Many MXs in the same Org <Non-Meraki VPN> AWS

KhoaPham
Here to help

Many MXs in the same Org <Non-Meraki VPN> AWS

Greetings,

 

I have 2 Network in the same Org and AWS

1. FLC - with "FLC" tag, LAN subnet: 10.99.84.0/24 

2. TH1 - with "TH1" tag, LAN subnet: 192.168.10.0/24

3. AWS - with Server subnet: 10.100.0.0/16

 

I create 2 VPN tunnel from each MX to AWS. Everything seem OK: 2 tunnels are up.

But I can not ping stably from Server Host: 10.100.2.10 to any host of 2 Network. Sometime can ping, sometime can not (almost can not)

Because 2 MXs are in the same Org, so I use Network tag to make sure they use their own VPN tunnel, and no Private subnet conflict

KhoaPham_0-1587531565404.png

 

 

Just 2 Network for now, and we will have another Network soon.

So I need your help to fix this problem, because we have not had a plan to use vMX.

1 Reply 1
DarrenOC
Kind of a big deal
Kind of a big deal

Hi @KhoaPham 

 

We are currently staging something similar but the behaviour we’re seeing is that despite configuring two tunnels on the MX out to AWS only one will come up. If we down the active tunnel then the second comes online.  

Darren OConnor | doconnor@resalire.co.uk
https://www.linkedin.com/in/darrenoconnor/

I'm not an employee of Cisco/Meraki. My posts are based on Meraki best practice and what has worked for me in the field.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels