Yes there is. As you've implemented the MX as a VPN Concentrator I'm assuming you are going to be using AutoVPN to connect to remote sites. So, some of the destinations will be your branch offices that you are connecting to to set up the AutoVPN, the other destination will be the Meraki Cloud and the Meraki VPN Registry. You can find the IP address and ports for these from the Dashboard, go to 'Help' (towards the top right of the Dashboard, and then 'Firewall Info'. Generally since the traffic is all outbound initiated on the MX you can normally have your firewall rules to just allow all outbound from the MX. But I understand that sometimes there is a need to be more restrictive than that, and the above should give you all the information you require.
... View more