Device checks when connecting to Dashboard

RyanChaney
Conversationalist

Device checks when connecting to Dashboard

I have a compliance question.

 

I'm trying to understand more about what checks Meraki Dashboard does when a device is joining or reconnecting to Dashboard. I know the device must be in the inventory and have a licence and I presume also before it tries to connect to Dashboard the device would have to have completed the secure boot process. Are there are other checks that Meraki Dashboard does to ensure the device authentic, unmodified etc? 

Does it authenticate using its SUDI for example?

 

Regards,

Ryan

4 Replies 4
Brash
Kind of a big deal
Kind of a big deal

Meraki obfuscates a lot of this complexity by design. I suspect the answer to this type of question is known only to Meraki engineering and potentially high level support teams.

 

I suggest reaching out to your Cisco/Meraki rep. They should be able to put you in touch with the right person, especially if it's a requirement to get a deal across the line.

DarrenOC
Kind of a big deal
Kind of a big deal

Hi Ryan, some useful information in these documents which are an interesting read:

 

https://documentation.meraki.com/Architectures_and_Best_Practices/Cisco_Meraki_Best_Practice_Design/...

 

https://www.cisco.com/c/dam/en_us/about/doing_business/trust-center/docs/cisco-secure-development-li...

 

Theyll probably lead to more questions but as @Brash  states some of the answers we’ll never get to find out.

Darren OConnor | doconnor@resalire.co.uk
https://www.linkedin.com/in/darrenoconnor/

I'm not an employee of Cisco/Meraki. My posts are based on Meraki best practice and what has worked for me in the field.
PhilipDAth
Kind of a big deal
Kind of a big deal

I believe each device has a burned in certificate, and they authenticate using that.

BlakeRichardson
Kind of a big deal
Kind of a big deal

poker-face-poker.gif

Meraki engineering team

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.