r/meraki 1d ago

Question How to prevent clients who aren't whitelisted from getting an IP address

3 Upvotes

We've this setup where we're using a splash page for clients whose mac addresses aren't whitelisted.

The dhcp server is in the local LAN network.

Is it possible to make the setup where a user doesn't get an IP address if they're not whitelisted on the Meraki dashboard for this particular SSID?

The splash page is not a necessity as well.


r/meraki 1d ago

Meraki Wireless security

1 Upvotes

Hi, If two users with same Mac address on wifi with psk- one is original & another spoofed. can both connect at same time ? And does Meraki have any mechanism to detect Spoof mac addresses ?


r/meraki 3d ago

Commercial Meraki AP Refresh - Open Ceiling Mounting Recommendations

Thumbnail
gallery
19 Upvotes

We are refreshing our Meraki AP's at some of our locations, these will be a like for like swap but we want to change how they are mounted. Currently they sit too high on a unistrut, we want to drop these 2-4 feet for easier access when needed. We are thinking of throwing a 1900 box where the AP currently sits, run down a 36" conduit, and mount the AP's to another 1900 box. Also considering the Oberon Hi-Point Open-Ceiling and Surface Mounts 900-HC. Not a lot of experience with unistrut and not sure if there are better options to get a conduit attached.

Any recommendations from your experience? Pictures attached for reference. Going for something similar to how our cameras are mounted.


r/meraki 4d ago

Getting Down Alerts across the Org

10 Upvotes

Is anyone else getting down alerts. Spoken to support and they said n70 went down. PS based in APAC


r/meraki 5d ago

Question New Subnets Dropping Packets

6 Upvotes

I feel like I am missing something simple...

I'm lending a hand to another IT department who doesn't have a network person so I might be missing something from the larger picture because I don't know their entire network.

In the location in question, they had 3 Meraki MS250 in a stack forming a flat network, every port is Trunk VLAN 1. DHCP is a Windows server on the network. The stack connects to a router that pipes the traffic to the main location where the firewall is and then from there to the internet.

They needed to add two new subnets. So I designated the ports to be used on the switches to Access ports on their VLANs. On the DHCP server, I set up new subnet scopes. On the switch stack, I set up an interface for each subnet and then a DHCP Relay to the server.

Things work, kind of. A client on either of the new subnets can get access to the internet but it is dropping packets in a specific pattern. If I ping anything on the internet or the old subnet, I will receive 3 responses then 2 fails and just repeat that pattern. Pings within the subnets have 100% response.

On the original subnet, it can ping anything on the subnet or internet just fine. However, if I ping anything on the new subnets, even the interface on the switch, it responds with the same pattern of 3 responses and 2 fails.

What did I do wrong or miss?


r/meraki 6d ago

Meraki Campus Gateway with Aruba Clearpass

2 Upvotes

I am curious if anyone has Meraki Campus Gateways working with Aruba Clearpass for a Guest captive portal.

We are new to Meraki, but have Clearpass working with Mist and Aruba APs. (Don't ask!) I think we are most of the way there, but it's not quite working. If we connect to our Guest SSID, we are redirected to the ClearPass captive portal, once we accept our Acceptable Use Policy, we get the 10 second countdown that we added on the ClearPass side, and then nothing. We're just stuck. We had a similar issue with Mist, and found that if we disconnected from Guest SSID and reconnected, we were able to access the internet. That is not working with Meraki. If we try to ping anything internall or externally, we get a "Reply from 10.128.128.128: Destination net unreachable." That seems this may be an internal Meraki IP, so it seems as though ClearPass is not sending back the correct info to Meraki...or Meraki is not receiving it.

If anyone has run into this issue, I'd appreciate any insight you may have. I am working with TAC on this, but I't thought I'd ask here as well.

