03-15-2020 10:26 AM
Hello all,
I am relatively new to working with Meraki, but I have successfully setup Client VPN on a Meraki MX 67 before.
I have installed an MX67 at a customer site, enabled Client VPN using these settings:
- Google Public DNS
- No WINS serer
- Authentication: Meraki Cloud
I have added myself as a user that is authorized for client VPN through the Meraki dashboard.
The customer has service from two ISP's, and the firewall has been configured to use port 2 as a failover (WAN 2).
Solved! Go to Solution.
03-18-2020 05:15 PM
You're either going to need to have the ISPs port-forward 500/4500 to your Meraki device, or have them adjust their equip so the WAN IP is on your MX. AKA put it in bridge mode.
03-15-2020 12:27 PM
Have you NAT'ed through udp/500 and udp/4500 on the ISP router through to the MX on the MX's primary connection?
03-18-2020 10:03 AM
I somewhat understand what you are asking, but I am not sure how to test this. I have turned the firewall completely off within the isp router, but I am not sure how to test connectivity on those ports.
03-18-2020 05:15 PM
You're either going to need to have the ISPs port-forward 500/4500 to your Meraki device, or have them adjust their equip so the WAN IP is on your MX. AKA put it in bridge mode.
03-22-2020 12:27 PM
03-23-2020 05:43 AM
In the meraki , how can i forward those ports?
03-23-2020 09:20 AM
You don't forward the ports in the meraki, you forward them in the ISP modem/router.
This is because the data is flowing from WAN (internet) -> ISP Device -> Meraki. What you want, is data on those two ports to flow from WAN->Meraki. Therefore you need to forward them in the ISP Device.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide