I am a bit confused about how to setup content filtering correctly. If I set up a blocked website list it doesnt work. I do not have AD integration or group policies set. Do these need to be used and setup for content filtering to work or can it work without them? Below is how its setup and nothing beyond this has been done. What am I missing?
The firewall config status is up to date?
Try reconnect the client to the network.
Check the url in the lookup tool under the categories
That really didnt answer my question. Beyond what is in the picture provided, is there anything else that has to be setup? Do I need some sort of AD or Group polices set in order for Content Filtering to work?
This should work fine.
When you say "If I set up a blocked website list it doesn't work." can you clarify what you did and what you hope to achieve, with say, an example or two.
Sorry, i thought the picture was self explanatory. I added the categories that i want to block to the blocked website list, and then looked up a site using the category lookup tool and it fell into the category that is supposed to be blocked. When im connected to the network and go to the same website it is allowed instead of being blocked. what is missing? what other config is needed to properly enable?
It should be enough. The advice @ww gave you is good advice. You need to wait a bit until the cloud pushes the config change to the MX, and then it can still take reconnecting the client to the network to apply the new filtering rules due to cached data.
I suppose you've already gone through these steps:
There are several factors that can contribute to a website not being blocked when it should be. Consider the following factors:
This is has been setup for weeks and it still doesn't work. And it appears that no one is reading the original post. If its not in that picture provided it hasn't been setup. There are no policies setup. There is no AD setup. There are no URLs added to the whitelist. Using the Tool the website shows up in the correct category and it should be blocked. Firmware is 14.4
Again. Beyond what is in the pic provided, what if anything needs to be configured? Do group policies have to be used? Does AD have to be used?
Well the fact that you initially talked about Content Filtering (a feature) and then mentioned Blocked Websites (which I took to mean URL Blocking (also a feature) your picture only really addresses the former not the latter.
So my supposition was that you had attempted URL Blocking and that had not worked so you were now looking at Content Filtering.
Hence my question, which still remains somewhat valid. ie what websites are you trying to block, maybe an example will elicit a meaningful response from the community and help reduce your concerns of an apparent lack of understanding of your problem.
I sense a bit of frustration in your tone. I understand that. However, both @ww ("It should work") and I ("It should be enough") already confirmed that nothing else needs to be configured.
I'm with @Richard_W here. If you share the example you're testing we can try and reproduce it and help debug.
Ive now tried this on 9 different sites and i get the same result on all 9. Pick a pornography site, any one and it doesnt stop/block it. Pornhub.com or Youporn.com. I even tried Ebay.com as an auction site and meraki doesnt stop any of it. "It should work" doesnt work......
Every site i have tried to block shows up in the tool under the category that i have blocked but it doesnt seem to care. Meraki just lets if right on past.
what is missing?
You are running fw 14.40 and not 14.4?
Is your mx wan port the route to the internet for lan clients?
How Is traffic analysis configured on your network?
As a thought what do you see in the Event log as per:
I just tried this myself with the auction category and got the correct result on eBay.com and auction.com "This site can not be reached." I was just using the quicker "Top sites only" option. From setting the filter to observing the response was pretty quick (under 5 minutes.)
And below here are the Event log results:
So are your clients whitelisted?