Hi RaphaeIL,
Thanks a lot for your quick response!
We actually do have the Radius servers on the same premise as the clients are.
When we tried at the beginning to forward all traffic from the access points directly to the radius servers on premise it didn't work. I figured out that as the access points are "reporting" everything to the Meraki Cloud it has to flow through the Meraki Cloud, and then from there back to the site (and it worked fine so far).
Apparently, it can be done without Meraki Cloud as a proxy, and now I'd like to understand how to actually have ut corrected.
If I change the radius servers ip addresses to point to the servers private ip addresses, then the traffic will never need to traverse through WAN to reach over back again to the local network.
But then how does the access points will be able to reach the radius servers lan?
Both the radius servers and the APs are on different management networks.
For instance, let's say that
the access points are on network 192.168.128.0/24 - VLAN X.
and the radius servers are on network 10.1.1.0/24 - VLAN Y.
both of the vlans are defined on the MX addressing and vlans and have gateways.
Adding routing rules / group policies to allow intervlan routing? Where? How?
Nowadays
Private IPs in inside lan
Best Regards,