Impact of Adding a New Subnet to a Site-to-Site VPN

Solved
Maccssilva
New here

Impact of Adding a New Subnet to a Site-to-Site VPN

Impact of Adding a New Subnet to a Site-to-Site VPN

 

I have a question regarding the Site-to-Site VPN.

I have a VPN established with a non-Meraki device, and I need to add a new subnet to allow access.

When I add this subnet and apply the configuration, do I lose communication with the Meraki device for a few moments? If not, does it have any impact?

1 Accepted Solution
michalc
Meraki Employee
Meraki Employee

Hi @Maccssilva , welcome to the Meraki Community! 

 

When you add a subnet to the VPN you won't lose communication with the Meraki device.

The only impact you might experience is a brief VPN tunnel flop since it has to renegotiate. You might not even notice it.

If you found this post helpful, please give it kudos. If it solved your problem, click "accept as solution" so that others can benefit from it.

View solution in original post

4 Replies 4
Robthesoundguy
Here to help

If you're simply changing the VPN Mode from disabled to enabled, you shouldn't lose connectivity with the device. 

alemabrahao
Kind of a big deal

Theoretically it shouldn't cause any problems, but if I were you I would do it during a scheduled maintenance window in case of any unforeseen circumstances.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
michalc
Meraki Employee
Meraki Employee

Hi @Maccssilva , welcome to the Meraki Community! 

 

When you add a subnet to the VPN you won't lose communication with the Meraki device.

The only impact you might experience is a brief VPN tunnel flop since it has to renegotiate. You might not even notice it.

If you found this post helpful, please give it kudos. If it solved your problem, click "accept as solution" so that others can benefit from it.
cmr
Kind of a big deal
Kind of a big deal

Remember that if you are going from one subnet to more than one subnet, check which IKE version you are using, if IKE V2 then you may run into trouble, depending on what the other end is.

If my answer solves your problem please click Accept as Solution so others can benefit from it.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels