8 ms·
I have a good deal of experience with Mikrotik's offerings, and I am not looking to power networks I support with a patchwork of different systems that each hav
by posguy 6y ago
I have a good deal of experience with Mikrotik's offerings, and I am not looking to power networks I support with a patchwork of different systems that each have their own interface.
Most of the value proposition of the Unifi lineup is I can look at a single website that I host and see the WiFi clients connected to an access point, what switch feeds that access point internet (and whether its linked at gigabit or 100Mbps), uptime on all devices involved in the stack, whether the client has poor WiFi quality, trouble DHCPing, etc.
The single pane of glass to view everything when I am many miles from the networks I support is essential. Compared to when these sites were on PFSense before migrating, these networks have improved uptime, rapid remediation of issues, and changing VLANs, SSIDs and labeling each client on the network is a snap.
Edit: Borrowed /u/bpye's single pane of glass term
- torwayburger 6y ago> Most of the value proposition of the Unifi lineup is I can look at a single website ... > The single pane of glass to view everything when I am many miles from the networks I support is essential It's also why we're talking about this.
- deleted 6y ago[deleted]
- apple4ever 6y agoOnly because they made it cloud based. If they never forced people to create a cloud account - and instead allowed people to choose - this would be wildly different.
- mnemnc 6y agoDid I miss something here? I run a Unifi network with a local account and don‘t recall being forced to create a cloud account.
- JamesSwift 6y agoThe UDM, UDM Pro, and I think _all_ newer controller software require cloud login at some point in the process.
- Godel_unicode 6y agoIt's definitely not all the new controllers, although with the UDM line you might be right. I think there's a huge intersection between people who would buy those specific devices and people who are perfectly happy to have remote access to their control plane in the cloud.
- posguy 6y agoThe UDM and UDM-Pro force you to set up a UI.com account, and cannot be used with external Unifi controllers like one you might run on a server, PC or cloud key (Ubiquiti's management software on a Power over Ethernet powered dongle, does not require a UI.com account).
- jaywalk 6y agoThe UDM and UDM Pro are the controller, and you can disable all of the cloud nonsense after initial setup.
- JamesSwift 6y agoYou can disable on the UDM but I don't believe the UDM pro allows you to. Thats just what I've heard though, so might not be accurate.
- jaywalk 6y agoThe UDM Pro does allow it. I've got one, and all of the cloud stuff is disabled.
- mnemnc 6y ago
- deleted 6y ago[deleted]
- kweinber 6y agoIt seems the hackers currently in your network must value those same features. Very convenient.
- posguy 6y agoI don't use a UI.com account to connect to the Unifi controller I host (as I don't need their inconsistently working NAT traversal to get to my controller), hopefully the networks I support are safe due to not being entangled with Ubiquiti's cloud infrastructure. Anyone who is forced to get a UI.com account (eg: UniFi Dream Machine and UDM-Pro owners) should change their credentials and do a factory reset on their routers and Access Points ASAP.
- lostlogin 6y ago> do a factory reset on their routers and Access Points ASAP This is a miserable user experience. If you do a reset and don’t know the SSH password on APs or cameras you get to spend a hellish few hours crawling though ceiling insulation, climbing ladders and physically resetting devices. It’s so shit. I’ve just done it, but not due to security concerns, but instead because of a UDM-P crapping out randomly.
- posguy 6y agoThis is why I like having the controller in a virtual machine offsite. Factory resetting the router and pairing it to the same site in the separate controller gets me back to the same exact place I expect to be. With the UDM series, the integrated controller ensures you lose everything if you have to factory reset, site to site VPNs have to be manually configured, and numerous other minor annoyances crop up (like UI.com not always being able to connect to the controller).
- EricE 6y ago>If you do a reset and don’t know the SSH password on APs or cameras Who's fault is that if you don't have it? First thing I do when I set a new site up is record all the vital information like that for when I will inevitably need to recover stuff. It should be standard backup/disaster recovery practices - for ANY system. Making sure you have critical information BEFORE you really need it is preparedness 101.
- beezischillin 6y agoMikrotik itself had security problems before. Tom Lawrence covered a lot of this on YouTube. I can recommend his channel on the topic.