I have my MX100 with another MX100 in Spare mode and I have proceeded to make the following configuration: Wan 1: 172.20.2.0/24 ISP 100 MB Wan 2: 192.168.0.0/16 ISP 300 MB
In these MX I have configured 2 lan: - Id lan 1 External 192.168.51.0/24 - Id lan 20 Internal 192.168.52.0/24
I have configured the lan 20 output rules for Wan 1 and lan 1 for wan 2
Everything works perfectly, lan 20 communicates with the servers that are behind 172.20.2.0 and when I do speed test it shows me the 2 speeds of the routers according to which lan is connected.
The problem comes when I want to configure Active directory with Meraki, I go to SD-WAN> Active Directory and configure everything leaving the configuration like this: Short domain Ip server Admin.domain password state Contoso 172.20.2.X XXX XXXX XXXX accept
I find the groups, but the problem is when I want to save the configuration, I get the following error:
There have been errors when saving this configuration: The IP address 172.20.2.X is not on a configured local subnet, nor a remote subnet on the VPN.
Re: MX100 communication problem with Active Directory
Yeh, that's an annoying one. You have a firewall rule configured with a subnet, the one in the error, that doesn't exist in the Addressing & VLANs page. Go modify or delete that firewall rule and this error will go away.