Gbit Tech (818) 809-6743
C-7 #1050088  ·  Liability insured  ·  UniFi Certified PartnerNever the cheapest. Built to last.

UniFi Lab 03

Access unlock missing on call

They can answer the door call. They cannot unlock. Here is why.

IntermediateAbout 7 minConfig only

Your job: get Unlock on the Basic phone during a Front Door call, without breaking Admin.

This run: Break A. Front Door, Endpoint receivers.

Door callunlock_missing_on_call remote_unlock_disabled

Unlock not available, Remote Unlock disabled

unlock_missing_on_callUnlock not availableremote_unlock_disabledRemote Unlock disabled

Goal: Unlock on Basic, Admin still unlocks

Controls Why

Topology

Site: Access lab, Front Door
  1. ConsoleUnlock stops hereUniFi Access application
    Remote Unlock via UniFi Endpoint: OffCall path: Endpoint
  2. Remote Unlock disabledEndpoint receivers can talk, cannot unlock.
  3. Door HubFront Door. Lock wiring out of scopeOnline
    • AdminReceiver
    • BasicNot assigned
  4. Front Door receivers readyAssigned receivers get the call path.
  5. Doorbell / intercomPlaces the Front Door callRinging
  6. Call connectedAudio works on Admin and Basic.
  7. PhonesAdmin and Basic Endpoint receivers
    unlock_missing_on_callUnlock not availableremote_unlock_disabledRemote Unlock disabled

    Admin Unlock: Missing Basic Unlock: Missing

Legend

  • Call and Access path
  • Unlock missing on this path
  • Up, assigned, or allowed
  • Unlock missing or setting off
  • Warning, not a win
  • Win status

Simulated call

Unlock missing or greyed

Front Door is ringing. Talk works on both phones. Unlock depends on the Access settings below.

Admin phoneFront Door call
Audio ConnectedPath Endpoint
TalkUnlock

Unlock not available on this receiver.

Basic phoneFront Door call
Viewing
Audio ConnectedPath Endpoint
TalkUnlock

Unlock not available on this receiver.

Controls

The Access settings you can change in this lab. Door Hub LOCK NO/NC wiring is out of scope.

Access → Settings → General

Application
UniFi Access
Setting path
Settings → General
Door
Front Door
Account
Invited identity
Remote Unlock via UniFi Endpoint

Global. When Off, Endpoint receivers can talk but cannot unlock.

Front Door, call receivers

Assign Basic as Front Door receiver

Adds Basic to Front Door call receivers / Door Attendant.

Simulated call view

Viewing as
Call path
Test call

Refresh the receiver chrome. Shows Unlock present or absent for the current view.

Out of scope for this lab

Door Hub LOCK NO/NCYale / third party lockAlarm Manager alertsHome Assistant bridge

Why this fails

copy key: remote_unlock_disabled

Remote Unlock via UniFi Endpoint is off

Unlock not available. Remote Unlock disabled

Field note: Talk works. Unlock does not. Access has a global switch: Remote Unlock via UniFi Endpoint. When it is off, Endpoint receivers can converse but cannot unlock. Turn it on, then retest the call.

Fix: Set Remote Unlock via UniFi Endpoint to On in Access → Settings → General.

Console words

  • Unlock not availableShowing
  • Remote Unlock disabledShowing
  • User is not a receiver for this doorClear
  • Talk / call connectedShowing
  • Unlock on BasicMissing
  • Unlock on AdminMissing

Glossary

Core, Labs 01 to 03
Native
Untagged VLAN on a switch port (PVID). Management traffic usually rides here on UniFi device uplinks.
Tagged
VLAN IDs carried with an 802.1Q tag on a trunk. Guest and IoT SSIDs need their VLANs tagged on the AP uplink.
Access port
One VLAN only, untagged. Fine for a printer. Wrong for an AP that serves multiple SSIDs.
Trunk
Native + tagged VLANs. Correct pattern for UniFi switch to AP / switch to gateway when multiple networks exist.
ZBF
Zone-Based Firewall. Policies between zones (Gateway, External, Internal, Guest, etc.), not just classic LAN IN rules.
Gateway zone
Where the router answers DHCP and DNS for a network. Block Guest to Gateway and clients get No IP or DNS unreachable.
Client isolation
WiFi setting that stops guest clients from talking to each other. Keep on for Guest.
PoE class
AF (~15 W), AT (~30 W), BT / PoE++ (higher). UniFi budgets on documented max draw, not quiet daytime watts.
PoE budget
Sum of max PD draws vs what the switch or injector can supply. Exceed it and devices disconnect.
Injector
Power source for a Flex or similar. Wrong class (AF on a loaded Flex) is a classic field fail.
Max draw
Datasheet maximum watts for a PD (IR on, boot). UniFi PoE budget math uses this, not the quiet live reading.
Flex budget
USW-Flex downstream totals by input: AF 8W, AT 20W, BT or 60W injector 46W (set Power Source to PoE Injector).
Remote Unlock via Endpoint
Access setting. When off, Endpoint receivers can talk on a call but cannot unlock.
Door Attendant / receiver
User assigned to get the door call. Not on the list means no Unlock for that door.
Inform
Device check-in URL to the Network application, usually controller host on port 8080, path /inform.
STUN
UDP 3478 helper for L3 / remote adoption. GUI on 443 is not the same path.

Fiber terms, glossary ready for later

OM3 / OM4OS2SFPSFP+DACAOCBiDi

MM and SM grades, cage form factors, DAC, AOC, and complementary BiDi ends. Full rows land with the fiber-sfp-dac lab.

Symptom words (overlay language)

No IPNo gatewayDNS unreachableConnected, no internetConnected, isolated from LANTraffic blocked by firewall

Gear in this lab

  • 1 Console
  • 1 Door Hub
  • 1 Doorbell / intercom
  • 2 Phones (Admin, Basic)
Change on win: none

Config only. The fix needs no new hardware. Counts only, no prices.

A teaching lab, not a quote and not a design for your site. Settings are simplified from UniFi Access. Door Hub LOCK NO/NC wiring is out of scope here.