Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have just recently switched over to MXs for Firewalls. I assume like most firewalls its recommended to have an implicit deny as your last firewall rule? Trying to plan for any unplanned impact would this impact any connectivity with Meraki switches...
So, I had some information not identified to me correctly on the limitations of NAT/Address Translation with the MX Appliances. I had a basic Site to Site connection I had to build with a 3rd party to access their web application with LDAP credential...
So, is there no way to specifically affect at the user level a different Group Policy? Meraki is instructing me that it is only a VLAN/Client situation. IE.... John logs into Computer A (main pc) has elevated web browsing rights due to being on Admin...
What is the best way to identify what policy a client is associated to within Meraki? Especially if that is a policy set at the VLAN level? Is there something in the logs that I am missing that identifies the Group Policy assigned to that client? I h...
I'm hoping to get some assistance on understanding Content Filtering and Group policies better from the community....Most users will likely hit the standard content filter but in some situations more restrictive access or less restrictive access I ne...
Any thoughts on utilizing a Cicso Firepower 1010 or 1120 model to handle only these tunnels then leave the MX do to the rest of the firewall, routing, and URL filtering? Is that a possibility?
I haven't had much dealings with Linux short of running a couple different OS's for apps. Is there some Linux platform you are aware of that could accommodate this?
Unfortunately all these 3rd party sites have a mixture of web applications and physical hardware to connect to or send data out on behalf of that partner.
So, with your recommendation do those users not tend to move around utilize one specific PC all the time? How do you compensate a user moving around with Group Policies that have to be applied at a VLAN or Client level and not able to restrict specif...
PS.. I do have the Group Policy in Meraki assigned to a LDAP Group, but I guess that is only intended for authentication to confirm user is in the group. So not really impacting what the content filtering is doing?