion detection and you are done.

  • @RichardSmith-ik5rp
    @RichardSmith-ik5rp 3 ปีที่แล้ว +2

    do you have any experience with UDMP and having sonos work on an ioT network?

    • @johnsfilmsllc
      @johnsfilmsllc  3 ปีที่แล้ว +1

      Actually I do run an old Sonos system on my network but have it on the primary non-IOT wifi….(it’s the original Play 5’s (4 of them))

    • @wcmedic69
      @wcmedic69 3 ปีที่แล้ว

      @@johnsfilmsllc I have all first gen stuff too and while all my firewall rules work for everything else, seems sonos is a pain

  • @redheelerdog
    @redheelerdog ปีที่แล้ว +1

    Hi John, thanks for the informative video, it helped me a bunch with my new Unifi system. I have a question regarding VLANs: Do you group ALL your WiFi devices into your Wifiland VLAN? or are there exceptions?... Do you have two or more WiFi VLAN networks? or just one? Thanks

    • @johnsfilmsllc
      @johnsfilmsllc  ปีที่แล้ว

      I have a separate Wi-Fi network hosted off the same AP’s called “InsecureThings” that has it’s own vlan

    • @johnsfilmsllc
      @johnsfilmsllc  ปีที่แล้ว

      The thought is my sprinkler system getting hacked doesn’t have to mean my laptops and then server need to enjoy a firm probing :)

  • @ithelpdesk835
    @ithelpdesk835 2 ปีที่แล้ว +1

    Any thoughts on the best practice for blacklisting certain websites via a USG Pro?

  • @wwolfram33
    @wwolfram33 2 ปีที่แล้ว +1

    Why did you create a separate entertainment VLAN and what specific rules were applied to it?

    • @johnsfilmsllc
      @johnsfilmsllc  2 ปีที่แล้ว +1

      Good question and I have since removed it but the logic is something like this. Lg’s implementation of webos doesn’t get patched much, uses much open source software and has a huge user install base. Good target for hackers. The Apple TV. Patches more but giant giant install base. High reward for hackers. I don’t want one of those devices to be a gateway to the rest of my network

    • @wwolfram33
      @wwolfram33 2 ปีที่แล้ว

      @@johnsfilmsllc Thanks for the video. Great work!

  • @mrbeats7434
    @mrbeats7434 2 ปีที่แล้ว +1

    Best video thanks

  • @kimochi2020
    @kimochi2020 3 ปีที่แล้ว +5

    Your WAN IP appears in 4:40

  • @siduschan383
    @siduschan383 3 ปีที่แล้ว +1

    Im using sonicwall because we are a school and we wan to block apps as facebook, instagram and etc. can i do that with a ubiquiti device?

    • @johnsfilmsllc
      @johnsfilmsllc  3 ปีที่แล้ว

      Right now you don’t have granularity of each individual site. You have “levels” that limit access to sites but none that are explicitly “block this one, not that one”. Instead you can leverage a squid server hosted off a VM on a workstation if you really wanted to go UniFi…but …not ideal…

  • @aplicacionydesarrolloent.i9029
    @aplicacionydesarrolloent.i9029 3 ปีที่แล้ว +1

    Hi! How can I block an specify web page in firewall settings

    • @johnsfilmsllc
      @johnsfilmsllc  3 ปีที่แล้ว

      You can find out the IP of the website and block it on your outbound firewall

  • @nicholasknapik1423
    @nicholasknapik1423 2 ปีที่แล้ว

    By chance do you have any guidance on the port forwarding bug that exists on Ubiquiti OS? I got my UDM pro yesterday and absolutely can not SSH into my server remotely. Port forwarding rule was made and the firewall rule is added and enabled. Driving me crazy.

    • @johnsfilmsllc
      @johnsfilmsllc  2 ปีที่แล้ว

      I haven’t had an issue however I believe there is a specific setting at the console maintenance page level (not in the network app) that enables the ssh access remotely)

    • @stmaximillian7880
      @stmaximillian7880 2 ปีที่แล้ว

      More than likely you are using a residential connection with carrier grade nat blocking your port you need to punch through with a VPN or forwarding

  • @TheBeardedMerchant
    @TheBeardedMerchant 8 หลายเดือนก่อน +1

    Hardly everything you need to know 😂

  • @chadbakervideos
    @chadbakervideos 3 ปีที่แล้ว +1

    Definitely looks like "F*ck ...", but after careful inspection, I'm going with "Fine, I'll do it"

    • @johnsfilmsllc
      @johnsfilmsllc  3 ปีที่แล้ว

      Exactly what I was thinking! Maybe???