Hi guys,
I'd like to check whether this diagram is possible or not.
I think it is not working well.
Solved! Go to solution.
Yes, plenty of people have their MX behind another device. As long as the device behaves as Meraki puts it "NAT-friendly" you will be fine.
If it behaves NAT-unfriendly, the dashboard will let you know. Solutions for that issue are described here:
What makes you think it wouldn't work? Seems like a standard setup for AutoVPN?
Thank you,
Yes, I mean that AutoVPN.
Is this diagram working for Auto VPN correctly ?
That's a standard setup for AutoVPN, so it should work yes.
Thank you for your answer.
In case of standard, wan interface of MX has public IP, not private IP.
In this case, wan interface of MX has private IP.
Although wan interface of MX has private IP, AutoVPN can work, right ?
Thank you,
Yes, plenty of people have their MX behind another device. As long as the device behaves as Meraki puts it "NAT-friendly" you will be fine.
If it behaves NAT-unfriendly, the dashboard will let you know. Solutions for that issue are described here:
Thank you for your guide.
In this case, the router front of MX can support nat.
So MX can connect AutoVPN, right ?
If I use MS250 instead of the router, MX can't connect AutoVPN. Because Meraki MS can't support nat.
Is this my understanding correct ?
Indeed, you can't do NAT with an MS switch.
Thank you for your answer.
I think this is NAT problem not private IP.
Although wan interface of MX has private IP, It can use AutoVPN in case of the front device of MX can support NAT.
Thank you.
I understand.