Traffic Shaping issue

Solved
Unexus
Here to help

Traffic Shaping issue

MX67

WAN1 on ISP1

WAN2 on ISP2

LAN1 on 192.168.1.0/24

LAN2 on 192.168.2.0/24

 

Load Balancing OFF

 

Pref WAN1

 

Flow Pref Rule:

 

ANY 192.168.2.0/24 to ANY via WAN2

 

When I browse to MyIP.com it shows my ISP2 WAN IP > OK

When I do a tracert on my laptop only on LAN2 I see

 

hop1: 192.168.2.1 (local GW)

hop2: ISP1 GW

 

Same with ping from LAN2 to google.nl:

When I do a packet capture on LAN I see the ping coming from my local devie

When I do a packet capture on WAN2  i don't seen anything > expected to the see the pings

WHen I do a packte captur on WAN1 i see the ping's going and also the replies > expected not to see them here.

 

I have no static routes

 

Any idea why some trafic still goes via WAN1 instead of WAN2? 

1 Accepted Solution
RaphaelL
Kind of a big deal
Kind of a big deal

Hi ,

 

https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/SD-WAN_and_Traffic_Shaping

Note: ICMP traffic is not subject to traffic shaping rules. As a result, Flow Preference will have no impact on ICMP traffic

 

Traceroute and ping are ICMP based so your flow preference rules will be ignored. 

 

 

View solution in original post

4 Replies 4
RaphaelL
Kind of a big deal
Kind of a big deal

Hi ,

 

https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/SD-WAN_and_Traffic_Shaping

Note: ICMP traffic is not subject to traffic shaping rules. As a result, Flow Preference will have no impact on ICMP traffic

 

Traceroute and ping are ICMP based so your flow preference rules will be ignored. 

 

 

Dunky
Head in the Cloud

Well I didn't know that, thanks for that nugget @RaphaelL 

alemabrahao
Kind of a big deal
Kind of a big deal

What @RaphaelL  said is correct.

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Red_Eyed_Llama
Comes here often

Agree with @RaphaelL here.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels