Community Record
85
Posts
8
Kudos
0
Solutions
Badges
Oct 7 2022
1:04 PM
How do we update the phone number for aMeraki account configured with multi factor authentication? do we have to remove and recreate the account?
... View more
Jul 18 2022
8:52 AM
What would be the best way to segment clients from servers across several departments (Lan and WAN) globally? What Meraki hardware would be recommended? I would assume traditional firewalls are too slow? Can Cisco ISE be used along with Meraki switches? Not sure if Cisco ISE can really help with segmenting a LAN/WAN.
... View more
Makes sense. Thanks.
... View more
We will need roaming to work.
... View more
Apr 7 2022
9:42 AM
Can you have a mixed vendor wireless environment (Meraki/Extreme) with a single SSID?One of our sites has 150 AP's and we're not sure if we would be able to replace all in one shot because they are 24x7 and have a very small maintenance window.
... View more
Mar 10 2022
2:02 PM
Does anyone know if udld plays nice between a cisco and meraki switch? Using multi mode SFP's? the MEraki is set to alert only and the cisco side is set to aggressive mode but keeps going into errdisabled mode. It seems to work fine between cisco switches.
... View more
Feb 24 2022
1:53 PM
ahh interesting, thanks.
... View more
Feb 24 2022
11:02 AM
We have a site with a Meraki MX that site to site VPNs and client VPN behind another firewall that Nat's the traffic to the MX. the site to site VPN's work however not the client VPN. Any ideas what may prevent the client VPN to work? I would assume if site to site VPN works that the outside is able to reach the MX on ports UDP 500 and UDP 4500.
... View more
Feb 3 2022
1:51 PM
How does the HA warm spare failover work on the LAN side? I understand we can configure a virtual ip for the HA MX's, so the ISP routers can configure the virtual ip address for their routes for our internal network. We configure the L3 switches with a default route pointing to the LAN ip address of the primary MX. How would this failover to the standby if no virtual ip address is configured for the LAN side? Do we manually have to change the ip address for the MX's LAN interface?
... View more
Nov 18 2021
1:29 PM
My goal is to deny access from all other Meraki SDWAN sites (192.168.0.0/16) to sites 192.168.1.x and 192.168.2.x. So I guess I would have to create a explicit deny rule from source 192.168.x.x/16 to 192.168.1.x and 192.168.2.x?
... View more
Nov 18 2021
1:19 PM
Assume you add these new rules for site to site VPNs: allow source 192.168.1.x destination 192.168.2.x allow source 192.168.2.x destination 192.168.1.x there are no explicit rules defined other than the allow Default rule (Any, Any, Any, Any) Will other sites in the SDWAN be able to communicate with sites 192.168.1.x and/or 192.168.2.x?
... View more
Nov 18 2021
1:12 PM
Sorry I hope I'm not missing anything here. RSTP Meraki is the same thing as rapid-pvst in cisco right? I assume they are compatible?
... View more
Oct 14 2021
8:43 AM
Access points are plugged into those ports. The AP's worked fine when they were plugged into the Cisco switches.
... View more
Oct 13 2021
10:15 AM
Yes, the root bridge has a lower priority and is the core switch in the Cisco network. The bridge settings in the Meraki switch settings were not changed. We cannot change it to a cisco switch anyway. Sorry failed to mention we have plugged in 2 Meraki switches. Both are connected to separate cisco switches on the edge. These are the latest events I'm seeing. 7 12:45:06 Port STP change Port 13 designated→disabled Oct 7 12:45:06 Port status change port: 13, old: 1Gfdx, new: down Oct 7 12:44:48 Port STP change Port 13 disabled→designated Oct 7 12:44:48 Port status change port: 13, old: down, new: 1Gfdx Oct 7 12:44:25 Port STP change Port 7 disabled→designated Oct 7 12:44:25 Port status change port: 7, old: down, new: 1Gfdx Oct 7 12:44:25 Port STP change Port 5 disabled→designated Oct 7 12:44:25 Port status change port: 5, old: down, new: 1Gfdx Oct 7 12:44:25 Port STP change Port 2 disabled→designated Oct 7 12:44:25 Port status change port: 2, old: down, new: 1Gfdx Oct 7 12:44:24 Port STP change Port 1 disabled→designated Oct 7 12:44:24 Port status change port: 1, old: down, new: 1Gfdx Oct 7 12:44:21 Port STP change Port 7 designated→disabled Oct 7 12:44:21 Port status change port: 7, old: 1Gfdx, new: down Oct 7 12:44:21 Port STP change Port 5 designated→disabled Oct 7 12:44:21 Port status change port: 5, old: 1Gfdx, new: down Oct 7 12:44:21 Port STP change Port 2 designated→disabled Oct 7 12:44:21 Port status change port: 2, old: 1Gfdx, new: down Oct 7 12:44:20 Port STP change Port 1 designated→disabled Oct 7 12:44:20 Port status change port: 1, old: 1Gfdx, new: down Oct 7 12:44:10 Port STP change Port 3 disabled→designated Oct 7 12:44:10 Port status change port: 3, old: down, new: 100fdx Oct 7 12:44:07 Port STP change Port 3 designated→disabled Oct 7 12:44:07 Port status change port: 3, old: 100fdx, new: down Oct 7 12:44:01 Port STP change Port 7 disabled→designated Oct 7 12:44:01 Port status change port: 7, old: down, new: 1Gfdx Oct 7 12:44:01 Port STP change Port 5 disabled→designated Oct 7 12:44:01 Port status change port: 5, old: down, new: 1Gfdx Oct 7 12:44:01 Port STP change Port 1 disabled→designated Oct 7 12:44:01 Port status change port: 1, old: down, new: 1Gfdx
... View more
Oct 12 2021
7:03 AM
the Meraki Sw is on the edge and not inbetween Cisco switches. Not sure if I'm doing anything wrong here but this is what it looks like.
... View more
vlan 1 is included, I did not remove it.
... View more
It's a pain having to make that change on about 30 switches just to add 1 or 2 meraki switches.
... View more
Oct 11 2021
9:41 AM
1 Kudo
Thanks but sorry to say this sucks. Meraki did a good job making user friendly network devices. however it could not make it work more efficiently with RSTP connecting to Cisco switches?
... View more
Oct 11 2021
6:44 AM
we are seeing "High Rate of STP topology changes on port" when we connect a Meraki switch to a Cisco network. Both cisco and Meraki use the RSTP spanningtree mode. In the switch settings we can change the root bridge setting to a Meraki switch only however the root bridge (core) is a cisco switch. this happens when we need to make the port a trunk port (access ports seem to work fine). Anything we can do to correct the spanningtree issue?
... View more
Aug 27 2021
6:47 AM
3 Kudos
Resolved now. Sorry this was a misconfiguration on our part. A more specific route was incorrectly added in a site to site VPN. Can't find a way to delete this. You can delete this
... View more
Aug 26 2021
7:07 AM
Yes, some of the subnets are overlapping. The summarized subnet is enabled (or advertised) in Meraki VPN settings however the smaller subnet is not. for example specific subnet 172.16.1.1 mask 255.255.255.0 summarized subnet 172.16.0.0 mask 255.255.0.0 Should I advertise the smaller subnet? the summarized should work regardless right?
... View more
Aug 25 2021
10:10 AM
I cannot access a non meraki site to site VPN (between meraki and cisco asa) unless I enable (advertise) the client VPN subnet under VPN settings. However when I enable the client VPN subnet VPN clients can no longer reach some of the static routes configured to other internal routers and firewalls. Is there anyway I can fix this?
... View more
Aug 23 2021
6:31 AM
IS there a free authenticator app that can work with meraki that can be installed on a pc? Microsoft authenticator app can only be installed on mobile phones. Did anyone get another free app working for this?
... View more
Labels:
- Labels:
-
Client VPN
Jul 16 2021
6:46 AM
Forgot to ask, would this work with Meraki MX in a different Organization?
... View more
Jul 15 2021
11:27 AM
Thanks. I do see the source address and source natted address. Where are the destination address and destination natted address defined?
... View more
My Top Kudoed Posts
Subject | Kudos | Views |
---|---|---|
3 | 1634 | |
1 | 18035 | |
1 | 18049 | |
1 | 18065 | |
1 | 4032 |