is your Unifi controller on LAN? and so is your APs?
Protocol Source Port Destination Port Gateway Schedule DescriptionIPv4 TCP vlan_xx net * 1xx.xxx.xxx.xxx 8080 * * Allow internal inform traffic to UniFi controller IPv4 UDP vlan_xx net * 1xx.xxx.xxx.xxx 3478 (STUN) * * Allow internal STUN traffic to UniFi controller
Alternatively, you can also setup a host override in OPNsense's unbound. Hence, OPNsense knows where to direct traffic for host unifi.