The Meraki Community
Register or Sign in
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • About RomanMD
RomanMD

RomanMD

Building a reputation

Member since Apr 14, 2020

15 hours ago
Groups
  • API Early Access Group

    API Early Access Group

    554
  • Cloud Monitoring for Catalyst - Early Availability Group

    Cloud Monitoring for Catalyst - Early Availability Group

    50
  • Meraki Network Lounge

    Meraki Network Lounge

    49
View All
Kudos from
User Count
EJN
EJN
2
Chris_Skees
Meraki Employee Chris_Skees
1
AmyReyes
Community Manager AmyReyes
2
alemabrahao
Kind of a big deal alemabrahao
1
MeredithW
Community Manager MeredithW
2
View All
Kudos given to
User Count
cmr
Kind of a big deal cmr
1
CptnCrnch
Kind of a big deal CptnCrnch
1
Brash
Kind of a big deal Brash
1
ww
Kind of a big deal ww
3
DarrenOC
DarrenOC
4
View All

Community Record

129
Posts
116
Kudos
15
Solutions

Badges

ECMS1
ECMS2
Everybody Wins
Year 5 - Solver Award
5th Birthday
100 Posts View All
Latest Contributions by RomanMD
  • Topics RomanMD has Participated In
  • Latest Contributions by RomanMD
  • « Previous
    • 1
    • 2
    • 3
    • 4
  • Next »

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-30-2022 02:09 PM
2 Kudos
‎06-30-2022 02:09 PM
2 Kudos
Well, support did not give me any commands.. but just put me on the right path.  1. your switch should already have aaa new-model in the config, otherwise it will not work. Then inspect your AAA commands and the AAA commands that the application will configure on the switch.  The application will configure new VTY Lines and add the authentication group MERAKI: line vty 32 33 access-class MERAKI_VTY_IN in access-class MERAKI_VTY_OUT out authorization exec MERAKI login authentication MERAKI rotary 50 transport input ssh   Then it will add some aaa to authenticate locally:  aaa authentication login MERAKI local aaa authorization exec default local aaa authorization exec MERAKI local   And if you have the aaa authorization config-commands then this config does not allow meraki-user to authorize, and therefore you must have a special rule to allow "meraki-user" to get privilege level 15. aaa authorization commands 0 default group tacacs+ local aaa authorization commands 1 default group tacacs+ local aaa authorization commands 15 default group tacacs+ local   In my case, it was an authorisation problem. In your case it seems the authentication is not working. Do you have the aaa new-model enabled already?   ... View more

Re: Is it possible for a switch to kill a phone?

by RomanMD in Switching
‎06-27-2022 03:33 PM
‎06-27-2022 03:33 PM
I'll second Brandon's opinion. One more thing that I've observed over the time - the old Cisco phones did not like to be plugged into PoE and have also the external power adapter. Other than that, the wiring guys may buy a PoE tester, they're absolutely not cheap... but may identify problems without killing just another phone... ... View more

Re: Getting Started: Cloud Monitoring Onboarding

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-27-2022 04:47 AM
‎06-27-2022 04:47 AM
wondering if this issue has been solved and how as I do experience the same issue on some switches... ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-24-2022 05:57 AM
3 Kudos
‎06-24-2022 05:57 AM
3 Kudos
Mystery solved!  The problem was related to tacacs authentication. The standalone app creates a local user: meraki-user which is used to authenticate via the tls-tunnel, and a bunch of aaa commands. But my switches already were configured for tacacs+ in a way we are using for authentication and it seems did not take every possible configuration in the account. Now it is fixed after I've spent some time with support. ... View more

Re: Meraki AP not getting IP Running as Repeater

by RomanMD in Wireless LAN
‎06-22-2022 06:18 AM
1 Kudo
‎06-22-2022 06:18 AM
1 Kudo
It is reporting as Repeater because it cannot obtain a lease, not vice-versa.  According to documentation:    The AP only converts to a repeater when one of the following is true: The AP cannot receive an ARP reply packet from the default gateway on the LAN which is usually a local firewall or router The AP is unable to obtain a valid IP address via DHCP   The most common problem: check the cabling.   ... View more

