Community Record
410
Posts
209
Kudos
12
Solutions
Badges
Jan 26 2021
3:21 PM
I agree Meraki is behind the market for IPV6 compatibility. That said, they have been implementing IPV6 on the MS and MR line, as well as getting the dashboard available by IPV6. The MX is the toughest as it has the most IPV6 features to implement. I do not know what the internal architecture is, but I am willing to bet it was not designed to be dual stack. There is supposed to.be another IPV6 announcement in January, so it should come soon
... View more
Jan 26 2021
3:08 PM
My MX65 is showing average device utilization in the Summary email. My clients are also showing it when I go to Org/Summary Report. The clients have MX64, MX67, MX68 and MX84 firewalls. - Dave
... View more
Jan 18 2021
9:23 PM
I am a Meraki Partner, and just got through installing a Meraki firewall, switch and access points at a school. They were replacing a Fortinet firewall, HP switch and Aruba access points. The installation went well and only got stuck when we hit undocumented items on the network. The visibility that the Meraki Dashboard into your network is unparalleled by any other solution. What the others have said about the lower cost of management beats the cost of hardware and licensing is very true. Also, have you gotten a quote for the conversion? Partners can help you determine what equipment fits your need, get you trial gear, sometimes aggressive pricing offer post sale support.
... View more
Jan 14 2021
8:38 PM
1 Kudo
I was playing with split tunnel last spring. I added a route statement in Windows 10 using the ID of the VPN connector and the subnet of the hosts on the other side of the VPN. Traffic bound for the internet or my lan did not use the route statement, but traffic bound for the remote network did.
... View more
Jan 6 2021
8:29 PM
If you have multiple IP addresses, you can setup a DMZ port on the Fortinet and route one address through the DMZ. You can turn off NAT and all inspection for that port.
... View more
Nov 24 2020
6:12 PM
I had to put my old Sonicwall in front of my MX so I could join the beta for the MR. One reason to start with the MR is that is Meraki has sold more MR devices than MS or MX. So you are giving the most users IPV6. Another reason is that the MX is most likely the most complicated. It probably requires a new architecture. - Dave
... View more
Nov 16 2020
7:26 PM
I am using a work around by using the recently-added tag to indicate which computer's should have the software installed on them. Once I the installation is complete, I be remove the recently-added tag. This process is somewhat clumsy, but it works.
... View more
Nov 9 2020
3:42 PM
I am trying out Systems Manager using some test Windows 10 PCs. The applications I want to install all have their own way of updating, so Systems Manager does not need to care about updating the them. I setup the JumpCloud agent as an application, and have the URL to the download for a particular version. When the JumpCloud agent updates itself, Systems Manager sees that the old version is no longer installed, and reports it as missing. I want to automatically install an application, and let the application update itself to its latest version and not have Systems Manager complain about the app missing. Is there a way to achieve this? Thanks, -Dave
... View more
Oct 26 2020
6:49 PM
The Meraki line of hardware will have to support both IPV4 and IPV6 stacks. Perhaps the MX beta is for a more modular stack based implementation of the current IPV4 code. - Dave
... View more
Oct 25 2020
2:16 PM
There is a hint of a change coming to the MX line. Version 15.38 mentions "a new major version evolving through beta...". Perhaps IPV6 or at least the underpinnings of it are close! -Dave
... View more
Sep 23 2020
7:57 AM
The cost of the licenses is an issue if just looked as an expense. If Total Cost of Ownership is considered, the license cost becomes less of an issue. - Dave
... View more
Sep 7 2020
6:08 PM
1 Kudo
I am very happy that Network Objects came out ahead of IPV6. Using IPV6 addresses instead of objects would render firewall rules almost impossible to manage!
... View more
Sep 7 2020
1:17 PM
Nickola, Meraki equipment all have local configurations that operate independent of the Meraki Cloud. The cloud stores the configuration and reflects changes from the dashboard down to the device. If you factory reset a device, you can connect it back up the the network and it will download the latest configuration from the cloud. If a device dies, and you replace it with a new device of the same model, once added to the dashboard, it will download the latest configuration. I would call that evidence of configuration backup from a device perspective.
... View more
Jul 1 2020
11:44 AM
1 Kudo
I was my stupid error! I had assigned the VLAN for VLAN20 in the Access Control for the SSID. The switch port was configured as a Trunk with a default VLan of 20. According to: https://documentation.meraki.com/MR/Wireless_Troubleshooting/Wireless_Issue_Resolution_Guide#SSIDs_in_Bridge_Mode Traffic will not flow. I do not know why 70% of the clients could connect and 30% couldn't, but as soon as I removed the VLAN from the SSID, the problems went away.
