Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
Yep the UDM-Pro is working well - firmware is 1.8.2-5, looks like 1.8.3 might be out soon. But its been stable for me so far.

I've used the AC-Lite and Nano-HD. The U6-Lite is supposed to replace the AC-Lite from what I understand, I assume there will be a 6 HD variant out at some point. Main difference would be how many clients you are expecting to be on the AP, Lites should be fine for most use cases IMO. The wifi6 variants are supposed to be out in a couple weeks.
Ubiquiti firmware updates:

My UDM-Pro (also for UDMB) is on beta 1.8.3-3, recommended.
There is another beta for AP & switches 5.43.10.12465, recommended.

Have a nice :apple: weekend to all.
 
Scored the UDM-Pro today 80 off. Just couldnt pass it up. You guys convinced me. I hope its as amazing as you walk about. ill try running it in parallel with my regular network. so that my work connection isnt affected until i get this u and running
 
  • Like
Reactions: PhoenixDown
Ok I dove into it a little. I won’t be able to switch my network over completely til I figure things out.
VLan IOT

I have:

august lock
2 AppleTVs
2 Homepods
Lutron caseta lighting
Lennox smart thermostat
Unifi Protect camera (TBD)
Plex
2 denon receivers.
Playstation 4/5

While some of these are IOT devices, EXCEPT plex which I prefer on my main VLan, how do I put these on a separate VLan but still allow interoperability between each other an my iPhone. I use the automation apps on my phone a lot. Not being able to use them would keep my from isolating my devices.

any help is greatly appreciated. When you don’t know you ask someone smarter then you so...
 
Last edited:
While some of these are IOT devices, EXCEPT plex which I prefer on my main VLan, how do I put these on a separate VLan but still allow interoperability between each other an my iPhone. I use the automation apps on my phone a lot. Not being able to use them would keep my from isolating my devices.

You can configure mDNS reflector on your Ubiquiti router - this will proxy Multicast advertisements across subsets, which Apple devices use for service discovery.

However, there is no real reason to segment your home network into multiple VLANs - what are you really trying to achieve by this? Place everything on a single home VLAN, and eveyrthing will work seamlessly.
 
  • Like
Reactions: EmmEff
Security. IOT devices if compromised don’t need access to my main network.
 
Security. IOT devices if compromised don’t need access to my main network.
Focus on securing each IOT (and non-IOT) device you use, to minimize the chances of then being compromised.

Just placing IOT devices on a separate VLAN does little to nothing to improve overall security, especially if you open up connectivity between “home” and IOT subnets.
 
  • Like
Reactions: EmmEff
Security. IOT devices if compromised don’t need access to my main network.

As soon as you route between the IoT VLAN and “main” VLAN, your security argument goes out the window. If you give the IoT VLAN access to the Internet only and don’t grant access to the “main” VLAN, your apps will still work using their cloud capability and not direct network access.

You may be able to do this already by giving your IoT devices access to your router’s guest network which usually doesn’t have local network access.

It’s a common home labbers belief that VLANs are essential to home networking...
 
I never said essential. I have been reading this is best practice as well as having a guest network. You don't know until you know.

Ctyrider can you elaborate on securing each device.

EmmEff - I agree once you start poking port holes into your VLAN it becomes completely insecure. I read that you could make rules that IOT devices can only communicate to devices on your main LAN that have initiated conversations, that the IOT devices cant initiate any conversation to a diffrent VLAN. would this still be pointless or is that acceptable?

I'm just looking for guidance. I'm looking to increase my knowledge of thing and have some fun in the process. Theories I get sometimes but sometimes I need exact examples.
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.