Moving Layer 3 & 7 firewall rules from the MX to MR

rsage_voda
Getting noticed

Moving Layer 3 & 7 firewall rules from the MX to MR

I have a customer with a HA pair of MX450 that Meraki have advised are running very close to the limit. Anyone have experience of deploying Firewall rules on the MR's. Logically to me it makes sense to drop traffic as close to the source as possible.

 

Any gotcha's I need to be aware of

2 Replies 2
KarstenI
Kind of a big deal
Kind of a big deal

IMO, it only makes sense if you have separated VLANs for Wireless. If not, you need the Firewall controls on the MR and MX sides, which can be an administrative burden.

If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.
PhilipDAth
Kind of a big deal
Kind of a big deal

Which limit are you running into?

Session limit?

CPU limit?

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco ID. If you don't yet have a Cisco ID, you can sign up.
Labels