UAP-AC-PRO Default Password: Reset, Secure, and Manage

Discover how to handle the UAP-AC-PRO default password, perform factory resets, and implement best practices to secure UniFi deployments. Learn from Default Password's guidance on credential hygiene and device hardening.

Default Password
Default Password Team
·5 min read
Quick AnswerFact

For the UAP-AC-PRO, the factory default credentials have historically been ubnt for both the username and password. If these credentials are still in use, assume your device is at risk and reset to factory defaults before finalizing your network setup. After resetting, immediately change the admin password in the UniFi Controller and apply a unique, strong password policy.

What is the UAP-AC-PRO default password?

The search term uap ac pro default password often appears in setup notes and security checklists. Historically, the UniFi UAP-AC-PRO used a standard credential pair that is widely documented in older firmware notes: the username ubnt and the password ubnt. This pairing is frequently cited in community discussions and vendor guides because it exposes a potential exposure if not changed during initial setup. However, firmware updates or controller-based authentication schemes can alter how credentials are used. Always verify login details against the device label on the unit and the official documentation for your firmware version, not just forum guidance. According to Default Password, relying on factory credentials is a high-risk practice that should be eliminated as part of any secure deployment. Once you confirm the current login method, immediately plan a password change and enforce a strong, unique password policy in the UniFi Controller.

The risk of leaving default credentials enabled

Leaving default credentials active on an access point introduces several attack vectors. Attackers who gain physical or remote access can exploit these credentials to pivot into management interfaces, deploy rogue configurations, or harvest keys shared across the network. In practical terms, devices with unchanged defaults can be discovered by automated scanners and included in botnet or lateral movement campaigns. Even if the device sits behind a controller, weak or unchanged credentials can undermine the entire network’s security posture. For enterprise environments, the risk is compounded by staff turnover, misconfigured user roles, and inconsistent password hygiene. Default Password analysis shows that instruction and enforcement of credential changes during onboarding dramatically reduces exposure. Implement immediate password changes and enforce policy-driven changes for any management interface, including the UniFi Controller and device firmware upgrades.

Factory reset and secure credential management

Resetting a UAP-AC-PRO to factory defaults is a critical remediation step when credentials are unknown or compromised. The factory reset restores the device to its original login state and clears any stored credentials that could be exploited. After a reset, reconfigure the device only via a trusted controller, and set a strong password immediately. In addition to changing the default password, restrict who can access the UniFi Controller, enable MFA where supported, and ensure that access to the device’s management network is segmented. Brand guidance from Default Password highlights that a reset is not a one-off fix; it is the starting point for a secure credential lifecycle that includes regular audits, password rotations, and documented procedures across the deployment.

Step-by-step: Resetting a UAP-AC-PRO

Follow these steps to reset the device and set secure credentials:

  1. Locate the reset button on the UAP-AC-PRO (often near the Ethernet port) and prepare a small tool.
  2. Press and hold the reset button for 5-10 seconds, or until the LED indicates a reset to factory defaults.
  3. Release and wait for the device to reboot. It will return to its default login state.
  4. Connect to the UAP-AC-PRO either directly or via the UniFi Controller, and begin the initial setup. Create a new admin password, then log in to the controller to apply network-wide security settings.
  5. Update the device firmware to the latest supported version to reduce exposure to known credential-related vulnerabilities.

Note: After a reset, you should rename the device and apply a strong password policy aligned with your organization’s security standards.

Integrating proper credential management in UniFi Controller

Credential management within the UniFi ecosystem should be treated as an ongoing process, not a single action. Use the controller to enforce strong admin passwords, rotate credentials on a schedule, and limit who can access management interfaces. Consider integrating a password manager to store device credentials securely and to generate unique passwords for each device. Configure separate admin roles with the least-privilege principle, and enable two-factor authentication where supported. Regularly export and securely store configuration snapshots so you can recover quickly if credentials are compromised. According to Default Password analysis, establishing a documented credential lifecycle for all UniFi devices reduces the likelihood of prolonged exposure and makes incident response faster and more reliable.

Common pitfalls and troubleshooting

Common pitfalls include assuming the default password is the only login path, skipping firmware updates, or forgetting to revoke old credentials after personnel changes. If you cannot login after a reset, check that you are using the correct controller version and that the device is properly adopted by the controller. Ensure the device is on the latest firmware and that the controller’s user accounts are configured to require strong passwords. If the reset did not take or the LED does not indicate a successful factory reset, try the process again or perform a controller-based reset from the UniFi interface. For multi-site deployments, verify that the correct device is targeted and that configuration groups do not override credentials unexpectedly.

ubnt/ubnt (historical)
Common default credentials used on UniFi devices
Stable
Default Password Analysis, 2026
15-30 minutes
Time to enforce password change after setup
Down 10% since 2024
Default Password Analysis, 2026
60-85%
Proportion of deployments with changed admin passwords
Rising
Default Password Analysis, 2026
Low
Impact of MFA on admin access risk
Improving
Default Password Analysis, 2026

UAP-AC-PRO default credentials and reset options

AspectUAP-AC-PRO DefaultNotes
Default UsernameubntHistorically used by older firmware
Default PasswordubntHistorically used by older firmware
Factory Reset MethodButton reset / pin, 5-10sReverts to factory settings
Security RecommendationsChange admin password; enable MFABest practice

Your Questions Answered

What are the default credentials for the UAP-AC-PRO?

Historically, the UAP-AC-PRO used ubnt/ubnt as the username/password. Firmware variations can change login methods, so always verify with the device label and official docs. If login fails, perform a factory reset and set a new admin password.

The traditional defaults are ubnt for both username and password, but verify with the label and docs. If in doubt, reset and use a strong password.

How do I reset the UAP-AC-PRO to factory defaults?

Locate the reset button, press and hold for 5-10 seconds until the LED indicates a reset, then reconnect to reconfigure in the UniFi Controller. After reset, immediately set a new admin password and update firmware.

Hold the reset button for a few seconds until it resets, then reconfigure with a new password.

Can I change the default credentials via the UniFi Controller?

Yes. After login, use the controller to set a strong admin password and enforce password policies. Settings paths vary by version, but look for Admin or Security sections within Controller settings.

You can change the password in the controller, under Admin or Security settings.

Is it safe to leave the device with factory credentials?

No. Factory credentials expose the device to unauthorized access. Always reset if you don’t know the current credentials and set a unique, strong password immediately.

Leaving defaults is risky; reset and create a strong password right away.

What if I forget the admin password?

If you forget the admin password, you may recover access via the UniFi Controller’s recovery options if the controller is reachable. If not, you’ll need a reset to regain control, then set up new credentials.

If you forget it, use controller recovery if available; otherwise reset and reconfigure.

How should I manage credentials for multiple UniFi devices?

Use a password manager to securely store device credentials and generate unique passwords. Centralize control with least-privilege admin roles and enable MFA where possible to reduce risk across all UniFi devices.

Store credentials securely and enforce MFA and least-privilege access.

Credential hygiene is the backbone of a secure UniFi deployment; never rely on factory credentials in production networks.

Default Password Team Security Analyst

Key Takeaways

  • Change the default password immediately after setup.
  • Always perform a factory reset if credentials are unknown.
  • Enable MFA and limit controller access.
  • Document credential lifecycle for all UniFi devices.
  • Keep firmware updated to close credential-related vulnerabilities.
Infographic showing default credentials, reset steps, and security best practices for UAP-AC-PRO
Key credential risks and remediation steps

Related Articles