Hub and Spoke Puzzle

Solved
TDevanney
Here to help

Hub and Spoke Puzzle

How could by spokes communicate with each other yet not with my hub?

1 Accepted Solution
PhilipDAth
Kind of a big deal
Kind of a big deal

>Are the routes on the hub set to participate  in vpn?

 

+1. This is the first thing I would check if there are no VPN firewall rules.

View solution in original post

7 Replies 7
ww
Kind of a big deal
Kind of a big deal
alemabrahao
Kind of a big deal
Kind of a big deal

One question, do you want them to communicate without having to go through the Hub?

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
TDevanney
Here to help

I do want them to communicate.  I didn't really explain my issue well.  My issue is that neither spoke appears to be communicating with the hub.

alemabrahao
Kind of a big deal
Kind of a big deal

I believe it is very difficult not to communicate with the Hub, as communication between two spokes must go through the Hub, how did you find this out? Did you do a packet capture on the Hub?

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
ww
Kind of a big deal
Kind of a big deal

Are the hub subnets in the spoke route table?

 Are the routes on the sub set to participate  in vpn?

Any vpn firewall rules that prevent this?

PhilipDAth
Kind of a big deal
Kind of a big deal

>Are the routes on the hub set to participate  in vpn?

 

+1. This is the first thing I would check if there are no VPN firewall rules.

TDevanney
Here to help

I searched route table and found an old route that was taking priority.  Deleted old route and now good.  Thanks.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels