Non-Meraki VPN Capture traffic

Solved
OscarBengtsson
Here to help

Non-Meraki VPN Capture traffic

Hi

I'm wondering if it's possible to capture traffic for non-Meraki VPN. Would I select the "site-to-site" interface for this or is capturing this traffic not feasible?

 

Best regards,

1 Accepted Solution
PhilipDAth
Kind of a big deal
Kind of a big deal

If you want to see the traffic un-encrypted, capture it on the LAN interface.

 

If you want to see the IPSec unencrypted exchange, capture it on the WAN interface.

View solution in original post

6 Replies 6
alemabrahao
Kind of a big deal
Kind of a big deal

Directly on the MX as far as I know it is not possible.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
OscarBengtsson
Here to help

Thank you for your response! It's possible that the feature in question is something they'll consider in the future, really like that packet capture feature otherwise

AlexP
Meraki Employee
Meraki Employee

Support already has access to an interface that can do this for what it's worth - I cannot comment on why this hasn't been exposed to customers unfortunately

PhilipDAth
Kind of a big deal
Kind of a big deal

You forgot the "Make a wish" line.  🙂

PhilipDAth
Kind of a big deal
Kind of a big deal

If you want to see the traffic un-encrypted, capture it on the LAN interface.

 

If you want to see the IPSec unencrypted exchange, capture it on the WAN interface.

OscarBengtsson
Here to help

Thanks for the reply! Then i can see the traffic i need to be able to troubleshoot this.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels