Ports to permit VPN client access to SMB shares

brettule
New here

Ports to permit VPN client access to SMB shares

I'm trying to restrict the VPN client subnet to only allow access to a windows file server on the LAN. I'm using this guide (https://documentation.meraki.com/MX-Z/Client_VPN/Restricting_Client_VPN_access_using_Layer_3_firewal...) and much like example 2 I've permitted TCP and UDP 137, 138, 139 and 445 to the server IP but its not allowing clients acesss to mapped network drives. If I just allow all it works so I'm missing something in the ports. Any tips on how I can fix this?

1 Reply 1
ww
Kind of a big deal
Kind of a big deal

remove the policy,

set up a capture on the fileserver port.

access the share from a vpn client.

filter the capture on ur client ip and check the ports its using.

 

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels