Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

231–240 of 486 posts

Re: Ubiquiti Networks Breach

#231
post #101
post #91

Earlier quoted context omitted.

Do you know how ubiquiti's "edge" line compares to mikrotik?

I'm a Mikrotik user, not a Ubiquiti user, but looks like the closest match would be Mikrotik's CRS (Cloud Router Switch) line. My home network is a CRS317-1G-16S+RM at the core and three CRS305-1G-4S+IN (one in each room), all running SwitchOS/SwOS instead of the stock RouterOS (they dual-boot, your choice), and I am very happy with them.

The Mikrotik CRS will work as a "gateway" right? That is, run a DHCP server, connect to my cable modem, provide local DNS, etc? Thanks!

Re: Ubiquiti Networks Breach

#232

Earlier quoted context omitted.

Cloudless if and only if you run their gigantic bloated Java network management tool. I really like ubiquiti hardware but I got fed up with their software BS. Now I use either Mikrotik or TP-Link’s industrial offerings. Both are way easier to work with than ubiquiti and the hardware is usually in the same tier.

You can also just run a docker container for it [0]. This has the added benefit of separating your data from the runtime so you can move it around as if you had a physical cloud key. [0] https://hub.docker.com/r/linuxserver/unifi-controller

Yeah ... I find that the containerized UniFi controller tends to crash after a few days with various Java errors. I've tried several different unifi-controller containers, although I haven't tried this particular one so I'll give it a try.

Re: Ubiquiti Networks Breach

#233

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

Have suggestions for an alternative? Most web UIs are garbage but the Ubiquiti one looks fine, even if it is cloud based.

Its not the most pretty thing, but has a lot of features I wanted in Unifi; Ruckus has a version of firmware you can load on their APs called Unleashed. It turns one of the APs into the controller, then you can manage all of them from there.

Re: Ubiquiti Networks Breach

#234

Earlier quoted context omitted.

I've never used those ones but I can recommend these ones (originally from the US, moved to Switzerland): https://pcengines.ch

Second these guys; really easy to set up (though I did have a nightmare getting a reliable USB-R232 converter for the initial bootstrap).

Not sure if you found a good one, this one has never failed me: http://amzn.com/B00425S1H8

With a male/male extension: http://amzn.com/B00QM8ZP5E

Re: Ubiquiti Networks Breach

#235
post #185

Earlier quoted context omitted.

I hear these are great little boxes for running PFSence and OPNSense https://protectli.com/

I have two, and yes, they are freaking amazing. I run CentOS on mine. I don't usually run any services since I prefer to dedicate boxes to things, but I have in the past run a number of services, including minecraft and minetest on it and it flies. Really pleased with it.

What will you do now that CentOS support is going away?

Re: Ubiquiti Networks Breach

#236
post #231
post #101

Earlier quoted context omitted.

I'm a Mikrotik user, not a Ubiquiti user, but looks like the closest match would be Mikrotik's CRS (Cloud Router Switch) line. My home network is a CRS317-1G-16S+RM at the core and three CRS305-1G-4S+IN (one in each room), all running SwitchOS/SwOS instead of the stock RouterOS (they dual-boot, your choice), and I am very happy with them.

The Mikrotik CRS will work as a "gateway" right? That is, run a DHCP server, connect to my cable modem, provide local DNS, etc? Thanks!

If you can run RouterOS (you can) you can do all that stuff - switchOS is much more like a bare-bones packet switcher; RouterOS is a full-fledged network OS.

Check https://mikrotik.com/software for some demos and stuff.

Re: Ubiquiti Networks Breach

#237
post #135

Earlier quoted context omitted.

I’ve become a big fan of MikroTik routers and 10G/SFP+ router/switch hardware in the last few years. Their web UI and SSH console are a bit quirky but the performance is pretty great for the price. My primary use case for their gear at home was to have a router that can handle a LACP WAN bond for my fancy cable modem as well as connecting to a 10G Ethernet switch via copper or direct-attached SFP+ to a CRS-305 10G sw…

Does it support Wireguard? Also RouterOS does not seem open source.

I use a Microtik hAP AC (Small little SOHO style router with an sfp and PoE). You can easily flash it with OpenWRT and use wireguard on that. All open source too.

It's great hardware but I'm no personal fan of RouterOS.

Re: Ubiquiti Networks Breach

#238
post #209

Earlier quoted context omitted.

My primary use case for a home router is solid set and forget qos. fq_codel and cake were recently added to routeros v7 beta, which means I will be plugging in my hEX again after a few years of happy edgerouter x usage. Also interested in what access points (besides unifi) people pair with mikrotik routers. Any wifi 6 recommendations?

The standalone Ubiquiti access points are still great IMHO. It's just their recent prosumer gateway/router product line that's really struggling. I've had a great experience with the older UAP-HD-PRO. Their newish $100 Wifi 6 U6-Lite AP is tempting but haven't tried it. If you just need one AP you can set it up in standalone mode and forget about it. If you want more monitoring and control you'll need to have a Ubiqu…

Their Edgerouter VyOS products are awesome too. I won't touch their Unifi stuff but I can't find anything that's even in the same price ballpark as the EdgeRouter 4.

Re: Ubiquiti Networks Breach

#239
post #149

Earlier quoted context omitted.

I was confused by the parent comment too. Aside from the remote management features, if you turn off cloud login you still get everything else. Maybe it's something specific to the USG Pro? I've only used the smaller USG.

I recently invested in UniFi hardware with the UDM Pro and this isn't exactly correct. UniFi Protect (the video security line) requires remote access and Ubiquiti Cloud accounts or it will break in a million weird ways. If you disable cloud login you cannot reasonably use UniFi Protect.

Good catch. Since USG is Unifi Security Gateway, I kinda just mixed it up with Unifi Protect. Still a troubling development IMO.

Re: Ubiquiti Networks Breach

#240
post #185

Earlier quoted context omitted.

I hear these are great little boxes for running PFSence and OPNSense https://protectli.com/

There's also Netgate hardware, which has the added benefit of supporting development of pfSense. I have the SG-3100 and have been very happy with it. https://www.netgate.com/

we're happy you're happy!
Post reply on HN