Ubiquiti UDM Pro as a Wireguard VPN server in 2025

I recently updated my UDM Pro UnifiOS verison 4.3.6, and Network version 9.3.43.

Coming from the very old 1.x UnifiOS version, a lot of things were different, but I quickly noticed that Unifi now has a builtin Wireguard VPN server configuration option.

I had written about adding and configuring Wireguard VPN a few years ago (https://www.nodinrogers.com/post/2022-03-15-wireguard-vpn-on-ubiquity-udm-pro/) under the old 1.x UnifiOS version.

Now being built into the UnifiOS, it makes it much much easier to get Wireguard up and running.

Configure the Wireguard VPN server

In the Network web interface: Setttings >>> VPN >>> VPN Server >>> click Create New

The default settings will work without any modifications, but you can change them to meet your needs.

The Server Address should be filled in automatically with the public facing IP your ISP provided.

If you have a DDNS entry for your public IP, check off Use Alternate Address for Clients and add your DDNS hostname.

Click Add at the bottom

Wireguard VPN server configuration

Yeah, that's it...it creates the server and adds a firewall rule to allow the VPN traffic in.

Adding VPN clients

Once the Wireguard VPN server is configured, adding VPN clients is as easy as clicking the Add Client, adding the client's name, and scanning the QR code from within Wireguard app on the client's device:

Wireguard VPN client configuration

If you need something other than the default settings, click the Manual tab and modify the settings as needed.

On the chance the client's device isn't available, such as for a remote user, download the config file.