Re: SNMP Issue

by RomanMD in Dashboard & Administration
‎06-22-2022 12:21 AM
2 Kudos
‎06-22-2022 12:21 AM
2 Kudos
The device doesn't rely on the snmp information. Snmp is another way to expose some information from the switch. So the OID's may or may not be implemented. ... View more

Re: What devices can cloud control add?

by RomanMD in Wireless LAN
‎06-22-2022 12:07 AM
2 Kudos
‎06-22-2022 12:07 AM
2 Kudos
To be honest, I did not get the question but if you refer to cloud control as "What Cisco devices can you add in Meraki dashboard for monitoring" then they clearly said - Catalyst 9k switches - 9200, 9300 and 9500. ... View more

Re: What if a device with a Per-Deveice License is broken?

by RomanMD in New to Meraki
‎06-22-2022 12:02 AM
5 Kudos
‎06-22-2022 12:02 AM
5 Kudos
Yes! It works the same it just requires more steps. You need to de-attach the license from the broken switch and assign it to the other switch which will be replaced. You can do this even after replacement since you have 30days grace period. So, you don't require to assign the license before replacing it. ... View more

Re: Cloud Monitoring for Catalyst 9300

by RomanMD in Switching
‎06-21-2022 11:56 PM
2 Kudos
‎06-21-2022 11:56 PM
2 Kudos
You should start on the documentation page. The switches should be configured in the traditional way and operational. So you should be familiar on how to configure them. Few pre-requisite must be met before being able to enable the switches for Meraki monitoring. Don't go with Meraki management yet, since this is not yet publicly supported. The process to add the switches to dashboard is straight forward without the need to execute CLI on the catalyst, the app will do everything, however if it will not work - the troubleshooting requires you again to interact with the CLI.  Good thing about catalyst is that they have console - so the client can connect them to console in case you need to access them remotely.   https://documentation.meraki.com/Cloud_Monitoring_for_Catalyst/Onboarding/Cloud_Monitoring_for_Catalyst_Overview_and_FAQ ... View more

Re: Sunglasses

by RomanMD in Dashboard & Administration
‎06-17-2022 10:36 AM
‎06-17-2022 10:36 AM
the sunglasses are nice but I think smaller fonts and darker colors would be a better reward... ... View more

Re: Route trafic from one switch to multiple switch isolating devices

by RomanMD in Switching
‎06-17-2022 10:31 AM
‎06-17-2022 10:31 AM
Do you think they teach Meraki now in the college?! 🤪 ... View more

Re: MX250 and problem having multiple public IP's

by RomanMD in Security / SD-WAN
‎06-17-2022 08:59 AM
2 Kudos
‎06-17-2022 08:59 AM
2 Kudos
Unfortunately, there are many more in the same boat, but this can't be done with Meraki MX.  So, the only way to do it is with a layer3 device in front of the MX which will do some routing and NAT. ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-17-2022 12:05 AM
‎06-17-2022 12:05 AM
New day has arrive but no lights in the end of the tunnel. The job from yesterday, todays return this beautiful information.... https://api.meraki.com/api/v1/networks/L_690XXXXXXXXXX097/devices/importStatus?jobId=6XXXXXX4 {'error': 'timed out', 'results': {'capabilitiesState': 'DIRECT_STARTED', 'configState': 'UNKNOWN', 'connectionState': 'CONNECTED', 'status': False}}     ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-16-2022 03:28 PM
‎06-16-2022 03:28 PM
Still not working to add the device for monitoring.  By checking the logs, everything seems to be correct and the application queries for an device import job id which does not seem to be promising.  { "results": { "connectionState": "NOT_CONNECTED", "capabilitiesState": "PENDING", "configState": "UNKNOWN" } }   Minutes later, I have queried the same endpoint and got this status, but the device still does not show in dashboard.   {'results': {'capabilitiesState': 'DIRECT_STARTED', 'configState': 'UNKNOWN', 'connectionState': 'CONNECTED'}}      Giving up for today. ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-16-2022 02:38 PM
‎06-16-2022 02:38 PM
Yes, I've seen your comments in the other thread and I went ahead and added an MS390 to the network to set the Unique Client Identifier, however, now I am stuck at the pre-check with " Device is not eligible for onboarding. Reason: Device SUDI was not found" on both switches, and I can't get out of it... ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-16-2022 02:30 PM
‎06-16-2022 02:30 PM
docs are saying 17.3.x - 17.7.x ... View more

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-16-2022 01:26 PM
‎06-16-2022 01:26 PM
This is what I have done, but I don't have very good experience with support on new features and now I have the same feeling. From very few posts here on community, I can see that each try is a "special" case that has to be troubleshooted individually, which is suggesting that the process is not even beta, but in alfa stage.  It is clearly a feature that many of us are interested in, so would be nice if we can see some fast fixes. ... View more

Cloud Monitoring for Catalyst dashboard join troubleshooting

by RomanMD in Cloud Monitoring for Catalyst Discussions
‎06-16-2022 04:57 AM
1 Kudo
‎06-16-2022 04:57 AM
1 Kudo
I do see the need of a complete troubleshooting section where everyone will describe their problems of using this apparently nice feature but not sure if ready enough.   So, let's start.  Trying to add to the dashboard two stacks: 9500 (stackwise-virtual) and 9300 (backplane).  Switches running 17.3.4 and 17.3.2a. Using the MacOS standalone app.  Both switches have internet connectivity and onboarding checklist verified.  Both switches have dna-advantage licenses.   Intermittently one switch is failing complaining about the certificate. Mostly the 9300 but not always.   Going further with the one that passed pre-check and reaching the last step with the message bellow, but the switch doesn't join the dashboard.   On the upstream firewall do see UDP/33xxx traffic towards compute.amazonaws.com.   Really interested if anyone tried the feature already and if it worked for them.    ... View more

Re: AnyConnect SAML w/Azure AD Enterprise application question

by RomanMD in Security / SD-WAN
‎06-15-2022 07:31 AM
1 Kudo
‎06-15-2022 07:31 AM
1 Kudo
The Identified and Reply URL needs to point to the DNS name of the appliance, therefore I don't see it possible to use the same Enterprise application for multiple networks.  I wish I am wrong...  ... View more

Re: Automate updating SSID

by RomanMD in Developers & APIs
‎05-28-2022 07:04 AM
‎05-28-2022 07:04 AM
Yes, of course.  Check the developer hub, on the right side you have the examples for Python using the Meraki library or python requests library. https://developer.cisco.com/meraki/api-v1/#!update-network-wireless-ssid   ... View more

Re: MR46 suddenly going down

by RomanMD in Wireless LAN
‎05-28-2022 06:56 AM
‎05-28-2022 06:56 AM
I experience the same behaviour with MR56 running 28.6. Two AP's connected to different switch models, the same behaviour, however, it does not happen too often. It could be once per week or more rare.  Did not dig further what exactly happens, but looking at the other thread, makes me want to dig dipper next time when it happens. ... View more

Re: SAML/SSO with RSA securID

by RomanMD in Dashboard & Administration
‎05-28-2022 06:43 AM
2 Kudos
‎05-28-2022 06:43 AM
2 Kudos
As far as I've been able to understand it, Meraki will only handle first entry in the role attribute, so if the Meraki role is not the first in the list, it will not work. I have asked our ADFS colleagues to send in the role attribute the memberOf group which only contains a specific string. ... View more

Re: Migrating from Cisco wireless to Meraki

by RomanMD in Wireless LAN
‎09-06-2021 09:20 AM
1 Kudo
‎09-06-2021 09:20 AM
1 Kudo
You might as well, think of redesigning the actual solution. The actual one might be outdated and was valid few years ago because this is what Cisco sold us... but things are changing meanwhile..   ... View more

Re: Authorization for "Administered Orgs deep link"

by RomanMD in Developers & APIs
‎08-24-2021 03:32 AM
‎08-24-2021 03:32 AM
as I have explained: retrieve one device of each type and substract the EID from each URL. If this will be an Access point - the EID will be valid for wireless.    The only problem as I see here is a combined network with no devices. ... View more

Re: Authorization for "Administered Orgs deep link"

by RomanMD in Developers & APIs
‎08-24-2021 02:17 AM
‎08-24-2021 02:17 AM
and what is the problem to list one device and substract eid from the URL?   {'address': '', 'firmware': 'wired-14-53', 'url': 'https://n333.meraki.com/NetworkName/n/xxxxxdbd/manage/nodes/new_list/57239045832485'} {'address': '', 'firmware': 'switch-11-22', 'url': 'https://n333.meraki.com/NetworkName/n/xxxxxcbd/manage/nodes/new_list/457203458394437'} ... View more
  • « Previous
    • 1
    • 2
    • 3
    • 4
  • Next »
Kudos from
User Count
EJN
EJN
2
Chris_Skees
Meraki Employee Chris_Skees
1
AmyReyes
Community Manager AmyReyes
2
alemabrahao
Kind of a big deal alemabrahao
1
MeredithW
Community Manager MeredithW
2
View All
Kudos given to
User Count
cmr
Kind of a big deal cmr
1
CptnCrnch
Kind of a big deal CptnCrnch
1
Brash
Kind of a big deal Brash
1
ww
Kind of a big deal ww
3
DarrenOC
DarrenOC
4
View All
My Accepted Solutions
Subject Views Posted

Re: Cloud Monitoring for Catalyst dashboard join troubleshooting

Cloud Monitoring for Catalyst Discussions
2533 ‎06-24-2022 05:57 AM

Re: SNMP Issue

Dashboard & Administration
690 ‎06-22-2022 12:21 AM

Re: What if a device with a Per-Deveice License is broken?

New to Meraki
328 ‎06-22-2022 12:02 AM

Re: AnyConnect SAML w/Azure AD Enterprise application question

Security / SD-WAN
381 ‎06-15-2022 07:31 AM

Re: Authorization for "Administered Orgs deep link"

Developers & APIs
2430 ‎08-24-2021 03:32 AM

Re: Advanced License

Dashboard & Administration
1404 ‎07-30-2021 01:24 PM

Re: Local Status Page Password

Security / SD-WAN
1264 ‎07-15-2021 12:44 PM

Re: SAML SSO - user/email address removal

Dashboard & Administration
2083 ‎07-13-2021 10:30 AM

Re: DHCP option for TFTP server

Wireless LAN
2725 ‎07-01-2021 08:04 AM

Re: Remove Device from Network and Enable Warmspare in an Action Batch

Developers & APIs
618 ‎06-18-2021 02:53 AM
View All
My Top Kudoed Posts
Subject Kudos Views

Meraki AnyConnect + ADFS OnPrem SAML authentication guide

Security / SD-WAN
8 461

Re: Load balancing question

Security / SD-WAN
6 1123

Re: What if a device with a Per-Deveice License is broken?

New to Meraki
5 328

Re: Recognizing September's Members of the Month

Community Announcements
4 406

Re: Local Status Page Password

Security / SD-WAN
4 1264
View All
Powered by Khoros
custom.footer.
  • Community Guidelines
  • Cisco Privacy
  • Khoros Privacy
  • Privacy Settings
  • Terms of Use
© 2023 Meraki