Community Record
1533
Posts
2285
Kudos
206
Solutions
Badges
Jul 26 2024
2:25 AM
4 Kudos
You're correct, there's no way for users to copy networks between organizations. You'll need to engage Meraki support. You'll also need to sort moving the licenses between the organizations.
... View more
Jul 26 2024
2:22 AM
4 Kudos
You can use bonjour forwarding to route mDNS across VLANs. https://documentation.meraki.com/MR/Client_Addressing_and_Bridging/Bonjour_Forwarding
... View more
Jul 25 2024
10:35 PM
2 Kudos
As @ammahend stated, the Meraki AP does not have any control over the endpoint. If the endpoint has the SSID endpoint configured on it, it may have the ability to share or show that password in plain text. You can prevent this by either: - Managing the endpoint through MDM software (such as Meraki Systems Manager or MS Intune) - Using an authentication mechanism that doesn't use pre-shared keys - such as certificate authentication
... View more
Jul 25 2024
10:24 PM
Congratulations @rhbirkelund ! Very well deserved
... View more
Jul 24 2024
8:19 PM
As @GreenMan stated, Meraki templates certainly make it easier to manage multiple different like networks. I do suggest however on reading up on the limitations, so you don't get caught out. Otherwise invest some time looking into the API. Meraki is designed API first, meaning that most things you can do in the GUI, you can automate using the API.
... View more
Jul 24 2024
8:17 PM
1 Kudo
Not a definitive answer, but if you don't have any DNAT rules configured, and manual inbound firewall is disabled, I'd be concerned that the device (192.168.x.222) may already be compromised.
... View more
Jul 24 2024
8:14 PM
From ISP side: Does Site A have a significantly lower download bandwidth? From Meraki side: Do you have any bandwidth shaping on the clients (particularly on Site B)? Anywhere from group policy, MX shaping, MR shaping etc. Some other observations: - Is the slowness consistent? - Does the transfer seem to max out at a specific speed? - Is it only between Site B and site A or from Site B transferring to anywhere else?
... View more
I'd suggest having a read through the Meraki WiFi best practices guide. It gives some suggestions and guidance around what situations you might want to increase or decrease bitrate. Best Practice Design - MR Wireless - Cisco Meraki Documentation @Holli69 's recommendations are good too
... View more
Jul 24 2024
7:32 PM
5 Kudos
Just re-iterating what @PhilipDAth said, if all endpoints are connecting to the switch, and you don't have any sprawling or dynamically changing network, you don't need OSPF. Simply setup the VLAN interfaces for inter-vlan routing and static routes for anything traffic you need to send elsewhere.
... View more
Jul 23 2024
6:23 PM
2 Kudos
As stated above, CDP is a Cisco proprietary protocol while LLDP is an open standard. LLDP is what is used to read information about connected non Meraki/Cisco devices. SNMP is not used for collecting this information.
... View more
Assuming you're talking about Meraki NAT mode on the SSID, no you can't separate the clients onto a different VLAN. This is because the clients are NAT'd to the IP address of the AP and therefore use the VLAN for that IP Address. http://documentation.meraki.com/MR/Client_Addressing_and_Bridging/NAT_Mode_with_Meraki_DHCP If you want to tag clients into a specific VLAN, you need to use bridge mode on the SSID.
... View more
Jul 18 2024
5:22 PM
2 Kudos
If the printer is dedicated to this VM, there's really no need to create a VLAN interface on the MX. You can simply setup a new VLAN on the vSwitch, configure that VLAN on the trunk ports on the switches through the network to the switch where the printer is connected and configure the printer port as an access port in that VLAN. Don't set any default gateway on either the printer or the computer and you're good to go. Those devices will not be able to communicate with anything outside of that VLAN. The only 'risk' of this is VLAN bleeding if someone misconfigures the network in the future. To minimize that, you can add switch ACL's to allow on the specific communication (IP's and ports) on that VLAN and deny all other communication from those hosts.
... View more
Jul 18 2024
5:14 PM
2 Kudos
No, as far as I'm aware that information is not available via the API.
... View more
Jul 18 2024
5:11 PM
2 Kudos
Take a look at the hold timers for each device, along with the documentation on how the timers are negotiated. Meraki information can be found here: https://documentation.meraki.com/MX/Networks_and_Routing/Border_Gateway_Protocol_(BGP)#Default_Update_and_Timeout_Timers A few things to think about: - Is it happening regularly at a specific/predictable time? - Is it only specific sites or random? Beyond that, I'd suggest engaging support from both vendors to review additional logging.
... View more
Are the two networks on different versions? Or contain different models of AP's?
... View more
Jul 17 2024
6:32 PM
4 Kudos
With WAN failover set to graceful existing connections will continue to remain failed over. For example, with WAN 2 as primary, if WAN 2 goes down, connections all failover to WAN 1. When WAN 2 comes back online, new connections will go out WAN 2 but existing connections will go out WAN 1. If you want all connections to immediately failback to the primary uplink, you need to change WAN Failover to Immediate. while new connections start
... View more
Jul 16 2024
11:11 PM
It'll take a bit of getting used to, but I have no issue with it. Especially since the option to disable it is still there. And to be honest, I'm impressed that an accessibility change is being pushed by default with the ability to opt-out rather than needing users to opt-in. 👏
... View more
Jul 16 2024
11:08 PM
That's a bit weird. I've got an MX68CW with Advanced Sec licensing and definitely see the content filtering and threat protection in the list. Can you manually navigate to the URL? https://<shard>.meraki.com/<stuff here>/manage/configure/security_filtering?from=security_sd_wan
... View more
Jul 16 2024
11:00 PM
5 Kudos
Submitted!
... View more
Jul 15 2024
9:59 PM
Assuming the power supplies have the same voltage, polarity and enough amperage, there's no reason it shouldn't work. But I agree with @PhilipDAth More commonly than not, the power supply will fail before the unit does. The last thing you want is to have to do a trip around to every site because the power supplies have all started failing one after the other.
... View more
Jul 15 2024
9:56 PM
4 Kudos
A lot of people swear by rackstuds for racking anything lighter than a server or UPS. I personally haven't used them and especially wouldn't in a production environment until I've tested them in my own lab. Assuming this isn't a homelab or a small test lab, I wouldn't risk it. Cage nuts suck but they're at least fairly reliable.
... View more
I'm liking these features. I'd argue DOM should have been implemented way earlier than now but it's exciting nonetheless.
... View more
Jul 15 2024
6:33 PM
2 Kudos
What are you using for your RADIUS server? We have upgraded our fleet to 30.7 and are using RADIUS authentication without issue.
... View more
Kudos given to
My Accepted Solutions
Subject | Views | Posted |
---|---|---|
568 | Jan 24 2025 4:06 AM | |
465 | Jan 7 2025 2:23 PM | |
12924 | Dec 28 2024 5:37 PM | |
904 | Dec 14 2024 12:06 AM | |
944 | Nov 19 2024 2:08 AM | |
486 | Nov 7 2024 1:06 AM | |
771 | Oct 9 2024 3:07 PM | |
409 | Sep 30 2024 6:15 PM | |
463 | Sep 29 2024 7:33 PM | |
1022 | Sep 25 2024 3:37 AM |
My Top Kudoed Posts
Subject | Kudos | Views |
---|---|---|
12 | 16667 | |
11 | 904 | |
10 | 2883 | |
9 | 12924 | |
9 | 1098 |