Home Network (Project)
A table of contents will be inserted here
INTRODUCTION
Overview
Why rework the current network?
We have multiple networks setup within the house as we have a router which has direct connections to 3 rooms in the house and then to a seperate mesh network. The mesh network is then scattered around the house and creates it's own seperate network. This means we have 2x SSID's and there is conflict in the house between the networks.
The Wi-Fi in our house is currently bad when not close to the router. In the furthest parts of the house the internet signal is poor. When trying to setup an AP in one side of the house the signal kept dropping, this is likely to the AP being faulty.
What are the plans with the new network?
The idea of this research is to allow for a new network to be setup using only Ubiquti kit where possible or at least Ubiquti AP's as they're supposed to be good and easy to manage with the Unifi-controller software as it shows the network in a user friendly way (showing the topology of the network, nice UI etc) as well as allowing for VLAN creation for Main, Guest and IoT networks.
Current setup
TalkTalk ISP Router
- Mesh network
- Dans room
- Jamies room
- Living room
Mesh Network
- Dad's office
- Behind TV (Front room)
- Extension
Main issues:
- 2x Networks / SSID - this causes crosstalk
- Mesh network is powerline therefore speeds suffer
UNIFI NETWORK RESEARCH
Typical Setups
YouTube: 2022 Complete Unifi Setup GuideThe first part of this video is useful to familiarize yourself with what kit would be needed for a typical network. The second half can be used to configure your network once you have all hardware setup.
Hardware used:
- Unifi Cloud Gateway:
- UDM SE (UDM-SE)
- Switch:
- Unifi Flex Mini 5-Port (USW-Flex-Mini)
- Access Points:
- U6 Lite (U6-Lite)
- U6 Pro (U6-Pro)
- Cameras:
- G3 Flex (UVC-G3-FLEX)
- G3 Instant (UVC-G3-INS)
UDM SE
Roles:
- Unifi Console
- Unifi Controller
- Router
- Inbuilt switch
UDM SE vs UDM Pro:
- Integrated 8-port PoE/PoE+ switch vs no PoE
- (6) PoE
- (2) PoE+
- 128 GB SSD for Unifi Protect recordings vs no SSD
- 2.5 GbE RJ45 WAN ports vs 1Gbps on Pro
UNIFI
GATEWAY | CONTROLLER | AP | SWITCH | CLOUD CONSOLE
Unifi Access Points
YouTube: Which is the Best AP for You? - UniFi Access Points Explained 2022In summary this video says the U6 Lite should be used for general usage, anything else would be overkill.
WiFi Bands (2.4Ghz vs 5Ghz)
5Ghz
- Used for personal devices
- Has less range
- Can support higher throughput
- Create a personal VLAN
2.4Ghz
- Is used for less secure devices (IoT) / cameras
- Has more range
- Supports lower throughput
- Create a IoT VLAN
Comparison between (U6 Lite vs U6+ vs U6 Pro)
U6 Lite
- Wifi 6
- 2x2 MIMO on 2.4Ghz with throughput of 300Mbps
- 2x2 MIMO on 5Ghz with throughput of 1.2Gbps
U6+
- Wifi 6
- 2x2 MIMO on 2.4Ghz with throughput of 573.5Mps
- 2x2 MIMO on 5Ghz with throughput of 2.4 Gbps
U6 Pro
- Wifi 6
- 2x2 MIMO on 2.4Ghz with throughput of 573.5Mps
- 4x4 MIMO on 5Ghz with throughput of 4.8 Gbps
- Qualcomm chipset
Conclusion
The U6 Pro seems like the best option due to the fact it has 4x4 MIMO on the 5Ghz band. Also it has a better chipset. The U6 Lite seems the be the 2nd most recommended.
Unifi Gateways
Do I need a Unifi gateway?
Reddit: Do I need a Unifi gateway?What is a unifi gateway
The USG Ubiquiti UniFi Security Gateway, is an enterprise Gateway router with Gigabit Ethernet that combines advanced security features with high performance routing technology.
Function:
- Routing
- Security
Typical usage:
ISP Modem -> USG -> Switch
UniFi Cloud Gateways
Any of the above will do the same thing as the USG I believe.
What is a Unifi Console?
From what I've read, the console is the device which sits between the modem and the switch. This is a physical piece of hardware which hosts the Unifi-Controller as well as providing other function.
