Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed

Outline · [ Standard ] · Linear+

Unifi WARNING TO ALL UNIFI USERS, Threat warning, read inside

views
     
aftersix
post Oct 2 2010, 06:00 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
I've just registered Unifi with TM, the technicians will be coming to setup by later this month, but I'm kinda panic after I ordered Unifi.

I'm a SoHo, having 3 computers, 2 network printers and 2 NAS in my home working environment, there are also a lot of P&C data in my storage, it MUST NOT be accessible by others. I'm quite panic about the Unifi security issue posted everywhere in the internet. I hope someone can give me a helping hand or suggestion on the following issues:

1. Security
Is it safe enough I just disable the the 'Remote Management' and change the password for both 'admin' and 'operator' account? Can this block TM or attackers by 'easily accessing' to my router? If NO, please tell me what else can I do to make myself protected.


2. Custom Router / Switch
i. Currently I'm using a Switch to connect all my office PCs, printers and also NAS, but in Unifi site, I saw the line: "...is only compatible with computers that are wireless enabled...". I then google online and I found The Unifi Handbook - Using Custom Routers, by following the steps provided, we could actually make the TMnet Dlink DIR-615 G1 as a VLAN bridge. If that so, I wonder can I setup my network like this? 'Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN bridge) --> My Router --> My Switch --> PCs, network printers, and NAS (with network cables). Is this possible?

ii. Is it encouraged to do a 'custom router' setup? Will this setup slow down the network speed (or slow down when it's using network cable)??


3. IPTV
If the 'Security' and 'Custom Router / Switch' are successfully applied. Will I lost my IPTV service???

This post has been edited by aftersix: Oct 2 2010, 06:18 PM
aftersix
post Oct 2 2010, 07:13 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(rizvanrp @ Oct 2 2010, 07:27 PM)
1. Yea but its better to push your router into vlan bridge mode following the custom router guide as that will completely prevent users from accessing the TM router unless they have physical access to it.

2. The TM router is compatible with both wired and wireless clients. You can use your own router provided it has a RJ45 WAN port. Normally most soho/business clients I know use the TM DIR-615 as a VLAN bridge so they can wire their cisco routers (using the inbuilt PPPoE) directly to Unifi without going through the DIR-615's NAT + firewall which tends to break a lot of things.

ii. It won't slow you down provided the router you use is capable of handling the 5-20mbps speed. Infact, most people do it to increase the performance and stability of their Unifi setup as the TM provided router is pretty bad. If you like this setup, its recommended you buy a VLAN capable switch such as the Mikrotik RB250GS/750/750G or HP Procurve 8 port switch to perform the VLAN tagging for you to replace the DIR-615 (as you're basically 'hacking' it into a VLAN switch when you set it up that way).

3. No, you won't.. as long as you're only doing the VLAN bridging setup (and not reflashing the unit with dd-wrt).
*
Thanks for the reply Rizvanrp smile.gif

1. Cool, I'll try to follow all the steps once my Unifi been setup.

2. "...they can wire their cisco routers (using the inbuilt PPPoE) directly to Unifi without going through the DIR-615's NAT + firewall..." <-- Is this the Using Custom Routers method mentioned on your site? if NO, how to do it? Encourage to do it? Wait... I'm using Belkin N Wireless Router, can my router do this? (what is cisco router anyway?)

3. "...its recommended you buy a VLAN capable switch..." I don't think I wanne spend money to buy another Switch, anyway, the switch I'm using currently is D-Link DES-1016D 16-Port 10/100Mbps Unmanaged Switch. I don't know whether it's capable to perform the VLAN tagging and replace the DIR-615 or not. (What means "... 'hacking' it into a VLAN switch when you set it up that way..."? Does your handbook site guide us how to do it?)

4. I believe you know my situation pretty well, do you recommend the VLAN bridging method or the replace DIR-615 method more? smile.gif
aftersix
post Oct 3 2010, 03:53 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(billytong @ Oct 2 2010, 08:48 PM)
2. Yes. Using Custom Routers method is where you set ur 615 into vlan tagging bridge. then you use ur belkin to dial pppoe.

3. Most if not all unmanage switch does not capable to do vlan tagging. If you want to replace the 615 completely, u have to buy a Vlan capable switch/router like what rizvan mentioned.

4. It really depends on you. if you wanna save some money, u could just change the 615 into vlan tagging bridge. It is not necessary every single 615 TM give u will break down. These thing are really random. If it really break down. Calling TM to replace one for u might be hassle and take days to weeks, depends on their reponse during that period u cannot online at all using unifi at all if u dont have a vlan device. This is a the reason why I get RB250GS manage switch as backup incase that happen. My 615 doesnt break yet.  tongue.gif

for some user like me, my 615 seems to be reliable. My 615 doesnt break at all. So 615 breaking down is still a myth to me.  tongue.gif
*
Hey, thanks for sharing. think I'll be setting up like what I mentioned earlier:
Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN Bridge) --> Belkin N Wireless (Router) --> D-Link DES-1016D (Switch) --> PCs, network printers, and NAS (with network cables)

This setup shouldn't be much problem right? Hope it won't be too complex. rclxms.gif


Added on October 3, 2010, 3:55 pm
QUOTE(rizvanrp @ Oct 3 2010, 12:28 PM)
The DIR-615 G2 with firmware 7.05b has some major differences. I've been told there's either no operator account or they've changed the password to something more complex. I'll post an update on the main Unifi thread once I get a unit to test smile.gif
*
OMG, hope to hear from you pretty soon icon_question.gif

This post has been edited by aftersix: Oct 3 2010, 03:55 PM
aftersix
post Oct 9 2010, 12:11 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(teniqcnerd @ Oct 9 2010, 12:57 PM)
I am a new UniF*** subscriber and I am regret I did it. At this moment I have 2 issues I am facing,
1) Every time when somebody using the phone my internet line will drop. I need to reboot my computer to get my connection back. Only happen during my wireless connection.
Gave a call to them. The explanation was this can be happen in wireless connection because the telephone line will reduce the wireless strength. Even our mobile phone can cause the strength if we are too near the router. They advise me to get one gadget to counter this problem and I screw and bolt them.
2) VOD. Maybe my assumption was wrong or the rep at the Unifi counter do not know what they are talking about. I purchased a movie and I can't review it back. Today just got a call from them and their statement was I can only review it back within 24 hours. In this case what is the difference between Unifi and Astro?

I always think private sectors are the one who always take advantage of the consumer and our "beloved" government should protect their citizen. In reality.......the opposite.

Lucky I did not cancel the Astro. I might subscribe back the streamyx only.
*
Can I know what is the "gadget to counter this problem"?


Added on October 20, 2010, 6:21 pmI got my Unifi already yesterday. Was successfully done the VLAN bridging and everything else needed to do. Thanks rizvanrp!!

This post has been edited by aftersix: Oct 20 2010, 06:21 PM

Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.0227sec    0.33    7 queries    GZIP Disabled
Time is now: 29th November 2025 - 07:47 AM