-
Guest Network with EdgeRouter Lite and UniFi Access Points, Take 3!
I've written about guest networks with UniFi Access Points twice before and since I've written those articles, the UniFi software has just gotten better and better. My instructions are close to no longer being needed, but not quite. In the latest versions of the UniFi controller (5.x), Ubiquiti has fixed issues with network slowdowns when turning on the guest network. This has excellent news and really simplifies the configuration.
For this post, I'm going to reuse some of my pictures and steps as I don't like to duplicate my work!
Start on the EdgeRouter Lite and do the following:
- On the EdgeRouter Lite’s Dashboard, click Add Interface and select VLAN.
-
Set up the VLAN as 1003 and attach it to the physical interface of your LAN. Give it an IP address in the range of a private IP block, but make sure you end it in a /24 to specify the proper subnet. (Make sure it is different than your normal private IP block.)
-
Click on the Services tab. Click Add DHCP Server. Set it up similar to the image below.
-
Click on the DNS tab under services. Click Add Listen interface and select the VLAN interface. Make sure you hit save.
Now it’s time to move over to the UniFi Controller.
- After you login to the controller, click the Settings in the lower left.
-
Click Networks.
-
Click Create New Network
-
Setup the network as indicated in the next image and then click Save.
-
Select User Groups on the left side.
-
Click Create New User Group.
-
Enter appropriate values to limit upload and download.
-
Select Wireless Networks on the left side.
-
Click Create New Wireless Network.
-
Configure the network similar to the next picture. Of course, set a password that isn't bullets!
-
Select Guest Control on the left side.
-
Configure the guest access how you find appropriate. Since I already have a WPA2 password, I just put in no authentication and some basic text. The important part of this screen is access control at the bottom. This area basically isolates guest clients from connecting to your LAN. In my prior configurations, I had to do this at the router level. This is much simpler and cleaner to setup.
Now you can test this by connecting to the guest network and accessing the Internet. On my network, I now get a captive portal; nothing fancy, but it's kind of cool.
Then try connecting to a device on your LAN or connecting to the EdgeRouter Lite. Both actions should fail.
I know that there are a lot of steps to configure this, but they’re not that difficult and you only have to do it once!
I’ve tested this and it is working well on my network; if I’ve missed anything, please let me know!
This configuration is much cleaner than my previous 2 attempts as most of the configuration is in the UniFi Controller. I'll be writing one last follow up on this topic when I swap out my EdgeRouter Lite for a UniFi Security Gateway (USG). While the EdgeRouter Lite is a great box, the USG is basically the same hardware, but all configuration is done through the UniFi Controller. I'm not quite ready to do the swap (I have one sitting on my shelf that Ubiquiti sent to me) as I'm waiting for the UniFi Controller to add a few more features like static DHCP assignments, static DNS entries, and IPv6 support (all via the GUI; this can already be done on the command line).
- On the EdgeRouter Lite’s Dashboard, click Add Interface and select VLAN.
-
Did I find my next new car?
In January, I wrote that I've delayed my decision to buy a new car. Last weekend I had some car trouble where my car wouldn't start and had to deal with it. My son asked me if I was going to get a new car and I said no; I'd just get it repaired. However, I decided to look at Apple's CarPlay site and pursued the list of cars that support it. None of the typical American cars like Ford or Chevy interested me and I am not getting a Ferrari! I saw that the 2017 Subaru Impreza will support it. At the auto show, I saw the Impreza and it was a decent looking car. It didn't have CarPlay and wasn't a plugin hybrid. Now that it will have CarPlay, I've decided to take another look. Plugin hybrids are kind of the neglected step child of car manufacturers; it's either hybrid or electric which kind of concerns me in terms of reliability and support. I'm going to forego the plugin hybrid for now and that should open up my search.
I found a few sites offering first looks as well as Subaru's own "sneak peak". It appears that the loaded package will have some interesting tech besides CarPlay. EyeSight® is a system that helps prevent collisions, notifies the driver if he (or she) drifts, as well as can work with the cruise control. Also, it has blind spot detection, cross traffic backup alerts, and high beam assist. In addition, it finally has a power adjustable driver's seat. So it would appear that the car (on the surface) has many of the features that I'd want in my next car.
On top of all the features, if the pricing remains similar to the 2016, the car would actually be affordable. EPA estimates for the 2016 are about 50% higher than my current vehicle which would be immediately noticeable as I am now driving a lot more for my commute. Subaru says that the car will be available in the later half of this year. Now I just wait so that I can give the car a test drive and see if it is the vehicle for me.
I'm crossing my fingers!
-
Commuting
In the last 4 weeks, I've commuted more than I have in the last 17 years. I'm starting to get used to the routine; the 30 minute drive each day isn't too bad, but it is an hour out of my day that I can't get back. I know that people commute everyday, but it is new to me.
My commute is against traffic which lets me get to work easily; no matter how fast I go, it takes me just about 30 minutes. On the way home, I pay for using the carpool lane (FasTrak) and while the cost varies depending on a number of factors, it is absolutely worth it for my sanity to not to have to sit in traffic. Like my drive to work, my drive home is about 30 minutes no matter what.
At some point I hope to work from home a few days a week. This will allow me to recover an hour each day I work from home and I think will help me more productive.
I wonder what would happen if people that could work remotely did so a few times a week. The office interaction is good, but I believe there can be a balance that affords people some of the benefits I've taken for granted most of my career.
-
My New Adventure
When I was laid off, people kept telling me that there was nothing to worry about and take some time for myself. For the first few weeks, I tried to heed the advice and took it easy while at the same time leisurely looking for a job. I treated the first month as the sabbatical that I didn't have the opportunity to enjoy and managed to make it through my inbox, my todo list, and ran out of things to do around the house.
After about a month, I started to get antsy as I'd never been away from a job for that long in my 20+ year career. I applied for a few jobs, but didn't hear back on most of them. This had me quite nervous even though I knew I didn't have to get a job for awhile. Would I be able to find a job? Would I have to take the first job offered to me even if it wasn't the job i wanted? Would I have the motivation to start working again?
This period of unemployment also had me thinking about what happens for older workers; all of their experience comes at a higher price tag and many companies aren't willing to pay for it. I don't consider myself an older worker (however, the federal laws about employment consider older workers over 40, I believe), but when I started talking to people and explained that I have 20 years in mobile app development, I started to date myself.
My job search, luckily, only took about 6 weeks from the time I was laid off (actually it was a total of about 10 weeks as I started even before I was told I was being laid off). I saw a job posting for a mobile architect and decided to apply even though the job description was vague. After talking with the recruiter, I felt like the job was perfect for me based on my experience. My interviews went well and the rest is history!