Community Record
75
Posts
41
Kudos
1
Solution
Badges
Thursday
Thank you I will investigate, have you tested this? I spun up a webapp that housed the list and created the object, created the FW rules, but it did not work so not sure if it requires a special convention.
... View more
Thursday
I could do that but the group only allows you to add entries one at a time. I have hundreds.
... View more
Thursday
Hi, Is there a way to configure the MX to ingest an IP address based threat feed. I know Firepower and other firewalls can do this but don't see any docs here that show how the MX's can do it. If not I will submit a feature request. Thanks
... View more
Jul 24 2024
9:07 AM
@joshjJust a note, it's easy to do this on a new construction build, but you have to take into account what sort of internal structures will be in the space. For another client I did the first one to see how many AP's we needed, after racks and equipment (Metal) we loaded into the space I did another one to insure there was no interference. Good Luck
... View more
May 24 2023
1:31 PM
This is used for several reasons, to find optimum placement for the AP's in Challenging environments, as well as getting a count to show the customer why they are buying them and the coverage they provide. Also this is before the customer even purchases, so getting the placement correct is important; heat maps don't take into account structures, glass, obstructions, etc.
... View more
May 23 2023
10:32 AM
Hi Josh, still here lol. I kept it running and I use a MAC. I'm sure you can start-stop the survey but we were walking @ 10 different buildings all fairly close together, so I just kept it running on the laptop. I hope this helps.
... View more
May 11 2023
9:30 AM
i, I just wanted to know the expected behaviour when a leak is detected? I assume it alerts and stays in alert mode until the cable drys out, or do I need to replace the cable after it is exposed to water? Thanks in advance, Bob
... View more
Mar 9 2021
7:13 PM
Great news! (Finally) will it work with DUO?
... View more
Feb 1 2021
10:13 AM
Hi, Just testing the MT10 sensor and the server cabinet has a non-flush mount door. The door is about 1/2" farther out than the enclosure. I see the documentation says "flush mount" and I understand the distance from the sensor to the magnet, but is there a height minimum between the sensor to the magnet? Looking to add some thicker double sided tape to bring the magnet further out, I just need to know the tollerence. Thanks
... View more
Feb 1 2021
10:09 AM
4 Kudos
As a note it can also be accessed on the Temperature of the Sensor page, below the temperature graph you can click on the "change temperature units" which will take you to the same location as mentioned in the profile.
... View more
Jan 19 2021
9:06 AM
1 Kudo
Agreed, Since it seems the client will not include a lot of ancillary features the Anyconnect client includes for the FTD/ASA version, licensing should be included in the Adv. SEC license.
... View more
Jan 19 2021
8:57 AM
1 Kudo
I assumed you checked the firewall rules but also check the content filtering, VPN rules, and traffic shaping. (Content has caught me on a few unusual connections)
... View more
Jan 19 2021
8:51 AM
1 Kudo
I understand Cisco's R&D investment into Anyconnect, but to continue to charge very high costs for the remote client versus both the native clients and/or their competitors with Meraki will not go over well with their customers IMHO.
... View more
Oct 13 2020
8:09 AM
3 Kudos
Hi, I thought I would post this here, and I will cross post on DUO as well in hopes it will save someone some grief. Background - Client using Meraki Client VPN with DUO, works fine. Client wants to add a new VLAN/Subnet then all of a sudden DUO stops authentication with the new Subnet "IN VPN". If you don't add the new VLAN/Subnet into the VPN it works fine. Called Meraki support and asked if the IP address (source to Auth Proxy) would change by adding a new VLAN; the answer was no the IP should stay the same. Took a sniffer trace with and without the new VLAN and found the IP address of the Meraki did change, so we had to add it to the allowed sources in the Auth Proxy config. Then it worked. Verified with Meraki (for some unknown reason) that it takes the highest VLAN numbers' IP address as the the SVI for the Meraki Client causing the source IP address of the Auth request to come from the higher IP address. I hope this makes sense, if not let me know.
... View more
Sep 1 2020
2:15 PM
Yes, for testing
... View more
Sep 1 2020
1:33 PM
Can you just use traditional IPSEC VPN between them?
... View more
Sep 1 2020
1:32 PM
Wouldn't that void the warranty? And why should a customer or partner have to do it, when it has already been brought to Meraki's attention?
... View more
Jul 9 2020
7:53 AM
I don't disagree with any of the statements made on this
... View more
Jun 17 2020
10:39 AM
Yes please, one thing we found is it block countries by where they (the IP's) are registered, not where they actually reside. We found this as they were registered in Russia, but were actually being used in the USA. It blocked the IP's even though they were in the US, so we had to allow Russia....Crazy
... View more
Jun 17 2020
10:36 AM
I'll make the popcorn...
... View more
Jun 17 2020
10:28 AM
3 Kudos
Just completed a wireless site survey using a MR36. Just wanted to post as I had to find the docs to do it but you can set the AP to Survey mode via its' on web page. Put the AP on a ladder with a PoE injector and moved it around and used Netspot to perform the survey. We almost had to use a generator because there was not much power available at the site (new buildings). Anyway just wanted to post if someone else needs to do this - worked great!
... View more
Jun 17 2020
10:16 AM
1 Kudo
We had a customer with a problem on a VPN between the US and a Canada data center. The VPN was up but traffic was dead slow through it. I used MTR to discover the issue with between two ISP's at the border, the handoff was introducing huge latency between the two. I was able to re-route traffic to another Canadian site that had a VPN back to the main Canadian hub using the Exit Hub configuration. This worked until the ISP issues were resolved a week later. This branch would have been essentially down without this option. MTR was valuable in showing both ISP's (you know the finger pointing game) where the issue was. Thanks
... View more
Mar 3 2020
10:43 AM
More of the same today.... Client said certain Sharepoint sites are not getting through. I know that MS uses Akamai as a CDN so (due to the customer using extensive country blocks), I am guessing that the egress site changes every once in while to a country on the block list. After further testing I found out the firewall rules don't take precedence over the country block list (Is there a chart showing the order of filtering/blocking?). We setup a Group profile and tested bypassing all the country and FW rules and we can get through. Again nothing in the log files to indicate where (and what) is blocking it. I know this is going to be more of an issue as vendors (Microsoft in this case) move to CDN's, it will render the country block useless (except for a few counties), so it would be nice to be able to turn on specific logging when required. Just a heads up for those dong firewall list, content lists and country blocks.
... View more
Nov 21 2019
2:59 PM
Thanks Chris, but it was support that notified me they aren't being logged - at all
... View more
My Accepted Solutions
Subject | Views | Posted |
---|---|---|
8735 | Jul 30 2019 10:01 AM |
My Top Kudoed Posts
Subject | Kudos | Views |
---|---|---|
4 | 4656 | |
3 | 1845 | |
3 | 4520 | |
2 | 8735 | |
2 | 41626 |