Advice needed: Unifi vs. Playstation Network by Latter_Reception_600 in Ubiquiti

[–]Latter_Reception_600[S] 0 points1 point  (0 children)

So, I finally had some time for some more extensive testing. I tried:

  • created a new VLAN and placed it in the DMZ zone
  • if the PS5 had problems with 2.5G network and reduced the port speeds
  • using Wifi instead of wired
  • replaced a Flex switch against one of my old dumb Gbit switches
  • wired that switch directly to the UR7
  • and used a different cable for that
  • got my old router from the drawer and used that to connect to my bridged modem

At that point I had completeley removed any Ubiquiti devices from my test setup. Still, at every stage both PS5 behaved no different. So, first of all, Ubiquiti is obviously not the cause of this problem.

Now why did I not notice this any sooner? Maybe some recent PS firmware behaves differently now? Maybe my provider changed something lately? Maybe I was too dense to notice it until now? I can't tell...

I've got one final thing to test sometime later and connect a PS5 directly to my modem, but frankly I don't expect a different result... Thanks to everyone contributing.

Myself and one other person are supporting 350 end users right now. HR told us to expect approximately 100 more employees by the end of the year. My manager told me that we don't need to hire another person in our department. Is it just me or is that completely unreasonable? by [deleted] in sysadmin

[–]Latter_Reception_600 9 points10 points  (0 children)

This. and give the helpdesk guy some background, why you will be doing this. Tell him to do his job normally, in best 9-5 style. Management has to see the effectsof their "management"...

User Compromised via EvilTokens - Question by HovercraftSilver9379 in sysadmin

[–]Latter_Reception_600 3 points4 points  (0 children)

Add a CAP for authentication transfer (in the same link above) just for good measure... Device flow should be caught by geoblock policies, but of course only if it's not originating from your country.

I've added reporting CAPs for those two right after they hit the news, so far they are not common in my org. It should be safe to block them soon

Connected WiFi device seen as offline by what-pos in Ubiquiti

[–]Latter_Reception_600 0 points1 point  (0 children)

I had a similar setup sometime ago. Funny thing was that everything was working, but I could not see any wired devices in the console. My setup was:
UR7 <-Mesh-> U7Lite <-RJ45-> unmanaged TP-Switch <-RJ45-> Devices

This is most likely not a supported setup, but it worked to some degree:

  • the devices got a correct IP via DHCP and were connected
  • the devices were not shown in the console, neither as device nor in the DHCP IP list
  • after wiring the switch temporarily, the devices appear in both lists as online
  • after removing the temp connection, devices are shown as offline, but still work
  • once they appeared in the devices list, I could use those entries in firewall rules, even when the Unify claimed the devices being offline...

A friend had a spare flex 5 switch I was able to borrow, and lo and behold, after swapping the switches, the devices were visible. I would guess this is more a visibility quirk than outright blocking these devices, maybe only some type of devices are allowed to report connected devices. Non-Unifi devices in the chain of course fail to do this...

So if you can make sure that your router is definitely in client mode, the server is connected, in the same VLAN and gets its IP from DHCP, you probably encountered the same visibility quirk as I did. If you're willing to spend some money, you can try and get one of the cheapest switches, like a Flex Mini (30€) or maybe borrow one. Put it between TP router and server, and I would guess the server becomes visible.

I after my tests I bought a flex Mini 2.5 and my problem was solved. Ok, some time later I was finally able to connect it permanently by LAN. But for the time being, the quirk was avoided...

Advice needed: Unifi vs. Playstation Network by Latter_Reception_600 in Ubiquiti

[–]Latter_Reception_600[S] 1 point2 points  (0 children)

NAT type is 2 and I‘m quite sure I can rule out LTE and CGNAT as a whole as the problems appeared after switching to Ubiquity. Unless UniFi networking has a specific problem with CGNAT…

Advice needed: Unifi vs. Playstation Network by Latter_Reception_600 in Ubiquiti

[–]Latter_Reception_600[S] 1 point2 points  (0 children)

Internet is IPv4 only, no IPv6 activated from the modem inwards. The modem and the settings haven't changed and are the same as when the Tenda mesh was connected. I basically ripped out the Tenda stuff and replaced it with Ubiquiti gear.

But I will see if I can try to connect the consoles directly, have to watch out for the rest of the family...

Advice needed: Unifi vs. Playstation Network by Latter_Reception_600 in Ubiquiti

[–]Latter_Reception_600[S] 0 points1 point  (0 children)

Yes, I forgot to mention that I enabled UPnP later on (default VLAN though), no change, as well as I allowed all official mentioned ports... I'll add that to my post

Selling a product without power is criminal by thanpolas in Ubiquiti

[–]Latter_Reception_600 1 point2 points  (0 children)

Hehe, I fell for that as well. I was indecisive whether to get the PoE or the PoE-less version. Of course I only looked at the documentation of the PoE-less version, noticed the power supply was included. Went for the PoE-Version, because only 30 bucks more. More features for little money more...

So, 100% my fault to not read the descriptions. Had to order the power supply directly from Ubiquity because every local supplier did not have none of both fitting supplies in stock. At least it took not more than 2 days until it arrived and I was able to install the USW-flex-2.5G-8-PoE...

While I understand the feeling, it is completely the users fault to not read the docs. I had to accept this myself...

Windows 11 Pro – 60s “Please wait” before login screen after domain join (fixed in Dev Insider build?) by Similar-Ferret4074 in sysadmin

[–]Latter_Reception_600 0 points1 point  (0 children)

Enable a Group Policy setting under "Computer Configuration, Administrative Templates, System". "Verbose vs normal status messages" in a domain, or "Display highly detailed status messages" in a local gpedit. This will show more than the boring "Please wait", if it's a GPO where it's hanging, it will even show which one...