The Meraki Community
Register or Sign in
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • About Nash
Nash

Nash

Kind of a big deal

Member since Jul 5, 2018

‎12-04-2020

Nash King

Groups
  • API Early Access Group

    API Early Access Group

    554
View All
Kudos from
User Count
akfrnd
akfrnd
1
JGill
JGill
1
allenfred
allenfred
1
cmr
Kind of a big deal cmr
8
JakiraBias1
JakiraBias1
1
View All
Kudos given to
User Count
GreenMan
Meraki Employee GreenMan
2
DarrenOC
DarrenOC
2
nikmagashi
nikmagashi
1
PhilipDAth
Kind of a big deal PhilipDAth
175
Melissa
Meraki Alumni (Retired) Melissa
5
View All

Community Record

1029
Posts
1051
Kudos
70
Solutions

Badges

ECMS2
CMNA
Meraki FIT Level Two
Community All-Star 2020
Community All-Star 2019
MOTM - May 2020 View All
Latest Contributions by Nash
  • Topics Nash has Participated In
  • Latest Contributions by Nash
  • « Previous
    • 1
    • …
    • 36
    • 37
    • 38
  • Next »

Re: Meraki equipment. How much do you really enjoy Meraki products?

by Nash in Off the Stack
‎04-24-2019 06:21 AM
2 Kudos
‎04-24-2019 06:21 AM
2 Kudos
@kYutobi I hear this. I spent uh, hours, double-checking that I had the right serial number, the right PAK, the right account when registering my first PAK because what if I messed up.   Meraki: click click paste click approve done. Account manager wants to know when their client's gear expires? Please use the read-only account to take a look, thx.   Still probably gonna write a script for pulling license and inventory info at some point, but. ... View more

Re: Wireless LAN or wifi or Wi-Fi or WiFi?

by Nash in Off the Stack
‎04-24-2019 06:18 AM
1 Kudo
‎04-24-2019 06:18 AM
1 Kudo
Within the networking team? Wireless LAN or wireless (LAN implied).    To people outside the team? The wireless network or "you know, the wifi?" since they neither know nor care about what a "LAN" is. I pretty much never write Wifi, WiFi, or Wi-Fi as clearly it's too much effort.    I will admit to occasionally shocking people indecently by explaining how the wifi eventually turns into a physical network. "The invisible wifi is actually physical networking equipment" and "servers on the Internet are houses, not the roads" are my two favorite ways to surprise people who aren't exposed to networking. ... View more

Re: Clear CDP - MS225

by Nash in Switching
‎04-23-2019 06:41 AM
‎04-23-2019 06:41 AM
I've seen it clear within a couple of hours on its own, but I was using a two hour time window. Double check your time window. It can be up to a month.   LLDP and CDP info is sent to the dashboard every ten minutes.   N.B. I do primarily interact with CDP via the API, because I'm often needing it for all devices in a network including the MX. You have to explicitly declare a range in seconds of less than one month there.   You can do a quick test of what the API endpoint sees in Postman. You'll need to: 1. "List organizations that the user has privileges on", 2. Make an "organizationId" variable and populate it with the org id. 3. "List the networks in an organization. 4. Make a "networkId" variable and populate it. 5. Make a "serial" variable and put your device's serial number into it. 6. Then use Device/"List LLDP and CDP information for a device". ... View more

Re: Time for a survey — and another chance to snag swag!

by Nash in Community Announcements
‎04-22-2019 02:38 PM
2 Kudos
‎04-22-2019 02:38 PM
2 Kudos
I feel like the real take-away message here is that many of us would be very happy to pay Meraki for swag. I mean, it is usually much cuter than the Cisco denim shirt I see a coworker running around in. ... View more

Re: SONOS CONNECTING TO INTERNET

by Nash in Full-Stack & Network-Wide
‎04-22-2019 11:33 AM
‎04-22-2019 11:33 AM
If you're using the MX as a DHCP server, I've run into problems with Sonos when the DHCP is using the upstream DNS. Or rather - the Sonos speaker magically began working after we statically assigned the DNS, rather than using the upstream DNS function. ... View more

Re: What Apps do you use

by Nash in Off the Stack
‎04-22-2019 09:07 AM
1 Kudo
‎04-22-2019 09:07 AM
1 Kudo
1. iNetTools Pro (ping, trace route, DNS lookup, port scan, whois... super useful little bundle) 2. Ookla Speedtest 3. Google Authenticator, because of course 4. IT Glue for accessing things like, say, the wifi password when I'm on site. Otherwise website 5ever. 5. Chrome. I spend a lot of time researching stuff quickly on my phone while teaching my help desk how to do something. 6. Do the camera and flashlight count as an app? ... View more

Re: DHCP boot options

by Nash in Security / SD-WAN
‎04-22-2019 06:22 AM
‎04-22-2019 06:22 AM
Do you mean you're not able to figure out how set DHCP options? If so: https://documentation.meraki.com/MS/Layer_3_Switching/Setting_Custom_DHCP_Options   Or are you looking for help to translate that into Meraki's DHCP options? ... View more

Re: VPN Failover in MERAKI

by Nash in Security / SD-WAN
‎04-22-2019 06:21 AM
‎04-22-2019 06:21 AM
No, sadly, we can't do that for third-party tunnels. You get one IP and if it changes welp, you get to manually change it.   I wish we could do primary/secondary a la ASAs. ... View more

Re: MSP - Retrieving license expiration date across all organisation in MSP

by Nash in Developers & APIs
‎04-19-2019 06:30 AM
3 Kudos
‎04-19-2019 06:30 AM
3 Kudos
1. Turn on API for all organizations, manually. 2. Generate API key. 3. Get list of orgs that your API key has access to. 4. Build list that correlates org names and org numbers. I like objects in Python for this. 5. Write each org name and each org's results of "Return license state for organization" to a file. 6. Celebrate! ... View more

Re: Precision Time Protocol

by Nash in Switching
‎04-17-2019 06:07 AM
1 Kudo
‎04-17-2019 06:07 AM
1 Kudo
Meraki equipment gets its time from the dashboard, and can't serve time to other devices on your network. ... View more

Re: Client VPN VLAN?

by Nash in Security / SD-WAN
‎04-15-2019 11:56 AM
4 Kudos
‎04-15-2019 11:56 AM
4 Kudos
Okay, are you trying to get the client VPN to share the same subnet as a pre-existing VLAN? If so, that's not going to work.   Client VPN should be an entirely separate subnet from anything else on your network. The MX needs to either belong to the pre-existing VLAN or have a static route configured. That means at least two subnets: One for client VPN, one for the rest of your network.   It might help if you read some about how the MX handles routing: https://documentation.meraki.com/MX/Networks_and_Routing/MX_Routing_Behavior   If you approach this as a "two subnets, communicating via router(s)" issue, then you're okay. If you try to handle this as pure layer 2, it's not going to work the way. ... View more

Re: Client VPN VLAN?

by Nash in Security / SD-WAN
‎04-15-2019 10:41 AM
1 Kudo
‎04-15-2019 10:41 AM
1 Kudo
If I understand correctly, your MX will route between the client VPN subnet and whatever subnet(s) or routes the MX knows exist.    You can use the firewall on the MX to restrict what internal access: https://documentation.meraki.com/MX/Client_VPN/Restricting_Client_VPN_access_using_Layer_3_firewall_rules ... View more

Re: Admin account locked

by Nash in Dashboard & Administration
‎04-15-2019 06:03 AM
‎04-15-2019 06:03 AM
Do you only have a single account as full admin on your organizations? Meraki best practice is to have more than one full administrator on an organization, for situations such as this. If you don't have a second person you want to add, you can always create a second email address for explicitly this purpose. ... View more

Re: Representing Meraki

by Nash in Off the Stack
‎04-12-2019 12:25 PM
1 Kudo
‎04-12-2019 12:25 PM
1 Kudo
What if I'm layering? Because I can do a pair of socks (the diamond ones), a tshirt under, then a polo over... and a Meraki-brand USB charging hydra in my hand.   Or two tshirts under and a polo over, but at that point the tshirts start to feel awfully bunchy in awkward places.   Seriously if you can, get one of the charging hydras. I use mine every day. I'm using it right now. 🙂 ... View more

