cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Security / SD-WAN. I cant telnet or SSH

Highlighted
Getting noticed

Security / SD-WAN. I cant telnet or SSH

Meraki is blocking me from telnet or SSH into other devices, please anyone with possible assistance as to how i can correct this should please respond asap.

 

Thanks 

15 REPLIES 15
Highlighted
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

Are you and all the devices you are trying to ssh from and to behind the MX (local traffic)? Same VLAN?

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

yes

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

Hi @samgbuyi 

 

If the src and dst are on the same vlan that resides behind the MX there would be no enformement being done on the MX as there is no L3 involved.

 

I believe you problem is in relation to something else. I'm certain you will have the same result if you unplug the lan interface on the MX from your switch.

 

Perhaps check the server itself.

 

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

i do experience it only when i have the MX on, if i disconnect the MX i can telnet and ssh to all device

Highlighted
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

Is your MX in passthrough mode and in between the computer and the SSH devices?

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

yes its in between the system and the device 

MX to switch

WLC to switch

Router to switch basically for VoiP

Highlighted
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

Can you also confirm if the MX is in passthrough mode?

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

its Routed mode and not Passthrough
Highlighted
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

As @BrechtSchamp asked if the MX is in passthrough will help determine the issue. Below you can check that setting.

 

Security & SD-WAN > Configure > Addressing & VLANs > Deployment Mode - Will be Routed or Passthrough

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

it is Routed
Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

Routed
Highlighted
Kind of a big deal
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

As it is routed it must be separate VLANs either side.  Are you on the WAN side, or the LAN side?  Is the device you need to say/telnet to on the WAN side or the LAN side?

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

Separate VLAN either side like how?
I am trying to connect from my laptop which is on WAN
Highlighted
Kind of a big deal

Re: Security / SD-WAN. I cant telnet or SSH

Disable IDS or turn it down

Security & SD-WAN > Configure > Threat protection

 

Highlighted
Getting noticed

Re: Security / SD-WAN. I cant telnet or SSH

still the same
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.