cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Meraki Client VPN different groups restricted access

SOLVED
Highlighted
Conversationalist

Meraki Client VPN different groups restricted access

Hi,

 

 

Is there a way to restrict Client VPN access in Meraki with different groups?

 

I tried looking but so far what I've seen is one to all i.e. the rule applied applies to all. In my case, I want to separate what IT group can access via VPN over the Business side VPN users.

 

Is there a way to do this via Merak?

 

 

Thanks

1 ACCEPTED SOLUTION

Accepted Solutions
Highlighted
Meraki Employee

Re: Meraki Client VPN different groups restricted access

At this time, the MX does not support mapping group policies via Active Directory for users connecting through the Client VPN. (Reference: https://documentation.meraki.com/zMeraki_Internal/Draft_Articles/DRAFT%3A_Client_VPN_Overview_-_UPDA...) so either we can achieve this by applying the group policy per client or we can make the Firwall rules accordingly to restrict the access between different vlan.

 

 

View solution in original post

2 REPLIES 2
Highlighted
Kind of a big deal

Re: Meraki Client VPN different groups restricted access

You need to create a group policy for each group of different rules that you want.  Then log in via VPN as the user account.  After this they appear in the portal.  Once they appear their apply the group policy to them.

The setting will now stick each time the user logs in.

Highlighted
Meraki Employee

Re: Meraki Client VPN different groups restricted access

At this time, the MX does not support mapping group policies via Active Directory for users connecting through the Client VPN. (Reference: https://documentation.meraki.com/zMeraki_Internal/Draft_Articles/DRAFT%3A_Client_VPN_Overview_-_UPDA...) so either we can achieve this by applying the group policy per client or we can make the Firwall rules accordingly to restrict the access between different vlan.

 

 

View solution in original post

Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.