UniFi Network - Configuring VLANS

Sdílet
Vložit
  • čas přidán 16. 06. 2023
  • In this video I will show you how to configure and create VLANS in your UniFi Network controller. I will be setting up a Home Automation VLAN, Security VLAN, Smart Phones & Tablets VLAN and a Multi Media VLAN in addition to the default Main Network.
    I will also show you how to tag ports on a UniFi POE Switch so that the ports get allocated to the associated VLANS.
    You can watch this video as it is or watch it as part of my 'Full Network Setup' series of videos, so you can follow the full setup from start to finish.
  • Věda a technologie

Komentáře • 28

  • @tommichalski240
    @tommichalski240 Před měsícem

    Very good tutorial. Could you make a detailed video of how to configure the vlans and firewall rules so that your mobile or other smart devices on default or secure vlan can communicate and operate hue bridge on a IoT vlan? I am really stuck here. That being said I am quite a newbie where it comes to networking. Loving ubiquity gear though.

    • @MrTimTech2022
      @MrTimTech2022  Před měsícem +1

      Hey @tommichalski240 - Thanks for your appreciation and comment. Well in fact I don't normally just do one off videos for 1 person in general... However on this occassion I think this is a very good ideal and would help a lot of people out and also you've asked at the right time as I'm about to do a 'new' series of videos focusing on setting up a unifi network and then configuring firewall rules, VLANS etc and IoT controlls from other VLANS. If you can wait a few weeks I will be getting around to the VLANS and Firewall videos. Hopefully this new series will be useful for you 🙂. And yes I plan on incorporating Philips Hue controls!

    • @tommichalski240
      @tommichalski240 Před měsícem +1

      @@MrTimTech2022 Fantastic! Surerly can wait. Really appreciate it. This will be a hit!

  • @australianbloke3934
    @australianbloke3934 Před rokem

    Just what I needed. Thank you. I am in the process of setting up a new network for which I need a couple of VLANS . I have a Ubiquiti Dream Machine Pro SE, in the house, a Ubiquiti 16 port switch out in my shed and connected to the DMPSE via a Cat 6 ethernet cable and a Ubiquiti five port mini switch serving my smart TV and other multimedia devices. For WiFi I have installed one UAP-AC-Pro in the house wired directly to the DMPSE and a second UAP-AC-Pro out in the shed plugged into the 16 port switch. So I have the option of hard wiring the multimedia devices or using VLAN WiFi as you describe. The access point in the house works beautifully, broadcasting both my main WiFi and Guest WiFi . However, the access point in the shed works fine with the main WiFi but cannot connect to the internet on the guest WiFi because it's not getting a valid IP address. Currently working on that problem, but my first attempt today of tagging the port that the shed access point is connected to use the VLAN I created resulted in disconnecting the 16 port switch from the DMPSE. Of course, the shed access point was also disconnected. I had to reset both devices to get them back online. As you can see, I'm quite a beginner at this, but determined to learn. Any guidance you may be willing to share would be greatly appreciated. Greetings from Australia, Don.
    By the way, my DMPSE software version is 3.1.15 and network version is 7.4.162.

    • @MrTimTech2022
      @MrTimTech2022  Před rokem

      Hey Don - Thanks for your posts, without actually being logged in to your UniFi Network or on site I find it difficult to actually problem solve. Maybe some other subscriber that posts can help. Shout out to anyone with suggestions!
      The only thing I can think of first off is to try untagging all the ports that either the 16 port switch in the shed and or UAP-AC Pro in the shed is plugged in to so that data from all vlans & main lan can travel from the UDMSE to the switch and UAP in the shed without any profiles attached to it and then see if you can get internet on the guest vlan within the shed ?

    • @australianbloke3934
      @australianbloke3934 Před rokem

      @@MrTimTech2022 I had a bit of luck with my issue with no valid IP address being allocated to the AP in my workshop. Following some suggestions from the GPT4 AI, I simply edited an existing profile that was previously used for cameras (I was not allowed to delete it even though I had deleted the cameras VLAN and had no cameras going through the DMPSE) I changed the parameters so the profile would be used by the 16 port switch and added a global 'allow guest network traffic' to the ethernet port that the AP is plugged into. Suddenly the Guest network sprang to life and is currently working well with access ONLY to the internet. In case you're wondering why I deleted my cameras VLAN it was because Ubiquiti does not natively support cameras other than Ubiquiti cameras. I had already installed a fully independent cameras and NVR system before I started my journey down the Ubiquiti path and could not justify buying new cameras or negotiating the much more complex task of running the existing cameras through the DMPSE. Furthermore, the original surveillance system (Dahua) has a real time display of all cameras in a convenient location inside the house. When time and money permits, I may gradually integrate new cameras into the Ubiquiti Protect system. 🙂

    • @MrTimTech2022
      @MrTimTech2022  Před rokem

      Ahh excellent, glad you were able to get the Guest VLAN inet access working, that makes sense from what you say. It might have been easier to just reset the UniFi Network and build it from scratch, which I guess would have also resolved that issue. I've sometimes found it just easier to start from scratch with a factory reset on the Network Interface when I've encountered issues unresolvable. Well at least you've sorted it now with the help of GPT4 AI :-)
      Ahh understood, my parents have a Dahua camera system and when I installed it for them I was quite impressed with it from a price point of view, I used a UniFi Protect dome camera with it and it worked well. I guess it does make sense eventually to have UniFi Protect so it's all in the same eco system for easier management in the future, when you get around to upgrading.

