02-23-2022 10:15 AM
Users are connected to Wifi which are Meraki APs. Those are connected to a cisco 2960 switch as upstream.(where all the configurations are present) When users connect to one SSID they can not access the internal shares but other things like internet access and all works fine. I even tried pinging the server on which the shares are hosted but got request timed out error. Meraki TAC confirmed its all good from their end as APs are passing traffic.
Anyone has any idea on this. elp is much appreciated
02-23-2022 10:24 AM
Check routing between vlans assuming clients are different vlan to server and also check for acls on the L3 interfaces.
Difficult to be more precise as you have provided so little information.
Jon
02-23-2022 10:32 AM
Thanks Jon.
We will try that, I can not give the complete details as it would give out the specific details about the network.
The users are from remote office and the server is in DC. We have a DMVPN tunnel established. They can access shares when connected through LAN or VPN. Only when they are on Wifi those are not working. We have created separate vlans for the different SSIDs.
02-23-2022 11:38 PM
- As Jon states : you first need to get the basic connectivity going (ping - for instance) and or the vlans associated with the SSID's must have connectivity to the 'sharing-servers' too.
M.
02-24-2022 12:49 AM
Hello,
can you post a screenshot of the 'Appliance status' page (Security & SD-WAN --> MONITOR) ?
02-24-2022 03:02 AM
Hello
Can you confirm if the switchport connected to the meraki AP is a trunk and its allowing all vlans in your network
02-24-2022 04:19 AM
interface GigabitEthernet1/0/4
description Meraki Back Room
switchport trunk native vlan 203
switchport trunk allowed vlan 200-203
switchport mode trunk
no power efficient-ethernet
spanning-tree portfast trunk
02-24-2022 04:59 AM
Hello
Do those vlans allowed on the trunk incorporate where those network shares reside?
Is there any access policy applied on the meraki ap or on the L3 interfaces.
As a test, From the L3 device that's routes for your vlans can you ping those network shares sourced from the wifi clients ssid vlan(s)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide