Meraki Firewall Rule

Hmuet
Comes here often

Meraki Firewall Rule

Hi everybody, 

 

I try to deny a ping between first vlan and second vlan, but nothing it doesn't run. After save the rule when i test the ping, it work again.

 

Please need any help

8 Replies 8
ww
Kind of a big deal
Kind of a big deal

After you apply a fw rule, you need to make sure the flow (stop the ping) is not active for 10 minutes. 

 

On the live tools you can see start live fw logging to see what rule(s) it hit.  So start log > then start ping

Hmuet
Comes here often

Hmuet_0-1727951544792.png

Hi

 

thank for your help, i already add the rule and wait 10 min after saving but nothing, the ping work again.

 

Ps: Security & SD-WAN > Firewall

Hmuet
Comes here often

I'm on Meraki MX 105

pmhaske
Meraki Employee
Meraki Employee

Hi @Hmuet,

 

I agree with @ww, the firewall rule is based on flow hence wait a 5-10 minutes after the rule is applied so that the preexisting flow expires and new ones from the client get processed by the firewall. Also, ensure the configs are up to date on the Security & SD-WAN > Appliance status page after the rule was added.

GIdenJoe
Kind of a big deal
Kind of a big deal

If you are exporting your flow logs to a syslog server you should see it matching when the new config takes.  Normally you should see a flow_end matching your existing flow and after that the rule should take.

Hmuet
Comes here often

Hi 

 

On Meraki MX 105, i want to block some website for a specific wifi, my differents AP forward all my wifi but i want just to block to one wifi.

 

Thank you for your help

Hmuet
Comes here often

Also, how to get directly meraki support, i need a link or email add please

CarolineS
Community Manager
Community Manager

Hi @Hmuet - directions for contacting support (including a link to a form for direct submission in case you aren’t able to access the dashboard) are here: https://documentation.meraki.com/General_Administration/Support/Contacting_Support

Caroline S | Community Manager, Cisco Meraki
New to the community? Get started here
Get notified when there are additional replies to this discussion.