I really hope we can fix firewall rule management, the current way is just awful
@Chazzaa-n7g6 сағат бұрын
OSPF is currently half-baked (and you can’t run it on the same interface used for WAN!) so seeing how complex BGP can get I would have thought there first try will be quite lackluster but time will tell…
@jaymax979 күн бұрын
Could you go into detail of how you set up dns for your domain dns? Currently have everything going to the DC dns but would like to see what you’re doing.
@paultech93859 күн бұрын
I’d love to see a vid on traffic rules, profiles and firewall rules.
@Barracade2210 күн бұрын
I've been able to see my OSPF neighbors just fine. Even before 8.6.9
@seanwoods152610 күн бұрын
Release the directors cut!! :).. All jokes aside I am interested on your thoughts on the FW rules.
@ToastyAnswers10 күн бұрын
I have a lot of thoughts on the FW rules... lol I've moved my rant into a new video that's basically going to just cover Firewall Rules in General.
@coffeecakecharlie10 күн бұрын
have they fixed the issue where Surfshark wireguard doesn’t work with Unifi?
@ToastyAnswers10 күн бұрын
Not that I'm aware of. I've only seen the workaround for this issue by reducing the MSS, but I don't run Surfshark VPN so I can't say one way or the other.
@coffeecakecharlie10 күн бұрын
@ i have a support ticket open at the moment but tried the ea firmware today…no go. tried the mss trick via ssh as well. doesn’t fix it for me. sad times as i just started a 2 yr contract with surfshark 😂
@jameshancock4 күн бұрын
mDNS. Still a mess.
@Dmkjr11 күн бұрын
Supports BGP now though.
@DeadlyDragon_11 күн бұрын
Supports BGP to what extent? Can you setup AS path prepend? There is a LARGE amount of configuration associated with BGP. There is a massive amount of adjustments that can be made to influence the path selection of BGP. Also can this take a full v4 AND v6 routing table? or only accept a default / filtered table.
@ToastyAnswers10 күн бұрын
Thought I'd chime in here and say I'd be very surprised if it can support the full routing tables... I've yet to see a "firewall" that can and still work "well".
@DeadlyDragon_10 күн бұрын
@@ToastyAnswers mainly enterprise kit in my experience. Palo Alto’s and fortigates depending on SKU can take a full table. But again separation of duties is important and should be kept in mind. All firewalls are routers to an extent but that doesn’t mean they should be acting as your primary router.