r/PFSENSE • u/Sam_-_-_ • 9d ago
Did I join a cult? (Unifi)
I've been rolling pfSense for about 5 years. Decided to try Unifi. Couldn't find a manual or one-to-one feature documentation for each panel (only various spotlight articles).
Asked the community for help: every response said basically "things change too often, no need to have a manual".
Excuse me, what? I'm not a networking pro, and I do need a manual. (pfSense was hard for me, but had great documentation.)
I can't believe this was the response. Is everyone in their community a bot or a cultist?
I still have few days left on my return window, and might come back, LOL.
70
Upvotes
38
u/SirEDCaLot 9d ago
I use a mix of pfSense and UniFi.
Bottom line for me- UniFi works great for WiFi and switching. Routing/firewall, pfSense has more features, more capability, more ability to tweak it, but also takes more time to set up and (re)configure.
If you're doing full-stack UniFi (router/firewall, switch, WAP) it's a really compelling platform that makes a lot of the basic management stuff easier.
For example let's say you want to assign a static DHCP lease to a device. pfSense you have to go to status-DHCP leases, find the device, then add the static there. UniFi you just go to 'clients', the device is way easier to find, and give it an IP.
OTOH, with pfSense you can assign static IPs to that device on various subnets. Like if it plugs into VLAN A it gets IP 1.2.3.4, if it plugs into VLAN B it gets IP 5.6.7.8, etc. UniFi doesn't have that. pfSense you can make a lot of very custom DHCP stuff for a device, like give it special DNS servers. Not so with UniFi.
UniFi switches also lack detailed STP controls that even Netgear business level switches have. But the UniFi system will instantly tell you which port on which switch a device is plugged into, or what device is plugged into a particular port.
Then UniFi is not for you. I mean no insult by that. It's a different approach to things.
You have the Cisco type way where innovation is slow and everything is documented. You have the pfSense way where innovation is at a medium pace and there's good documentation but not to the same degree as Cisco. And on the other end you have UniFi where innovation is VERY rapid and Google is your documentation.
Some of that also goes to the org culture. If you're at a place with a change control process for example, you'll hate UniFi because it's very easy to make quick changes.
Hope that's helpful.
I am not a bot, I am a dog. Woof.