[TIP] Block Traffic Inter-Vlan MX Meraki

SOLVED
Romulo
Conversationalist

[TIP] Block Traffic Inter-Vlan MX Meraki

This post is to everybody that have problems to block the traffic on the MX:

 

When create the rules, don't let any traffic rolling because the MX will remember an existing flow. So the flow will not be blocked until it times out. This can take about 15 - 20 mins for the MX to forget this flow.

I solved today with the Meraki Support.

 

I was using the Group Policy like workaround but i wanted understand what was happing and went until final.

1 ACCEPTED SOLUTION
Romulo
Conversationalist

Yes, i think the same think. I opened this topic only why when i needed informations about it i don't found here. I will close the topic.

View solution in original post

2 REPLIES 2
ww
Kind of a big deal
Kind of a big deal

I think its around 5 min after no traffic on the flow.  Some flows can run active for hours/days.

I also noticed there can be difference in behaviour depending on firmware. I had pings running at 15.x that was stopped by the fw after a few seconds while on 16.x it keeps running.

 

Romulo
Conversationalist

Yes, i think the same think. I opened this topic only why when i needed informations about it i don't found here. I will close the topic.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels