Meraki MX VPN use IPSEC tunnel mode or transport mode?

Solved
SopheakMang
Building a reputation

Meraki MX VPN use IPSEC tunnel mode or transport mode?

Dear Expert ,

 

i want to make sure that when Meraki MX peer VPN with each other , they use IPSEC tunnel mode or IPSEC transport mode , Because i want to know if the actual source and destination ip will be encrypted or not , or just encrypt only payload.

 

Please help answer this question 😊

1 Accepted Solution
CptnCrnch
Kind of a big deal
Kind of a big deal

5 Replies 5
CptnCrnch
Kind of a big deal
Kind of a big deal

Tunnel mode

SopheakMang
Building a reputation

Hi @CptnCrnch ,

So that's mean MX will encrypt the actual source and destination ip ?
and will use another ip header to transmit the traffic ?
PhilipDAth
Kind of a big deal
Kind of a big deal
SopheakMang
Building a reputation

Thanks all expert
GIdenJoe
Kind of a big deal
Kind of a big deal

Non Meraki VPNs use ESP tunnel mode encap.
However Meraki VPNs encrypt their packet directly under UDP.
Screenshot below, mind that 10.10.10.x is the actual WAN IP of the MX but it's behind a NAT.

GIdenJoe_0-1586788897923.png

 

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels