- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Configuring firewall Rules to block/allow domain names as a name not as an IP
Hello Gents,
I have a VPN between two Meraki MX, which they have Enterprise licenses not Advance License So the content filter is not available.
I am trying to apply a rule to block a domain name like "meraki.com " in the Site-to-site outbound firewall under Organization-wide settings, but it seems Meraki is not supporting domain name in the Site-to-site outbound firewall but it is supported in the layer 3 Firewall.
for example
Solved! Go to solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is the spoke using a full tunnel to the hub and access the Internet that way - and you want to block some Internet requests?
Normally I would use the content filtering and block the URL. Not sure how to go about this with only an Enterprise licence.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You are correct, that is not supported.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Are the MX's in different organisations, and as a result you are not using AutoVPN?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Phil,
both MX is in the Same Organization but in different Network, as one of them act as a HUB and the other as Spoke ( site ).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is the spoke using a full tunnel to the hub and access the Internet that way - and you want to block some Internet requests?
Normally I would use the content filtering and block the URL. Not sure how to go about this with only an Enterprise licence.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As you said I cannot do it with Enterprise Licence, we need Advance Security.
