<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Meraki group policies by device type? in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509758#M304217</link>
    <description>&lt;P&gt;Are you saying to specifically allow MAC OS X on the device type filter?  Like so?  Also what is odd is that we have 0 clients on anything older than 15.3 in our environment.  But the majority of our MacBook clients are being identified as &lt;STRONG&gt;MAC OSX 10.15 &lt;/STRONG&gt;which I am assuming Meraki just uses it as a catch all for MacBook's if it can't accurately identify what version or device it is? &lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mak2018_0-1748371692001.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/276764iF84777AE0D6D17A4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 27 May 2025 18:48:49 GMT</pubDate>
    <dc:creator>the-lebowski</dc:creator>
    <dc:date>2025-05-27T18:48:49Z</dc:date>
    <item>
      <title>Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509753#M304212</link>
      <description>&lt;P&gt;I knew this wasn't perfect but it seems like lately its gotten worse.  We block mobile devices but Meraki starting blocking mac books recently and even identify them as such and still apply the custom policy to them (IE block primary SSID allow secondary for unmanaged device SSID).  &lt;/P&gt;&lt;P&gt;Has anyone seen this recently?  You can see below what we block as well as a client who is blocked but his device is not identified as any of the ones on the list to block.  We are only seeing this on Macbooks in multiple offices.    &lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mak2018_0-1748369844490.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/276762iA643AC02512B8981/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mak2018_1-1748369917520.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/276759i4543706E662FBAAC/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:19:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509753#M304212</guid>
      <dc:creator>the-lebowski</dc:creator>
      <dc:date>2025-05-27T18:19:27Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509754#M304213</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;NOTE:&lt;/STRONG&gt; Some clients may &lt;/SPAN&gt;&lt;STRONG&gt;misidentify themselves&lt;/STRONG&gt;&lt;SPAN&gt; when specifying the User-Agent string field of an HTTP GET request. Device type policy enforcement is done on a &lt;/SPAN&gt;&lt;STRONG&gt;best-effort basis&lt;/STRONG&gt;&lt;SPAN&gt;, dependent upon the information that the client provides. When needing to enforce security-focused policies based on device type, &lt;STRONG&gt;&lt;EM&gt;we recommend leveraging solutions such as Meraki Systems Manager, or Cisco ISE&lt;/EM&gt;&lt;/STRONG&gt;. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;A title="Applying Policies by Device Type" href="https://documentation.meraki.com/MR/Group_Policies_and_Block_Lists/Applying_Policies_by_Device_Type" target="_self" rel="nofollow noopener noreferrer"&gt;Applying Policies by Device Type&lt;/A&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And if you were to use the &lt;EM&gt;&lt;STRONG&gt;SEARCH box&lt;/STRONG&gt;&lt;/EM&gt; at the top of the page and look for other similar posts &lt;EM&gt;&lt;STRONG&gt;applying policies by device type&lt;/STRONG&gt;&lt;/EM&gt;, you'll likely find it's had similar results as you have discovered.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:25:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509754#M304213</guid>
      <dc:creator>RWelch-USA</dc:creator>
      <dc:date>2025-05-27T18:25:19Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509755#M304214</link>
      <description>&lt;P&gt;I get that but &lt;SPAN&gt;Mac OS X 10.15 is not something we block, b&lt;/SPAN&gt;&lt;SPAN&gt;ut it is an option to block under policies by device type:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mak2018_0-1748370962886.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/276763iBC4950D8B6F8D888/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;So if we aren't blocking it, why would Meraki report/identify the client as &lt;STRONG&gt;Mac OS X 10.15 &lt;/STRONG&gt;and still block it?  That is what I am not understanding.  Its not like it reported it as an iPhone or any of the 3 other types show above.  Just seems like something changed within Meraki's backend to break this.&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:38:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509755#M304214</guid>
      <dc:creator>the-lebowski</dc:creator>
      <dc:date>2025-05-27T18:38:17Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509756#M304215</link>
      <description>&lt;P&gt;Obviously it's being mis-identified which is the reason MANY folks don't use this method because it's not the most ideal solution.  And Meraki suggests using Meraki Systems Manager or Cisco ISE.&lt;BR /&gt;&lt;BR /&gt;And at the bottom of the dashboard you can provide feedback to the Meraki engineer team.&lt;BR /&gt;&lt;A title="Give your feedback (previously Make a Wish)" href="https://documentation.meraki.com/General_Administration/Other_Topics/Give_your_feedback_(previously_Make_a_Wish)" target="_self" rel="nofollow noopener noreferrer"&gt;Give your feedback (previously Make a Wish)&lt;/A&gt;  &lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:46:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509756#M304215</guid>
      <dc:creator>RWelch-USA</dc:creator>
      <dc:date>2025-05-27T18:46:14Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509757#M304216</link>
      <description>&lt;P&gt;If you leave MAC OS X as allowed, what is the behavior?&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:46:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509757#M304216</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2025-05-27T18:46:32Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509758#M304217</link>
      <description>&lt;P&gt;Are you saying to specifically allow MAC OS X on the device type filter?  Like so?  Also what is odd is that we have 0 clients on anything older than 15.3 in our environment.  But the majority of our MacBook clients are being identified as &lt;STRONG&gt;MAC OSX 10.15 &lt;/STRONG&gt;which I am assuming Meraki just uses it as a catch all for MacBook's if it can't accurately identify what version or device it is? &lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="mak2018_0-1748371692001.png" style="width: 400px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/276764iF84777AE0D6D17A4/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:48:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509758#M304217</guid>
      <dc:creator>the-lebowski</dc:creator>
      <dc:date>2025-05-27T18:48:49Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509759#M304218</link>
      <description>&lt;P&gt;yep &lt;SPAN class="lia-unicode-emoji" title=":smiling_face_with_smiling_eyes:"&gt;&lt;span class="lia-unicode-emoji" title=":smiling_face_with_smiling_eyes:"&gt;😊&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 18:56:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509759#M304218</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2025-05-27T18:56:15Z</dc:date>
    </item>
    <item>
      <title>Re: Meraki group policies by device type?</title>
      <link>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509760#M304219</link>
      <description>&lt;P&gt;Is it though? 99% of our MacBook's are identified as the exact same thing (MAC OSX 10.15) and don't get blocked.  So the portal is reporting it as a device that shouldn't get blocked but blocking it regardless.  &lt;/P&gt;</description>
      <pubDate>Tue, 27 May 2025 19:09:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/meraki-group-policies-by-device-type/m-p/5509760#M304219</guid>
      <dc:creator>the-lebowski</dc:creator>
      <dc:date>2025-05-27T19:09:09Z</dc:date>
    </item>
  </channel>
</rss>

