Choosing the Right UniFi Control Plane
UniFi offers scalable, license-free cloud management. In most cases, the best way to get started is with a Cloud Gateway, which combines UniFi management software with a powerful network gateway. This guide explains how Cloud Gateways work and how to get started with them.
There are other control plane options, usually running on UniFi Consoles, which are dedicated hardware devices running UniFi OS and the UniFi applications (Network, Protect, Access, Talk, Connect) to serve as a local control plane. For more advanced users, this guide will also introduce all of the UniFi Consoles and how they work.
Start with a Cloud Gateway
For the best UniFi experience, we strongly recommend starting with a Cloud Gateway, which integrates networking, security, and UniFi management software into a single device. To learn more about Cloud Gateways, click here.
-
For small to mid-sized deployments:
- The Dream Machine Pro (UDM-Pro), Dream Machine Special Edition (UDM-SE), and UCG-Ultra offer a balance of performance and management capabilities, with the key difference being form factor—UDMs are rack-mounted, while the UCG-Ultra and UCG-Max are desktop units.
-
For mid- to large-scale deployments:
- The Dream Machine Pro Max (UDM-Pro-Max) provides significantly more CPU and RAM for additional clients and UniFi devices, as well as a second HDD for video recording resilience.
-
For enterprise-scale networks:
- The Enterprise Fortress Gateway (EFG) provides ultra-high performance, with 25 GbE networking and support for 5,000+ clients.
Offload Protect, Access, and More to a Dedicated Console
To enhance capacity and performance, you may choose to run UniFi Protect, Access, or Talk on a dedicated console. Or, if you are using an Enterprise Fortress Gateway (EFG)—which cannot run UniFi applications other than Network—you will need a separate UniFi Console for our other applications.
-
For large UniFi Protect deployments:
- A UNVR-series device provides reliable, high-capacity video storage and management. For the most demanding deployments, an ENVR provides even more storage and camera support.
- Use Vantage Point to manage multiple UNVRs from a single control plane.
-
For smaller Protect or Access needs:
- The CloudKey+ supports up to 12 cameras and multiple UniFi applications in a compact form factor.
For Advanced Users: Other Control Plane Options
While Cloud Gateways work for nearly all deployments, UniFi also provides additional control plane options:
-
Hardware UniFi Consoles:
- CloudKey+: A compact option for running UniFi Network, Protect, Access and Talk.
- CloudKey Enterprise: A console running UniFi Network designed for larger networks, supporting up to 1,000 APs and switches.
-
Official UniFi Hosting:
- A cloud-based UniFi Network management solution for users who prefer a managed hosting option over dedicated hardware. Learn more here.
-
Self-Hosted UniFi Network:
- Advanced users can run UniFi Network on their own hardware. Learn more here.
Most users using one of these options will pair it with a UXG for UniFi’s routing, VPN and security features.
Detailed Comparison of UniFi Console Options
For advanced users, this section outlines specific details for each UniFi Console model.
-
Cloud Gateways (UCG-Ultra, UCG-Max, UDM-Pro, UDM-SE, UDR, Express, EFG)
- Function: Combines UniFi Network management with routing, security, and performance optimization.
- Applications Supported: All UniFi applications (except for EFG, which runs UniFi Network only).
-
Form Factors:
-
Compact
- UCG Ultra: Entry-level solution w/ 1Gbps routing.
- UCG Max: Enhanced 2.3Gbps routing performance & full UniFi application suite
-
Rack-Mounted
- UDM Pro / SE: Standard mid-size solution w/ 3.5Gbps routing & full UniFi application suite.
- UDM Pro Max: Significantly more CPU and RAM for additional clients and UniFi devices, as well as a second HDD for video recording resilience.
- EFG: Ultra-high performance, with 25 GbE networking and support for 5,000+ clients. (UniFi Network Only)
-
Compact
-
CloudKeys (CloudKey+, CloudKey Enterprise)
- Function: Dedicated UniFi Consoles for small and mid-sized deployments.
-
Applications Supported:
- CloudKey+: A compact option for running UniFi Network, Protect, Access and Talk.
- CloudKey Enterprise: A UniFi Network manager designed for larger networks, supporting up to 1,000 APs and switches.
-
UniFi Network Video Recorders (UNVR, UNVR-Pro, ENVR)
- Function: Primarily designed for UniFi Protect deployments.
- Applications Supported: Protect and Access only.
-
Official UniFi Hosting (OUH)
- Function: Cloud-based UniFi Network hosting (not a physical console but functions as one).
- Applications Supported: UniFi Network only.
Details on other UniFi Console terminology
You may see the terms Cloud Gateway, Console, and UniFi Host used in different contexts. Here’s what they mean:
- UniFi Host: A general term for any device running UniFi applications.
- UniFi Console: A UniFi Host running on Ubiquiti hardware, such as a CloudKey+, UNVR, UNAS or Cloud Gateway..
- UniFi Cloud Gateway: A UniFi Console with a built-in network gateway, such as a Dream Machine Pro or UCG-Ultra. These devices combine network management, security, and routing in one unit.