Live data from Hacker News

Ubiquiti Networks Breach

mailchi.mp

441–450 of 486 posts

Re: Ubiquiti Networks Breach

#441
post #237

Earlier quoted context omitted.

I use a Microtik hAP AC (Small little SOHO style router with an sfp and PoE). You can easily flash it with OpenWRT and use wireguard on that. All open source too. It's great hardware but I'm no personal fan of RouterOS.

Huh. What's the experience like? Eg are there any driver issues, or edge cases with unimplemented/missing bits of functionality?

It's brilliant, everything works fine. I've even used the USB port with a smartphone for 4G backup tethering (just need to add relevant usb packages, the openwrt wiki details all this). Plus there's the luci web interface which runs like a charm. No complaints whatsoever.

Re: Ubiquiti Networks Breach

#442
post #431

Earlier quoted context omitted.

Has UI gone downhill ? or is it just because of all the negative feedback ? Data leaks happen! It shouldn't but that's just how the world is. UI has been honest about it, and informed every customer as a precaution. (I assume they're still investigating). I can't be sure, but since UniFi Video went offline at the same time the breach was announced, a week earlier than it was scheduled to, that might have been the ent…

I built up my companies network infrastructure on unifi gear the past two years. I did so because we don't have budget for a professional network engineer, but we do have some important network requirements that I needed to be able to set up with minimal learning curve. For the most part this turned out great, there's a powerful UI that lets you configure all of the basics. And lets you inspect everything without hav…

In fairness, SSH in and edit a file is the "standard" here. I used to manage a bunch of Cisco devices, and I don't believe there was a GUI at all.

I would generally expect the UI to be for enthusiasts, with the more advanced functionality hidden in the CLI (kind of like Windows). WAN Failover probably isn't super popular among enthusiasts

Re: Ubiquiti Networks Breach

#443
post #232

Earlier quoted context omitted.

Yeah ... I find that the containerized UniFi controller tends to crash after a few days with various Java errors. I've tried several different unifi-controller containers, although I haven't tried this particular one so I'll give it a try.

That particular image has been problem free for me on unraid for I dunno feels like years now. They did do some update that I missed the notes on that wiped out my database and I had to re add everything. Wasn't too happy about that.

I have tried a couple of others before and have currently been using:

https://github.com/goofball222/unifi

But every couple of days, the logs start to fill up with random java exceptions, then it starts leaking memory and eventually brings the host to a grinding halt and crashes.

I've had no troubles when using the Cloud Key Gen2 Plus, but I like the idea of the controller NOT being located on site.

Re: Ubiquiti Networks Breach

#444
post #377

Earlier quoted context omitted.

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

> Living costs don't necessarily correlate with talent levels. As someone who lives in a low cost country: rubbish. There's a reason we're a lower cost. 1. We have a lower standard of education 2. We have a higher cost of technology (relative to average income) 3. We have a lower need for the luxury market where most technology resides You can also look at the proportion of field leaders. Are more from the developed…

As a developer from a lower-cost country: all of this is true.

Re: Ubiquiti Networks Breach

#445

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

I bought a Unifi Dream Machine last year because it was an all-in-one device that seemed like the simplest way to have multiple VLANs on my home network, in order to segregate my IoT devices and security system from the rest of my home network. At the time, I didn't see any similar products. Are there any other "prosumer"-type devices on the market that could replace a Dream Machine? If Unifi is going downhill it doe…

I use Turris Omnia, which is stock OpenWRT + their (open source) addons. You can configure VLANs like you mentioned, I do the same.

It is on the expensive side, but the hardware is beefy and you get vendor's support for OpenWRT out of the box.

Re: Ubiquiti Networks Breach

#446
Does anyone know how to completely delete the Ubiquity account? I can't find an option anywhere on the website.

For now I've renamed the username and put in a fake email address (sadly the username `deletemyaccount` was taken).

Re: Ubiquiti Networks Breach

#447
post #377

As a former Ubiquiti employee, I'm sad to watch the slow decline of the company. There was a steady exodus of engineering talent through 2020. The CEO was focused on moving to countries where engineering was cheaper and employees complained less about constant crunch mode. If you search around, you can find interviews where he brags about closing the San Jose office because he thought everyone there was too entitled.…

I'm a developer from one of the cheaper engineering countries to where Ubiquiti has moved to. I'm not sure what are you implying with your comment and I hope it's not "the company is declining because the company moved talent to countries where developers are cheaper". I do personally have friends working there and they are top class developers. Living costs don't necessarily correlate with talent levels. That said I…

It doesn't have to imply that developers are lower quality for this to be a troubling signal - if you close an existing office that is doing good work to save money, that shows where your priorities lie. And I agree with your sentiment, I worked with some very talented developers in Shanghai, but there are a lot of factors at play that make it hard to build a solid team from the other side of the world, factors that are legitimate and feed into the misconception that these countries have inferior talent.

Re: Ubiquiti Networks Breach

#448
post #383

Earlier quoted context omitted.

I bought a Unifi Dream Machine last year because it was an all-in-one device that seemed like the simplest way to have multiple VLANs on my home network, in order to segregate my IoT devices and security system from the rest of my home network. At the time, I didn't see any similar products. Are there any other "prosumer"-type devices on the market that could replace a Dream Machine? If Unifi is going downhill it doe…

Give AVM and their Fritz!box products a go.

FritzBox is way better than isp-provided or TP-Link-like boxes but certainly not pro-anything (no vlans or ingress-qos, guest-wifi but no real multi-ssid, severely limited dns-customization ...)

Re: Ubiquiti Networks Breach

#449
post #399

Earlier quoted context omitted.

fritzboxes are everything but certainly no "prosumer"-type devices. Most of their "mesh" is still dual band. only the latest repeater "FRITZ!Repeater 3000" is tri-band and afaik there is no router yet available that supports tri-band.

Compared to ordinary consumer products, I'll keep listing them as prosumer. They aren't mikrotik, or barebones openwrt, rather like dd-wrt. The hardware is indeed a bit lagging, I'm not arguing there, but it's not always (only) the hardware that makes prosumer.

avm is like the apple of home-networking.

hardware stats and software features are severely behind the curve but it mostly just works and you dont really need those features anyway.

certainly not prosumer

Re: Ubiquiti Networks Breach

#450
post #283

Regarding authenticity, from the TechCrunch article about this: > The networking company quickly followed its email with a post on its community pages confirming that the email was authentic, after several complained that the email sent to customers included typos. Indeed: How am I supposed to know whether this email is really from Ubiquiti? * There was apparently no official press release. * All links in the email,…

I missed a mortgage payment, because my mortgage company launched their "new" website as a subdomain on a primary domain that wasn't registered to them. They sent an email from that same domain, directing people to the new site. I tried to verify the authenticity of the email with their customer service team, but, crickets. No one bothered contacting me until they wanted to chase me down for the payment, at which point, I told them what a horrible practice it was, and insisted they remove the late fee. They did remove the fee, but the site and all related emails still look like phishing attempts. Not surprising really, given that the majority of companies double-down on stupid when called out for their blunders.
Post reply on HN