Live data from Hacker News

UniFi Express

ui.com

211–220 of 296 posts

Re: UniFi Express

#211

Earlier quoted context omitted.

I don't disagree, but since buying the UDM-Pro years ago, I feel like the software has gotten great. And recently, they've baked in Wireguard replacing L2TP. Personally, I'd like to see more prosumer devices that support 2.5GbE/10GbE.

People always raise Wireguard as the end-all of VPN and yet its 2023 and there's virtually no way to deploy it in a business context. InTune doesn't even list it as a supported VPN, and everything I see to deploy it suggests some kind of hack to bypass UAC for one specific app because the end-user software requires Admin permissions to startup and hook. When we use L2TP with UDM Pro we get ~0.1Mbps across the wire fr…

> InTune doesn't even list it as a supported VPN, and everything I see to deploy it suggests some kind of hack to bypass UAC for one specific app because the end-user software requires Admin permissions to startup and hook.

L2TP performance issues aside, I don't see how it's UniFi's fault that Microsoft's ecosystem is poor. I don't have many positive things to say about InTune.

Re: UniFi Express

#212
The UniFi hardware is always tempting but the ecosystem is such a turn-off. I've never felt like my home network required vendor lock-in, cloud management and proprietary management software/firmware.

I was so displeased with having to run a proprietary server on my internal infrastructure (which depended on MongoDB of all things, which no distro seems to ship anymore) just to manage my UniFi AP-Lite that I flashed it with OpenWRT and never looked back.

I'll stick to my PCEngines box running OpenBSD + mikrotik managed switches + OpenWRT, thanks.

This setup is hardly much more complicated than the inherent complexity of any non-trivial home network and can be managed with SSH and a web browser.

Re: UniFi Express

#213

I am quite turned off after a short honeymoon with unifi. They push setup via their mobile apps to the point that connecting to a dreammachine and entering its ip adress just shows a download link to the app store. The app could not connect without any hint of reason so i just consider this bricket now. Even before there were many red flags such as login flows to a local device going via .com domains. Completely conf…

Companies aren’t satisfied with selling a great product for a profit, they have to keep growing. Their view is that not doing things like cloud services, adverts, selling personal data, etc is “leaving money on the table”

[deleted]

Re: UniFi Express

#214

Earlier quoted context omitted.

People always raise Wireguard as the end-all of VPN and yet its 2023 and there's virtually no way to deploy it in a business context. InTune doesn't even list it as a supported VPN, and everything I see to deploy it suggests some kind of hack to bypass UAC for one specific app because the end-user software requires Admin permissions to startup and hook. When we use L2TP with UDM Pro we get ~0.1Mbps across the wire fr…

Isn't it normal that changing the destination of all of a system's network traffic would require admin permissions? Why does that make you think it's a hack?

Most VPN software has an automatic start Windows service when the user initiates the connection, thus not requiring local admin.

Needing local admin would make WG a non-starter for many organizations.

Re: UniFi Express

#215
I'm not that familiar with the UI product lineup but recently found the Beryl AX

https://www.gl-inet.com/products/gl-mt3000/

which comes with a 2.5 Gbit ethernet port (the UniFI Express caps out at 1 Gbit ports) and OpenWRT based firmware which looks like a decent price/value/form factor combo at ~USD 90.

Anyone who has more experience with UI: is this a comparable product?

Edit: it sounds like the UI products have a fleet management concept and are designed to work together (Apple-esque sum is greater, plug and play …)

Re: UniFi Express

#216
post #124

Earlier quoted context omitted.

It's $149. I think you're expecting more from it than what your more advanced home setup needs. Mind you it talks a big talk for that price.

Having a few APs to cover a house is far from"advanced" setup. We live in times where lawn movers need wifi.

I guarantee you approximately everyone that does not work in tech has one AP, the one provided by their ISP. Unifi already has a range of prosumer products, this is them moving into the consumer space.

The limitation is totally product segmentation, since their prosumer equivalent all in one (the UDR) costs double, but that's fine, I feel. It's not like they're raising the price of the existing offerings because this budget model exists.

Re: UniFi Express

#217
post #185

It looks really cool, but personally I'm starting to give up on wifi. The spectrum in my neighborhood is so over utilized that at certain points during the evening I get random dropout in my wifi coverage. Every single thing that can be wired will be wired. The UniFi Express seems to be geared towards mesh networking, I still don't trust that to be reliable.

For devices that can't be wired you could try WiFi 6E which supports 6 GHz.

The device that struggle the most in my home is those that can't even do 5GHz, so upgrading the APs to WiFi 6 won't do me any good.

Re: UniFi Express

#218
post #74

Earlier quoted context omitted.

Do you think Ubiquiti APs are still good, I have not used them since 2018?

I regret my time spent on Ubiquiti devices at home use, in the past five years my view has changed from very positive to entirely negative. They are getting worse instead of better, I am seriously considering getting rid of all Ubiquiti devices from my home, Ubiquiti software updates lack testing and break things often, I simply don’t have time to baby sit them anymore. Their iOS app has become harder to navigate wit…

This sounds somewhat similar to a problem I had with the same generation of equipment, but in an install with about half a dozen APs.

After I completely wiped the site configuration and migrated to the "new way" of doing it (I wish I had taken notes, I don't play with it often) and ensuring each AP got a fresh configuration, things stopped being "Weird".

I especially had issues with various IoT style sensors (e.g. ESP32) falling off, my largest annoyance was water leak sensors.

I wish I had some more technical notes to hand you, but it was definitely worth the evening of my time to basically "turn it off and back on again" from scratch.

Re: UniFi Express

#219

This product that has a huge caveat that limits it to many people's applications: > UniFi Express supports up to 5 connected UniFi Network devices, including other UniFi Express units, switches, and WiFi access points. Even my home has one AP per floor (3x) and 3x Unifi switches. This is clearly an artificial limitation for market segmentation reasons. I'm not going to rip out Unifi switches to go unmanaged, just for…

I don't understand this. The first use case screenshot shows 8 devices connected. What does that small print mean?

https://ui.com/microsite/static/media/use-case-2.fd99bcc2.jp...

Re: UniFi Express

#220
post #61

Earlier quoted context omitted.

Same here, I love the UDM Pro SE. Blocking application layer stuff like QUIC is just a couple clicks away. It has decent intrusion detection and response alongside other easy to configure firewall settings.

Why and how do you block application layer stuff like quic?

When UDM shows you QUIC eats up the majority of your bandwidth you may decide to click to add a rule to block it. You may see a large reduction in overall daily bandwidth as a result. If you watch YouTube you are using QUIC. Certain QUIC vulnerabilities are a 3 or 4 packet compromise.
Post reply on HN