Why doesn’t Meraki block VPN applications?

jOMeraki2
Getting noticed

Why doesn’t Meraki block VPN applications?

Why doesn’t Meraki block VPN applications? This is ridiculous! I’ve already blocked them using the content filter, yet it still can’t use Layer 7 to properly block VPNs. This is so frustrating. What’s the point of having it if it can’t handle such scenarios? You might say it’s because of port 443, but even the most popular VPN apps aren’t getting blocked. My employees are using them freely, as if there’s no firewall in place. It’s extremely annoying

3 Replies 3
RWelch
Head in the Cloud
Head in the Cloud

Blocking VPN outbound/ IPVanish 
Sharing this link in the event it might help you.

If you found this post helpful, please give it Kudos. If my answer solves your problem please click Accept as Solution so others can benefit from it.
Inderdeep
Kind of a big deal

https://www.reddit.com/r/meraki/comments/ouahx4/block_private_vpn_using_layer_7_rules_in_mx/

Regards/Inder
Cisco IT Blogs awarded in 2020 & 2021
www.thenetworkdna.com
PhilipDAth
Kind of a big deal
Kind of a big deal

If you have a specific VPN you want to block - I usually do a packet capture on port 53.  Look at the DNS entries it tries to use when the user is logging in - and block them.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels