IPSEC termination

Ash24
Here to help

IPSEC termination

Hi!

 

Currently I am using Fortiwifi 61F as my security appliance. I will migrate this to MX250. Can I replicate all my current configuration in my current setup into MX250.

 

Where to terminate my IPSEC? is it site-to-site vpn?

 

Thank you in advance for your response!

4 Replies 4
KarstenI
Kind of a big deal
Kind of a big deal

The MX is highly restricted when it comes to extranet IPSec-VPNs, and many other features are just a little bit "different" from those of other vendors. Make yourself very comfortable with the MX before making this purchase.

If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.
VivekT
Getting noticed

Ash24
Here to help

Thank you! I will study more on this

ChrisJ2
Meraki Employee
Meraki Employee

Hi Ash,

 

Welcome to the Meraki Community! 😊

 

Site-to-site VPN settings are managed on the Security & SD-WAN > Configure > Site-to-site VPN page, and 3rd-party peers are located in the Organization-wide settings section. When configuring a peer, you can modify the IPsec policy settings by clicking the three dots on the right side. In the window that appears, a number of options are available. 

 

The Preset selection allows easy setup of peers for some popular services, such as Azure and AWS. "Default" will reset the parameters to those used between Cisco Meraki peers, and "Custom" can be used for non-standard configurations, and this should enable you to replicate your existing VPN configuration.

 

Further details can be found here.

 

Some terminology may be a little different, eg Local ID of this MX. This is an optional configuration and is what the remote peer will receive as the remote ID of this MX, and is only available with IKEv2 tunnels. If left blank (default) it is the uplink IP of the MX, not the public IP. Some peers may expect this to match the public IP of the MX, and you can enter this here, if required.

 

If you run into any issues with your initial setup, please free to open a case from Support Center in your Meraki dashboard, and an NSE will be happy to assist!

 

 

 

 

 

 

 

If you found this post helpful, please give it kudos. If my answer solved your problem, click "accept as solution" so that others can benefit from it.
Get notified when there are additional replies to this discussion.