... View more
Jun 30 2020
9:18 PM
Today I got a call from a client that the WiFi was down. Thanks to Wireless Health, I could see that a high percentage of clients (over 25%) were failing because of DHCP. The errors in the event log are: extra: no_offers_received, vap: 0, vlan: 20 The DHCP errors are only on VLAN 20. The other VLANS have no issues. The DHCP settings in the MX are almost the same between all the VLANS. Remotely rebooting the firewall (MX84) and switch (MS250-48FP) did not fix anything. The DHCP pool for VLAN 20 is 85% free, so I do not think that is the issue, There errors are continuing tonight, even after upgrading the firewall from 14.40 to 14.42. Any insight would be greatly appreciated
... View more
Jun 30 2020
3:22 PM
1 Kudo
Is Edgar Allan POE lost love Lenore in the following poem, our MX IPV6 support? Or is this just the ramblings of a Covid19 feverish mind? The Raven BY EDGAR ALLAN POE Once upon a midnight dreary, while I pondered, weak and weary, Over many a quaint and curious volume of forgotten lore— While I nodded, nearly napping, suddenly there came a tapping, As of some one gently rapping, rapping at my chamber door. “’Tis some visitor,” I muttered, “tapping at my chamber door— Only this and nothing more.” Ah, distinctly I remember it was in the bleak December; And each separate dying ember wrought its ghost upon the floor. Eagerly I wished the morrow;—vainly I had sought to borrow From my books surcease of sorrow—sorrow for the lost Lenore— For the rare and radiant maiden whom the angels name Lenore— Nameless here for evermore. And the silken, sad, uncertain rustling of each purple curtain Thrilled me—filled me with fantastic terrors never felt before; So that now, to still the beating of my heart, I stood repeating “’Tis some visitor entreating entrance at my chamber door— Some late visitor entreating entrance at my chamber door;— This it is and nothing more.” Presently my soul grew stronger; hesitating then no longer, “Sir,” said I, “or Madam, truly your forgiveness I implore; But the fact is I was napping, and so gently you came rapping, And so faintly you came tapping, tapping at my chamber door, That I scarce was sure I heard you”—here I opened wide the door;— Darkness there and nothing more. Deep into that darkness peering, long I stood there wondering, fearing, Doubting, dreaming dreams no mortal ever dared to dream before; But the silence was unbroken, and the stillness gave no token, And the only word there spoken was the whispered word, “Lenore?” This I whispered, and an echo murmured back the word, “Lenore!”— Merely this and nothing more. Back into the chamber turning, all my soul within me burning, Soon again I heard a tapping somewhat louder than before. “Surely,” said I, “surely that is something at my window lattice; Let me see, then, what thereat is, and this mystery explore— Let my heart be still a moment and this mystery explore;— ’Tis the wind and nothing more!” Open here I flung the shutter, when, with many a flirt and flutter, In there stepped a stately Raven of the saintly days of yore; Not the least obeisance made he; not a minute stopped or stayed he; But, with mien of lord or lady, perched above my chamber door— Perched upon a bust of Pallas just above my chamber door— Perched, and sat, and nothing more. Then this ebony bird beguiling my sad fancy into smiling, By the grave and stern decorum of the countenance it wore, “Though thy crest be shorn and shaven, thou,” I said, “art sure no craven, Ghastly grim and ancient Raven wandering from the Nightly shore— Tell me what thy lordly name is on the Night’s Plutonian shore!” Quoth the Raven “Nevermore.” Much I marvelled this ungainly fowl to hear discourse so plainly, Though its answer little meaning—little relevancy bore; For we cannot help agreeing that no living human being Ever yet was blessed with seeing bird above his chamber door— Bird or beast upon the sculptured bust above his chamber door, With such name as “Nevermore.” But the Raven, sitting lonely on the placid bust, spoke only That one word, as if his soul in that one word he did outpour. Nothing farther then he uttered—not a feather then he fluttered— Till I scarcely more than muttered “Other friends have flown before— On the morrow he will leave me, as my Hopes have flown before.” Then the bird said “Nevermore.” Startled at the stillness broken by reply so aptly spoken, “Doubtless,” said I, “what it utters is its only stock and store Caught from some unhappy master whom unmerciful Disaster Followed fast and followed faster till his songs one burden bore— Till the dirges of his Hope that melancholy burden bore Of ‘Never—nevermore’.” But the Raven still beguiling all my fancy into smiling, Straight I wheeled a cushioned seat in front of bird, and bust and door; Then, upon the velvet sinking, I betook myself to linking Fancy unto fancy, thinking what this ominous bird of yore— What this grim, ungainly, ghastly, gaunt, and ominous bird of yore Meant in croaking “Nevermore.” This I sat engaged in guessing, but no syllable expressing To the fowl whose fiery eyes now burned into my bosom’s core; This and more I sat divining, with my head at ease reclining On the cushion’s velvet lining that the lamp-light gloated o’er, But whose velvet-violet lining with the lamp-light gloating o’er, She shall press, ah, nevermore! Then, methought, the air grew denser, perfumed from an unseen censer Swung by Seraphim whose foot-falls tinkled on the tufted floor. “Wretch,” I cried, “thy God hath lent thee—by these angels he hath sent thee Respite—respite and nepenthe from thy memories of Lenore; Quaff, oh quaff this kind nepenthe and forget this lost Lenore!” Quoth the Raven “Nevermore.” “Prophet!” said I, “thing of evil!—prophet still, if bird or devil!— Whether Tempter sent, or whether tempest tossed thee here ashore, Desolate yet all undaunted, on this desert land enchanted— On this home by Horror haunted—tell me truly, I implore— Is there—is there balm in Gilead?—tell me—tell me, I implore!” Quoth the Raven “Nevermore.” “Prophet!” said I, “thing of evil!—prophet still, if bird or devil! By that Heaven that bends above us—by that God we both adore— Tell this soul with sorrow laden if, within the distant Aidenn, It shall clasp a sainted maiden whom the angels name Lenore— Clasp a rare and radiant maiden whom the angels name Lenore.” Quoth the Raven “Nevermore.” “Be that word our sign of parting, bird or fiend!” I shrieked, upstarting— “Get thee back into the tempest and the Night’s Plutonian shore! Leave no black plume as a token of that lie thy soul hath spoken! Leave my loneliness unbroken!—quit the bust above my door! Take thy beak from out my heart, and take thy form from off my door!” Quoth the Raven “Nevermore.” And the Raven, never flitting, still is sitting, still is sitting On the pallid bust of Pallas just above my chamber door; And his eyes have all the seeming of a demon’s that is dreaming, And the lamp-light o’er him streaming throws his shadow on the floor; And my soul from out that shadow that lies floating on the floor Shall be lifted—nevermore!
