The Meraki Community
Register or Sign in
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Show  only  | Search instead for 
Did you mean: 
  • About CptnCrnch
CptnCrnch

CptnCrnch

Kind of a big deal

Member since Jun 8, 2019

4 hours ago

Chris

Germany

Kudos from
User Count
MyHomeNWLab
MyHomeNWLab
5
RaphaelL
Kind of a big deal RaphaelL
21
rwiesmann
rwiesmann
12
GiacomoS
Meraki Employee GiacomoS
1
KarstenI
Kind of a big deal KarstenI
53
View All
Kudos given to
User Count
Inderdeep
Kind of a big deal Inderdeep
117
AmyReyes
Community Manager AmyReyes
80
RaphaelL
Kind of a big deal RaphaelL
81
cmr
Kind of a big deal cmr
288
GreenMan
Meraki Employee GreenMan
36
View All

Community Record

1296
Posts
1527
Kudos
79
Solutions

Badges

CMNA
Meraki FIT Level Two
FIT First Follower
Community All-Star 2023
Community All-Star 2022
Community All-Star 2021 View All
Latest Contributions by CptnCrnch
  • Topics CptnCrnch has Participated In
  • Latest Contributions by CptnCrnch
  • « Previous
    • 1
    • 2
    • 3
    • …
    • 48
  • Next »

Re: Meraki MX DHCP details to a NAC Appliance

by Kind of a big deal CptnCrnch in Security / SD-WAN
Tuesday
Tuesday
Interesting question! I pretty sure that DHCP logs will contain the information your NAC appliance (ISE?) will need to do its job. They simply don't contain fields like Client-Identifier etc. ... View more

Re: connection of ESX Server or other Server directly to MX85

by Kind of a big deal CptnCrnch in Security / SD-WAN
3 weeks ago
1 Kudo
3 weeks ago
1 Kudo
Best practice would be something like a "Datacenter Switch" that your server(s) are connected to. As you normally have more than one server in place something like the MX would pose a serious limitation due to its limited number of ethernet ports.   Some customers on the other hand have a (very) low number of DMZ servers directly connected to the MX, but even this is a rather special case. ... View more

Re: Allow traffic through mx50 firewall plus

by Kind of a big deal CptnCrnch in Security / SD-WAN
3 weeks ago
3 weeks ago
Perhaps somebody in the Meraki Go Community can help out ... View more

Re: Syslog nightmare

by Kind of a big deal CptnCrnch in Security / SD-WAN
3 weeks ago
2 Kudos
3 weeks ago
2 Kudos
This is not a Meraki native issue, we're seeing this with a lot of customers and their log sources. As @KarstenI mentioned, there are several options from syslog-ng up to expensive commercial offering that are used to "pre-filter" logs going to the SIEM. ... View more

Re: AnyConnect behind a Palo Alto PA-445 Firewall is not working. (Connecti...

by Kind of a big deal CptnCrnch in Cloud Security / SD-WAN
3 weeks ago
3 weeks ago
So DNAT is done on the Palo side for incoming traffic on TCP/444? By default, MX is listening for AnyConnect connections on TCP/443. Can you check which port is used on the MX (Server settings -> AnyConnect Port)? ... View more

Re: AnyConnect behind a Palo Alto PA-445 Firewall is not working. (Connecti...

by Kind of a big deal CptnCrnch in Cloud Security / SD-WAN
3 weeks ago
3 weeks ago
Sorry, could have thought about this, so SSL-VPN is perfectly OK in this case. ... View more

Re: AnyConnect behind a Palo Alto PA-445 Firewall is not working. (Connecti...

by Kind of a big deal CptnCrnch in Cloud Security / SD-WAN
3 weeks ago
3 weeks ago
This is about AnyConnect, not the old L2TP over IPSec-Client, so there shouldn't be any issues.   Which protocol are you using? IKEv2 or SSL-VPN? ... View more

Re: Recognizing the August 2023 Members of the Month

by Kind of a big deal CptnCrnch in Community Announcements
a month ago
6 Kudos
a month ago
6 Kudos
Special congrats to @DarrenOC for achieving first place. Definitely something that doesn‘t happen each month. 😉   Great job everybody else too! ... View more

Re: VPN over another ISP

by Kind of a big deal CptnCrnch in Security / SD-WAN
a month ago
a month ago
I don't think so unfortunately. 3rd Party VPN is kinda limited, I'm trying to avoid it as much as I can. ... View more