Thanks!


r/meraki 7d ago

Mastering Meraki: Experience Metrics – Complete Meraki Dashboard Training

Thumbnail
youtube.com
7 Upvotes

In this video, we walk you through a brand new feature of the Meraki Dashboard: the Experience Metrics!

Experience Metrics measure end-to-end user experience on your network by tracking every user's experience every minute and quantifying a poor experience. It provides a view of connected clients with hover functionality and the ability to select a time range to review end user metrics. Each metric is given a status, failure contributor, and failure rate.

https://www.youtube.com/watch?v=ILWj4K27_kI


r/meraki 7d ago

Question Dashboard (all networks) says upgrade available, device says it's up to date

6 Upvotes

Title: On the all networks screen, the firmware column says "upgrade available" but when I look at the appliance status, it says it's up to date.

reports current version is Current version: MX 18.107.13

is this just a slow dashboard?


r/meraki 7d ago

VPN Not Working

0 Upvotes

Is anyone having issues with the client VPN not working this morning?


r/meraki 8d ago

Question Dashboard running slow?

21 Upvotes

Is the dashboard running slow for anyone else? Like 20ish seconds to load a page.


r/meraki 8d ago

Question Macbook users having issues over past 2 weeks - primarily MR36 network

8 Upvotes

Over the past 1 or 2 weeks, users specifically with Macbook Pro computers have started having near constant disconnect/reconnect issues. From their end, they'll load a few web pages fine, then the wireless cuts out and pages stop loading, then shortly after it reconnects. The cycle repeats. Not terrible for web browsing, but detrimental to web conferencing. RSSI to the APs are good, the issue isn't limited to 2.4GHz or 5GHz. All APs are hard wired (i.e. not mesh or whatever Meraki calls it).

In the Meraki dashboard, under the relevant AP's event log, I see "error_code='15' last_active_ago='6.000000' instigator='client' connected='0'", every 10 seconds or so. Failure stage is showing as "association".

In the client timeline, I see various entries: "802.11 Reason (Code 2) Invalid authentication", "Meraki Reason (Code 101) EAPoL timeout", "802.11 Reason (Code 15) 4-way handshake timeout", and otherwise just lots of disassociations and reassociations.

We're not using RADIUS, only PSK on this SSID. The failures are odd because the

I've followed the general advice I find online relating to supporting Mac devices in a Meraki network, specifically I've disabled 802.11r, I've disabled band steering, I've disabled client balancing.

Is anyone else facing this? Our records show no changes made to our wireless or network infrastructure in this or the recent time period. I'm wondering if a MacOS update has broken something.


r/meraki 8d ago

Question Clients keep Roaming to other SSIDs when stationary

6 Upvotes

We've this new setup where some stationary clients keep disconnecting and roaming away to other Access Points with the reason being 'AP recommendation(11v)-part of AP steering, Better AP-because another AP had better connectivity'.

The band steering and Client Balancing is disabled in the default indoor profile applied to the access points.

This disconnection seems to be noticeable and frequent.

Kindly advise if any other parameters might be forcing these disconnections.


r/meraki 9d ago

After a license expires

7 Upvotes

We're in a lull right now with our licenses. We are switching to an entirely new platform but all that equipment has not come in yet. We were able to request a 30-day extension with Meraki but the dashboard shows all our licenses are expired.

So what really happens when the license does expire? Does it truly stop functioning or is it mostly that you don't get support/updates?


r/meraki 9d ago

Mounting MR46E with MA-ANT-3-D6

1 Upvotes

I need to mount a couple of these and cannot get the MA-MNT-ANT-3 or MA-MNT-ANT-4 anywhere right now. does anyone have some laying around or a decent workaround?


r/meraki 9d ago

Question Editing Clients to add or remove mac addresses

0 Upvotes

Once we've whitelisted many mac addresses and assigned one name to all, where can we find this group to add more mac addresses or to remove several from that list?


r/meraki 11d ago

Stack dual uplink to mx

2 Upvotes

Recently I had to set up a Meraki network. I came up with a topology: "Fully Redundant (Switch Stack)". Has anyone done it? Stack switches with 2 uplinks to each MX?
I need to use stack as I have LACP access points and want to make sure this topology with 2 uplinks per switch is working fine

https://documentation.meraki.com/SASE_and_SD-WAN/MX/Design_and_Configure/Deployment_Guides/MX_Warm_Spare_-_High_Availability_Pair


r/meraki 13d ago

Mastering Meraki: Access Manager – Complete Meraki Dashboard Training

Thumbnail
youtube.com
19 Upvotes

r/meraki 14d ago

Meraki to Azure IPSEC and FIPS 140-2

6 Upvotes

I have an IPSEC tunnel established from my Meraki MX appliances to an Azure VPN Gateway. Everything works well but in order to meet FIPS 140-2 requirements, the Meraki documentation says I need to set my phase two PFS Group to PFS14.

However, Azure GCC High is not showing PFS14 as a phase two option, though it is documented as being available (GCC High often is missing features in World-Wide Azure). Some research says PFS2048 is the equivalent, but I would need to change the setting to test, and that would affect my entire organization.

I wanted to see if anyone else has any experience with this before I schedule an outage to test.


r/meraki 14d ago

Question Meraki Access Points with same SSID but different subnets

1 Upvotes

Could one kindly assist with a link or guidance on how to configure Meraki Access Points to use the same SSID name. But for access points on different floors they should've they have different IP pools for users.


r/meraki 15d ago

Anyone notice the new secure routers dropped the lifetime warranty

36 Upvotes

So it seems calling the new firewalls secure routers instead of MX's is not the only thing they decided to change. While looking at the options other than the mx75 I just happened to notice that the new lineup dumped the meraki lifetime warranty we were accustomed to on the MX's.

I understood the shorter warranty of the outdoor AP's and cameras purely from wear and tear aspect. But if this is where they are going to go with all new meraki hardware then might really be time to move on.

My guess is they are going to want to sell add on warranty contract bullshit just like std cisco gear. The end of what meraki was is truly approaching.

It was a non issue when the equipment had lifetime warranty but if they are dropping it does it make you reconsider your purchasing?

Me I find it hard to recommend a firewall that you spend thousands on for the hardware and a 3, 5, 7yr license and now only have the hardware covered for 2yr.

Really starting to see less and less positives. So unless they are planning to include the warranty as part of the equipment licensing (how i thought it should have always been) it seems the value of meraki is further diminished with the new models


r/meraki 15d ago

Question Meraki Licensing

5 Upvotes

Hi all,

I got some Meraki devices delivered (a couple of MX's and an MS Switch) but still waiting to receive the actual licenses. Can I add the devices to the dashboard to get the configs done or do I need the actual licences before I can even do this?

Thanks


r/meraki 16d ago

Redundant IPsec between Meraki and FortiGate.

Thumbnail
1 Upvotes

r/meraki 19d ago

Question Used Meraki Equipment

5 Upvotes

Where is the best place to sell used Meraki gear. I have some things I just took out of one of my other businesses Mx-68 and 4 AP’s to I have some gear a client paid for and never took delivery on. What’s the best way to sell or what site should I use.

Thank you


r/meraki 20d ago

Cisco Meraki Webinar Today: Secure Access and Physical Security

3 Upvotes

Rhino Networks and Cisco are hosting a Meraki-focused webinar today at 1 PM EST.

The session will cover ways to extend a Meraki environment with Cisco Secure Access, physical security, and related Cisco security tools. It should be useful for anyone evaluating how Meraki fits into a broader security stack.

There is also a chance to win $300 in YETI gear for attendees.

Registration:
https://register.rhinonetworks.com/

Thanks!


r/meraki 20d ago

STP BPDU Conflict and MAC Address Flapping Issues

Thumbnail
1 Upvotes