Configuring VLANs, Firewall Rules, and WiFi Networks - UniFi Network Application

preview_player
Показать описание
In this video, we will explore the capabilities of the UniFi Network Application for setting up VLANs and enhancing network security. With the UniFi Network Application , you can easily create and manage VLANs to segment your network and improve performance, as well as implement security policies to protect your network from unauthorized access. Whether you're a small business owner, a home user with IoT devices, or running a small HomeLab, this video will provide you with valuable insights on how to utilize the UniFi Network Controller to optimize your network performance and security using VLANs.

📦 Products in this video 📦

(Affiliate links may be included in this description. I may receive a small commission at no cost to you.)

#vlan #network #unifi

00:00 - What is a VLAN and How Do They Help?
01:48 - How to Create a VLAN with UniFi
07:33 - Creating Wireless Network for a VLAN
09:41 - Assigning a VLAN to a Switch Port
11:07 - Testing Default Firewall and Security Rules for a VLAN
13:29 - Inter VLAN Communication
14:35 - Configuring Firewall Rules Using Profiles
23:38 - Testing Our Firewall Rules
24:43 - Configuring Trusted Networks & Inter VLAN Communication
26:20 - Firewall Rule Order / Block & Allow
29:59 - Stream Highlight - "So many people have asked for this video"

Thank you for watching!
Рекомендации по теме
Комментарии
Автор

A couple of mistakes:
- I misused "VLAN Hopping" - I meant "inter VLAN Communication"
- "local" in UniFi speak means "traffic that is destined for the UDM/USG itself."
- "All" in UniFi speak is a Trunk that includes all VLANs (which are tagged)
This is why I love this community! Lots of networking experts so keep the knowledge coming! Thank you all for the help!

TechnoTim
Автор

Worth mentioning this is now much, much simpler with Traffic Rules. It can be done in a single rule.

Action: Block
Category: Local Network
Local Network: IOT-Better
Traffic Direction: Traffic from all local networks
Device/Network: All Devices
Schedule: Always
Name: Block IOT-Better to All

jairuschristensen
Автор

At 10:44 yes I am watching and yes you got it right! :)

LAWRENCESYSTEMS
Автор

Great full explanation Tim! This is becoming more critical specially since working remotely from home and the increase amount of IOT devices at home.
However, I still believe it is not as easy as plug and play yet so reserved to bit more advanced users than my parents for instance.
Thanks spreading knowledge around this hot topic ;)

JavierPerez-fqfi
Автор

I am fairly new to home networking/Linux and I found this episode to be the ONLY explanation I have understood of VLANs. Thank You. lol

richardsieminski
Автор

Literally was working on some VLAN stuff last night, great timing to make sure I have everything buttoned up properly. Thanks!

mountainsinmymind
Автор

This video is fantastic. I have a controller and AP's and have been thinking about using a gateway but putting it off for ages. This covers pretty much all the questions I had.

uniXlyTV
Автор

Thanks for this! I made it through the VLAN’s myself and got intimidated by the FW rules. Now I can follow what you have and finish the job!

johnjbateman
Автор

Hi Tim.
Excellent explanation. You may not be an IT guy but your explanations are superb. Keep up the good work and thanks for helping to make difficult tech easier to undersstand.

harryburton
Автор

In the IT space here on YouTube, I think Tim is the best teacher. Dude's got skills.

scottcook
Автор

I have been having massive issues with my udm idk what the hell was going on but i decided to create some vlans to get some more control on whatever is going on. Changed all ports and added rules. Now things are working like they should. Big thanks for taking the time to go through how to set things up. much appreciated. for days my network was sometimes working off and on. This was a huge help. thanks.

Photoshopuzr
Автор

I just got my UDM PRO SE and Tim as usual has perfect timing for the content I need! Wow thanks Tim!

cvought
Автор

In a nutshell, trunk ports expose all traffic from the VLANs by appending the VLAN id to the ethernet frame. This enables devices capable of reading this tag to manage the VLANs as well, making possible things like using the same VLAN across multiple switches or exposing the VLANs to a hypervisor for it to manage them internally.

AlbusRegis
Автор

Loved this video so much. Great quality and very specific to my needs luckily. I would have loved to know a little more about what other rules you made and for what reason so i knew what i had to look out for when i start setting up my own network next year. I hope to see more great content in the future. I wish you the best!

Vaedan
Автор

This is awesome....period! I had no idea how to set my Unfi gear up. This video walked me thru step by step. I learned so much along the way. Again, this was top notch! Thank you man. :)

xaviervillalobos
Автор

THANK YOU for helping me get this setup! I needed it for PCI compliance. Thank you again!!!!

dragonrider
Автор

This is exactly the video I have been after. Such a great explanation. Thanks a lot Tim!

faikwo
Автор

Really nice video, very informative. I use pfSense but the concepts are the same. An untagged port passes all the "tagged" traffic that you allow. So you can set the port to allow IoT and IOT Better through but block the other VLAN tags. The other aspect of a "tagged" port, this that the device behind that port doesn't know about VLANs and the switch automatically tags traffic from the port with the VLAN id.

Bill_the_Red_Lichtie
Автор

I just bought the UDM SE and this video was the best I found to explain how to make an IoT network. Thank you!

Ralin
Автор

Thank you for the hard work, you make it look really easy 🙏🏽

nadavraz