@cmr wrote: We don't use the Meraki client VPN, but using dynamic DNS as suggested might well work. My recommendation is to use the dynamic DNS always for the client VPN. If you want to be fancy, make a CNAME record to something less painful to type. We've done the CNAME thing at several clients to make our lives easier. We also do the "device in front of MX pair to split the ISP connection, 3 IPs per ISP" thing. For one client, there are two devices in front: a switch for ISP #1, as they give us a single port; and ISP #2's Juniper router, as they'll configure multiple ports. I wouldn't mind running it all through one switch with one VLAN per ISP, but we did not have enough ports after a server move. 8pt switches can be a bit tight.
... View more