- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
MX67 Client VPN Issue Using Dynamic DNS
Hello all,
I am relatively new to working with Meraki, but I have successfully setup Client VPN on a Meraki MX 67 before.
I have installed an MX67 at a customer site, enabled Client VPN using these settings:
- Google Public DNS
- No WINS serer
- Authentication: Meraki Cloud
I have added myself as a user that is authorized for client VPN through the Meraki dashboard.
The customer has service from two ISP's, and the firewall has been configured to use port 2 as a failover (WAN 2).
However, I am not getting *anything* in the event log on the firewall. It is as if I am not even trying to connect.
Solved! Go to solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You're either going to need to have the ISPs port-forward 500/4500 to your Meraki device, or have them adjust their equip so the WAN IP is on your MX. AKA put it in bridge mode.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you NAT'ed through udp/500 and udp/4500 on the ISP router through to the MX on the MX's primary connection?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I somewhat understand what you are asking, but I am not sure how to test this. I have turned the firewall completely off within the isp router, but I am not sure how to test connectivity on those ports.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You're either going to need to have the ISPs port-forward 500/4500 to your Meraki device, or have them adjust their equip so the WAN IP is on your MX. AKA put it in bridge mode.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
In the meraki , how can i forward those ports?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You don't forward the ports in the meraki, you forward them in the ISP modem/router.
This is because the data is flowing from WAN (internet) -> ISP Device -> Meraki. What you want, is data on those two ports to flow from WAN->Meraki. Therefore you need to forward them in the ISP Device.