Unifi Controllers
What is a Unifi-Controller
This is a network management software which can be either self-hosted or runs by default on Unifi Consoles. These are usually referred to as [UniFi Cloud Gateways](https://uk.store.ui.com/uk/en). Running the device 24/7 will allow for: - Setting up configuraitons - Ability to check the status of devices Self-hosting: - [UnifiPi](https://unifipi.com/) Further research needed hereUnifi Switches
Are Unifi switches needed?
Home Network Tour with UniFi Dream RouterThe reason you would want to use Ubiquiti switches is so that you can put them on seperate VLAN's and manage the ports inidivually from the Unifi Controller page
Setting up the Unifi-Controller
UI Site Manager Self Hosted UniFi Network Application Controller Install TutorialHe shows how to self host the Unifi app on a Ubuntu image and provides the code
Unifi Cloud Consoles
Udm pro vs udm se
Cloud console research
Best Ubiquiti router for a setup like mineIt's hard to work out what routers exist within the Unifi line and if one is even needed to use the full functionality of the Unifi offering. Everyone says that the UDM SE is the best option which makes sense but with minimal info on what cameras are needed it doesn't make sense for me. Someone suggested the UDR which I had not yet heard of really.
Found that most people recommend the UDM SE for a "single pane of glass" experience. What people mean by this is for a single interface which everything can be controlled within
I'm getting rid of my Unifi Dream Router…He says the only differences are:
- The UDM has 6 less PoE ports
- The UDM doesn't support the really high speeds (multiple Gbs)
- The UDM only has 128 + SD storage for cameras
Redditor suggesting UDR
>Duke-Kaboom · 9 mo. ago
>Is price the driving factor ?
>
>If not .....best setup UdmProSE. Has built in Poe and extra ports for expansion as well as the ability to add cameras for protect. 3 Ap's Done
>
>If yes. Then Edge router, with separate programming of the ap's. The edge router Interface is basic looking and technical.
>
>But
>
>If you "want the full.ubiquity setup" Sounds like you are looking for the more user friendly "single pane" experience others have described. Then you want the Unifi OS. I'd avoid cloudkey and usg all together as they are the old Platform..
>
>Another mid range option would be go with the UDR. It has 2 Poe ports to power two AP's and it has built in Wifi to act as the 3rd AP. This will still give you the single pane experience but slightly more cost effective.
I then looked up whether it's worth getting a UDM Pro or the UDM SE and found [Dream Machine Pro vs SE?](https://www.reddit.com/r/Ubiquiti/comments/uj20p7/dream_machine_pro_vs_se/) Checked some comparisons [U6+ v U6 lite](https://www.reddit.com/r/Ubiquiti/comments/16sh8zc/u6_v_u6_lite/) and [U6+ vs U6 lite](https://www.reddit.com/r/Ubiquiti/comments/14ipulk/u6_vs_u6_lite/). There is some mention of the U6 Pro which sounds to be the most reliable. U6+ vs U6 Lite: - U6+ has better connection - U6 Lite uses less RAM - U6 Lite has more RAM - U6+ has WiFi 6 on the 2.4Ghz band [Upgrading my setup: Looking for input on the U6 Plus vs. U6 Lite (currently sold out)](https://www.reddit.com/r/Ubiquiti/comments/14mnvu3/upgrading_my_setup_looking_for_input_on_the_u6/) I then saw this post where a Network technician says to get the U6 Pro. I'm feeling like the U6 Pro is the most solid option and will be the most reliable >JacksonCampbell Cake day · 7 mo. ago
Network Technician Get the U6 Pro. The U6 Lite has the inferior chipset that can have horrible performance issues. The U6+ was made as an upgrade to it in some ways and is better but no Bluetooth. U6 Pro is better than both with WiFi 6 on both bands and MU-MIMO and OFDMA.
PoE switch options
The vast majority for people say that it's not worth using injectors. The reason for this is that they cause inconsistencies in the network and can create failures which are hard to troubleshooting and can break kit if they fail - overall not worth. I then went back to research PoE switches and saw the return of the TP-Link switch. I looked up the difference between a TP-Link switch vs a Ubiquti one to see what I'd be missing if I swapped between kit. You may lose the ability to turn off AP's remotely and also you may lose the ability to create VLAN's with non-Ubiuti kit. These are 2 things which I plan on doing therfore I think it makes sense to get a Ubiuti switch. It doesn't currently make sense to get a Dream Machine due to having no cameras but does make sense to get an 8 port switch like this [Lite 8 PoE](https://uk.store.ui.com/uk/en/pro/category/all-switching/products/.usw-lite-8-poe) as an in the middle step. I found this guide which spoke about whether it's worth getting a [Unifi switch or not?](https://www.reddit.com/r/Ubiquiti/comments/171btbv/unifi_switch_or_not/) >Amiga07800 . 3 mo. ago>The 16 ports has a VERY low PoE budget than won’t be enough for you. You have some other options: >1. Swap UDM Pro for the SE - 95W PoE on 8 ports - and eventually add a non PoE UniFi switch >2. Use TWO USW-Lite-8-PoE, 104W PoE budget,” > >Beside, I REALLY suggest to swap the U6+ for the U6-Pro, they are vastly superior (and have a Qualcomm chipset) This guy suggested the U6 Pro's which I think are the better option now and also suggested either the 8 port switch or a UDM SE.
Conclusion from research
I don't much more research is required here. I Will do some final checks tomorrow but I think this should all now be ok to order. I will setup search alerts on eBay over the coming weeks to try to get some money off of the AP's as they sell for £135 instead of £154. Also I might be able to pickup the 8 port switch from a 3rd party site without paying the £10 delivery fee which Ubiquti charge. In regards to setting up a Unifi Controller I will run this on my laptop and will think about a solution for this long term. I have a couple of cheap Raspberry Pi's so maybe able to use one of these to turn the docker image as self-hosted controller to keep it up 24/7. The plan is to setup 3x networks. 5Ghz networks for phones, this will be our primary network for laptops/tablets/mobiles. Another 2.4Ghz network which will be used for IoT devices. An additional guest network. I think Ubiquti has an easy setup option for this but I'll likely refer back to the video at the top of this article and then also fine some other information on ideal network setups. I will add more sections to this as I configure the network and also after buying kit to put the price I paid for everything.
YouTube: Unifi Home Network Upgrade - Why I finally switched
He spoke about the fact that you could use [linuxserver/unifi-controller](https://hub.docker.com/r/linuxserver/unifi-controller) and run a docker image which you use to run the Unifi-controller. Checked reddit about this and found [Docker Vs. Raspberry Pi for Controller?](https://www.reddit.com/r/Ubiquiti/comments/xwhtka/docker_vs_raspberry_pi_for_controller/). In the initial statement the user said about hosting the docker image on a synology NAS. Someone in the comments posted a link to [Self-host the Unifi Controller on a Synology NAS](https://www.wundertech.net/self-host-the-unifi-controller-on-a-synology-nas/). I'm thinking that I may not need a CloudKey and could save 200 if I do decide to get cameras. Either way I think I'll order the access points then go from there. Something important to note is that the **firmware should be updated** if kit is bought as this can prevent issues right away.
### Placing an order **Thoughts when ordering**
Order placed for 3x [U6+ Access Points](https://uk.store.ui.com/uk/en/products/u6-plus). From here we can then see if anything else is required and can also tune the equipment on arrival. I was going to order 2 however 3 should be fine as if 2 is enough for the house, one can go in the garage. **Order cancellation**
I found out how to [cancel my order](https://www.reddit.com/r/Ubiquiti/comments/m5s0bx/cancelling_order/) as I forgot to add a switch. I done some more digging and found that people were reporting issues with the U6+ so decided against re-ordering.
[U6+ vs U6-Lite oddities](https://www.reddit.com/r/Ubiquiti/comments/16d0yi4/u6_vs_u6lite_oddities/) **RAM differences**
Read this article which says about RAM differences between the U6+ U6 Lite and there is mention of the Pro too. Sounds like it goes U6+ then U6 Lite and then the U6 Pro in terms of how much RAM each has. **Band usage**
Someone also said in another article about there being issues with 2.4Ghz and saying that the AP's perform way better on 5Ghz. I'm struggling to find any more info about this and cannot find the post I read it on.
