Hi All,
My organisation has a Meraki that is hosted in AWS and AWS GuardDuty keeps alerting for port 8090 being probed by different IPs. My research has found that a lot of Merakis have port 8090 open, but the reason why seems to be mysterious. I did find an article (What is Cisco Meraki? (pheniix.com)) that states that Merakis that have content filtering enabled will have port 8090 opened and when you visit a website which is blocked, you receive the block message via http://wired.meraki.com:8090.
I just wanted to post here to see if anyone else has had the same activity with port 8090 and how you dealt with it?
Thanks