[my]Site to [someone else's]Site VPN

Howdy all! I recently led a client “CompanyA” to purchase a UDMP. A week after I installed it the owner announced the acquisition of another small firm “CompanyB” that’s across town. CompanyB is being managed by another MSP. We’ve all agreed that CompanyB should have its own UDMP and we plan to link the two UDMPs via the site-to-site VPN option so the owner can access workstations in both locations.

I imagine that management of these two sites would be cleanest if I added CompanyB’s UDMP to CompanyA’s UniFi account, but from a device management standpoint I’m not keen on inviting CompanyB’s MSP to participate in CompanyA’s UniFi account. Still, I don’t want to exclude CompB’s MSP from managing the equipment that’s part of their local network.

Can anyone suggest a clean way to handle this? Thanks!

Hello! Thanks for posting on r/Ubiquiti!

This subreddit is here to provide unofficial technical support to people who use or want to dive into the world of Ubiquiti products. If you haven’t already been descriptive in your post, please take the time to edit it and add as many useful details as you can.

Please read and understand the rules in the sidebar, as posts and comments that violate them will be removed. Please put all off topic posts in the weekly off topic thread that is stickied to the top of the subreddit.

If you see people spreading misinformation, trying to mislead others, or other inappropriate behavior, please report it!

I am a bot, and this action was performed automatically. Please contact the moderators of this subreddit if you have any questions or concerns.

Save yourself the headache and through the merger dissolve the contract with the MSP. Keep it all in your CompanyA hands. Long run you will be happier and there will be less finger pointing should there be issues with the tunneling

Wish I could make that call. The principal would be extremely hesitant.

I also argue the vulnerabilities of too many eyes in the network. Sure there’s trust with an MSP but in house is more secure and usually cheaper. I made the argument with one boss a long while ago how much we had been giving a MSP and pointing out how many sports cars that was vs. 2/3 internals getting the certifications

I should have made it clear that I also am an MSP. So we’d have two MSPs in the same pot.