Hi,
My company has many locations which we have put a Meraki SD-WAN device at to VPN to our HQ. At HQ we have a Cisco ISE which we use to authenticate WLAN with dot1x. It works with most of our Meraki locations with no issues. But there are a couple of locations that have the exact same configuration as everywhere else, but cannot connect to our WLAN. Each computer is setup with a certificate to authenticate with, so no username/password should be needed to authenticate. And like I said, with most locations this works perfectly. But for these couple locations that don't work, the logs in the ISE say "Supplicant stopped responding to ISE". It never gives a deny or anything. My first thought was that the computers weren't configured with a certificate but there are other services that we use those same certificates for, so they wouldn't be able to work from home over VPN without these certificates either.
I tried a to test the connection from the dashboard with just test/test, because there are no username/passwords configured nothing i do will succeed, but I just wanted to make sure that it could reach the ISE. Meraki says that it failed but it did reach the server. In the logs of the ISE I see no log for this attempt for at least 3 minutes. usually I see logs appear pretty fast, so I am beginning to think that the clients are taking to long to answer. Is this a possibility or am I just shooting in the dark? If it is possible that it's answering to slow/late, what can I do in Meraki to troubleshoot? I don't see any configuration for radius timeout or anything similar.
Thanks in advance!