Since Ubiquity started fown the cloud-first path I’ve switched to Mikrotik. While they do seem to have regular CVEs (which is good, I think?), they also don’t seem to have a public bug bounty program.
Since Ubiquity started fown the cloud-first path I’ve switched to Mikrotik. While they do seem to have regular CVEs (which is good, I think?), they also don’t seem to have a public bug bounty program.
I was thinking about getting a Ubiquity router because it has good support for setting up wired VLANs without needing to go down the path of finding a solid OpenWrt router.
Is it really true that you can't access the router's dashboard and configure things without associating an online account to your router?
That might be true for their UniFi line, but EdgeMAX devices work fine without an online account. EdgeRouters run a fork of Vyatta, with configuration files and command line operations that are fairly easy to work with. They also have a web UI for common configurations, though I have little experience with it.
A bit of warning: EdgeMAX support has been declining in recent years. Security updates are still published, but bugs don't seem to be addressed as quickly or consistently as they were in the past, and some forum users have expressed doubts about what kind of support will exist in the future. That said, my equipment is still doing fine.
I think OpenWRT has been ported to at least one Ubiquiti router, so that might be a good fallback if EdgeOS support ever ends. I wonder if anyone here has tried it.
The day after I set my UDM Pro up as non-cloud, it corrupted the login somehow and I had to factory reset it and redo all settings (as it hadn't been running long enough to run any automatic backups first). I capitulated and just set it up again as a cloud login to avoid having the same fiasco at some random point in the future again.
I immediately regretted going with the UDM to save (quite) a few bucks over a OPNsense/pfSense appliance to fit my requirement of handling a full 10G of WAN.
I will admit having the app to monitor usage remotely is a somewhat neat trick. I find the firewall configuration in GUI obtuse enough to be next to unusable.
As someone who bit the bullet and sold all their UniFi gear on eBay and switched to OPNsense and Ruckus, I'll tell you that it's been absolutely worth it.
I was in the market for more hardware and I had to decide whether to increase my investment in Ubiquity or make a change, and I chose the latter.