Re: Third-party site-to-site vpn failing/recovering at random

by Nash in Security / SD-WAN
‎04-11-2019 11:23 AM
6 Kudos
‎04-11-2019 11:23 AM
6 Kudos
So my subnets and settings all matched. The culprit here?   The MX was set to force NAT-T. After having support disable it on the back end, magically my tunnel has been stable. I can't find NO-PROPOSAL-CHOSEN errors in the logs in the last twenty four hours, instead of seeing them every hour or so.   Ran into the idea from some older threads on this very forum.   I didn't want to be That Person who fixed the problem and then never came back to say how. ... View more

Re: API - LLDP / CDP for every port for every device

by Nash in Developers & APIs
‎04-05-2019 11:07 AM
‎04-05-2019 11:07 AM
I've been working on an easy way to pull CDP info, esp since the API seems like the only way to get it out of an MX. My goal was to be able to pick an org, pull its network list, then granularly work network->device category->device (or whole hog) to get specific info.    I'm doing this in Python. I convert the dictionaries into objects using classes, because I find it easier than trying to dig into some of the weirdly formatted JSON.   I don't have anything that's not weirdly broken to share, unfortunately.   Final product is a  CSV or xlsx containing:   Org name (if multiple orgs), network name, device name, all switchports (in your use case), all results of CDP/LLDP   Pseudocode:     Pull org list   for org in orgList:     get networkList from org           for network in networkList:             get deviceList from network                   for device in DeviceList:                     if the first two letters in the device.name == MS:                         get switchports                         get CDP/LLDP information for that device                         do some magic to ensure switchports are correlated to CDP/LLDP info                         output switchports and CDP/LLDP info into a CSV or Excel spreadsheet   If all of your APs are Meraki APs, you could instead check device.name == MR, then get CDP/LLDP info off the AP itself. ... View more

Re: New Access Points and Network Setup

by Nash in Full-Stack & Network-Wide
‎04-04-2019 09:17 AM
‎04-04-2019 09:17 AM
I prefer to keep DHCP on an AD server when I can, for production vlans. An MX won't let you cancel an existing lease one by one, and that's something I have to do semi-regularly for my clients.    If I've got a separately configured vlan for a guest network, then DHCP goes on the MX and I make sure the firewall rules block access between my production vlan(s) and my guest vlan.  ... View more

Third-party site-to-site vpn failing/recovering at random

by Nash in Security / SD-WAN
‎04-03-2019 08:12 AM
‎04-03-2019 08:12 AM
I have a site to site tunnel between an ASA5525 and an MX65. I control both ends.   Tunnel had been running successfully for several months, so far as my team was aware. Recently, it's begun failing at random then recovering after 5-20 minutes without us doing anything.   When I review the event log on the MX, I see from earliest to latest:   1.  msg: IPsec-SA expired: ESP/Tunnel 2. msg: initiate new phase 2 negotiation 3. msg: notification NO-PROPOSAL-CHOSEN received in informational exchange (repeats 5 times)   Cycle repeats for 5-20 minutes, then tunnel establishes p2 again just fine.   I've confirmed that both phase 1 and phase 2 match on each end. Coworkers looked too! But we're still getting this behavior.   Current settings:   p1: 3DES/SHA1/DH2/Lifetime 28800 p2: AES256/SHA1/no PFS/28800   Anyone have any suggestions? I have filed a more detailed ticket with Support. ... View more

Re: Alternate Management Interface on MR Devices

by Nash in Wireless LAN
‎04-02-2019 11:16 AM
‎04-02-2019 11:16 AM
Huh, I'm going to have to play with that on my home lab. (Thanks, CMNA stack!)   Thanks for the tip off. ... View more

Re: Manage all devices in all networks at once

by Nash in Mobile Device Management
‎04-02-2019 10:34 AM
‎04-02-2019 10:34 AM
Is that an available endpoint in the dashboard API for SM? I didn't see it, but I miss things...   If it is, then you could:   1. GET list of all organizations you have admin for 2. Filter the result to only the schools you want to touch 3. Find the SM network for each school. 4. Iterate through the SM networks and push the OS update.   For the most part, if you want to manage a bunch of discrete networks all at once, you're going to be using the dashboard API. ... View more

Re: VPN/DNS issue

by Nash in Security / SD-WAN
‎03-29-2019 11:44 AM
3 Kudos
‎03-29-2019 11:44 AM
3 Kudos
Are you using servername.domain.local (fqdn), or are you just trying to talk to servername?   You'll need to be using the fully qualified domain name, as opposed to a short NetBIOS-y name.  ... View more

