Dynamic Host Name Failover

StarZen
Here to help

Dynamic Host Name Failover

 

We have a VPN connection to azure using the IPSec Peer

 

We would like to have a failover WAN1 and WAN2

 

Tested by disconnecting WAN1 and after about 15 minutes the dynamic dns switched over and the VPN connected to WAN2

 

after reconnecting WAN1 the meraki switched back to WAN1 but the dynamic DNS never changed (waited over 30 minutes)

 

as soon as we disconnected WAN2 the DNS switched back to WAN1 address

 

We would like a good way to have the VPN fail over if WAN1 goes down and back if WAN1 comes back online

 

Thanks for any tips

 

Mike

 

4 Replies 4
Mloraditch
Kind of a big deal
Kind of a big deal

Using a vMX in Azure is the fool proof way to do this and ensure exactly what you want.

If you found this post helpful, please give it Kudos. If my answer solves your problem please click Accept as Solution so others can benefit from it.
StarZen
Here to help

interesting. so the vMX is essentially a connector specifically for Meraki MX

 

in our case we have 4 locations with 4 MXs so we would create 4 vMXs on Azure?

 

thanks

 

Mike

 

 

ww
Kind of a big deal
Kind of a big deal

If you have 1 vmx hub in azure.

All other spokes/hubs can connect to the vmx, on all wan ports using the meraki autovpn

Mloraditch
Kind of a big deal
Kind of a big deal

You would just need one vMX in Azure provided everything is in the same org and everything in Azure is already connected on that side (i.e vnets peered, etc). The vMX is a  nearly fully feature Virtual MX in Azure that provides full autovpn functionality with no need for  VNG.

https://documentation.meraki.com/SASE_and_SD-WAN/MX/Install_and_Get_Started/Installation_Guides/vMX_...

If you found this post helpful, please give it Kudos. If my answer solves your problem please click Accept as Solution so others can benefit from it.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels