UniFi Network Application 10.5.67
Overview
UniFi Network Application 10.5.67 includes the improvements and bugfixes listed below.
Client Observability
Gain complete visibility into client behavior with a 24-hour activity timeline that correlates connectivity, roaming, application usage, and network health into a single troubleshooting experience.
- Review a 24-hour time machine of client activity and events.
- Track connection quality with signal strength, TX retries, latency, and packet loss.
- Analyze roaming history and access-point performance affecting the client experience.
Safe Ops
Safe Ops introduces proactive protection and recovery mechanisms designed to reduce outages, maintain connectivity, and improve operational resilience across UniFi deployments.
- Added Auto STP Edge that automatically sets ports connected to end devices as Edge.
- Added Link Debounce controls to reduce link flapping caused by brief interruptions and unstable connections.
- Requires USW 7.5.4 or newer.
- Added Test & Confirm safeguards that automatically roll back changes if device connectivity is lost after configuration updates.
- Available for Internet and Network settings. Wider support coming soon.
- Requires UniFi OS 5.1.12 or newer
- Added Data Plane Protection.
- Enhanced Device Supervisor with global Auto-Recovery controls, including configurable health monitoring and recovery thresholds.
Improvements
- Added information to CyberSecure settings when Safe Mode is active.
- Added an option to clear the Auto STP Edge assigned status in Port Manager port settings.
- Added Domain and Description fields to Network Lists.
- Added Local Subnet configuration for policy-based IPsec Site-to-Site VPNs.
- Added an “Advertise BGP to SD-WAN” option in BGP settings.
- Added PPPoE 1500 MTU support.
- Added a Duplicate action for Firewall Policies in the Policy Table.
- Added Firewall Hit and Last Hit columns to the Firewall Policy table and predefined policy side panel.
- Added column customization to the Radios page.
- Added column sorting to Settings Overview.
- Added sorting to OSPF and BGP neighbor tables.
- Added warnings for client devices using private MAC addresses.
- Added a warning when changing 6 GHz radio settings on an MLO mesh parent.
- Added a Person filter to the Clients page.
- Requires One-Click WiFi.
- Added APs with wired downlinks to Infrastructure Topology.
- Added uplink change and device update events to Infrastructure Topology.
- Added third-party device connection events to the Infrastructure Topology timeline.
- Added Last Seen information to anomaly tooltips in Port Manager.
- Added customizable Power Cycle on Internet Loss behavior with configurable delay and single-cycle recovery per outage to prevent repeated modem resets during prolonged WAN outages.
- Added a Hardware Acceleration option for UDM Beast.
- Added an infrared status indicator for EAV Bridge.
- Requires firmware version 1.0.9 or newer.
- Added migration support from Suricata 6 to Suricata 8.
- Requires UniFi OS 5.1.20 or newer.
- The upgrade may take up to 1 hour after updating the Network Application.
- On consoles with high resource usage, the automatic upgrade is skipped, and a manual upgrade option is available in CyberSecure settings.
- Improved device adoption resiliency.
- Improved Network Application stability under high load.
- Improved the VPN settings user experience.
- Improved VPN client configuration validation.
- Improved validation when configuring BGP.
- Improved IPsec policy-based routing configuration by excluding WireGuard and OpenVPN clients from Local Network selection.
- Improved the offline device experience in Topology.
- Improved the STP Blocked experience in Infrastructure Topology.
- Improved Infrastructure Topology timeline events by grouping cascading device offline and online events while clearly identifying the top uplink.
- Improved the U5G device side panel with more detailed status information.
- Improved database upgrade resiliency against power loss.
- Improved Hardware Acceleration validation to check only when Smart Queues or QoS are enabled.
- Improved the CyberSecure section user experience.
- Improved SD-WAN Underlay resiliency.
- Improved the Network Lists user experience and validation.
- Improved RADIUS Server validation.
- Improved application stability.
- Increased the EFG IDS/IPS VLAN limit from 25 to 64.
- Reduced U5G eSIM data usage from WAN monitoring.
- Restored maximum download and upload speed indicators on the Dashboard.
Bugfixes
- Fixed the security issues mentioned in Security Advisory Bulletin 067.
- Fixed an issue where WPA Enterprise SSIDs could fail to broadcast when using a stale RADIUS accounting secret.
- Fixed an issue where the Virtual Network Override limit was applied to clients that did not have the feature enabled.
- Fixed an issue where LTE Pro Failover could fail in rare cases.
- Fixed an issue where sorting by Available IPs in Network settings did not work.
- Fixed an issue where restoring a backup disabled hardware offloading on supported consoles.
- Fixed an issue where USW Flex downlink devices could display an incorrect uplink in rare cases.
- Fixed an issue where Captive Portal and internet access did not work on UX7 guest networks using non-Hotspot WiFi.
- Fixed an issue where device name changes were not reflected in Update Manager while the device was offline.
- Fixed an issue where Access Point settings could not be saved in rare cases.
- Fixed an issue where Hotspot Managers could not access vouchers.
- Fixed an issue where frequent connected and disconnected logs were shown for MC-LAG target members.
- Fixed an issue where blocked client devices could remain blocked after removal, causing connectivity issues.
- Fixed an issue where the Network Application could fail to reinstall on Cloud Key Gen2.
- Fixed an issue where duplicate WAN settings could be created when adopting multiple U5G devices simultaneously.
- Fixed an issue where the VLAN ID for inter-VLAN routing networks on third-party gateways could not be edited.
- Fixed an issue where disabling a LAN port on UX7 could prevent configuration from being provisioned to other meshed access points.
- Fixed an issue where AV Manager was not displayed when no switches were adopted on the site.
- Fixed an issue where jumbo frames were not correctly applied to EF-Core LAG ports.
- Fixed an issue where switches could fail to adopt in rare cases.
Additional information
UniFi OS Server
Going forward, we recommend users upgrade to UniFi OS Server for all self-hosted deployments. It provides the full UniFi OS Platform experience, ensuring you receive the latest features, improvements, and integrations.
UniFi Network Native Application for UniFi OS
Compatible with UDM, UDR, UDR7, UDR 5G Max, Express, Express 7, and UCG models (Ultra, Max, Fiber, and Industrial) on UniFi OS 3.1.6 or later. UDM-Pro, UDM-SE, and UDW have been using it since UniFi OS 5.1.5.
- The UniFi OS update utilizes the application version compatible with your console.
- The manual update process via SSH requires a compatible package. Incompatible packages will be rejected on installation.
- Older UniFi OS versions (prior to UniFi OS 3.1.6) on the UDM and UDR continue to utilize the standard UniFi Network Application for UniFi OS.
Checksums
43e063cd9eb23da43486d94b1c6d7ba4 | UniFi-installer.exe 7fa2a2772e99a118b76d1cc5ba3ad7e4 | UniFi-Network-Server.dmg 6fba2c86ab1cb4a7f1ac68daca6079bc | UniFi.unix.zip 0b53960adc6b24c1a9fe77c5cf7336d3 | unifi_sysvinit_all.deb fb3fc1cd76cb2505fc2e77616e40e812 | unifi-uos_sysvinit.deb 521cb64de466f4fd9fa6a62261c1349c | unifi-native_sysvinit.deb 601df32736f41e40a80a3e472450a3e1 | unifi_sh_api ------------------------------------------------------------------------------------------------------------------------ 0616709e512c75bfc8a37a75d412d71cacac8b98f4e443358fb163e38aa38829 | UniFi-installer.exe 45dc63df7811d03f08bf58b44b1b3dd7b90ed8a245269acec64a0343d1ec224c | UniFi-Network-Server.dmg 2121a1b4f115388387b73d9e443312779724422f5609bdbae8309efe0ca6672c | UniFi.unix.zip ee3b99b95678be4e1d8b58e3826e8911531b12b32ee8bf1ea4b49fb7e76f9783 | unifi_sysvinit_all.deb 052d9ea00a6afaaf225c1c9d89b3c8d4f64143e468a319255a809440f5972211 | unifi-uos_sysvinit.deb 418a6f797994917af126449d9b0072666097c5a69dd795ae4b5e36ef39917e9e | unifi-native_sysvinit.deb 1791685039ea795970bcc7a61eec854058e3e6fc13c52770e31e20f3beb622eb | unifi_sh_api