  • @_nvmh_
    @_nvmh_ Před 4 měsíci

    Fantastic video! The explanations were very clear. However, after adding the Hue hub to my new VLAN, I'm unable to access the light from the main LAN. Is this an expected outcome?

    • @MrTimTech2022
      @MrTimTech2022  Před 4 měsíci

      Depends on how you have your network restrictions set up for traffic rules. I would add a rule between the specific device on the main LAN to grant it access to your VLAN with Hue on it, create a firewall rule to allow inter-vlan traffic

  • @SteveStowell
    @SteveStowell Před 8 měsíci

    Do smart phones have access to multimedia as usually that is how you control media. Assume Sonos is part of multimedia but it can’t be

    • @MrTimTech2022
      @MrTimTech2022  Před 8 měsíci

      @SteveStowell - Yes I tend to use my smart phone in the 'Multimedia' VLAN but as I don't have Sonos this doesn't apply to myself. I also now use Home Assistant primarily to control my devices rather than my Smart Phone and I put Home Assistant in an 'Automation' VLAN which has firewall rules to allow access to the Multimedia VLAN.

  • @AKMS47
    @AKMS47 Před 10 měsíci

    Please help. I got Miktrotik as DHCP server. I want to conect UDM pro for some part of network, but I cant make UDM Pro DHCP relay give Mikrotik DHCP IP adreses. Relay dont work.

    • @MrTimTech2022
      @MrTimTech2022  Před 10 měsíci

      Sorry I don't currently have much knowledge of Mikrotik products! I'm not actually an IT Support service!

  • @NewHopePowell
    @NewHopePowell Před 3 měsíci

    Is there anything special that you need to do to set up VOIP when you create the vLan?

    • @MrTimTech2022
      @MrTimTech2022  Před 3 měsíci

      No nothing really, it should just work with a standard VLAN setup, certainly with Snom or Grandstream branded phones anyway.

    • @NewHopePowell
      @NewHopePowell Před 3 měsíci

      @@MrTimTech2022 They are asking that I set up a VLAN with ID=41. I can do that easily in the Pro but was just curious for I think the starbox sets up it own subnet for the phones but I can get it any network with vlan ID set to 41.

    • @MrTimTech2022
      @MrTimTech2022  Před 3 měsíci +1

      @@NewHopePowell There shouldn't as much as I can think why you cannot set it safely to VLAN 41, provided you are not already using ID 41 that is. I just chose 30 as the next number in sequence, no real reason why I used 30. Let us know how you get on 👍

    • @NewHopePowell
      @NewHopePowell Před 3 měsíci

      @@MrTimTech2022 thx

    • @NewHopePowell
      @NewHopePowell Před 3 měsíci

      @@MrTimTech2022 Just haven't done a VOIP system before and I too think it is self contained so I will assign my network with ID=41 and leave it alone. Thanks for your input

  • @SteveStowell
    @SteveStowell Před 8 měsíci

    Easiest way is to change dhcp refresh time to 1 minute for a while then change it back

    • @MrTimTech2022
      @MrTimTech2022  Před 8 měsíci

      Hey @SteveStowell - Thanks for your comment and the tip about DHCP refresh rate, I did spot that but for some reason didn't mention it in my video.

  • @australianbloke3934
    @australianbloke3934 Před rokem

    I've just noticed that my CZcams user name now has 4 numbers after the one I created as well as an @ symbol at the beginning. Don't know how that happened....

    • @MrTimTech2022
      @MrTimTech2022  Před rokem

      That happens with YT, all usernames have a '@' symbol before them and if say 'australianbloke' has already been previously taken as a username then any subsequent usernames with 'australianbloke' and YT will add other digits to the end, so it's not an error.
      Like with mine @MrTimTech was already taken so I had to add 2022 at the end of the username.

  • @non2614
    @non2614 Před měsícem

    i have an issue when i create another vlan after that i did not connect that wifi that i create could you help me please
    how can i bring our scenario

    • @MrTimTech2022
      @MrTimTech2022  Před měsícem

      Have you followed my video guide properly ? Maybe you missed something ?
      I'm not really able to help with different setups from my videos which it sounds like yours might be. Hopefully you will figure it out. Maybe watch my video again and go through things step by step again 👍

    • @non2614
      @non2614 Před měsícem

      @@MrTimTech2022 when I want to choose. The. Network vlan should I chose default if I chose anything else we couldn't connect to wifi

    • @MrTimTech2022
      @MrTimTech2022  Před měsícem

      @@non2614 I'm sorry but I do not understand what you are doing, if you follow my video it will work and put wifi clients in the right VLAN depending on which Wi-Fi SSID you select.