cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3708
Views
9
Helpful
5
Replies

Ports used by Meraki Z3 Teleworker

Bobby P
Level 3
Level 3

Need to deploy a Teleworker on a network not under our management. Noc for this network needs to know ports teleworkers use to communicated to our Meraki firewall. What ports need to be open to allow teleworkers to connect to our network.

1 Accepted Solution

Accepted Solutions

aleabrahao
Meraki Community All-Star
Meraki Community All-Star

But those are the ports, it doesn't matter the model.

Protocol Port Purpose

UDP7351Meraki Auto VPN
UDP9350Meraki Auto VPN
UDP500IKE (for VPN)
UDP4500NAT-T (for VPN)
UDP53DNS resolution
TCP80Dashboard communication (HTTP)
TCP443Dashboard communication (HTTPS)
I am not a Cisco employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.

View solution in original post

5 Replies 5

aleabrahao
Meraki Community All-Star
Meraki Community All-Star

You can check it under Firewall info on the dashboard.

image.png

I am not a Cisco employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.

I didn't find this useful. I have also viewed this information but need to know specifically the ports used.

aleabrahao
Meraki Community All-Star
Meraki Community All-Star

But those are the ports, it doesn't matter the model.

Protocol Port Purpose

UDP7351Meraki Auto VPN
UDP9350Meraki Auto VPN
UDP500IKE (for VPN)
UDP4500NAT-T (for VPN)
UDP53DNS resolution
TCP80Dashboard communication (HTTP)
TCP443Dashboard communication (HTTPS)
I am not a Cisco employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.

CMR
Meraki Community All-Star
Meraki Community All-Star

Adding to what @alessandrodematos said, the ones highlighted in green are needed, the others not for a Z, only generally an MX:

Source IPDestination IPFQDNPortsProtocolDescription
Your network(s)64.62.142.12/32, 158.115.128.0/19, 209.206.48.0/20, 216.157.128.0/20 7351, 9350-9381UDPMeraki cloud communication, VPN registry
Your network(s) cloud-meraki-asn.amp.cisco.com443TCPAdvanced Malware Protection (AMP) Lookups
Your network(s) cloud-meraki-est.amp.cisco.com443TCPAdvanced Malware Protection (AMP) Enrollment
Your network(s)158.115.128.0/19, 209.206.48.0/20, 216.157.128.0/20syslog.log-ingester.emea.production.insight.meraki.com443TCPInsight data collection
Your network(s)158.115.128.0/19registry.meraki-applications.com443TCPMeraki Container Registry
Your network(s)158.115.128.0/19, 209.206.48.0/20, 216.157.128.0/20, 2606:6940:0000:0000:0000:0000:0000:0000/32, 2606:7bc0:0000:0000:0000:0000:0000:0000/32, 2620:012f:c000:0000:0000:0000:0000:0000/44 80, 443, 7734, 7752TCPMeraki cloud communication, Splash pages, Backup Meraki cloud communication, Backup configuration downloads, Measured throughput to dashboard.meraki.com, Backup firmware downloads
Your network(s)0.0.0.0/0 123UDPNTP time synchronization
Your network(s)8.8.8.8/32, 158.115.128.0/19, 209.206.48.0/20, 216.157.128.0/20 ICMPUplink connection monitor
If my answer solves your problem please click Accept as Solution so others can benefit from it.

CMR
Meraki Community All-Star
Meraki Community All-Star

Note this is for a particular organisation, if you go to the firewall information on your organisation it may differ, but the same rows / descriptions are the important ones for a Z3.

If my answer solves your problem please click Accept as Solution so others can benefit from it.