Configuring & Testing Secure Connect

SeanGr
Here to help

Configuring & Testing Secure Connect

Hello folks,

So, first crack at using Secure Connect whatsoever. I'm looking to implement Secure Connect as a VPN solution to allow remote access to the LAN. I have an MX68W that I am using for testing.

 

After enabling Secure Connect, configuring it (with the little options provided), and attempting to connect, I find that the connection on the user PC times out every time. I am using the DDNS address shown on both the MX status page and the Secure Connect page. Secure Client is shown to be active as per the event log.

 

I feel like I am missing something crucial here. Any ideas as to why I cannot connect with Secure Connect?

 

Thanks,

S

 

 

9 Replies 9
alemabrahao
Kind of a big deal
Kind of a big deal

This article explains how to troubleshooting this.

 

https://documentation.meraki.com/MX/Client_VPN/AnyConnect_on_the_MX_Appliance/AnyConnect_Troubleshoo...

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
cmr
Kind of a big deal
Kind of a big deal

Have you tried with the current WAN IP address, just in case the DDNS isn't responding as expected?  Is the MX on the outside, or is there an ISP router first?

If my answer solves your problem please click Accept as Solution so others can benefit from it.
SeanGr
Here to help

There is an ISP router first before the MX. 

 

I have tried with the WAN IP, same issue. Times out before anything reaches the MX.

cmr
Kind of a big deal
Kind of a big deal

Are you forwarding any ports on the ISP router to the MX?

If my answer solves your problem please click Accept as Solution so others can benefit from it.
SeanGr
Here to help

No - when attempting to forward port 443 to the MX's WAN IP, the MX spat out a bad internet error.

DanD
Here to help

Does the remote access log in the Meraki dashboard show anything different than what you are seeing in the event log on the remote PC? Are you making it through authentication, or does the connection stop before you are prompted for auth? Is it possible that the laptop you are testing with is on a network that prevents connecting to remote VPNs?

PhilipDAth
Kind of a big deal
Kind of a big deal

Are you testing it from outside of the network?

 

Does the MX have the public IP address directly on its WAN port?  i.e. It is not sitting behind something doing NAT?

SeanGr
Here to help

There is the ISP modem before the MX. 

 

I have been testing with the user client on various different networks.

jimmyt234
A model citizen

Do you mean Secure Connect or just AnyConnect on the MX itself?

 

Which section are you performing the configuration under:

- Secure Connect > Remote Access

- Security & SD-WAN > Client VPN

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.