As you may know, Ubiquiti has included a new IPS/IDS intrusion detection system (in beta) in recent updates of the controller software for Unifi equipment. I can connect remotely to Indigo just once with that system turned on but then Indigo ultimately loses the connection. So I guess it’s working! IPS (intrusion prevention) won’t allow me to connect remotely through the reflector at all. “IDS” (just detection) allows me to get through some of the time.
However, the security gateway itself flips out and disconnects from the Unifi controller. At least its starting to appear Indigo’s reflector may be involved. Just a strong hunch at this point based on casual testing. I’ve attempted to inform Ubiquiti.
Here is some info on their Intrusion Prevention System. It may be possible at some point to identify “safe” intrusions like Indigo. (And also Security Spy for that matter - connections to that show up as a trojan attack alert in the logs) Indigo does not show up as an alert. Which could ultimately be a bad thing if the same techniques are used maliciously.
UniFi - USG: Configuring Intrusion Prevention/Detection System (IPS/IDS) – Ubiquiti Networks Support and Help Center
https://help.ubnt.com/hc/en-us/articles ... m-IPS-IDS-