Shield your UniFi Controller behind a secure proxy
UniFiShield acts as a secure proxy layer in front of your UniFi Controller or UDM Pro. It exposes only the endpoints needed for third-party services to authenticate devices — without exposing your real admin credentials or local network.
Third parties never see your real login. Only device-specific API calls are exposed.
Keep your network closed. UniFiShield lets external systems interact without opening ports.
Only the needed endpoints (like MAC authentication) are available. Everything else is blocked.
Supports both classic controllers and UniFi OS. Let others safely use your UDM Pro APIs.
UniFiShield sits between your controller and the third party system. It proxies and sanitizes all requests.