Ok so I can do.... Allow server to server TCP server1 6001, 80, 443 Server2 6001, 80, 443 Allow server to server UDP server1 6001, 80, 443 Server2 6001, 80, 443 ??
... View more
So the layer 3 rules are where I need to create these for each port? Examples Allow server to server TCP server1 6001 Server2 6001 Allow server to server UDP server1 6001 Server2 6001
... View more
These are for server ports & services. Example DNS, NTP, SQL, etc & then their associated ports. And have some custom software ports that need to be opened to the VLAN.
... View more
Hi Setting up a new MX450 to replace a Fortigate. I need to allow 1 VLAN to talk to another VLAN only communicating on a specific set of ports & services. Fortinet allows to make service objects with the ports then assign to a service group. Then on the policies I can assign the traffic to only use that service group. I'm not seeing this on the MX. I called into support & the answer wasn't too good from them. Basically was told can't do that. I'm told I have to use individual firewall rules for each port & each service from X VLAN to X VLAN. This seems way too convoluted & will make the FW rules a mess. I need to add 11 services with the specific ports. Is there a work around or an easier way to do this? Thanks
... View more
Odd thing happened on Thursday. All of a sudden the guest WiFi clients could access my local network. Confirmed by 2 different devices from different locations. Then today when I go to test it's again being blocked. I disabled the guest WiFi once discovered & re-enabled it today. I did update the MR firmware for all AP's to 30.05 today as well. Ideas??
... View more
Thanks for the suggestions. I don't think that would be the problem. I'm not trying to get on the Meraki WiFi 10/8 network. Once my VPN is established, my firewall should then route the connections back to my local LAN network. I only need internet access for the VPN to work. It works fine on my corp radius SSID, & hot spot or home internet. Once I connect yes I can ping anything other then my local LAN network. However if I did need to enable local LAN, will that then give any guest client access to any device on the guest Meraki DHCP network? I don't want to do that. What's odd is the netmotion server is a new one spun up for an upgrade. The old one still in use connects fine from the Guest WiFi. I must need some sort of route/policy, have to figure out where to put it.
... View more
Meraki DHCP, & all normal Guest SSID settings. No L2, We do have block local LAN enabled, as we don't want anyone to be able to get local resources from the guest Meraki LAN. However once connected the VPN should take over for local network resources. Just needs any internet connection.
... View more
We have a new Netmotion server set up. Everything is working fine expect when on the Meraki guest WIFI. I can get connected but can't pass data to the local network. I also cannot ping any local resources. Netmotion works fine on our corp WIFI using a radius server. Works using a hotpot or other internet connection. The gateway is still using the Meraki DHCP. It should be routed to the local network gateway while connected. Is this something I need to set up on my firewall or on the MR's portal? Thanks
... View more
I have MR36 & 46 AP's. We are using Fortinet 426 switches that have the 2.5GB multigig ports. I tried to connect the 2 with a normal cat6 cable but the port speed stays at 1GB. Is there something I need to do on Meraki's side to turn this function on? Or is it a something on the Fortinet switch I need to change? Thanks
... View more
Running 36 & 46's at different locations. Some offices have a 46 for a conf room then a 36 for the hallways or recpt areas. Also have the outdoor 76 at a few locations with 36's inside. Haven't had any problems in the year they have been deployed.
... View more
This is exactly my problem. The SSID's with no schedule are working fine. "all my SSID's that are tied to a schedule have not been enabled during their scheduled time. However, all the ones that didn't have a schedule were unaffected. "
... View more
Once this gets sorted out, I'd like to know why this is effecting our local SSID clients from connecting via our local NAT network. New to Meraki. Thanks
... View more