[Recommended hardware to meet Unifi POE requirements?](https://www.reddit.com/r/Ubiquiti/comments/13srj0d/recommended_hardware_to_meet_unifi_poe/) **Struggling to understand PoE**
Trying to understand how PoE works at the moment so that whatever AP's I get I don't have to run cables to. This would neaten things up a little.
### Power Requirements The [Flex Mini](https://uk.store.ui.com/uk/en/pro/category/all-switching/products/usw-flex-mini) requires **2.5W** per unit and I'm planning on getting **2** units which would be a total of **5W** The [U6+](https://uk.store.ui.com/uk/en/products/u6-plus) requires **9W** per unit and I'm planning on getting **3** units which would be a total of **27W** Overall Total: **32W**
PoE Switch vs PoE Injector
[Cheap POE Gigabit Switch 8 Ports?](https://www.reddit.com/r/HomeNetworking/comments/s3oyea/cheap_poe_gigabit_switch_8_ports/) I found what I thought I was looking for. When searching for cheap PoE switches someone suggested what I was looking for, an 8 port PoE switch. 4 of the ports are PoE and the other 4 are not. It has an overall max power of 64W which would be fine for my usage as I only need 32W as calculated earlier. This would allow for an additional 32W with the remaining 1 port so maybe this could be used to beam Wi-Fi to the garage. I later realised that this was not fit for purpose as all kit needs to be Ubiquti. Having a Ubiquti switch allows: - Manual power cylcing of PoE devices - VLAN assignment to port number ->flywithabuzz · 2 yr. ago
Technically you don't need a PoE switch if you're only planning to use 2 PoE devices. You can get PoE injectors for $10-$15 each....but now you also need to provide power to each of those injector bricks. It's in your best interest to get an 8 port switch with 4 PoE if you're serious about potentially needing 2 more PoE ports. > >Also, if you're running cameras, I would highly recommend getting a managed 8-port switch so you can setup VLAN tagging to have better control of who those cameras are sending data. > >[Managed 8 Port Switch: $69.99](https://www.amazon.com/TP-Link-TL-SG108PE-Shielded-Lifetime-Protection/dp/B01BW0AD1W/) > >Unless you're buying used, the breakdown for getting PoE is: > >8 Port Switch : $16.99 > >8 Port Switch w/4 PoE :$64 > >1 PoE Injector: $15 > >8 Port Switch + 4 PoE Injectors: $ 16.99+$45 = $61.99
Cheap POE Gigabit Switch 8 Ports?
In the above post there was some information regarding security cameras / NVR's >vrtigo1 · 2 yr. ago
Good advice about putting cameras in their own VLAN. If you're using a PC-based DVR like BlueIris, another simpler option for someone that doesn't know anything about VLANs, managed switches, trunk ports and/or firewall ACLs would be to just segregate the entire physical camera network to its own switch, then put two NICs in the DVR PC. Connect 1 NIC to the main network and the other to the camera network. This isn't as secure as putting all the cameras in their own VLAN but it should still prevent them from connecting to the Internet or other devices on the LAN.
Summary of [chat with GPT](https://chat.openai.com/share/c2721371-04a1-4077-9682-901431bbcbe9):
- The Flex Mini is powered via PoE but doesn't provide PoE power
- Flex mini can powered via USB-C or PoE
- PoE sources include, PoE Switch, Router with PoE or an Injector
- EdgeRouter is not part of the Unifi line, this is for ISP's
- Went through power requirements, Ubiquiti has all power requirments on their product pages
- Negatives of using a TP-Link for the PoE switch
Unifi Protect research
YouTube: Unifi Protect G5 bullet reviewThe g4 bullet is better than G5 as it's higher res / looks better at night. There is a comparison on the video
Chat with GPT (storage requirements)
I then wondered how much storage will be needed to store 1 months worth of footage for 2x G4 cameras which are recording in 2k for a month straight. I asked GPT this and the following is a link to the chat. link to ChatGPT
Summary of chat
1GB of storage per day so ~30GB per month. This is not very much if you're planning on deleting the footage when not needed. Using a dream machine would be overkill for this if you're not requiring other features it offers.
Watched a tutorial on how to setup Unifi Protect so that the footage is streamed to the Synology camera system Adding Cameras to Synology from Unifi
Buying G3 camera
I just went and bought a G3 Flex camera for £35 which I found on facebook marketplace. I've just plugged into the PoE switch but just remered you cannot self host Unifi Protect therfore need to wait until the UDR arrives before I'm able to adopt it.
The next thing to buy will be either a UDM SE to replace the UDR or to get a CloudKey Gen 2 if we choose to have more cameras / the UDR does not have enough storage or RAM.
DONT buy/upgrade to the Unifi G4 doorbell pro just yet..!
Pro differences:
- Cost over 100+ more
- Has 8MP package sensor
- Can be powered with PoE
- Better microphone quality
Ubiquiti vs Ring?
People say not to look at Ring as it's owned by Amazon. Also you have to pay a monthly subscription cost of £3.49 to store footage.
Price from Retailer & Ebay
[Help me decide between Unifi G3 cameras or something like Blink / Arlo etc](https://www.reddit.com/r/homeautomation/comments/7gp6vk/help_me_decide_between_unifi_g3_cameras_or/) Ubiquiti vs Blink or Arlo - Wireless (Blink & Arlo) require battery replacements - Wireless (Blink & Arlo) will degrade Wi-Fi quality when you have multiple - Cameras should be at least 9ft away from the ground (installed via ladder) - Storing footage of the interior of your home is a privacy concern - Ubiquiti has an inferior NVR to someone like Blue Iris - Locally stored footage can be stolen by a thief
**Purchases**
**Date** | **Model** | **Price** | **Platform** 10/01/24 | Ubiquiti UniFi 6 Pro Access Point (U6-Pro) | £117 | ebay 13/01/24 | Ubiquiti UniFi 6 Pro Access Point (U6-Pro) | £129.99 | ebay 16/01/24 | Ubiquiti Unifi Flex Mini Switch (USW-Flex-Mini) | £29.29 | ebay 20/01/24 | Ubiquiti UniFi Dream Router (UDR) | £228.60 | 4gon **Total Price**
£
Download the Unifi-controller from [Self-Hosting a UniFi Network Server](https://help.ui.com/hc/en-us/articles/360012282453-Self-Hosting-a-UniFi-Network-Server#:~:text=Start%20the%20newly%20installed%20UniFi,Adopt%20your%20first%20UniFi%20device.) 19:36 - managed to finally adopt the device after mutliple resets of the device. Had to plug it directly into the router rather than into the wall port in the kitchen. Managed to connect to the AP You have to create a new network from within the Unifi Controller Wifiman is not working when viewing the signal strength of floor plan pages on my phone within the app downloaded wifiman on my macbook, it still is not doing signal strength and floor plan unboxed the 8 port poe switch If I'm unable to use the PoE from the switch I can always use the PoE injector which came with one of the AP's that I bought Found this video [Unifi Gigabit Managed Switch Lite 8 PoE](https://www.youtube.com/watch?v=lWM0KnAQ8gA) where he says that if you plug your laptop/desktop into the switch you can adopt it that way The switch then updated itself after I tried to Adopt it Adoption failed Found a guide which says about using SSH to connect to the switch [Why does my UniFi hardware tell me "Adoption failed"? (3 Solutions!!)](https://www.youtube.com/watch?v=WHdyKfuouDI) Guice on how to setup SSH keys [UniFi - Adding SSH Keys to UniFi Devices](https://help.ui.com/hc/en-us/articles/235247068-UniFi-Adding-SSH-Keys-to-UniFi-Devices) Found this guide regarding connecting to the switch via SSH [Unifi Switch CLI Commands](https://www.youtube.com/watch?v=H68f4HZMGH8) The above was a little technical and also vague in regards to resolving failed adoption issues [Different ways to adopt unifi devices](https://www.youtube.com/watch?v=4p96fPY-8RY) This guys is really good and broke things down. Installed LAN Scan from the appstore to view devices on my network When scanning I could not find the device even though it was plugged into my laptop via a port replicator Tried to plug it into the router again, it then said getting ready and adopted ### Fixing WiFiman I need to read this when researching "Ubiquiti WiFiman" [I’ve turned on WiFiMan support and I’m connected to a UniFi Network, any ideas why Signal Mapper is grayed out/how to fix this?](https://www.reddit.com/r/Ubiquiti/comments/v3p33c/ive_turned_on_wifiman_support_and_im_connected_to/) ### Test results from Dan's room Tested the WiFi in Dan's room with the AP under the router SSID: Test Download: 56.02 Mbps Upload: 17.38 Mbps SSID: private Download: 7.26 Mbps Upload: 6.03 Mbps SSID: TALKTALK latency error ### UDM vs UDR [UniFi Dream Machine vs UniFi Dream Router \| which is the right router for you?](https://www.youtube.com/watch?v=nML_kqFpRSQ) You can only use Unifi networking stuff and cannot run protect as well when using the UDM therefore it is not fit for purpose [UDR Fail or Success?](https://www.youtube.com/watch?v=E6K2nITRdeA) He had issues which were resolved with a software update Last night setup Router -> 8 port PoE switch -> AP (Router) -> AP (Kitchen) Connected some devices up too, all work. The speeds are no better in the lounge for some reason (they were pretty much maxed anyway) When looking at the client list there are some random devices which were only showing their MAC addresses with no additioanl information I tried to kick these off then network but they rejoined. I've checked my apple watch and it was connected therefore it must have been shared by my phone / macbook changed the SSID then the switch was stuck offline **Auto-connecting MAC addresses**
noted down mac addresses for connected devices and gave them friendly name going to later set it up so that they auto connect to the network
**Unblocking a device**
I found out how to unblock a device. The device will appear in the offline section when going to the "Client Devices" option from the left hand sidebar then choosing offline from the top navigation bar. The blocked devices will appear with a red dot next to them. ![unblocking-device-new-GUI-1](/img/network-research/unblocking%20a%20device%201.png) ![unblock-device-new-GUI-2](/img/network-research/unblock%20a%20device%202.png) **Setup pt19**
23/01/24 | start 18:14 | end On review - check guest settings (it said about hotspot settings)
Modem -> router -> camera + 8-port-poe-lite
**Setting up the UDR**
- Setup the UDR via the Unifi Network app - Created a new SSID when setting up the UDR - Reset all devices for re-adoption - Re-adopted all devices - Updated UDR via Unifi Protect mobile app - Wiped adoption for G3-Flex - Managed to adopt 8-port-poe-lite via Unifi Network app - Adpopted devices: UDR, 8 port switch, 4 port switch, G3 Flex - Stopped running the local server, from site selector it went grey - Adopted U6 pro in Dan's room
**Wiring**
- Wired everything into an extension lead
## Network Configuration Explanation on all advanced settings within the Unifi-Controller
[UniFi's Advanced Wi-Fi Settings Explained](https://www.reddit.com/r/Ubiquiti/comments/r0dh9p/unifis_advanced_wifi_settings_explained/) **Reasons for creating a VLAN**
1. **Security:**
If a less secure device like a **Chrome casts**, **Printers** etc is hacked, it will not have access to the rest of the network which has devices like computers, phones, tablets etc are on. 2. **Congestion:**
The more devices added to the network, the more congestion.
### Creating IoT Network 1. Disable "Auto Scale Network" 2. Gateway/Subnet mask = 192.169.2.1 -> 192.168.107.1 **Advanced Configuration:**
1. Auto -> Manual 2. VLAN ID = 2 -> 107 3. Multicast DNS = Enable - This will allow devices on the main network to discover devices on the IoT network. This allows the communication between the devices and facilates things like streaming to chrome cast from mobile phone. 4. "Add Network"
### Creating Guest Network 1. Disable "Auto Scale Network" 2. 192.168.2.1 -> 192.168.10.1 **Advanced Configuration:**
1. VLAN ID = 2 -> 10 2. Network Type = Guest Network - This tells the devices that they're alone and that they cannot see any devices on the network. The only thing they can see is the internet. Two devices which are both on the guest network cannot communicate. 3. Disable Multicast DNS - Don't want these devices to be able to communciate with chrome cast etc 4. Add Network
### Creating Cameras Network 1. Disable "Auto Scale Network" 2. 192.168.2.1 -> 192.168.20.1 **Advanced Configuration:**
1. VLAN ID = 2 -> 10 2. Disable Multicast DNS 3. Add Network
## WiFi Networks ### Main network 1. Settings>WiFi>Create New 2. Network = Default 3. Create WiFi Network
### IoT Network 1. Settings>WiFi>Create New 2. Add "_IoT" onto the end of the network name 3. Network = IoT 4. Turn 5Ghz WiFi band off - IoT devices generally connect better to 2.4Ghz networks. They struggle with combined SSID's (2.4Ghz + 5Ghz under the same network name) 5. Create WiFi Network
### Guest Network 1. Settings>WiFi>Create New 2. Add "_Guest" onto the end of the network name 3. Network = GuestNet 4. Create WiFi Network
## Firewall Rules
**WiFi Connectivity**
- Mapped out the house on my phone 2x times - Kitchen AP not picked up - Dan's room AP not picked up
**MAC address privacy**
[[Solved] UniFi Binding: Dealing with MAC Randomization](https://community.openhab.org/t/solved-unifi-binding-dealing-with-mac-randomization/128816) I found out that Apple hide the MAC addresses for their devices by giving the router a fake MAC address.
