pfsense and Unifi VLANs , Securing VLANS

Поделиться
HTML-код
  • Опубликовано: 16 сен 2024

Комментарии • 51

  • @d3mist0clesgee12
    @d3mist0clesgee12 2 года назад +3

    I just inherited PfSense at new job, your video's are so helpful, please keep them coming, thanks again.

  • @Tofflus
    @Tofflus 2 года назад +7

    Very good video! easy to understand and follow. please do more pfsense and unifi stuff

  • @nodd85
    @nodd85 2 года назад +3

    Awesome video, just subbed. I can't wait to see the pfsense firewall rules video. I have almost the same setup and I have the rules setup so that the Guest and IoT VLAN's can't access my main LAN, but I can't figure out how to stop the devices from my main LAN from accessing the Guest and IoT VLAN. When I make a rule blocking that traffic, I end up stopping all internet on those VLAN's. So I know I'm doing something wrong, I'm excited to see if you touch upon that in your new video. Keep up the great work.

  • @rick5056
    @rick5056 2 года назад +3

    Good video. Please make more firewall rules videos.

  • @BDBD16
    @BDBD16 2 года назад

    Ignores TP Link between pfsense and synology. Lays out IP/VLan Schema correctly....I knew I liked you from Tom's live streams. Glad I found your channel! Keep up the good work!

  • @Pabula
    @Pabula 2 года назад +1

    Really nice video, thanks for sharing. HOpe to see more like this, specially PFsense combined with unifi.

  • @aricmayberry
    @aricmayberry 2 года назад +1

    It's general best practice to create a management vlan and set that as the native vlan for APs. You could then also put the switch(s) on the management vlan under the device settings -> services -> management vlan.

  • @josepdomotica7261
    @josepdomotica7261 2 года назад +1

    pfsense + unifi = awesome
    Maybe next vídeo: captive portal (pfsense) using unifi APs and authentication by FreeRadius?
    Congrats, good job.

  • @try-that
    @try-that 2 года назад

    Nicely done, looking forward to the next video in the series.

  • @onlyzach1
    @onlyzach1 2 года назад +2

    Combining the 2 still looks scary to me, but these videos would be what I'd need to get going (hopefully). Can you do setting up a VPN and assigning certain devices (ie Apple TV 4K, SHIELD TV Pro, certain computers) to them? That'd be the main reason I'd do that setup. Great video as always!

    • @psytcp
      @psytcp Год назад

      It's scarier to only rely on unifi and have a false piece of mind.

  • @stlsaint1
    @stlsaint1 3 месяца назад

    Very much appreciated this vid.

  • @rfh1987
    @rfh1987 5 месяцев назад

    It's pretty incredible how much Unifi Network has changed since this video.

  • @backupaddict1356
    @backupaddict1356 2 года назад +1

    Nice vid... I like these more and more...

  • @adamcparsons
    @adamcparsons Год назад

    Awesome tutorial! Thanks for sharing.

  • @Pabula
    @Pabula 2 года назад

    I would like to see in a future video: how to setup PFSense Traffic Shaping (QoS), and if you could, a way to stablish how much MBPS can that router route with it.

  • @BabaDka
    @BabaDka 7 месяцев назад

    Thank you sir.

  • @popa8262
    @popa8262 2 года назад +2

    How do you access the Hik Camera with Unifi ? without a NVR

  • @dono42
    @dono42 2 года назад +2

    Why not move LAN to VLAN 10 and disable the IP subnet on the physical link?
    On a trunk link, it is much more common to not have an IP subnet on the physical link itself.

  • @jfkastner
    @jfkastner 2 года назад

    Well explained, thank you!

  • @oleksandrlytvyn532
    @oleksandrlytvyn532 5 месяцев назад

    Thanks

  • @thm655321
    @thm655321 2 года назад

    Also, in one of your upcoming unifi videos, could you show how you start unifi network on your pc? The only way I can get it to run is to run the installation program each time and then open it in Google Chrome. PITA. There has to be a better way. Thanks.

  • @xCitedGaming
    @xCitedGaming 2 года назад

    Great video as always!

  • @gentiboshnjaku9163
    @gentiboshnjaku9163 11 месяцев назад

    I would like to see how to configure pfsense when isp modem is on gateway mode!

  • @etiennemc2613
    @etiennemc2613 2 года назад

    Excellent video, continue with videos on pfsense and unifi network.
    Do you provide remote assistance for network configuration (pfsense and ubiquiti products), with teamviewer for example?

  • @kyopan23
    @kyopan23 Год назад

    Can you do a video like this but with multiple physical uplinks? To further segregate traffic per VLAN

  • @JACAS
    @JACAS 2 года назад

    Gracias por el video, podrías hacer lo mismo con omada? Saludos.
    Thanks for the video, could you do the same with omada? Greetings.

  • @DigitalDaco
    @DigitalDaco Год назад

    For this exact demo, can I use a Later 2 switch from the Unifi line or do I need a layer 3 switch?
    Edit: As long as we have the pfsense it can do the routing between Balans right?

  • @t-lm
    @t-lm Год назад

    is a USW (managed switch) mandatory to have between the pfsense and Unifi controller for multiple VLANs (multiple WIFI networks) ?

  • @thm655321
    @thm655321 2 года назад

    I run pfsense on my QNAP TVS-h1688X (W-1250 Xeon 12 core at 3.3GHz). Could you not run pfsense on your Synology and save having to buy say the 6100?

  • @kimlynch5526
    @kimlynch5526 2 года назад

    I love your RUclips channel and info! This video is perfect as I have a Pf Sense 6100 on order and the same 8 PoE Enterprise switch. I have a Qnap h12388x Nas that I want to media server videos. The upcoming firewall video sounds great. I have lots of questions but with home computers and NAS on one VLan and Tivos, Roku etc on another VLan, IoT on another Vlan etc. Is there a way to have my Nas stream to my VLan with Tivos Roku etc safely using firewall. This would be across the two different Vlans? Again love your channel and explanations spelled out.

  • @eduardhernandez6846
    @eduardhernandez6846 Год назад

    How would the blocking rule block the Guest network to my Lan?, I don't want them to be able to access.

  • @TechWithYouVee
    @TechWithYouVee Год назад

    can you use Fortigate as a gatewate with a VPN from the unifi console?

  • @dustyn1700
    @dustyn1700 2 года назад

    Have you found any issues with 3rd party DHCP providing to UNIFI equipment? As an example, if you were using a SonicWALL firewall to provide VLAN/DHCP information for your Unifi switch & access point, have you had any issues with getting a DHCP address on the guest VLAN? Perhaps it was patched at some point but I've noticed it on a few networks.

    • @MactelecomNetworks
      @MactelecomNetworks  2 года назад +1

      Hey,
      I haven’t had any issues although I don’t have a ton of clients who use a 3rd party DHCP server

  • @retocx
    @retocx 2 года назад

    Do you need to have an L3 switch to do this or could you do it with a Unify L2 switch?

  • @bruceyeh1720
    @bruceyeh1720 2 года назад

    This is very useful

  • @TonyBoston
    @TonyBoston 2 года назад

    So the Default network on Unifi can just be ignored? Since it was set to 192.168.1.0/24 but your devices have an IP in 10.10.10.0/24

  • @lawdawg1942
    @lawdawg1942 2 года назад

    So PFsense is opposite of unifi in firewall rules. Unifi everything works off the hop, PFsense you have to open it up. I have a Edge router and flex mini switch i want to mimik this setup with as USG's are never in stock. I think i can follow your edge router video for this setup.

  • @ldarbonnemagic
    @ldarbonnemagic 2 года назад

    You don't need to create the 192.168.10.1 (default LAN) network in Unifi?

  • @Jr2728
    @Jr2728 2 года назад

    Nice

  • @anwar.shamim
    @anwar.shamim 2 года назад

    love ur video

  • @littlekoreanboi
    @littlekoreanboi 2 года назад

    I cant get my unifi 8 port poe switch to be "adopted" nothing shows up for me. Dont know what im doing wrong. My pfsense is connected to a netgear s3300 poe switch and from there I connected my unifi 8 port switch but nothings happening. I see it connected on the pfsense dhcp lease but i cant adopt the switch or my aps to my unifi network

    • @thm655321
      @thm655321 2 года назад

      I had a similar issue I think. The unifi switch has a default ip of 192.168.1.20. Don't change that before adopting. If you did change it, put it back to 192.168.1.20 and try to adopt again. Then change it to whatever you want afterwards (both in your DHCP server and on the switch settings themselves).

  • @lkfng
    @lkfng Год назад

    Next time, do this in dark mode.

  • @chrislowe8085
    @chrislowe8085 2 года назад

    Is it only vlan only in unifi or should you do the other option?

    • @joedisalvo
      @joedisalvo 2 года назад +2

      Follow what Cody has in the video. When using a non-unifi router with a unifi switch, you are only establishing the VLANs in unifi to be used on the switch to isolate the layer 2 broadcast traffic (this is achieved by first creating the VLAN-only networks and then assigning the port profiles as appropriate to your switch ports). In this setup, the layer 3 IP networks are created on the pfsense router. There is no need to create a corresponding IP network in unifi for this configuration because the unifi device (the switch) will not be responsible for routing IP traffic. Sorry for the long comment, just wanted to provide a little extra detail. Anyone else please correct me if I got anything wrong.

    • @BDBD16
      @BDBD16 2 года назад

      @@joedisalvol He did create the VLans/networks in Unifi, you have to as of a recent update it is only the way to manage what Vlan's are allowed to traffic on separate SSIDs.