thecomputerguy
Well-Known Member
- Reaction score
- 1,414
A client who isn't on MSP reached out to me to audit their VPN configuration. At the moment, they have a crappy ASUS Bestbuy special with the required ports opened up and the VPN Server is running on their Synology NAS using OpenVPN.
I know that punching a hole through their network and opening up the NAS to the world isn't a great idea, especially since (as far as I know) the NAS doesn't support MFA with OpenVPN.
So ... they are are open to dropping the ASUS for a Ubiquiti UDM and setting up the VPN at a network level. I would REALLY, REALLY like to stay in the Ubiquiti Ecosystem because I'm familiar and comfortable with it. This company is VERY small ... 3-5 users. They need a VPN because their NAS stores something like 20TB's of data so chopping up that data and using Sharepoint isn't really an option.
It looks like UB allows for the following VPN options: OpenVPN, Teleport (Mobile Only), WireGuard, and L2TP.
I'm feeling like the best option here is WireGuard but I'm not sure it supports 2FA through a Unifi Gateway ...
Am I on the right track here?
@YeOldeStonecat
@Sky-Knight
I know that punching a hole through their network and opening up the NAS to the world isn't a great idea, especially since (as far as I know) the NAS doesn't support MFA with OpenVPN.
So ... they are are open to dropping the ASUS for a Ubiquiti UDM and setting up the VPN at a network level. I would REALLY, REALLY like to stay in the Ubiquiti Ecosystem because I'm familiar and comfortable with it. This company is VERY small ... 3-5 users. They need a VPN because their NAS stores something like 20TB's of data so chopping up that data and using Sharepoint isn't really an option.
It looks like UB allows for the following VPN options: OpenVPN, Teleport (Mobile Only), WireGuard, and L2TP.
I'm feeling like the best option here is WireGuard but I'm not sure it supports 2FA through a Unifi Gateway ...
Am I on the right track here?
@YeOldeStonecat
@Sky-Knight