Re: 🎁 🍰 🎈Happy 6th Birthday, Meraki Community! 🎈 🍰 🎁

by Kind of a big deal CptnCrnch in Community Announcements
‎08-22-2023 02:19 AM
2 Kudos
‎08-22-2023 02:19 AM
2 Kudos
Six years already? Wow, just realize what you have achieved @MeredithW and @AmyReyes!    Big fat congrats to you and all of us too. This is what has become the most friendly, helpful space that I'm aware (and proud) of!   Woohoo! 🎉 ... View more

Re: MX 18.107.4 is out STILL can't upgrade from MX 18.107.2

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎08-16-2023 07:59 AM
1 Kudo
‎08-16-2023 07:59 AM
1 Kudo
Same here. Great job! ... View more

Re: Recognizing the July 2023 Members of the Month

by Kind of a big deal CptnCrnch in Community Announcements
‎08-15-2023 12:59 AM
1 Kudo
‎08-15-2023 12:59 AM
1 Kudo
Congrats everybody. Gotta love these announcements to remind everyone what a great bunch of people are connected in here! ... View more

Re: Does MX95 Support Telekom Speedbox (Germany)

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎07-19-2023 03:28 AM
‎07-19-2023 03:28 AM
It looks like that thing has an Ethernet port, so yes, this should be working flawlessly.   As I'm pretty sure that Telekom will use CGNAT in the backend, you could get into issues if you're trying to do VPN (especially Remote Access) on the MX95 though. ... View more

Re: Announcing the winners of our Summer Points Contest

by Kind of a big deal CptnCrnch in Community Announcements
‎07-18-2023 05:07 AM
1 Kudo
‎07-18-2023 05:07 AM
1 Kudo
Congrats all! Keep up the great community work! 👍 ... View more

Re: MX - Updated Network performance benchmarks !

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎07-18-2023 12:32 AM
‎07-18-2023 12:32 AM
Good catch, thanks for sharing! ... View more

Re: Configuring ethernet port link negotiatoin

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎07-13-2023 01:49 AM
1 Kudo
‎07-13-2023 01:49 AM
1 Kudo
Try using http://mx.meraki.com with the device serial (upper case letters and dashes) as username without any password. ... View more

Re: Points Contest: Week 3 Roundup

by Kind of a big deal CptnCrnch in Community Announcements
‎07-08-2023 12:00 AM
5 Kudos
‎07-08-2023 12:00 AM
5 Kudos
It is getting more and more interesting!   Such a great contest…but hey, it‘s the best IT related from here for a reason! 👍🏼 ... View more

Re: Restrict outbound DNS to only Umbrella on MX? Multiple destination port...

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎07-07-2023 07:15 AM
2 Kudos
‎07-07-2023 07:15 AM
2 Kudos
Correct, but that's the most common use case: 😉 Most DNS [RFC1034] transactions take place over UDP [RFC768]. TCP [RFC793] is always used for full zone transfers (using AXFR) and is often used for messages whose sizes exceed the DNS protocol's original 512-byte limit. https://www.rfc-editor.org/rfc/rfc7766  ... View more

Re: Restrict outbound DNS to only Umbrella on MX? Multiple destination port...

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎07-07-2023 07:05 AM
‎07-07-2023 07:05 AM
https://support.umbrella.com/hc/en-us/articles/230904088-Preventing-circumvention-of-Cisco-Umbrella-with-firewall-rules That's basically all that's needed: 1. Allow both Anycast IPs und port 53 (UDP is enough, there's no need for your users to do Zone transfers) 2. Deny everything else to port 53 either UDP swell as TCP 3. In addition block port 853 TCP 4. Block the categories "Proxy / Anomymizer" and "DoH / DoT" within Umbrella.   ... View more

Re: Recognizing the June 2023 Members of the Month

by Kind of a big deal CptnCrnch in Community Announcements
‎07-07-2023 06:38 AM
3 Kudos
‎07-07-2023 06:38 AM
3 Kudos
I really love this Member of the month-thing. It always reminds me how great this place is - thanks to its members. So keep it up folks!   And of course: congrats to all of these special people mentioned above! ... View more

Re: Points Contest: Week 2 Roundup

by Kind of a big deal CptnCrnch in Community Announcements
‎07-02-2023 01:11 AM
5 Kudos
‎07-02-2023 01:11 AM
5 Kudos
Good luck and kudos to everyone! ... View more

Re: MX FORTI

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎06-30-2023 05:42 AM
2 Kudos
‎06-30-2023 05:42 AM
2 Kudos
That's what's called an open question, right? 😉   Yes, of course. Both of them speak TCP/IP. What exactly are you referring to? Site-to-Site VPN perhaps? ... View more

Re: Is EVE coming to the MX range?

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎06-30-2023 02:20 AM
2 Kudos
‎06-30-2023 02:20 AM
2 Kudos
No, EVE has nothing to do with Umbrella. It's something like Encrypted Traffic Analytics (enriched Netflow data from switches going to Secure Network Analytics) for the Firewall line. Highly interesting topic!   I'd love to see this on the MX line but wouldn't hold my breath until we get it. 😉 ... View more

Re: MX450 VLANs and Single LAN

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎06-29-2023 08:38 AM
5 Kudos
‎06-29-2023 08:38 AM
5 Kudos
If it's not needed anymore, I'd also recommend to completely delete the Vlan. I don't see an advantage in switching back to "Single Vlan"-mode though. Especially when dealing with boxes as big as the MX450, chances are high that there will be a requirement for more than one Vlan sooner or later.   P.S.: There will be no outages for either of the options (at least from the outside point of view). ... View more

Re: Clarification on Users

by Kind of a big deal CptnCrnch in Security / SD-WAN
‎06-28-2023 07:14 AM
‎06-28-2023 07:14 AM
Exactly what @thomasthomsen said: if you've got 150 users sitting behind a MX64 doing nothing, everything is perfectly fine. If each and everybody is downloading dozens of Linux ISO images (e.g.) at the same time, things will start to get interesting... ... View more
  • « Previous
    • 1
    • 2
    • 3
    • …
    • 48
  • Next »
Kudos from
User Count
MyHomeNWLab
MyHomeNWLab
5
RaphaelL
Kind of a big deal RaphaelL
21
rwiesmann
rwiesmann
12
GiacomoS
Meraki Employee GiacomoS
1
KarstenI
Kind of a big deal KarstenI
53
View All
Kudos given to
User Count
Inderdeep
Kind of a big deal Inderdeep
117
AmyReyes
Community Manager AmyReyes
80
RaphaelL
Kind of a big deal RaphaelL
81
cmr
Kind of a big deal cmr
288
GreenMan
Meraki Employee GreenMan
36
View All
My Accepted Solutions
Subject Views Posted

Re: Restrict outbound DNS to only Umbrella on MX? Multiple destination port...

Security / SD-WAN
363 ‎07-07-2023 07:05 AM

Re: MX450 VLANs and Single LAN

Security / SD-WAN
208 ‎06-29-2023 08:38 AM

Re: How to config by application or url

Security / SD-WAN
820 ‎03-29-2023 04:18 AM

Re: Talos 'threat' content category

Security / SD-WAN
284 ‎01-17-2023 01:19 AM

Re: MX60 IKEv2

Security / SD-WAN
341 ‎11-07-2022 01:08 PM

Re: MX with Umbrella

Security / SD-WAN
521 ‎09-13-2022 12:10 PM

Re: AnyConnect Block Internal VPN

Security / SD-WAN
1037 ‎04-19-2022 12:28 PM

Re: Allow traffic from a source IP

Security / SD-WAN
499 ‎03-28-2022 01:05 PM

Re: Data usage column not sorting corretly on MX64

Security / SD-WAN
605 ‎03-24-2022 03:22 AM

Re: AnyConnect with custom hostname certificates

Security / SD-WAN
2016 ‎03-18-2022 12:52 PM
View All
My Top Kudoed Posts
Subject Kudos Views

Re: The annual points contest is BACK and better than ever!

Community Announcements
17 5405

Re: The Annual Community Points Contest is HERE!

Community Announcements
14 12328

MX users running AnyConnect: it's upgrade time!

Security / SD-WAN
13 1860

Re: Spend some WFH time here on the community, earn points and win prizes!

Community Announcements
10 29012

Re: Happy IT Professionals Day!

Community Announcements
9 5885
View All
Powered by Khoros
custom.footer.
  • Community Guidelines
  • Cisco Privacy
  • Khoros Privacy
  • Cookies
  • Terms of Use
© 2023 Meraki