Hello everybody,
I have an issue with our MX67. We have got two Uplinks and today I have to make a change to make our WAN 2 Uplink perform as our primary uplink. Before the change everything works fine and all VPN connections (Meraki and Non-Meraki Peers) work perfectly. When I change to WAN 2 as my Primary Uplink under SD-WAN and Traffic-Shaping -> Primary Uplink -> WAN 2 the Meraki Peer VPN connections seem to be up for some seconds but then they fail and I am getting the error VPN Registry: Disconnected. This security appliance is unable to connect to any VPN registries using outbound UDP port 9350.
So I checked the Meraki Documentation and added the recommend rule to be found under:
https://documentation.meraki.com/MX/Site-to-site_VPN/Troubleshooting_VPN_Registration_for_Meraki_Aut...
After doing this my connections come up again and fail after some seconds. I tried to make this change two weeks ago and had the same issue. Meraki Call Support told me, that our ISP is blocking the inbound traffic on specific ports and my connections cannot stay up. This week I made sure, that no Ports are blocked (they were never blocked) and also connected my ISP about any connection refuses or restrictions. Currently on my ISP side every connection and traffic is allowed.
Did anyone had the same issue before and has suggestions how to solve it. Every answer is welcome.
Thanks in Regards