... View more
Jun 17 2020
7:04 PM
@Dudleydogg The has been forward movement on IPV6. Making the Dashboard IPV6 compatible is a necessary precursor. I get it that the MX still has no alpha or beta yet and that leaves those who require IPV6 still stuck.
... View more
May 6 2020
9:37 PM
I am putting in a MX84 to replace a MPLS circuit with a site to site VPN. The new internet won't be installed until Friday. I configuted the MX84 and tested the site to site VPN prior to installing it at the client site. At the client site, there is a MS250 connected to a Cisco router. Today I installed the MX84 between the router and the MS250. So now the Cisco router is connected to port 4 of the MX84, and the uplink port of the switch is connected to port 3 of the MX84. With that configuration, traffic for phones and data worked for 90 minutes. Then data stopped. 30 minutes later the phones stopped working. Rebooting of the MX84 and MS250 did not solve the issue. The only thing I can think of is that the MX84 does not like running with it's WAN port disconnected. I will need to leave the phones running over the MPLS circuit for awhile after the site to site is up. So I will need this configuration working. Has anyone experienced anything like this before?
... View more
Apr 30 2020
5:23 PM
The Meraki IPV6 team made their April announcement. Understandably, the schedule has slipped. In a former life I was a software developer then software development manager, then director of product development. I am so glad I do not have that responsibility now. Covid 19 shelter in place will butcher any development schedule. I cannot imagine trying to write software at home if their are children present! The power of a team is also broken as communication and commadary is pushed through a tiny set of wires.
... View more
Apr 26 2020
4:52 PM
T-4 Days before time runs out for an IPV6 announcement that was forecast last February. Kudos tothe team for testing out the NAT64 VPN! I wonder if Covid19 has had a negative impact on the development schedule in other ways.
... View more
Apr 22 2020
8:03 PM
I have a client that has a WAN link between two sites. There is a Cisco phone system that travels across that link. At one site there is a MX84 and that is the site where the phone system is located. I would like to replace the WAN link with a site to site VPN by placing a MX84 at the remote site. What is the best way to insure QOS across the site to site VPN?
... View more
Apr 22 2020
2:26 PM
2 Kudos
There might be another way to accomplish this using a different paradigm. Google BeyondCorp or Perimeter 81 are both Zero Trust products that can link local applications, sites and services with cloud based services. Basically you create a site to site VPN to Google BeyondCorp or Perimeter 81 and then manage everything through those services. For instance, you want to provide Remote Desktop in a secure manor to a RDS server. You would configure the either vendor site with a Remote Desktop link, and grant access to the users who need that service. Users are authenticated into Perimeter 81 or Google BeyondCorp and see a screen with the services and application that they access to. Google BeyondCorp can use user and machine certificates as part of the authentication process. Perimeter might be able to do that as well. One benefit that is made clear during this Covid19 lock down, is that instead of all employees coming in through a VPN and overwhelming the firewall, there is only one VPN connection that the firewall needs. The employees sign into the BeyondCorp or Perimeter 81 site instead. This is more scalable and secure that a traditional VPN solution. I apologize that this is a short and incomplete summary of these products. My intent was only to make you aware of different options for your VPN solution.
... View more
My Accepted Solutions
Subject | Views | Posted |
---|---|---|
881 | Jul 7 2023 10:41 AM | |
5003 | Sep 22 2021 8:29 PM | |
1696 | Nov 16 2020 7:26 PM | |
36185 | Jul 1 2020 11:44 AM | |
5563 | Mar 14 2020 11:48 AM | |
12202 | Nov 12 2019 5:47 PM |
My Top Kudoed Posts
Subject | Kudos | Views |
---|---|---|
7 | 51920 | |
7 | 117410 | |
7 | 158042 | |
6 | 5934 | |
5 | 45035 |