Was fantastic to get to work on this video with you all! Super happy with the EFG and very happy to continue to grow our usecases for it. The future is looking very bright!
I’m running a UDM Pro at home and use it as a router and a surveillance NVR. I want guests to be able to enjoy super fast WiFi, have great online multiplayer gaming performance, and have a seamless WFH experience. No more unplugging and plugging the AT&T gateway. I just use the unifi app or the portal to access the UDM pro to reset my U7 pro by cycling the POE port remotely.
Regarding the local transfer speeds you could easily use the L3 features on the aggregation pro and let it do the transfers between the hyperdecks and truenas. This is what we are doing and works great for this purpose. Amazing video as always guys!
@@keyboard_g Isaac here - was shooting this video with the team. We mainly did this to showcase a difference in performance - we wouldn’t be crossing VLans to do records like this. Since we didn’t have immediate access to a much faster connection and didn’t have a lot of devices we wanted to showcase the performance uplift overall. Hopefully we will be able to get a *much* faster connection soon! We should have made that more clear, sorry about that!
I was about to make the exact same comment...wondering why your VLAN traversal is going through the router and not an L3 switch....or if you don't have an L3 switch, keep it on the same vlan
Excellent device/Video! Just two snall downsizes for bigger/enteprise/gov deployments: - They need to remove Bluetooth from their gateways. This won't be allowed in a lot of places. - The Site-To-Site VPN can barely push 1Gbps, it's limited by the lack of encryption in the ARM processor.
Might consider replacing our current tz670. Although still not 100% sold on the security aspect. I would love to see a deep dive video in the security features and testing of it 🙏
We run a mostly full UniFi stack at work across all sites (Wi-Fi, Switching, CCTV, Access Control, Telephony, Digital Signage) - however, we use FortiGate for firewalls. I am looking into the EFG and UXG-Pro, however I do find their firewall offerings are lacking in many features that the FortiGate has - albeit we don't use many of the features, we do use some, which I am not willing to give up. I believe they also need to rework the way UniFi does firewall rules and objects / addresses - I find it much more confusing than a FortiGate or even a Watchguard.
Looks like a good product for smallish datacentre. I have 70 sites clinging together by site to site VPN, each with an edgerouter, and Opnsense in the datacentre. I would love to implement an ERG and sd wan at all of these sites, so I'm waiting for the limit on SD wan to lift from 15 to at least 70, then I will think about replacing all those edgerouters.
This might have tilted the scales to start running Unifi as an Actual Next-Generation Firewall. They have always had quotes around "Next Generation Firewall," but with the added feature of decrypting network traffic, they have finally moved to what I would call a Next-Generation Firewall without quotes.
Do you think they will win over some segments that Cisco currently has, with their new enterprise line and their current mentality, that you own the hardware?
Does the new EFG go into boot loop like the UDM pro on a restart or power loss, Requiring power removal for several hours before it will boot again if it ever does? From what I've read Ubiquiti has never addressed this issue.
UDMPro was not suitable, UXG should have been there. Leave all the other fluff on a different controller. Switching, switches only using a single uplink, no LAG, hard to see what was doing the core switching.
Was fantastic to get to work on this video with you all! Super happy with the EFG and very happy to continue to grow our usecases for it. The future is looking very bright!
Perfect gateway for watching RUclips on my 2x10gbps WAN network.
We’re running UXG routers and cloudkey enterprise. 5 nested networks behind an ER 8 XG router. Biz, Dante, NDI, UniFi video and media SAN.
I’m running a UDM Pro at home and use it as a router and a surveillance NVR. I want guests to be able to enjoy super fast WiFi, have great online multiplayer gaming performance, and have a seamless WFH experience. No more unplugging and plugging the AT&T gateway. I just use the unifi app or the portal to access the UDM pro to reset my U7 pro by cycling the POE port remotely.
Regarding the local transfer speeds you could easily use the L3 features on the aggregation pro and let it do the transfers between the hyperdecks and truenas. This is what we are doing and works great for this purpose. Amazing video as always guys!
Yep. They shouldn't be bouncing off the gateway for rack to rack transfer.
@@keyboard_g Isaac here - was shooting this video with the team. We mainly did this to showcase a difference in performance - we wouldn’t be crossing VLans to do records like this. Since we didn’t have immediate access to a much faster connection and didn’t have a lot of devices we wanted to showcase the performance uplift overall. Hopefully we will be able to get a *much* faster connection soon! We should have made that more clear, sorry about that!
