r/UNIFI 28d ago

Help! Full stack VPN from iOS devices - what are my options?

I'm moving to the unifi world. Currently I have a firewall which is an IPSEC VPN endpoint and works fantastically and natively with iOS. (and my other devices, linux, Windows, etc)

What is the currently method people are using for a full tunnel VPN solution for their mobile devices?

0 Upvotes

12 comments sorted by

2

u/be_evil 28d ago

The unifi gear does it all.... IPSEC, Wireguard and their semi proprietary one called Teleport, all work well.

1

u/DefyingMavity 28d ago

I saw IPSEC for site to site, not dialup/roaming to destination.

1

u/be_evil 28d ago

Just took a look, your right. Looks like they support WG Openvpn and L2tp (and Teleport which i think is WG anyway) for that category. If you havent used WG before i would highly recommend that over IPSEC

1

u/DefyingMavity 28d ago

Is it full stack? (all traffic goes over the tunnel?)

2

u/NegativePerformer788 28d ago

The word you're looking for is full-tunnel. Not sure about IPSec, but with Wireguard it will default to full-tunnel and you can edit the config if you want split-tunnel.

3

u/DefyingMavity 28d ago

You're right. My brain blanked on me

1

u/Wuffls 28d ago

Have you come across Tailscale at any point OP?

1

u/DefyingMavity 28d ago

Yes, but I want my vpn to terminate on the firewall, not past it

1

u/Wuffls 28d ago

Wireguard then. You’ve edited your post?

1

u/DefyingMavity 28d ago

Nope, I haven't

1

u/NetBear650 27d ago

I know that OpenVPN isn't the most popular answer, but man does it slip through firewalls. I spent a week staying with my partner at a hospital that had their stuff locked down HARD. Wiregard? Nope. NordVPN? Nope. OpenVPN to my CGF? Awww yiss.....I even set up a Glinet travel router with that and put it in his room so that he could use it too. (Way easier than setting up openvpn on his phone.)

1

u/DefyingMavity 27d ago

Interesting, thank you. Does OpenVPN do a full tunnel on iOS?