Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

191–200 of 486 posts

Re: Ubiquiti Networks Breach

#191
post #185

Earlier quoted context omitted.

I'm in the process of replacing my home Ubiquiti infrastructure. Here's what I've decided on: Replace the US-24-250W PoE switch with an Aruba Networks S2500-24P (gigabit and PoE, 4x 10gig ports, quiet). Replace the Cloud Key Gen 2 with BlueIris for camera controller. I expect this will be able to connect to the existing Ubiquiti cameras. Possibly add one or more Ruckus R610 APs running in "Unleashed" mode to augment…

I hear these are great little boxes for running PFSence and OPNSense https://protectli.com/

I have two, and yes, they are freaking amazing. I run CentOS on mine.

I don't usually run any services since I prefer to dedicate boxes to things, but I have in the past run a number of services, including minecraft and minetest on it and it flies. Really pleased with it.

Re: Ubiquiti Networks Breach

#192

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

Can I ask what networking gear you run at home these days?

Re: Ubiquiti Networks Breach

#193

Ubiquiti is in a weird market, where they are better than Linksys/Netgear etc, but they are crap compared to something like Meraki. Their support isn't very good (they point you to a forum), their hardware replacement is spotty (sorry, out of stock, you'll have to wait!), and their hardware/software is buggy. We had 48 port switches that would randomly reboot, for example. They can be a decent solution for SMB wifi,…

Are there any 48 port switches you would recommend? I've concluded that they're overpriced compared to multiple 24 port switches for example but I'm hoping I'm wrong. Never heard of Meraki for example.

You can find used 48 port Aruba or HPE switches on eBay or other market places for low prices. It varies, but if you are patient you may find an s3500-48p with 2 PSUs and a 4 port 10G adapter for around $200USD.

Re: Ubiquiti Networks Breach

#194

Ubiquiti is in a weird market, where they are better than Linksys/Netgear etc, but they are crap compared to something like Meraki. Their support isn't very good (they point you to a forum), their hardware replacement is spotty (sorry, out of stock, you'll have to wait!), and their hardware/software is buggy. We had 48 port switches that would randomly reboot, for example. They can be a decent solution for SMB wifi,…

> Nothing mission-critical unless you are willing to make compromises you wouldn't have to with a bigger vendor.

That's the interesting question though. How much does that bigger vendor cost relative to UBNT? For example. I needed about 20 48-port gigabit switches for a new building. Aruba 2530s run about $2k each, so $40k total. The UBNT equivalent is under $400 each. I can buy 5 UBNT switches for the cost of 1 Aruba. Even assuming that I buy 50% extra switches as spares to UBNT, I'm still only spending $12k for UBNT, a savings of over 65%.

Re: Ubiquiti Networks Breach

#195

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

Any idea what it would cost to develop a completely open source router?

pfsense and opnsense are BSD based routers.

openwrt is based on Linux

Re: Ubiquiti Networks Breach

#196

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

Any idea what it would cost to develop a completely open source router?

I'm unsure if you're referring to open-source software or hardware, but for software pfSense [1] and OpenWrt [2] are both popular open-source routers.

[1] https://www.pfsense.org/ [2] https://openwrt.org/

Re: Ubiquiti Networks Breach

#197
post #143
post #105

Earlier quoted context omitted.

Just ordered a Chinese box with 8th gen U-series i5, 8 GB of RAM and 120 GB of SSD. Has six ethernet connections, HDMI and COM. Planning to install OpenWRT to it, and with AES-NI the system should be easily able to push the full 1 Gbps of traffic through Wireguard. I've had whatever routers before, but mostly when using some VPN to hide the traffic from your home network, and if having fast enough internet, a good CP…

I still put the important part of my network behind my own router similar to yours (and in terms of security I think ubuntu server + whatever you need has likely much smaller attack surface than OpenWRT which is a piece of software just too tasty not to be exploited). Outside that, wifi part is hard to get right and smart switches are nice to have, but they are PITA if the firmware is never updated and there's no sin…

Can you expand on the security of an Ubuntu server (acting as firewall, router and vpn), versus a dedicated router hardware and software (eg pfsense or OpenWRT)?

Re: Ubiquiti Networks Breach

#198
post #25

Argh, why do I learn about this from HN when they pretty much force me through the cloud login with UDM-Pro. Nothing in the dashboard. Also I think http://unifi/ is crap from a security standpoint. Their threat management also seems to be just some kind of a bad joke.They could for example do a nice hardware based honeypot that you have to untrigger with physical access. They could offer so much more for prosumers pr…

I'm in the process of replacing my home Ubiquiti infrastructure. Here's what I've decided on: Replace the US-24-250W PoE switch with an Aruba Networks S2500-24P (gigabit and PoE, 4x 10gig ports, quiet). Replace the Cloud Key Gen 2 with BlueIris for camera controller. I expect this will be able to connect to the existing Ubiquiti cameras. Possibly add one or more Ruckus R610 APs running in "Unleashed" mode to augment…

Blue Iris is a great piece of software and Ken the developer has constantly improved it. I think there's a way to get the RTSP stream from your existing cameras.

Re: Ubiquiti Networks Breach

#200

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

I bought a Unifi Dream Machine last year because it was an all-in-one device that seemed like the simplest way to have multiple VLANs on my home network, in order to segregate my IoT devices and security system from the rest of my home network. At the time, I didn't see any similar products.

Are there any other "prosumer"-type devices on the market that could replace a Dream Machine? If Unifi is going downhill it doesn't seem like I'll be going with them for a replacement.

Post reply on HN