Unifi WireGuard VPN setup

preview_player
Показать описание
In this video we go through the setup of wireguard with our UDM SE. I create the vpn , firewall rules and do some testing

Wireguard clients:

▶ Hire us on our website

▶ Support the channel and my videos

▶ Find me on Twitch

▶ Check out my gaming YouTube

▶Contact me on email:

------------------------------------------------------------------------------------
Affiliates I use:

▶ VOIP.MS

▶Canadian Amazon Store front:

▶USA Amazon store front:

------------------------------------------------------------------------------------
▶ Find us on social media:

▶ Instagram:

▶ Facebook:

▶ Twitter:

▶ TikTok:

▶ Linkedin:

0:00 Intro
0:48 configuring wireguard in Unifi
3:54 speed test and iperf test
4:48 creating firewall rules for wireguard
7:20 final thoughts
Рекомендации по теме
Комментарии
Автор

Well done Cody. Perfectly timed for a project Im working on. Thanks!

guyot
Автор

My guy never misses. I'm the number 1 fan that you never knew you had.

mylinuxstruggle
Автор

Exactly what I've been waiting for

---GOD---
Автор

I'm hoping for Wireguard to come to USG. It's a great VPN protocol with very low overhead. Currently running Tailscale on my Synology for this.

Yggdrasil
Автор

Good news, i've had to do the hacky solution via SSH to my UDM Pro up till now.
Now they just need to get that UDM Pro update done...

leonkernan
Автор

Saved my live :) Thank you for that...

rqbguvb
Автор

Cody, did you have to create a WireGuard network before building out the WG server shown in this video?

jjmhz
Автор

Great Video!!! So then my client could be on a RPi now and connect remotely to my UDM Pro, correct? Just trying to get info before I start the project.

donaldhoudek
Автор

Great video! In your opinion how does the UniFi Network VPN compare to the UID One-click VPN?

isemeqe
Автор

Testing this on the EA release of v3.x for UDMP today, but it is not allowing me to select port 51820 - if I select any other port it will allow me to hit apply changes but if I select 51820 it throws an error. Any ideas?

ClarkyAv
Автор

Say hello to UDM Pro& UDM users =))) Waiting for 2.X update....

nmwzuih
Автор

Great stuff, as always; how do you do site-to-site VPN with Wireguard between two dream machines?

NandorKatai
Автор

can you enable or use MFA for vpn users using this method or do you have to use L2TP? I am primarily asking about remote desktop workers no so much mobile users

capinkronic
Автор

Great video, one MAJOR problem though. Wireguard won't run unless the user is administrator privileges. That is a show stopper

engineering
Автор

It's only available for UDM flavors. Not if you have a UXG.

WAGISDev
Автор

Hey Mac, I have a question for you and your expertise on the topic:

My home network has ISPModem -> UDM SE -> Synology NAS. I am currently running Wireguard server on my Synology NAS and everything works fine.

Do you recommend switching it to the UDM SE instead?

DaveChurchill
Автор

Very useful info. Would be nice to get a UDM Pro update so I can implement this and retire the Raspi4 i've got currently servicing this feature

sygad
Автор

Great vid! I followed along but 1 question. I'm trying to use my pihole (which I use for local DNS) in the wiregaurd VPN. If I specify the pihole 192.x.x.10 I get no name resolution over VPN. If I use default DNS everything works. I'd heard something about pihole not accepting requests for traffic more than 1 hop away. Does this ring a bell with anyone??

TrevorMatthews
Автор

Thank you very much for the tutorial, it worked right away BUT im having an issue when try to allow the Wireguard network to access my Plex server on my QNAP. Plex port should be 32400 but when I add that port to the "Allow rule" I am creating I get "An error occurred when saving "Allow Wireguard to Plex" Firewall Rule. Your changes could not be applied based on your existing port settings." and dont let me save it. Any ideas? I am creating pretty much the sabe rule like allow to NAS but just adding the port in the destination.

angelscomputers
Автор

I'm assuming the perf isn't where you want it to be because the UDM needs to be encrypting / decrypting all that traffic. I wonder if it would be faster on a dedicated Linux box with a better CPU

IssaFram