Community Record
64
Posts
5
Kudos
0
Solutions
Badges
2 weeks ago
Can someone help me with the topic of subscription in which if the customer adds more hardware to his existing subscription model with license and the customer has around 10 months until their subscription model is ending. My understanding ist that the customer will be paying in this case only for the 10 months to the added license rather than the full term like in the case of co-term and in this way the end date remains the same and they can extend the licenses in one go?
... View more
Dec 6 2024
2:55 AM
I would like to briefly describe the issue: • Our customer had an IPSec VPN connection set up by Noris Network to retrieve emails from an on-premises Exchange server to the iPhones of UmweltBank. • Authentication should be done both via a distributed certificate on the iPhones (distribution works) and through login with AD user credentials (UPN) and corresponding password. They have created a VPN profile in Meraki SM (see screenshot). How can they get the UPN of the AD user (= OwnerUsername in SM Owners) into these settings? A variable like $OWNEREMAIL or $OWNERUSERNAME does not work. Additionally, the VPN connection should be Always On and should not disconnect every time the iPhone is locked. Re-establishing the VPN connection or having to enter the password each time the iPhone is unlocked is not practical. The VPN connection works in general; it’s set up on the admins iPhone and he can retrieve emails after entering his UPN and password.
... View more
Labels:
- Labels:
-
ADE
-
Apps
-
Enrollment
-
iOS
-
VPP
Oct 1 2024
1:05 AM
Posting here again if Secure Connect was not the correct section for this post. One of our customers is fixed to the following solutions offered from Sophos and would be interested to know if we can cover them using a Meraki Firewall and if needed pairing it with Meraki's Secure Connect/Cisco Security/ Duo etc. The following are the features doable using Sophos. I would wish this is possible with Meraki, if not would wish alternative solutions which could cover these features below. Sophos can do this. Can Meraki do it as well?? a) Using network masking to create DNAT rules b) presence of a transparent proxy c) Sophos RED has a (permanent) connection to external service providers and it restricts access to SQL database stored in the main office and may only give access to trusted people. The following points are additionally required by the customer and expected from Meraki d) Can Meraki function fully as a web application firewall? e) Can Meraki provide Live firewall protocol for problem analysis? @Daniel-BC
... View more
Oct 1 2024
1:04 AM
One of our customers is fixed to the following solutions offered from Sophos and would be interested to know if we can cover them using a Meraki Firewall and if needed pairing it with Meraki's Secure Connect/Cisco Security/ Duo etc. The following are the features doable using Sophos. I would wish this is possible with Meraki, if not would wish alternative solutions which could cover these features below. Sophos can do this. Can Meraki do it as well?? a) Using network masking to create DNAT rules b) presence of a transparent proxy c) Sophos RED has a (permanent) connection to external service providers and it restricts access to SQL database stored in the main office and may only give access to trusted people. The following points are additionally required by the customer and expected from Meraki d) Can Meraki function fully as a web application firewall? e) Can Meraki provide Live firewall protocol for problem analysis? @Daniel-BC
... View more
Oct 1 2024
12:48 AM
Hi everyone, I think what Daniel is trying here is to get his points a-e which Sophos already offers - to replace it with a Meraki Solution and if needed adding Secure Connect or Cisco's Security Softwares to it. It should be fully able to replace the exisiting Sophos solution that the customer is using. If at all this is not doable directly as Sophos does it are there any workarounds to it with Meraki?
... View more
Sep 30 2024
5:11 AM
what access points from does Assa Abloy support? (https://www.assaabloy.com/pl/en/solutions/products/digital-access-solutions/aperio) I cannot access this link and I have to login here. Maybe this is for Meraki internal employees. Can this be shared with us?
... View more
Sep 23 2024
2:04 AM
2 Kudos
Being part of the Meraki community has been such a rewarding experience. There’s always someone willing to help, and the depth of knowledge here is incredible. The support team is fantastic, but honestly, the insights and advice I’ve gotten from the community feel just as valuable. It’s awesome to be part of a space where you can troubleshoot, brainstorm new ideas, and connect with others who are just as invested in Meraki. This is something you don’t find everywhere, and I really appreciate the openness and collaboration here.
... View more
Sep 16 2024
4:09 AM
Hey Brash, what exactly in my question better relates to a solution like Cisco NGFW?
... View more
Sep 16 2024
2:56 AM
1. The customer has WAN 1 for internet traffic, WAN 2 for VPN, and WAN 3 for their mail gateway server, all of which are fixed configurations. They need a fourth connection to provide redundancy, for example, for WAN 1 traffic. If WAN 1 fails, it should not use the capacity of the existing WANs (Mail Gateway and VPN) but should instead serve as a redundancy for WAN 1. Is this possible with a Meraki firewall? If so, which firewall would be suitable, and how can this be configured via the Dashboard? Can you provide steps to this 2. Is there a way to analyze a website using Meraki? For example, if I input a URL, can it show which category the website falls into? 3. If the connection does not have a fixed IPv4 address or any IPv4 address at all, will it still work, or are there specific requirements? The customer is considering using Starlink as their WLAN provider, which utilizes IPv6. Is this supported by Meraki firewalls?
... View more
Labels:
- Labels:
-
Firewall
Sep 4 2024
2:50 AM
Thanks @Shubh3738 . Can Cisco Duo for 10 users then be used for an unlimited amount of time? Or does the customer has to purchase the license seperately after a certain amount of usage? Also if I offer him Cisco secure connect is Anyconnect already in it? Is there no MFA Licenses in Cisco Secure Connect?
... View more
Sep 4 2024
2:20 AM
Which Meraki firewall model supports 3 WAN Connections? Can the Meraki firewall actively block emails and send them to quarantine? Is there any basic method that the Meraki firewall can do against unwanted emails in this case? Is it possible to achieve this with Secure Connect without purchasing Cisco's Email Security? It seems that Fortinet already offers this capability. Is there a way to enable two-factor authentication without purchasing Cisco Duo? Is it possible to enable this at least for admin authentication? According to the customer, Fortinet offers this as a one-time purchase without requiring ongoing licenses. Can this be achieved through Secure Connect? Do we need to buy AnyConnect if we already have Secure Connect? Which licenses of Secure Connect are required for this usecase and how many of it are needed if the customer has 50 employees, can those licenses be shared?
... View more
Aug 16 2024
11:35 PM
Hey Gary, To your point above- The client-based ZTNA feels much like Always-on VPN but uses new technology that faster and more secure while providing an optimal user experience. The end user registers the first time using SAML and then a certificate is stored in TPM. The user does not have to login again in most cases. What solution are you talking about with Client based ZTNA? Do you mean Secure Access by that? What all licenses do I need for me to be able to use Always on VPN using a certificate encrypted by TPM. If it is not possible only with Anyconnect only. Could you provide me all the licenses that I would need for a scenario considering we want to do this on one person? I will then multiply the user licenses and offer
... View more
Aug 13 2024
8:32 AM
1 Kudo
Does Meraki have the capability to integrate with Azure AD for user, password, or group synchronization, especially in scenarios where specific users or groups who dont have VPN should be excluded from VPN access? Is there a feature like Azure Connect available within Meraki for such purposes?
... View more
Aug 13 2024
7:14 AM
Thanky Gary for your reply. What if the customer purchases the 3 Solutions Standalone Meraki, Secure Client Licenses plus Cisco DUO. How will the working see in that case. The customer also wants to use DUO in a way that they dont have to put in Tokens when authentication is done and this should be done in the background without the client having to give in any such tokens.
... View more
Aug 13 2024
7:00 AM
I have just checked that there is no Secure Client included in Secure Connect, so I would consider my question now as terminating VPN on the MX
... View more
Aug 13 2024
5:57 AM
My client wants to use Meraki Firewalls along with Cisco Secure Client (Anyconnect) with Always on feature with MFA Duo. Their question is the following - Would it be possible to configure a Multi-Factor Authentication (MFA with DUO) with Always ON VPN (Any Connect) using a certificate encrypted via TPM? #Secureconnect #Duo #Secure Client # Meraki
... View more
Aug 7 2024
6:18 AM
To that I have one more question. How can the Meraki Devices be disconnected with the cloud for be able to do this configuration offline, so that they work only when the devices are online. I mean when you have no internet you cannot login into the dashboard at all right?
... View more
Jul 24 2024
5:50 AM
Can you elaborate more on that please as a non Techie it is difficult for me to get it
... View more
Jul 23 2024
12:38 PM
Yup I understand and know this fact. I wanted to know if there is a list of possibilities of actions and changes that can be done on Meraki without being connected to the network
... View more
Jul 23 2024
12:29 PM
What he meant is that he has options in Aruba in which he can connect Aruba equipment to the cloud and also detach it from the cloud and turn it into on premise mode if he wants and he is expecting something like this from Meraki. if he males any changes in the dashboard without being connected to the internet, how do you mean he will male changes there? How will he reach out to Meraki at all in offline mode?
... View more
Jul 23 2024
10:21 AM
what all configurations can be done on a Meraki Dashboard when offline, outage etc? Are there any possibilities? Is there a list of rudimentary options what can be used to make changes on the dashboard offline? Can Switch VLANs be configured in emergency offline? This is possible with Aruba ( one can use the cloud networking as well as offline networking with which the customer is very satisfied)
... View more
Jul 23 2024
10:19 AM
Our customer wants to know what protocoll is being used in showing non Meraki products in topology. The question was if we are using CLLP Protocol (not sure if I am right) or SNMP. He meant here that CLLP shows basic details of the on Meraki product in topology whereas SNMP shows more detail of the product in the topology.
... View more
Jul 23 2024
10:16 AM
Our customer will be using more Azure instead of AD on the computer and would like to use Meraki Radius Server for Authentication. His question was if this comes with a cost or is it free to use. What Meraki device he should have in his system to begin with using a radius server. He first wants to start with a few Switches and Access Points
... View more
Apr 3 2024
4:54 AM
Hi Team, One of my customers has purchased the following cloud archive licenses LIC-MV-CA90-3Y: for his cameras but wants the data on the cloud deleted within 3 days automatically due to data protection reasons. Could you please advice how it can be done in Dashboard? Is there a setting that he can change on it.
... View more
Labels:
- Labels:
-
Other
Mar 1 2024
5:51 AM
Why isn't there a possibility that we allow everyone to install applications using Device owner mode? There is an option to allow it in restrictions and it still doesnt help and provide search results for any apps wished to be installed on the playstore. Isn't there a possiblity without having to sign in again, if the devices are company owned and the company doesnt want users to use their own playstore?
... View more
My Top Kudoed Posts