I upgraded Some MX to the latest MX 16.16 firmware and then they started to block Google Drive it seems MX is identifying all traffic as youtube traffic
i have added the exception to the whitelist url pattern but it is not working at all
Seems new firmware identify google drive as Video & Music wich i have all blocked under L7 policy
It's a little strange, can you try to allow this URL list?
Afaik the whitelist is for content filter. So you have to remove the full layer7 fw "all" group and add more specific ones.
I can do that , but one of the issues is that I need YouTube to be blocked , so if the mx identifies all google traffic as YouTube how to block YouTube only ?
I am seeing similar behavior. Upgraded to 16.16 on 4/4 and now I see a bunch of traffic in my logs being blocked due to the layer 7 firewall rule which is:
I am even seeing some internal -> internal traffic being blocked by this rule.
I still have the issue, some work warround i found was to only list Facebook, instagram and twitter, because if i list All the social web & photo sharing category then google drive does not work...
im confused that's solve the problem or not?
Use te workaround posted above
Any one having this behavior with 16.16 FW, i understand this is regarding Nbar function as it is identifying drive as youtube as Nbar ID 82
Yep
similar problems here too, the categories make no sense at all
Hello. Did you solve your problem?
Not yet, but i have a workarround posted above
Use the workaround posted above , issue will be there until a new firmware is released , the L7 rules posted as workaround work fine in the meantime
The entire NBAR implementation in terms of usability is a total mess. I am being asked to look into alternate suppliers for firewalls due to this debacle. And once we start with firewalls, that's the start of the slippery slope to leaving Meraki altogether.
If only they had thought it through and given us the ability to have L7 ALLOW rules and specify src/dst then we would live with it.
i think they will add the functionality to allow L7 in the very near future, i agree Nbar is a total mess right now, a lot of Meraki users have been reporting all kinds of L7 blocking
I have MX Running on MX 17.10.2 still have these issue.
Hello, I still have exactly the same issue on MX 17.10.2 except it happens out of nowhere during the day. I have to reboot the MX and then we have access again to Google Drive - Google Classroom ... It is very frustrating.
I changed my layer 7 rules as someone mentioned here so I will know soon enough if that work around works for me.
Besides, you will notice I have a burst of events each time the issue shows up....
I'll keep you updated.
It's look like a L7 rule configured. Have you tried removing it?
Hi,
I changed my Layer 7 rules as mentioned above. I did it 5 minutes ago so, I will have to wait now to see is the issue shows its nose again 🙂
My new setup: i'm not blocking "all" social, etc anymore.
Is there a way to see what rule is blocking that traffic? Thanks!
The Nbar ID 2572 is related to Google Advertising though...
I will keep you updated.