Ubiquiti UniFi OpenVPN Server Setup

แชร์
ฝัง
  • เผยแพร่เมื่อ 21 พ.ย. 2024
  • Setting up an OpenVPN client server on UniFi is SUPER easy. Also -- this won't work with CGNAT so those with Starlink or wireless carriers will need to fine an alternative -- and we have one so reach out! This UDM Pro is running UniFi OS 3.0.20 and UniFi 7.4 EA.
    Want to join us in learning how to deploy network services like this? Put your name on the training list now: williehowe.com...
    Hire us! williehowe.com
    Amazon Afflilate Links for Ubiquiti Gear:
    UDM Pro Link: amzn.to/3LKaqBR
    Standard UDM Link: amzn.to/3AKChvr
    Affiliate Links (I earn a small percentage of the sale if you use these links):
    My AmazonLink: www.amazon.com...
    Netool: netool.io use code WHT to save at least 10%!
    Digital Ocean Affiliate Link: m.do.co/c/39aa...
    Patreon Link: / williehowe
    Contact us for network consulting and best practices deployment today! We support all Grandstream, Synology, DrayTek, Obihai, Poly, Ubiquiti, MikroTik, Extreme, Palo Alto, and more!
    Come back for the next video!
    Twitter - @WillieHowe
    TikTok - @whowe82
    SUBSCRIBE! THUMBS-UP! Comment and Share!

ความคิดเห็น • 57

  • @probitytec
    @probitytec ปีที่แล้ว +16

    Yes, would love a video showing how to connect the dots between AD/SD/UniFi!

    • @JeremiahHenry
      @JeremiahHenry ปีที่แล้ว +3

      Seconded.

    • @DeNNiiiable
      @DeNNiiiable ปีที่แล้ว +1

      Same here. I think you have an old one but maybe make a new one

    • @pineid
      @pineid 8 หลายเดือนก่อน

      Also with Google LDAP would be great

  • @damassyria6648
    @damassyria6648 ปีที่แล้ว +4

    Thanks for the video, but definitely u have to open port 1194 on your gateway to allow the connections from outside your pvt network which is the hard step because most ISPs blocks most ports

  • @jonesdh63
    @jonesdh63 ปีที่แล้ว +3

    Love to have a video of authentication with Synology

  • @psycl0ptic
    @psycl0ptic 2 หลายเดือนก่อน

    would be great to see a video setting connection to AD for openVPN user auth!

  • @tonyharrell1053
    @tonyharrell1053 2 หลายเดือนก่อน

    I would like to see a video on creating the Radius server for AD authentication and linking it to the Dream Machine Pro. I have users that are having issues with Wifiman blocking the internet on their remote workstations. It having sporadic issues...they are aware of the issue. I just need a rock solid way to get user able to VPN in....Thanks

  • @ThePoorInvestor
    @ThePoorInvestor ปีที่แล้ว

    Hi Willie, I'd like to see a video on how to setup RADIUS with AD and UDR/UDM.

  • @tonyharrell1053
    @tonyharrell1053 2 หลายเดือนก่อน

    I would love a video shoeing how to connect with radius and AD server

  • @PileofKyle
    @PileofKyle ปีที่แล้ว +5

    Great video! How do you add the dynamic dns for this to work?

    • @fjl05
      @fjl05 6 หลายเดือนก่อน

      its at 2:58

  • @fjl05
    @fjl05 6 หลายเดือนก่อน

    thanks, you showed me how to set this up for Dynamic DNS. Was ripping my hair out trying to figure that out 👍

  • @chrisrudy1
    @chrisrudy1 4 หลายเดือนก่อน

    Thanks for the video! What about if I wanted to assign static IPs to my devices on the VPN, so that they retain the same IP when they connect up again? Is that functionality not possible with this setup or am I missing something?

  • @JohnSaldana
    @JohnSaldana ปีที่แล้ว

    Great video, what the alternative when using CGNAT?

  • @donaldhoudek2889
    @donaldhoudek2889 ปีที่แล้ว +1

    Hi Willie, GREAT video! Just wondering why you went with the OpenVPN opposed to the faster more current Wireguard product?

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว +3

      That video is coming soon!

  • @psycl0ptic
    @psycl0ptic 2 หลายเดือนก่อน

    how do you mange the certificates for openVPN server? and for users, or can you do user certs?

  • @jamesford5986
    @jamesford5986 ปีที่แล้ว

    I would like to see setting up a WireGuard VPN.

  • @unforgivenk07
    @unforgivenk07 ปีที่แล้ว +2

    hello, thank you for your guide but, on my UDM SE I don't have openvpn server, only wireguard or L2TP, there's a guide for manually installation or another firmware?
    Thank you

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว +2

      You can install the ea or RC UniFi Network Application.

    • @MikeyD2487
      @MikeyD2487 ปีที่แล้ว +1

      Same here. My UDM Pro on 3.0.20 doesn’t show OpenVPN. Only L2TP and wireguard options.

    • @lordviator
      @lordviator ปีที่แล้ว +2

      Seems the Official release channel is on OS v3.0.20, Network v7.3.83. This video is based on Network v7.4.145 which I'm guessing is either in the early access or release candidate channel. Sooo, this update will be coming soon. (or change your release channel if you don't mind the increased risk of bugs)

  • @BobCoret
    @BobCoret ปีที่แล้ว +2

    My UDM Pro is running UnifyOS 3.0.20 but on the VPN Server page there's only a WireGuard and L2TP option, there's no OpenVPN to select???

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว +1

      Update Network Application to the RC or EA version.

  • @__SKYNET__
    @__SKYNET__ 4 หลายเดือนก่อน

    Does this only allow your router to be accessed or could i access any server on my LOCAL LAN remotely through the web browser. Thanks. I normally mange my router using the ubiquiiti login; what will this allow me to do that I cannot do using the normal login to the router. Thanks

  • @12gauge5056083
    @12gauge5056083 ปีที่แล้ว

    Hello. I have the USG-3P and i am UniFi Network Application 7.4.162 My VPN section does not look like yours and the option for open VPN or wire guard are not there. Is it cause my hardware is a bit older and wont be receiving these features ?

  • @blindside995
    @blindside995 ปีที่แล้ว

    Nice video, Willie!

  • @richardlai3124
    @richardlai3124 8 หลายเดือนก่อน

    Can you have a video for the OpenVPN with MFA says DUO?

    • @johnthoithi5052
      @johnthoithi5052 7 หลายเดือนก่อน

      available with FreeRadius In Pfsense Firewall, UDM Pro I Am Not Sure

  • @johnmoricone294
    @johnmoricone294 9 หลายเดือนก่อน

    Hi, Willie, I have a USG Pro4 (public facing) and was using L2TP to VPN into my network without an issues until Dec-2023 when my access stopped. I have been working with UBNT Tech Support and they determined ports 500, 4500 & 1701 are being blocked by the ISP. ISP insists they do not block ports and that I would have to port forward. Long story short I have given up and was going to switch over to OpenVPN. I to have "Teleport & VPN" in my settings, I only have "VPN". However when I click into VPN my options are VPN Server & Site-to-Site VPN. Withing the Site-to-Site VPN, when I click on "new" I have "Manual IPsec" and "OpenVPN" under the VPN Protocol. I cannot seem to find instructions on how to setup OpenVPN and according to UBNT Tech Support, OpenVPN is not offered on the USG Pro4 and need to switch / upgrade to Next-Gen UniFi Gateway or UniFi Cloud Gateway. Is this accurate and if not, do you have instruction on how to set up OpenVPN? Thank you.

    • @WillieHowe
      @WillieHowe  9 หลายเดือนก่อน

      They are correct. If you want the newer options you can get a UXG Lite.