Re: Music on hold preferences and recommendations?

by Nash in Off the Stack
‎03-29-2019 10:55 AM
1 Kudo
‎03-29-2019 10:55 AM
1 Kudo
Anything Laura Mvula, but especially when she did Sing To The Moon with Snarky Puppy.   Andrew Bird, Kishi Bashi, most any kind of motet just so a ton of choirs can get work... ... View more

Re: Multiple Layer 3 Devices no allowed in the same network on the dashboar...

by Nash in Dashboard & Administration
‎03-28-2019 11:48 AM
‎03-28-2019 11:48 AM
Ah. Well, there's your answer then. If I remember a support call correctly, then non-MX Meraki devices don't have the ability to track clients via IP. They can only track via mac.   Have you reviewed https://documentation.meraki.com/MX/Monitoring_and_Reporting/Client_Tracking_Options ? ... View more

Re: Multiple Layer 3 Devices no allowed in the same network on the dashboar...

by Nash in Dashboard & Administration
‎03-28-2019 08:56 AM
1 Kudo
‎03-28-2019 08:56 AM
1 Kudo
I have networks with both L3 switches and MX devices in the same combined network. You should be able to have them all smushed together like that, so long as you've only got one MX (or MX HA pair) within the network. It's part of the full stack visibility goal. ... View more

Re: Not getting emails

by Nash in Community Tips & Tricks
‎03-26-2019 07:14 AM
1 Kudo
‎03-26-2019 07:14 AM
1 Kudo
Oh no! Have you thought about blocking peer-to-peer file sharing on your MX? 😉   tip your waitress, try the cobb salad ... View more
  • « Previous
    • 1
    • …
    • 36
    • 37
    • 38
  • Next »
Kudos from
User Count
akfrnd
akfrnd
1
JGill
JGill
1
allenfred
allenfred
1
cmr
Kind of a big deal cmr
8
JakiraBias1
JakiraBias1
1
View All
Kudos given to
User Count
GreenMan
Meraki Employee GreenMan
2
DarrenOC
DarrenOC
2
nikmagashi
nikmagashi
1
PhilipDAth
Kind of a big deal PhilipDAth
175
Melissa
Meraki Alumni (Retired) Melissa
5
View All
My Accepted Solutions
Subject Views Posted

Re: We need a Wi-Fi count per tag/building

Wireless LAN
3050 ‎06-30-2020 09:41 AM

Re: VPN Split tunnel on iPhone IOS

Security / SD-WAN
8774 ‎06-25-2020 06:34 AM

Re: split vpn traffic / dns resolving

Security / SD-WAN
1089 ‎06-08-2020 03:30 PM

Re: Meraki MX 64 & NAT Rules

Security / SD-WAN
2737 ‎06-04-2020 06:56 AM

Re: Would the factory reset of a Z1 device disable 2FA from dashboard

Dashboard & Administration
2336 ‎05-26-2020 08:26 AM

Re: Communication between Client VPN and IPSec peer subnet

Security / SD-WAN
1134 ‎05-18-2020 09:10 AM

Re: RADIUS server for VPN question

Security / SD-WAN
2112 ‎04-03-2020 11:18 AM

Re: Reorganizing our Dashboard

Dashboard & Administration
5568 ‎03-26-2020 02:05 PM

Re: Unable to ping servername, but servername.domain.com works (VPN and DNS...

Security / SD-WAN
2790 ‎03-23-2020 05:59 PM

Re: Windows 10 Split VPN

Security / SD-WAN
7608 ‎03-19-2020 07:27 AM
View All
My Top Kudoed Posts
Subject Kudos Views

Re: Does disabling all SSID's on an AP turn off the WiFi antennas completel...

Wireless LAN
8 2896

Re: Client VPN & tethering to iPhone

Security / SD-WAN
7 4633

Re: ECMS2

Off the Stack
7 12187

Re: Revealing Round 2 of the 2020 Meraki Community All-Stars!

Community Announcements
6 4568

Hangout spot for Cisco Live Virtual

Off the Stack
6 788
View All
Powered by Khoros
custom.footer.
  • Community Guidelines
  • Cisco Privacy
  • Khoros Privacy
  • Privacy Settings
  • Terms of Use
© 2023 Meraki