UniFi Firewall Defaults Are Too Open: Here’s How to Lock Them Down [YouTube Release]

Additional Resources:


Thanks to NinjaOne for sponsoring this video
Free IT Management Trial | NinjaOne

By default, UniFi networks are more permissive than many people realize.
New VLANs can talk to each other, internal networks often have broad access to the gateway, and “internal” traffic is frequently trusted unless you explicitly lock it down. In this video I go over how to change the default setting to get your network to a more secure posture.

UniFI VPN Rules

UniFi Zone Firewalls

Connect With Us

Lawrence Systems Shirts and Swag

►👕 Lawrence Systems

AFFILIATES & REFERRAL LINKS

Amazon Affiliate Store
:shopping_cart: Lawrence Systems's Amazon Page

UniFi Affiliate Link
:shopping_cart: https://lawrence.video/unifi-affiliate

All Of Our Affiliates help us out and can get you discounts!
:shopping_cart: Partners We Love – Lawrence Systems

Gear we use on Kit
:shopping_cart: Kit

Use OfferCode LTSERVICES to get 10% off your order at
:shopping_cart: Tech Supply Direct - Premium Refurbished Servers & Workstations at Unbeatable Prices

Digital Ocean Offer Code
:shopping_cart: DigitalOcean: AI-Powered Unified Agentic Cloud Infrastructure

HostiFi UniFi Cloud Hosting Service
:shopping_cart: HostiFi - Launch UniFi and UISP in the Cloud

Protect your privacy with a VPN from Private Internet Access
:shopping_cart: https://www.privateinternetaccess.com/pages/buy-vpn/LRNSYS

Patreon
:money_bag: https://www.patreon.com/lawrencesystems

Chapters
00:00 UniFI Firewall Rules
01:11 Default Security Posture
02:00 UniFi Port Security
05:02 Setting Alarm for Switches
05:30 Default Firewall Zones and Rules
12:20 UniFi Gateway Rules
15:00 Creating a Custom Zone
16:00 Locking Down Gateway Rules
19:40 Custom Allow Rules
20:52 External Access and VPN Settings
23:00 Adding More Rules if needed

Good stuff. Probably the first video of his I’ve watched in a few months.

2 Likes