Correct: Unless you want to simulate an Internet load, or do a large transfer over SD-WAN, which this client is considering.
Yes, I was the same but I have more blunt response, the the network was badly designed.
I was about to make the exact same comment...wondering why your VLAN traversal is going through the router and not an L3 switch....or if you don't have an L3 switch, keep it on the same vlan
Great video guys! Love the real world use case! Hard to test this unit in a lab, needs real world production!
Great video guys! For everyone in the comments, you can hire Unified IT and they rock! Couldn't be happier with the projects they have help us with! 😀
The EFG looks like a great piece of hardware. Thanks for the Great video guys!!!
Good video as always buddies
Excellent device/Video! Just two snall downsizes for bigger/enteprise/gov deployments:
- They need to remove Bluetooth from their gateways. This won't be allowed in a lot of places.
- The Site-To-Site VPN can barely push 1Gbps, it's limited by the lack of encryption in the ARM processor.
I'll have to keep this in mind when we do our network refresh in about 5 years. I'm currently on FortiGate hardware.
I might but not needed just yet but if our internet speed improves absolutely
Might consider replacing our current tz670. Although still not 100% sold on the security aspect. I would love to see a deep dive video in the security features and testing of it 🙏
Great tour
We run a mostly full UniFi stack at work across all sites (Wi-Fi, Switching, CCTV, Access Control, Telephony, Digital Signage) - however, we use FortiGate for firewalls. I am looking into the EFG and UXG-Pro, however I do find their firewall offerings are lacking in many features that the FortiGate has - albeit we don't use many of the features, we do use some, which I am not willing to give up. I believe they also need to rework the way UniFi does firewall rules and objects / addresses - I find it much more confusing than a FortiGate or even a Watchguard.
I have just ordered 5 tz470 which will be returned and will deploy this instead
I always shut down the Console before unplugging the power to the UDM Pro.
Looks like a good product for smallish datacentre. I have 70 sites clinging together by site to site VPN, each with an edgerouter, and Opnsense in the datacentre. I would love to implement an ERG and sd wan at all of these sites, so I'm waiting for the limit on SD wan to lift from 15 to at least 70, then I will think about replacing all those edgerouters.
nice. Should have shut down properly the UDM pro before unplugging it like that ? Otherwise, pretty impressive
What are you using on the monitoring side? Looks like a zabbix…
Will this one do Nat 1:1?? The one thing i wish the UDM would do like Meraki's
This might have tilted the scales to start running Unifi as an Actual Next-Generation Firewall. They have always had quotes around "Next Generation Firewall," but with the added feature of decrypting network traffic, they have finally moved to what I would call a Next-Generation Firewall without quotes.
NextAI will be a massive technological breakthrough for cybersecurity.
Do you have any experience rolling out their site magic VPN site to site ? Do you see any redundancy or unbreakable vpn options ???
I don’t know what you guys did but UDMPRO to EFG does not work , restoring from the cloud and says not compatible
Dropbox 🤣
Other than that, a fantastic video. This machine is a beast
Do you think they will win over some segments that Cisco currently has, with their new enterprise line and their current mentality, that you own the hardware?
Yes, although there are certainly some applications where Cisco still wins.
I think it will be a gradual climb into larger and larger environments.
Graceful shutdown guys to avoid data corruption. Pulling the plug is usually not a create idea. EFG is a game changes for sure. Thanks for sharing!
Your are correct, Matt is a savage tho, 😂
@@unified-it Indeed I am (plus we had a full backup already lol)
Does the new EFG go into boot loop like the UDM pro on a restart or power loss, Requiring power removal for several hours before it will boot again if it ever does? From what I've read Ubiquiti has never addressed this issue.
It used to be a common problem. With that said; we haven’t seen boot loop issues in a while and none on the EFG in our labs or production testing.
lol just unplugs the UDM before shutting it down first.
Ubiquity really should just sell the OS I already have powerful servers at my disposal I don't need a physical device.
Those racks are beautiful.
UDMPro was not suitable, UXG should have been there. Leave all the other fluff on a different controller. Switching, switches only using a single uplink, no LAG, hard to see what was doing the core switching.