Posted on the 17th August 2022
I have been using the network tunnel feature for Cisco Umbrella with Meraki routers for a while, but today I was asked to set this up on a UnFi Dream Machine Pro.
There are plenty of instructions for other devices on the Cisco Umbrella website, but nothing specific for UniFi, so I thought I would post the options I found to work the best here.
On a UniFi Dream Machine Pro, try these settings.
VPN: Manual IPsec
Subnet: 0.0.0.0/5
Key Exchange Version: IKEv2
Encryption: AES-256
Hash: SHA256
IKE DH Group: 14
ESP DH Group: 14
PFS: Enable
On a UniFi USG Pro 4 try these settings:
VPN: Manual IPsec
Subnet: 0.0.0.0/5
Key Exchange Version: IKEv2
Encryption: AES-256
Hash: SHA1
DH Group: 14