Roadblocked
Spoke to my Dad this evening to let him know that it's hard to proceed any further given that depending on the camera requirements this will dictate what networking equipment to go. If we're definitley going to get cameras then it makes most sense to get a UDM SE to avoid buying switches seperate to the NVR which will be needed to store the footage from the cameras. Also it will work out cheaper than getting all individual parts and will also make for a cleaner setup overall as it's basically an all in one setup.
Research
27/01/24 | start | end 15:31 - recabled network station - setup powerline adapter from sofa to tv - moved IoT devies to the IoT network - Removed the powerline network - created new patching table
Research
27/01/24 | start 19:35 | end 19:55 | - sstp vs utp
Research
27/01/24 | start 21:58 | end | -15 min - setup firewall rules - fixed unifi-controller toplogy by unplugging AP - Could not find threat managment - Could not work out how to change to legacy layout - Tested the motion detection, had to adjust the activation sensitivity to high
Continuation of [2022 Complete Unifi Setup Guide](https://www.youtube.com/watch?v=kGBFkIzf6x0&t=711s) ### Unifi-Network Configuration **Firewall Rules**
**Path:** Security>Firewall rules>LAN>Create Entry **Block IoT from LAN**
![block iot from lan configuration](/img/network-research/firewall%20rules/Block%20IoT%20from%20LAN.png) **Block LAN from IoT**
![block lan from iot configuration](/img/network-research/firewall%20rules/Block%20LAN%20from%20IoT.png) **Block cameras from LAN**
![block cameras from lan configuration](/img/network-research/firewall%20rules/Block%20cameras%20from%20LAN.png) **Block LAN from Cameras**
![block lan from cameras configuration](/img/network-research/firewall%20rules/Block%20LAN%20from%20cameras.png) **Block cameras from IoT**
![block cameras from iot configuration](/img/network-research/firewall%20rules/Block%20cameras%20from%20IoT.png) **Block IoT from Cameras**
![block iot from cameras configuration](/img/network-research/firewall%20rules/Block%20IoT%20from%20cameras.png) **Setting up exclusions**
https://youtu.be/kGBFkIzf6x0?si=1dfBgWGH6QZrm8Xg&t=1436 You might want to do this if you want an apple tv which is on the IoT network to be able to see a Plex server which is on the main network Follow above **Threat Management**
Turn this on Trying to find where it's located on the UDR **Mapping ports to VLAN's**
This can be easily done
Unfi-Protect Configuration
G3 Flex > Recording:
- Recording mode = always
- Frame Rate = 25 (max)
- Image Quality = 100% (max)
Motion detection settings:
- 1 second
- 10 seconds
- 10 seconds
G3 Flex > Settings:
Camera:
- Status light = disable
Overlay Information:
- Time = enable
- Name = enable
- Logo = disable
Instant cameras: The instant cameras can go on the main network as they're WiFi cameras and will generally be left indoors
Night vision:
- Activation Sensitivity = high
Testing: When testing the recording at night it didn't pick me up on low when creeping
Initial Research pt1
04/01/24 | start 21:45 | finish 23:37 | 1 hour 53 minutes
- Overview
- Not sure what else, I moved the content around
Research pt2
05/01/24 | 19:46 | 23:35 | 1 hour 29 min
- Found out about self hosting unifi-controller from Docker
- Self-hosting from Synology NAS
- Update firmware to avoid adoption issues
- Might be able to avoid buying a seperate NVR by self-hosting
- Placed order for U6+ then cancelled the order
- Researched U6+ vs U6 Lite
- Further PoE research
- Researched power requirements
- PoE switch vs Injector
Research pt3
09/01/24 | 20:44 | 22:55 | 2 hours 11 minutes
- Researched how to setup Unifi Protect
- Further research on UDMP vs UDM SE
- Researched U6+ vs U6 Lite and found out that U6 Pro is the most reliable
- Researched different bands (2.4Ghz and 5Ghz)
- Reasearched MIMO
- U6 Pro vs U7 Pro
- PoE vs Injectors
- Conclusion from research
Research pt4
13/01/24 | start 15:54 | end 18:24 | 2 hours 30 minutes
- Researched benefits of buying Ubiquiti switches
- Seperate VLAN management per port
- Restart devices via PoE
- How to self-host the controller on Ubuntu
- Watched another summary video of a home setup
- Watched another vs video the UDMP vs the UDMSE
Research pt5
13/01/24 | start 22:14 | end unsure
- Researched the best Unifi router
- Found that the UDR could be an option
- Encountered roadblock which affects ordering kit
Research pt6
14/01/24 | start 9:28 | end 11:52 | 2 hours 24 minutes
- Researched cameras
- Researched how WISP's work
- Researched QNAP vs Synology
- Researching Unifi Protect on Synology NAS
- Researching self-hosting services
Research pt7
14/01/24 | start 17:34 | end 18:15 | 41 minutes
- Patched network port into the wall
Research pt8
15/01/24 | start 7:55 | end 8:02 | 7 minutes
- Researched camera install in a doctors office
Research pt9
19/01/24 | start 18:56 | end 19:37 | 41 minutes
- Downloaded the unifi-controller then self-hosted it from my macbook
- Fixed issues when setting up the Access Point by wiring it directly into the router
Research pt10
19/01/24 | start 20:53 | end 00:17 | 3 hours 24 minutes
- Created new network within unifi-controller
- Encountered adoption issues
- Researched how to SSH to switch
- Installed LAN Scan to find the IP
- Tried to reset and power cylce the switch again which resolved the issue
- Tried to fix WiFiman
- Tested the Wi-Fi from brothers room
- Researched the difference between UDM and UDR
- Researched how to configure the network
Research pt11
20/01/24 | start 11:15 | end 12:30 | 1 hour 15 minutes
- Setup PoE switch
- Tested speeds from the living room
- Assessed currently connected clients to setup Alias'
- Realised that the MAC addresses were changing
Research pt12
20/01/24 | start 15:33 | end 15:45 | 12 minutes
- Noted down MAC addresses so that I may be able to setup auto-connecting or something similar like my work has
Research pt13
20/01/24 | start 19:16 | end 21:20 | 2 hours 4 minutes
- Researching how to unblock devices
Research pt14
20/01/24 | start 21:20 | end 21:41 | 21 minutes
- Styling network-research page
Ring gen 2 vs Unifi G4 (non-pro) pt15
20/01/24 | start 22:35 | end 23:07 | 32 mins
- Researched G4 doorbell vs G4 Pro doorbell
- Researched Ubiquiti vs Ring doorbells & prices
Updating the Table of contents pt16
21/01/24 | start 8:36 | end 10:26 | 1 hour 50 minutes
- Researched how to make a table of contents
Fixing formatting pt17
21/01/24 | start 11:29 | end 15:09 | 3 hours 40 minutes
- Styling network-research page
- Researched Ubiquiti vs Blink / Arlo
Fixing formatting pt18*
21/01/24 | start 21:53 | end 23:17 | 1 hour 24 minutes
- Styling network-research page
- Moved all time tracking to the bottom of the page
- Continued to sort out the contents section
- Commited page at pt18
Formatting
09/02/24 | start 18:35 | end 18:51 | 16 minutes
- Planning headings
Creating firewall rules to allow speakers through IoT
12/02/24 | start 21:38 | end 22:38 | 60 minutes
- Figured out how to allow certain addresses through the firewall
Converting page from markdown to HTML
12/02/24 | start 22:38 | end 23:20 | 58 minutes
- Removed Table of contents
- Converted the whole time tracking section
- Reworded and reformatting the Overview section
Formatting document
13/02/24 | start 22:00 | end 00:20 | 2 hours 20 minutes
- Reformatted overview
- Added current setup with main issues
- Added headers between horizonal rules
- Reformatted typical setups
- Grouped most unifi research