  • @smartermoney
    @smartermoney ปีที่แล้ว

    I love your content but you should say more clearly that this feature is not in official release channel but you have to get the EA of network 7.4.154 for this to work. I didn’t think you can review features in EA

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว

      I'll edit notes -- honest mistake.

  • @jondavis1834
    @jondavis1834 ปีที่แล้ว

    Then what? Not sure what I want this for our what to do with it. Can you provide some use cases?

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว +1

      To access your network remotely.

  • @maxymusart
    @maxymusart 10 หลายเดือนก่อน

    How to setup OpenVPN server on EdgeRouter X

  • @duei7789
    @duei7789 ปีที่แล้ว

    excuse me~ How can I change OpenVpn protocol from TCP to UDP

  • @hondaguy6666
    @hondaguy6666 ปีที่แล้ว

    Hey Will. Thanks for the video. So let's say I have 3 users who work from home. Would I have to add in each user so that way each user has his/her own profile in OpenVPN in the UDM? And if so I assume the config files for all 3 users would be different? And if one user was to leave the company then just delete that user from the OpenVPN on the UDM? Thanks.

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว +1

      Great question. I would give each user their own account so they aren't sharing.

    • @hondaguy6666
      @hondaguy6666 ปีที่แล้ว

      @@WillieHowe awesome, thanks man

  • @Andre-xu3pq
    @Andre-xu3pq 9 หลายเดือนก่อน

    is there a way that i can change the port on openVPN config in de unifi ?? So i can use port 8080 or lets say below 1024 like 443 ?
    at this moment 8080 is in use by Unifi en below 1024 its no option because its not posible tot config.

  • @DouglasVanHouweling
    @DouglasVanHouweling 10 หลายเดือนก่อน

    If I want to use a Dynamic DNS, do I put it in the IP Address entry for server address in the VPN setup as well in the config file?

    • @WillieHowe
      @WillieHowe  10 หลายเดือนก่อน

      Just in the config file.

  • @branislavgajdos8966
    @branislavgajdos8966 ปีที่แล้ว

    can i have openvpn and l2tp vpn at a same time?

  • @darrelriley
    @darrelriley ปีที่แล้ว

    seems easy but didn't work for me. i keep getting "wrong credentials. Try again".
    i'm using the user authentication credentials from setup.

  • @kristopherleslie8343
    @kristopherleslie8343 ปีที่แล้ว

    We want the video

  • @khanx071
    @khanx071 ปีที่แล้ว

    In my UDM pro I don't see OpenVPN, only wireguard

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว

      What version of network application are you on?

    • @khanx071
      @khanx071 ปีที่แล้ว

      @@WillieHowe 7.3.83

  • @mtc-tech
    @mtc-tech ปีที่แล้ว

    Can you do this on USG?

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว

      Not sure -- but that's a great question.

  • @javierchacon9155
    @javierchacon9155 ปีที่แล้ว

    Grandstream IP phone ask for separate archives.🤔🤔🤔

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว

      Sure and you could create them with everything in that file.

  • @javierchacon9155
    @javierchacon9155 ปีที่แล้ว

    We use OpenVPN in the IP telephony server, VitalPBX, it is undoubtedly perfect, since we can indicate that remote users do not use the VPN tunnel to surf the Internet, only for connection. Curiously, in Cisco Meraki, if they use the L2TP option, you cannot restrict connected users from using the remote internet, therefore the internet of the central site is affected in a very negative way.🤦🤦🤦
    Cisco Meraki ecosystem, the ugly copy of Ubiquiti Cloud Controller.🤷

  • @bruceomca
    @bruceomca ปีที่แล้ว

    I don't see openvpn server on UDM pro SE(Unifi OS 3.0.18)

    • @WillieHowe
      @WillieHowe  ปีที่แล้ว

      Update UniFi network Application to RC or EA version