Ubiquiti has made improvements to their firewall. In 2026, has Ubiquiti filled in enough gaps to where the homelab or small business with multiple VLANs can move from pfSense to UCG?
VLANs are simple requirement. If thats what you need, you are good to go with UCG. Multiple VPN tunnels with complex routing policies is where Ubiquiti lags behind pfSense.
2 Likes
How so? UniFi does a good job at complex routing over tunnels.
IF you use AT&T with static IP addresses on residential service, I’ve yet to find a way to add the static IP block to the WAN interface alongside DHCP. I suppose you could probably do some jank snat/dnat rules to make it work but it gets messy. (Particularly if you’re bypassing the AT&T modem with a WAS110 module.)