Re: Integration of Meraki with Huawei Cloud

adten
Here to help

Re: Integration of Meraki with Huawei Cloud

We are working to integrate a new Meraki organization with Huawei Cloud. Since Meraki does not currently provide a virtual appliance for Huawei Cloud, we deployed a physical MX105 in the nearest Huawei Data Center to serve as the integration point.

The MX105 is deployed in routed mode to interface with the Huawei environment, while an MX95 is deployed to interface with our local network. Although AutoVPN is established successfully, there is no traffic flow between the MX105 and MX95.

Has anyone encountered a similar setup, or can advise on potential misconfigurations to check or alternative integration approaches for this scenario?

 

Thank you

3 Replies 3
GIdenJoe
Kind of a big deal
Kind of a big deal

How are you routing from your MX105 to your Huawei cloud environment?  Do you use directly connected VLANs or do you use a transit with either static routes or BGP peering session?

In case of local VLANs, just enable them for AutoVPN routing in the site to site VPN page.
In case of static routes you can also just enable them.

In case of BGP dynamic routing, you have to make sure your eBGP session between the MX and your Huawei next hop is in an established states and you received and set prefixes.

PhilipDAth
Kind of a big deal
Kind of a big deal

Can you ping the LAN interface of the MX105 from the MX95?  That would show that connectivity in the Meraki environment had been established, and the issue is between the MX105 and the Huawei cloud.

 

If the ping does not work, check the Meraki connectivity.

RogerWilliams
Just browsing

La première chose à vérifier est le routage des deux côtés, en particulier côté Huawei, afin de s'assurer que les sous-réseaux derrière le MX105 sont bien annoncés dans AutoVPN et ne chevauchent aucun réseau du MX95. Il faut également vérifier que la liaison montante en mode routé du MX105 est autorisée à acheminer le trafic VPN dans les deux sens et qu'aucun pare-feu ni aucune politique de sécurité du centre de données Huawei ne bloque le trafic ESP ou UDP après l'établissement du tunnel. J'ai aussi constaté des problèmes où la NAT ou un routage asymétrique en amont interrompt le trafic de retour, même si AutoVPN affiche un état vert. Aujourd’hui, le casino en ligne casinos sans verification https://gtamodding.fr/casino-en-ligne/sans-kyc/ est devenu une alternative pratique aux établissements physiques. Un simple ping de bout en bout permet généralement d'identifier l'origine du problème.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels